Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-07-2025
Ran by Dafi (administrator) on DESKTOP-UPBMIK4 (Dell Inc. OptiPlex 390) (10-08-2025 10:53:55)
Running from C:\Users\Dafi\Downloads\FRST64 (1).exe
Loaded Profiles: Dafi
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6093 (X64) Language: Čeština (Česko)
Default browser: "C:\Program Files\CCleaner Browser\Application\CCleanerBrowser.exe" --single-argument %1
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVG Technologies USA, LLC -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\AVGUI.exe <4>
(C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\AVG\Antivirus\AVGSvc.exe ->) (AVG Technologies USA, LLC -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\Program Files\McAfee\WebAdvisor\uihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\138.0.3351.121\msedgewebview2.exe <12>
(C:\Program Files\NVIDIA Corporation\Display\nvtray.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.21931\office6\wpscloudsvr.exe ->) (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.21931\office6\wpscenter.exe
(cmd.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\browserhost.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <13>
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleaner64.exe
(nvvsvc.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\wsc_proxy.exe
(services.exe ->) (AVG Technologies USA, LLC -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
(services.exe ->) (AVG Technologies USA, LLC -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(services.exe ->) (AVG Technologies USA, LLC -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\avgToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.) C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe
(svchost.exe ->) (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.21931\office6\wpscloudsvr.exe
(TP-Link Technologies Co., Ltd) [File not signed] C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\TWCU.exe
(Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) C:\Users\Dafi\AppData\Roaming\kingsoft\wps\addons\pool\win-i386\chromehost_1.0.2025.1\chromelauncher.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [835360 2025-08-03] (AVG Technologies USA, LLC -> Gen Digital Inc.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1794888 2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM-x32\...\Run: [WPSTool] => C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\TWCU.exe [1891840 2018-01-30] (TP-Link Technologies Co., Ltd) [File not signed]
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45741280 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [408896 2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\Run: [MicrosoftEdgeAutoLaunch_C2AB7B4C4369F745A9AA04A850088382] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4117568 2025-08-07] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {15e1b3bb-ab62-11ec-b962-d067e50ea9a0} - "J:\autorun.exe"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {b448eb99-7e8d-11eb-b932-d067e50ea9a0} - "I:\autorun.exe"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {f8ca5cce-7e50-11eb-b931-d067e50ea9a0} - "F:\autorun.exe"
HKLM\...\Print\Monitors\EPSON PGSTM 64Monitor67: C:\WINDOWS\system32\E_L12067.DLL [108032 2008-08-08] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files\CCleaner Browser\Application\138.0.31254.169\Installer\chrmstp.exe [2025-08-04] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\138.0.7204.185\Installer\chrmstp.exe [2025-08-06] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat [2019-12-29] () [File not signed] <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {474CF605-6745-4279-B2DF-5FBAE9356519} - System32\Tasks\AVG\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [5527840 2025-08-03] (AVG Technologies USA, LLC -> Gen Digital Inc.)
Task: {6086E144-BCF9-4DB7-AB71-765D9AABA480} - System32\Tasks\AVG\AVG Antivirus Patcher => C:\Program Files\Common Files\AVG\Icarus\avg-av\icarus.exe [8968528 2025-07-18] (AVG Technologies USA, LLC -> Gen Digital Inc.)
Task: {4A5D261F-5D57-4072-87B9-FD21AA7E2F93} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2181560 2023-08-01] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {D4C7F499-D7B8-42A5-A589-5D4015858DB1} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files\CCleaner Browser\Application\CCleanerBrowser.exe [3650208 2025-07-25] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
Task: {00E19307-126D-4B82-AD11-E8BD4D101F04} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files\CCleaner Browser\Application\CCleanerBrowser.exe [3650208 2025-07-25] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
Task: {B4A938C7-B481-490A-A121-D9D4CE7B5086} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {CBEFE686-3DAC-4643-B9DD-00DFE14F0C20} - System32\Tasks\CCleanerBrowserProtectS-1-5-21-3938597611-2843190907-3524625560-1001 => C:\Program Files\CCleaner Browser\Application\CCleanerBrowserProtect.exe [1717416 2024-05-16] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
Task: {43832E2C-7B74-4AE9-8DAA-66EA96C0CD16} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6140640 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "6615d54d-6df3-4a67-b25a-cbbfd50f58f5" --version "6.38.0.11537" --silent
Task: {CA3BD46D-2AD7-49B4-8B95-17E9D61FBA88} - System32\Tasks\CCleanerSkipUAC - Dafi => C:\Program Files\CCleaner\CCleaner.exe [39575776 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {62980A6A-33A3-4EA7-A905-E5F3A3B6F08F} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208688 2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
Task: {E3A1E706-B3CA-48F4-8C61-C31EFB7D1464} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208688 2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
Task: {59BF38DD-B03E-4232-8A7A-F4967608A5A4} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem140.0.7273.0{B71EB170-C2C6-4696-8244-FCA143F3E231} => C:\Program Files (x86)\Google\GoogleUpdater\140.0.7273.0\updater.exe [6836832 2025-07-02] (Google LLC -> Google LLC)
Task: {C2752090-C0A7-4510-B97A-EF1B6A36E18C} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [694912 2025-08-09] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {464E0A40-7C59-4CE1-8C88-3A56A8D61CF1} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3938597611-2843190907-3524625560-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [694912 2025-08-09] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {CA053D00-E47D-4F25-9FFE-90378786FC98} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-08-09] (Mozilla Corporation -> Mozilla Foundation)
Task: {BF28BB99-D133-4AA9-B949-EBBF3CB02AE3} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3938597611-2843190907-3524625560-1001 => C:\Users\Dafi\AppData\Local\Microsoft\OneDrive\25.137.0715.0001\OneDriveLauncher.exe [685456 2025-08-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {547B5E0F-3D3A-4EFB-B5E3-414228C38AD4} - System32\Tasks\WpsExternal_Dafi_interval => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.21931\office6\wpscloudsvr.exe [967552 2025-07-11] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) -> /wpscloudlaunch /run_plugin /plugin_name=ktaskschdtool /plugin_entry=ktaskschdtool.dll /task=wpsexternal /launchtask /ver=1.0 /start_from=task_external_interval
Task: {DC299E20-AD87-471F-A9D4-0A1179D59318} - System32\Tasks\WpsExternal_Dafi_startup => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.21931\office6\wpscloudsvr.exe [967552 2025-07-11] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) -> /wpscloudlaunch /run_plugin /plugin_name=ktaskschdtool /plugin_entry=ktaskschdtool.dll /task=wpsexternal /launchtask /ver=1.0 /start_from=task_external_startup
Task: {210BC390-FC9C-4B28-A69F-936934CF73D5} - System32\Tasks\WpsUpdateTask_Dafi => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.21931\office6\wpsupdate.exe [1735040 2025-07-11] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{b1da4807-c8e5-49e8-b90a-1804c71203a4}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ca65ab3b-b193-419c-83c7-27bd681738f9}: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Dafi\AppData\Local\Microsoft\Edge\User Data\Default [2025-06-28]
Edge Extension: (Dokumenty Google offline) - C:\Users\Dafi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-06-09]
Edge Extension: (Edge relevant text changes) - C:\Users\Dafi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]
Edge Extension: (WPS PDF - Read, Edit, Fill, Convert, and AI Chat PDF with Ease) - C:\Users\Dafi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mjdgandcagmikhlbjnilkmfnjeamfikk [2025-02-19]
Edge HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [mjdgandcagmikhlbjnilkmfnjeamfikk]
FireFox:
========
FF DefaultProfile: b47qsz8l.default
FF ProfilePath: C:\Users\Dafi\AppData\Roaming\Mozilla\Firefox\Profiles\b47qsz8l.default [2024-03-17]
FF ProfilePath: C:\Users\Dafi\AppData\Roaming\Mozilla\Firefox\Profiles\6o4tg5hy.default-release [2025-08-10]
FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-06-29] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-06-29] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1691.6\npCCleanerBrowserUpdate3.dll [2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1691.6\npCCleanerBrowserUpdate3.dll [2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default [2025-08-10]
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2025-07-09]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-07-21]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-08-04]
CHR Extension: (Custom Teamspeak 3 Display - by Frizzant) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkocffpmmelgidgjhkadhmhgfeckcpge [2020-03-29]
CHR Extension: (WPS PDF - Read, Edit, Fill, Convert, and AI Chat PDF with Ease) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdpelmjpfafjppnhbloffcjpeomlnpah [2025-08-04]
CHR Extension: (Jitsi Meetings) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\kglhbbefdnlheedjiejgomgmfplipfeb [2024-06-07]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Guest Profile [2025-08-10]
CHR Profile: C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1 [2025-08-10]
CHR Notifications: Profile 1 -> hxxps://www.facebook.com; hxxps://www.youtube.com
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2025-08-10]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-08-04]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-08-10]
CHR Extension: (WPS PDF - Read, Edit, Fill, Convert, and AI Chat PDF with Ease) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kdpelmjpfafjppnhbloffcjpeomlnpah [2025-08-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-10-25]
CHR Profile: C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 2 [2025-08-10]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2025-05-22]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-05-22]
CHR Extension: (WPS PDF - Read, Edit, Fill, Convert, and AI Chat PDF with Ease) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\kdpelmjpfafjppnhbloffcjpeomlnpah [2025-05-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-04-04]
CHR Profile: C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\System Profile [2025-08-10]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kdpelmjpfafjppnhbloffcjpeomlnpah]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [1064224 2025-08-03] (AVG Technologies USA, LLC -> Gen Digital Inc.)
R2 AVG Tools; C:\Program Files\AVG\Antivirus\avgToolsSvc.exe [1115936 2025-08-03] (AVG Technologies USA, LLC -> Gen Digital Inc.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [7744288 2025-08-03] (AVG Technologies USA, LLC -> Gen Digital Inc.)
R2 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [109480 2021-06-02] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208688 2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
S3 CCleanerBrowserElevationService; C:\Program Files\CCleaner Browser\Application\138.0.31254.169\elevation_service.exe [2409032 2025-07-25] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208688 2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
R3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1080544 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4993344 2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [946384 2025-08-03] (McAfee, LLC -> McAfee, LLC)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [917440 2025-06-11] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\NisSrv.exe [3304992 2020-05-01] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MsMpEng.exe [103376 2020-05-01] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 avgArDisk; C:\WINDOWS\System32\drivers\avgArDisk.sys [21072 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [245304 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdriver.sys [391224 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsh.sys [299600 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniv.sys [85560 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgElam; C:\WINDOWS\System32\drivers\avgElam.sys [29144 2025-08-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 avgKbd; C:\WINDOWS\System32\drivers\avgKbd.sys [29752 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [281168 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgNetHub; C:\WINDOWS\System32\drivers\avgNetHub.sys [571984 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [92216 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [72272 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [886864 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [1278032 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [202296 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [392248 2025-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45960 2020-05-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [394680 2020-05-01] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [64944 2020-05-01] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-08-10 10:53 - 2025-08-10 10:53 - 002409472 _____ (Farbar) C:\Users\Dafi\Downloads\FRST64 (1).exe
2025-08-10 10:46 - 2025-08-10 10:48 - 000003326 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2025-08-10 10:46 - 2025-08-10 10:48 - 000000670 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2025-08-09 22:54 - 2025-08-09 22:54 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-08-09 18:25 - 2025-08-09 18:56 - 658584563 _____ C:\Users\Dafi\Downloads\Portrét dívky v plamenech (2019) romantický czdab.mp4
2025-08-09 16:57 - 2025-08-09 17:58 - 1322146812 _____ C:\Users\Dafi\Downloads\Bohemian Rhapsody - Bohemian Rhapsody (2018) CZ dabing.avi
2025-08-03 17:47 - 2025-08-03 17:46 - 000321312 _____ (Gen Digital Inc.) C:\WINDOWS\system32\avgBoot.exe
2025-07-11 21:55 - 2025-08-10 02:03 - 000003060 _____ C:\WINDOWS\system32\Tasks\WpsExternal_Dafi_interval
2025-07-11 21:55 - 2025-08-10 02:03 - 000002934 _____ C:\WINDOWS\system32\Tasks\WpsExternal_Dafi_startup
2025-07-11 21:54 - 2025-08-10 02:03 - 000002622 _____ C:\WINDOWS\system32\Tasks\WpsUpdateTask_Dafi
2025-07-11 21:54 - 2025-07-11 21:54 - 000002441 _____ C:\Users\Dafi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WPS Office.lnk
2025-07-11 18:08 - 2025-07-11 18:08 - 000023172 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-07-11 18:07 - 2025-07-11 18:07 - 000023172 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-08-10 10:55 - 2024-12-02 11:44 - 000026056 _____ C:\Users\Dafi\Downloads\FRST.txt
2025-08-10 10:55 - 2020-02-12 12:34 - 000000000 ___RD C:\Users\Dafi\OneDrive
2025-08-10 10:54 - 2024-12-02 11:43 - 000000000 ____D C:\FRST
2025-08-10 10:49 - 2024-01-28 16:03 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-08-10 10:49 - 2020-05-06 20:18 - 000000000 ____D C:\Program Files\CCleaner
2025-08-10 10:48 - 2024-03-17 18:56 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-08-10 10:48 - 2024-03-17 18:56 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-08-10 10:47 - 2024-03-17 18:56 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-08-10 10:47 - 2020-05-11 20:42 - 000000000 ____D C:\Users\Dafi\AppData\Local\CrashDumps
2025-08-10 10:46 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-08-10 10:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-08-10 10:45 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-08-10 02:03 - 2025-02-07 21:27 - 000003104 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3938597611-2843190907-3524625560-1001
2025-08-10 02:03 - 2024-05-30 22:13 - 000002848 _____ C:\WINDOWS\system32\Tasks\CCleanerBrowserProtectS-1-5-21-3938597611-2843190907-3524625560-1001
2025-08-10 02:03 - 2024-05-30 22:10 - 000003092 _____ C:\WINDOWS\system32\Tasks\CCleaner Browser Heartbeat Task (Hourly)
2025-08-10 02:03 - 2024-05-30 22:10 - 000002610 _____ C:\WINDOWS\system32\Tasks\CCleaner Browser Heartbeat Task (Logon)
2025-08-10 02:03 - 2024-05-30 22:09 - 000003456 _____ C:\WINDOWS\system32\Tasks\CCleanerUpdateTaskMachineUA
2025-08-10 02:03 - 2024-05-30 22:09 - 000003232 _____ C:\WINDOWS\system32\Tasks\CCleanerUpdateTaskMachineCore
2025-08-10 02:03 - 2024-01-28 20:01 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-08-10 02:03 - 2024-01-28 20:01 - 000003342 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-08-10 02:03 - 2024-01-28 20:01 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3938597611-2843190907-3524625560-1001
2025-08-10 02:03 - 2024-01-28 20:01 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2025-08-10 02:03 - 2024-01-28 20:01 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3938597611-2843190907-3524625560-1001
2025-08-10 02:03 - 2024-01-28 20:01 - 000002252 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Dafi
2025-08-10 02:03 - 2024-01-28 20:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software
2025-08-10 02:03 - 2020-02-14 15:05 - 000000000 ____D C:\Users\Dafi\AppData\Roaming\vlc
2025-08-10 00:13 - 2024-01-28 19:51 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-08-09 21:23 - 2024-01-28 16:10 - 000002378 _____ C:\Users\Dafi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-08-09 16:55 - 2024-01-28 20:03 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-08-09 16:55 - 2019-12-07 16:43 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2025-08-09 16:55 - 2019-12-07 16:43 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2025-08-09 16:55 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-08-09 16:54 - 2024-03-17 18:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-08-09 16:54 - 2024-01-28 19:57 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-08-09 16:54 - 2024-01-28 19:57 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-08-09 16:50 - 2024-01-28 20:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-08-09 16:50 - 2021-02-01 23:31 - 000008192 ___SH C:\DumpStack.log.tmp
2025-08-09 16:50 - 2020-05-18 16:23 - 000000000 ____D C:\ProgramData\NVIDIA
2025-08-09 16:50 - 2020-05-06 20:18 - 000000000 ____D C:\ProgramData\AVG
2025-08-06 21:27 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2025-08-06 17:43 - 2023-02-17 19:03 - 000000000 ____D C:\Users\Dafi\AppData\Local\The Witcher
2025-08-06 16:35 - 2020-02-14 14:31 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-08-06 16:35 - 2020-02-14 14:31 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-08-04 10:28 - 2024-05-30 22:13 - 000002333 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner Browser.lnk
2025-08-04 10:28 - 2024-05-30 22:13 - 000002298 _____ C:\Users\Public\Desktop\CCleaner Browser.lnk
2025-08-04 10:28 - 2024-05-30 22:09 - 000000000 ____D C:\Program Files\CCleaner Browser
2025-08-03 18:29 - 2020-05-06 20:20 - 000000000 ____D C:\Users\Dafi\AppData\Local\Avg
2025-08-03 18:26 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-08-03 17:47 - 2024-01-28 20:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVG
2025-08-03 17:47 - 2022-10-14 17:35 - 000029144 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgElam.sys
2025-08-03 17:47 - 2020-05-06 20:19 - 001278032 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgSP.sys
2025-08-03 17:47 - 2020-05-06 20:19 - 000392248 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgVmm.sys
2025-08-03 17:46 - 2020-10-24 19:51 - 000281168 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys
2025-08-03 17:46 - 2020-06-16 12:35 - 000571984 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgNetHub.sys
2025-08-03 17:46 - 2020-05-06 20:19 - 000886864 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgSnx.sys
2025-08-03 17:46 - 2020-05-06 20:19 - 000391224 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgbidsdriver.sys
2025-08-03 17:46 - 2020-05-06 20:19 - 000299600 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgbidsh.sys
2025-08-03 17:46 - 2020-05-06 20:19 - 000245304 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgArPot.sys
2025-08-03 17:46 - 2020-05-06 20:19 - 000092216 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgRdr2.sys
2025-08-03 17:46 - 2020-05-06 20:19 - 000085560 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgbuniv.sys
2025-08-03 17:46 - 2020-05-06 20:19 - 000072272 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgRvrt.sys
2025-08-03 17:46 - 2020-05-06 20:19 - 000029752 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgKbd.sys
2025-08-03 17:46 - 2020-05-06 20:19 - 000021072 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgArDisk.sys
2025-07-25 18:20 - 2023-10-09 20:16 - 000000000 ____D C:\Program Files\RUXIM
2025-07-13 21:51 - 2024-01-28 16:10 - 000000000 ____D C:\Users\Dafi
2025-07-11 21:54 - 2023-08-07 17:45 - 000002539 _____ C:\Users\Dafi\Desktop\WPS PDF.lnk
2025-07-11 21:41 - 2020-02-12 12:48 - 000000000 ____D C:\ProgramData\Packages
2025-07-11 21:40 - 2024-01-28 19:51 - 000268672 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-07-11 21:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-07-11 21:38 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2025-07-11 18:13 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-07-11 18:07 - 2024-01-28 19:53 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-07-11 17:52 - 2020-02-12 12:31 - 000000000 ____D C:\Users\Dafi\AppData\Local\Packages
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-07-2025
Ran by Dafi (10-08-2025 10:56:18)
Running from C:\Users\Dafi\Downloads
Microsoft Windows 10 Pro Version 22H2 19045.6093 (X64) (2024-01-28 18:01:55)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3938597611-2843190907-3524625560-500 - Administrator - Disabled)
Dafi (S-1-5-21-3938597611-2843190907-3524625560-1001 - Administrator - Enabled) => C:\Users\Dafi
DefaultAccount (S-1-5-21-3938597611-2843190907-3524625560-503 - Limited - Disabled)
Guest (S-1-5-21-3938597611-2843190907-3524625560-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3938597611-2843190907-3524625560-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG Antivirus (Enabled - Up to date) {18A975F9-A60C-37D8-E30B-4BEF31AD3411}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 19.01 alpha (x64) (HKLM\...\7-Zip) (Version: 19.01 alpha - Igor Pavlov)
7-Zip 23.00 (x64 edition) (HKLM\...\{23170F69-40C1-2702-2300-000001000000}) (Version: 23.00.00.0 - Igor Pavlov)
Aktualizace NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
AVG AntiVirus Free (HKLM\...\AVG Antivirus) (Version: 25.7.10308.2975 - Gen Digital Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 6.38 - Piriform)
CCleaner Browser (HKLM-x32\...\CCleaner Browser) (Version: 138.0.31254.169 - Autoři prohlížeče CCleaner Browser)
CCleaner Update Helper (HKLM-x32\...\{E4EAC0E2-A80B-479F-BA45-DCDA595C9A93}) (Version: 1.8.1691.6 - Piriform Software) Hidden
Codec Pack - All In 1 6.0.3.0 (HKLM-x32\...\Cool's_Codec_pack_4.12) (Version: - )
Corel Applications (HKLM-x32\...\Corel Applications) (Version: - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.14.0.1709 - Disc Soft Ltd)
Fallout2 (HKLM-x32\...\Fallout2) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 138.0.7204.185 - Google LLC)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 139.0.3405.86 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 138.0.3351.121 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\OneDriveSetup.exe) (Version: 25.137.0715.0001 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 (HKLM\...\{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 (HKLM\...\{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 141.0.3 (x64 cs)) (Version: 141.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 119.0 - Mozilla)
NVIDIA Ovladač 3D Vision 341.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.74 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 341.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.74 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}) (Version: 9.10.0514 - NVIDIA Corporation)
NVIDIA Stereoscopic 3D Driver (HKLM-x32\...\NVIDIAStereo) (Version: 7.17.12.6514 - NVIDIA Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
qBittorrent 4.2.1 (HKLM-x32\...\qBittorrent) (Version: 4.2.1 - The qBittorrent project)
Software tiskárny EPSON (HKLM\...\EPSON Printer and Utilities) (Version: - )
Star Wars Jedi Knight - Jedi Academy Čeština + Dabing (HKLM-x32\...\Star Wars Jedi Knight - Jedi Academy Čeština + Dabing 1.0.0) (Version: 1.0.0 - BonusWeb)
Star Wars Jedi Knight Jedi Academy (CZ Dabing) (HKLM-x32\...\FPD_SWJKJA_is1) (Version: 1.0 - Fénix ProDabing)
Star Wars Jedi Knight Jedi Academy (HKLM-x32\...\{1EECBA68-8BE4-4076-94DF-E9ED206B1D21}) (Version: - )
Star Wars Knights Of The Old Republic II The Siths Lords (HKLM-x32\...\Star Wars Knights Of The Old Republic II The Siths Lordsv2.0 Update 1.0b) (Version: v2.0 Update 1.0b - LucasArts by Etnik_23)
The Witcher Enhanced Edition Director's Cut (HKLM-x32\...\1207658924_is1) (Version: 2.1.0.15 - GOG.com)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 11.50 - Ghisler Software GmbH)
TP-Link TL-WN722N (HKLM-x32\...\{F9C15685-38A9-46A1-9826-97204015C19C}) (Version: 2.1.0 - TP-Link)
TP-Link Wireless Adapter WPS Tool (HKLM-x32\...\{685EFF87-B126-49E4-8213-70C56625C5B5}) (Version: 1.0.0.1 - TP-Link)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.20 - VideoLAN)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.11 - VideoLAN)
War Thunder Launcher 1.0.3.213 (HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment)
WebAdvisor od společnosti McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.1058 - McAfee, LLC)
WPS Office (12.2.0.21931) (HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\Kingsoft Office) (Version: 12.2.0.21931 - Kingsoft Corp.)
Packages:
=========
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-11-09] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2024-01-28] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2024-01-28] (Microsoft Corporation) [MS Ad]
Microsoft Mahjong -> C:\Program Files\WindowsApps\Microsoft.MicrosoftMahjong_4.7.4221.0_x64__8wekyb3d8bbwe [2025-05-11] (Microsoft Studios)
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-15] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_7000.522.1444.0_x64__8wekyb3d8bbwe [2025-06-26] (Microsoft Corp.)
Windows App Runtime DDLM 5001.119.156.0-x6 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.5001.119.156.0-x6_5001.119.156.0_x64__8wekyb3d8bbwe [2024-06-06] (Microsoft Corporation)
Windows App Runtime DDLM 5001.119.156.0-x8 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.5001.119.156.0-x8_5001.119.156.0_x86__8wekyb3d8bbwe [2024-06-06] (Microsoft Corporation)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{28A80003-18FD-411D-B0A3-3C81F618E22B}\InprocServer32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.21931\office6\kwpsmenushellext64.dll (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd)
ShellIconOverlayIdentifiers: [00avg] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2025-08-03] (AVG Technologies USA, LLC -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [00avg] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2025-08-03] (AVG Technologies USA, LLC -> Gen Digital Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-05-07] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2025-08-03] (AVG Technologies USA, LLC -> Gen Digital Inc.)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [00avg] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2025-08-03] (AVG Technologies USA, LLC -> Gen Digital Inc.)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-05-07] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-05-07] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2025-08-03] (AVG Technologies USA, LLC -> Gen Digital Inc.)
ContextMenuHandlers1_S-1-5-21-3938597611-2843190907-3524625560-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.21931\office6\kwpsmenushellext64.dll [2025-07-11] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd)
ContextMenuHandlers4_S-1-5-21-3938597611-2843190907-3524625560-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.21931\office6\kwpsmenushellext64.dll [2025-07-11] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Dafi\Desktop\Lucie - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
ShortcutWithArgument: C:\Users\Dafi\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Martin - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"
==================== Loaded Modules (Whitelisted) =============
2020-02-23 16:33 - 2018-01-30 10:59 - 000195072 _____ () [File not signed] C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\DC_WFF.dll
2024-01-28 19:52 - 2015-06-29 21:08 - 001406200 _____ (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [File not signed] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI64.dll
2020-02-23 16:33 - 2018-01-30 10:59 - 001715200 _____ (TP-Link Technologies Co., Ltd) [File not signed] C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\language\English(United_States)\nicLan.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\avgSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\avgSP.sys => ""="Driver"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2022-07-22] (McAfee, LLC -> McAfee, LLC)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2022-07-22] (McAfee, LLC -> McAfee, LLC)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 06:49 - 2019-03-19 06:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.1.1
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Realtek PCIe GbE Family Controller -> rt640x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Dafi\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\111111111.png
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\StartupFolder: => "update.bat"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_C2AB7B4C4369F745A9AA04A850088382"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\StartupApproved\Run: => "Microsoft Edge Update"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{558E563A-BD33-4FF0-9AE6-F8AD9531CEC6}E:\sw hra\gamedata\jamp.exe] => (Block) E:\sw hra\gamedata\jamp.exe (Activision Inc) [File not signed]
FirewallRules: [TCP Query User{ABB9E6F0-97DE-499C-8B67-219A1976D8E2}E:\sw hra\gamedata\jamp.exe] => (Block) E:\sw hra\gamedata\jamp.exe (Activision Inc) [File not signed]
FirewallRules: [UDP Query User{B8CCC716-F1B2-4D6D-AF72-DF2BDD1F3557}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{BE75F05E-3E47-496D-AF6F-71EB6271F3D3}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{64E105F3-3AB6-43F9-B739-32CD0831C0B5}] => (Allow) C:\Program Files\AVG\Antivirus\AVGUI.exe (AVG Technologies USA, LLC -> Gen Digital Inc.)
FirewallRules: [{96F2B676-0358-4C88-B529-5D67CA886277}] => (Allow) C:\Program Files\AVG\Antivirus\AVGUI.exe (AVG Technologies USA, LLC -> Gen Digital Inc.)
FirewallRules: [{4093DC9D-3C34-4708-82AA-0FD5520CA0F9}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{AC8D357E-701B-4203-8148-5EAE44A6DE7B}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{4C260CBF-A754-45F4-9313-943C9D167BC4}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{2D34D30B-1E2C-4A27-9F2F-B860E5D7CE4E}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{74EDA6EB-3BA3-47BF-A786-F407864FB873}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{E3303BA8-5C06-4C2B-A467-AE8A00470F86}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{5D256B55-B38E-464A-880B-68389231537B}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{7BBF3463-1D94-405E-9C5C-9755AA5772BB}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{136142E5-C13D-4BB2-A8CC-68B895BE076E}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{FFF644A4-830C-43AA-9EDF-3AA43A888F4B}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [TCP Query User{0BD83078-F610-4FFA-8758-2F20819C4678}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{FEE46216-7AEA-4EF7-B9E4-57DDAC829501}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{16D7342C-A041-47BA-9DE1-9DBA013FEC3F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{C3353ACB-603D-4C81-817A-4401758D9348}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{02B72738-7847-4E78-B73E-B479E213DF7A}] => (Allow) C:\Program Files\CCleaner Browser\Application\CCleanerBrowser.exe (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
FirewallRules: [{15F0B9C2-CA51-4673-84B7-DDEFF9A32756}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
18-07-2025 18:55:45 Naplánovaný kontrolní bod
03-08-2025 19:32:54 Naplánovaný kontrolní bod
==================== Faulty Device Manager Devices ============
Name: WD SES Device USB Device
Description: WD SES Device USB Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: ========================
Application errors:
==================
Error: (08/09/2025 05:03:45 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Nový svazek (E:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (08/05/2025 05:54:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: witcher.EXE, verze: 1.5.0.1304, časové razítko: 0x4910475c
Název chybujícího modulu: witcher.EXE, verze: 1.5.0.1304, časové razítko: 0x4910475c
Kód výjimky: 0xc0000005
Posun chyby: 0x005fffe0
ID chybujícího procesu: 0x898
Čas spuštění chybující aplikace: 0x01dc05f6b023cbe0
Cesta k chybující aplikaci: C:\GOG Games\The Witcher Enhanced Edition\SYSTEM\witcher.EXE
Cesta k chybujícímu modulu: C:\GOG Games\The Witcher Enhanced Edition\SYSTEM\witcher.EXE
ID zprávy: 96b9501f-c87f-4864-93a5-543561779b04
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (08/03/2025 07:02:31 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Nový svazek (E:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (08/03/2025 06:28:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: explorer.exe, verze: 10.0.19041.6033, časové razítko: 0x51074a90
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x72b981f0
ID chybujícího procesu: 0xe94
Čas spuštění chybující aplikace: 0x01dc049391af8274
Cesta k chybující aplikaci: C:\WINDOWS\SysWOW64\explorer.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 7344d869-f0ca-4f81-bdfd-6eb78a0f5f39
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (08/03/2025 06:25:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: mafia2.exe, verze: 1.0.0.1, časové razítko: 0x4cc182e0
Název chybujícího modulu: mafia2.exe, verze: 1.0.0.1, časové razítko: 0x4cc182e0
Kód výjimky: 0xc0000005
Posun chyby: 0x0139d9db
ID chybujícího procesu: 0x524
Čas spuštění chybující aplikace: 0x01dc048de53395d7
Cesta k chybující aplikaci: E:\Mafia\pc\mafia2.exe
Cesta k chybujícímu modulu: E:\Mafia\pc\mafia2.exe
ID zprávy: 5b64dcc0-5013-4c78-bbe6-ec33aa93930a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (07/19/2025 10:26:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: witcher.EXE, verze: 1.5.0.1304, časové razítko: 0x4910475c
Název chybujícího modulu: witcher.EXE, verze: 1.5.0.1304, časové razítko: 0x4910475c
Kód výjimky: 0xc0000005
Posun chyby: 0x001475e0
ID chybujícího procesu: 0x840
Čas spuštění chybující aplikace: 0x01dbf8d9a71b3d67
Cesta k chybující aplikaci: C:\GOG Games\The Witcher Enhanced Edition\SYSTEM\witcher.EXE
Cesta k chybujícímu modulu: C:\GOG Games\The Witcher Enhanced Edition\SYSTEM\witcher.EXE
ID zprávy: b7be34be-be20-429f-955e-26e8617b563d
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (07/18/2025 06:02:51 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Nový svazek (E:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (07/11/2025 09:39:13 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..
System errors:
=============
Error: (08/09/2025 05:03:23 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NMPJ99VJBWV-Microsoft.YourPhone.
Error: (08/09/2025 04:52:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Google Update (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (08/09/2025 04:52:14 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Google Update (gupdate) bylo dosaženo časového limitu (30000 ms).
Error: (08/06/2025 08:51:17 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-UPBMIK4)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/06/2025 04:42:36 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-UPBMIK4)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/06/2025 04:36:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Google Update (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (08/06/2025 04:36:08 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Google Update (gupdate) bylo dosaženo časového limitu (30000 ms).
Error: (08/05/2025 08:22:35 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-UPBMIK4)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.
CodeIntegrity:
===============
Date: 2025-01-08 19:31:24
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVG\Antivirus\aswAMSI.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: Dell Inc. A01 06/13/2011
Motherboard: Dell Inc. 0M5DCD
Processor: Intel(R) Core(TM) i3-2100 CPU @ 3.10GHz
Percentage of memory in use: 49%
Total physical RAM: 8164.94 MB
Available physical RAM: 4126.96 MB
Total Virtual: 9444.94 MB
Available Virtual: 5554.66 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:446.56 GB) (Free:65.12 GB) (Model: KINGSTON SA400S37480G ATA Device) NTFS
Drive e: (Nový svazek) (Fixed) (Total:232.88 GB) (Free:100.14 GB) (Model: ST3250312AS ATA Device) NTFS
Drive g: (Moje Nehrabat) (Fixed) (Total:1862.98 GB) (Free:871.34 GB) (Model: WD Elements 2621 USB Device) NTFS
Drive h: (DĚTIČKY) (Fixed) (Total:931.48 GB) (Free:692.94 GB) (Model: WD My Passport 2626 USB Device) NTFS
\\?\Volume{f357c740-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.57 GB) (Free:0.1 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 9523BD1D)
Partition 1: (Not Active) - (Size=232.9 GB) - (Type=07 NTFS)
==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 447.1 GB) (Disk ID: F357C740)
Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=446.6 GB) - (Type=07 NTFS)
==========================================================
Disk: 2 (Size: 931.5 GB) (Disk ID: 16F2A91F)
Partition: GPT.
==========================================================
Disk: 3 (Size: 1863 GB) (Disk ID: 16F2A91F)
Partition: GPT.
==================== End of Addition.txt =======================

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu.
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosím o kontrolu.
Ahoj,
pouzi fixlist.txt s obsahom:
Start
CloseProcesses:
HKLM\...\StartupApproved\StartupFolder: => "update.bat"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat [2019-12-29] () [File not signed] <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {15e1b3bb-ab62-11ec-b962-d067e50ea9a0} - "J:\autorun.exe"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {b448eb99-7e8d-11eb-b932-d067e50ea9a0} - "I:\autorun.exe"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {f8ca5cce-7e50-11eb-b931-d067e50ea9a0} - "F:\autorun.exe"
System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem140.0.7273.0{B71EB170-C2C6-4696-8244-FCA143F3E231} => C:\Program Files (x86)\Google\GoogleUpdater\140.0.7273.0\updater.exe [6836832 2025-07-02] (Google LLC -> Google LLC)
EmptyTemp:
End
pouzi fixlist.txt s obsahom:
Start
CloseProcesses:
HKLM\...\StartupApproved\StartupFolder: => "update.bat"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat [2019-12-29] () [File not signed] <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {15e1b3bb-ab62-11ec-b962-d067e50ea9a0} - "J:\autorun.exe"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {b448eb99-7e8d-11eb-b932-d067e50ea9a0} - "I:\autorun.exe"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {f8ca5cce-7e50-11eb-b931-d067e50ea9a0} - "F:\autorun.exe"
System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem140.0.7273.0{B71EB170-C2C6-4696-8244-FCA143F3E231} => C:\Program Files (x86)\Google\GoogleUpdater\140.0.7273.0\updater.exe [6836832 2025-07-02] (Google LLC -> Google LLC)
EmptyTemp:
End
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosím o kontrolu.
Fix result of Farbar Recovery Scan Tool (x64) Version: 21-08-2025
Ran by Dafi (22-08-2025 14:31:13) Run:1
Running from C:\Users\Dafi\Desktop
Loaded Profiles: Dafi
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKLM\...\StartupApproved\StartupFolder: => "update.bat"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat [2019-12-29] () [File not signed] <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {15e1b3bb-ab62-11ec-b962-d067e50ea9a0} - "J:\autorun.exe"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {b448eb99-7e8d-11eb-b932-d067e50ea9a0} - "I:\autorun.exe"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {f8ca5cce-7e50-11eb-b931-d067e50ea9a0} - "F:\autorun.exe"
System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem140.0.7273.0{B71EB170-C2C6-4696-8244-FCA143F3E231} => C:\Program Files (x86)\Google\GoogleUpdater\140.0.7273.0\updater.exe [6836832 2025-07-02] (Google LLC -> Google LLC)
EmptyTemp:
End
*****************
Processes closed successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\update.bat" => removed successfully
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat" => not found
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{15e1b3bb-ab62-11ec-b962-d067e50ea9a0} => removed successfully
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b448eb99-7e8d-11eb-b932-d067e50ea9a0} => removed successfully
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f8ca5cce-7e50-11eb-b931-d067e50ea9a0} => removed successfully
System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem140.0.7273.0{B71EB170-C2C6-4696-8244-FCA143F3E231} => C:\Program Files (x86)\Google\GoogleUpdater\140.0.7273.0\updater.exe [6836832 2025-07-02] (Google LLC -> Google LLC) => Error: No automatic fix found for this entry.
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 22245321 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 1089824 B
Edge => 0 B
Chrome => 697158390 B
Firefox => 50310943 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 3894 B
NetworkService => 3894 B
Dafi => 161698283 B
RecycleBin => 0 B
EmptyTemp: => 890.6 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 14:32:04 ====
Ran by Dafi (22-08-2025 14:31:13) Run:1
Running from C:\Users\Dafi\Desktop
Loaded Profiles: Dafi
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKLM\...\StartupApproved\StartupFolder: => "update.bat"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat [2019-12-29] () [File not signed] <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {15e1b3bb-ab62-11ec-b962-d067e50ea9a0} - "J:\autorun.exe"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {b448eb99-7e8d-11eb-b932-d067e50ea9a0} - "I:\autorun.exe"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {f8ca5cce-7e50-11eb-b931-d067e50ea9a0} - "F:\autorun.exe"
System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem140.0.7273.0{B71EB170-C2C6-4696-8244-FCA143F3E231} => C:\Program Files (x86)\Google\GoogleUpdater\140.0.7273.0\updater.exe [6836832 2025-07-02] (Google LLC -> Google LLC)
EmptyTemp:
End
*****************
Processes closed successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\update.bat" => removed successfully
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat" => not found
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{15e1b3bb-ab62-11ec-b962-d067e50ea9a0} => removed successfully
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b448eb99-7e8d-11eb-b932-d067e50ea9a0} => removed successfully
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f8ca5cce-7e50-11eb-b931-d067e50ea9a0} => removed successfully
System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem140.0.7273.0{B71EB170-C2C6-4696-8244-FCA143F3E231} => C:\Program Files (x86)\Google\GoogleUpdater\140.0.7273.0\updater.exe [6836832 2025-07-02] (Google LLC -> Google LLC) => Error: No automatic fix found for this entry.
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 22245321 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 1089824 B
Edge => 0 B
Chrome => 697158390 B
Firefox => 50310943 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 3894 B
NetworkService => 3894 B
Dafi => 161698283 B
RecycleBin => 0 B
EmptyTemp: => 890.6 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 14:32:04 ====
Re: Prosím o kontrolu.
Ak nie su problemy hotovo 

FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosím o kontrolu.
Zřejmě žádné problémy nejsou. Díky za pomoc.
Re: Prosím o kontrolu.
Za malo 

FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/