prosím o kotrolu logu
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-06-2026
Ran by Win10 (administrator) on DESKTOP-9USA425 (Acer Swift SF113-31) (08-06-2026 21:50:12)
Running from C:\Users\Win10\Desktop\FRST64.exe
Loaded Profiles: Win10 & venad
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) Language: Němčina (Německo) -> Čeština (Česko)
Default browser: "C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe" --single-argument %1
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files (x86)\Avast Software\Browser\Update\AvastBrowserUpdate.exe
(C:\Program Files\AVAST Software\AntiTrack\x86\ATServiceHost.exe ->) (Gen Digital Inc. -> AVAST Software) C:\Program Files\AVAST Software\AntiTrack\x86\ATTray.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\wa_3rd_party_host_32.exe
(C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\wa_3rd_party_host_64.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_98728bfffafc23c2\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_98728bfffafc23c2\igfxEM.exe
(explorer.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe <4>
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Cleanup\TuneupUI.exe <3>
(Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(services.exe ->) (Gen Digital Inc. -> AVAST Software) C:\Program Files\AVAST Software\AntiTrack\x86\ATServiceHost.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Cleanup\TuneupSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Hewlett-Packard Company -> HP) C:\Windows\System32\HPSIsvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_98728bfffafc23c2\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_22dff82e7da0099b\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_b53c057d22ce6f37\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_b53c057d22ce6f37\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Zoom Video Communications, Inc. -> Zoom Communications, Inc.) C:\Program Files\Common Files\Zoom\Support\CptService.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe <3>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.326.4151.0_x64__8wekyb3d8bbwe\GameBar.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.326.4151.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18394608 2017-07-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_ASC] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1502704 2017-07-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_CTPreset] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1502704 2017-07-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [1061544 2026-05-10] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Logitech)
HKLM\...\Run: [Avast Cleanup UI] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [7612640 2026-06-08] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM-x32\...\Run: [C17A] => C:\WINDOWS\twain_32\Brimc17a\Common\TwDsUiLaunch.exe [103344 2019-12-25] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [146584 2017-11-07] (Brother Industries, Ltd. -> Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2893312 2017-12-05] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrotherSoftwareUpdateNotification] => C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe [3581952 2017-04-05] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [AvastAntiTrack] => C:\Program Files\Avast Software\AntiTrack\x86\ATTray.exe [237280 2026-05-05] (Gen Digital Inc. -> AVAST Software)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 <==== ATTENTION
HKU\S-1-5-21-4100794883-594294777-4078157440-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4748688 2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-4100794883-594294777-4078157440-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [41671128 2026-01-31] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-4100794883-594294777-4078157440-1001\...\MountPoints2: {cb632fe1-1b6d-11e9-9ddf-34f64bdaae48} - "D:\SISetup.exe"
HKU\S-1-5-21-4100794883-594294777-4078157440-1002\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4748688 2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-4100794883-594294777-4078157440-1002\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4748688 2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\HPM1210PrintProc: C:\Windows\System32\spool\prtprocs\x64\HPM1210PP.dll [74240 2012-09-29] () [File not signed]
HKLM\...\Print\Monitors\HPM1210LM: C:\WINDOWS\system32\HPM1210LM.DLL [409088 2012-09-29] () [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files (x86)\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [3971224 2026-04-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\148.0.7778.168\Installer\chrmstp.exe [7605912 2026-05-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files\AVAST Software\Browser\Application\147.0.34541.118\Installer\chrmstp.exe [6105552 2026-05-11] (Gen Digital Inc. -> Gen Digital Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2026-05-19]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
BootExecute: autocheck autochk * icarus_rvrt.exe
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {F5EA76F4-F127-4E2D-A750-912EEA773E11} - System32\Tasks\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler
Task: {AD6DA67D-9F13-4D17-9B8C-AC76F874D9B6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1581568 2025-08-24] (Adobe Inc. -> Adobe Inc.)
Task: {B821388E-C377-4E8B-B48E-356954BB6ABD} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe [4364408 2026-04-28] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {7D1B41FE-75DF-45DA-8DA8-D720F0D48AC7} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe [4364408 2026-04-28] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {ABDD4F80-A619-4080-9453-72B5A48159E2} - System32\Tasks\Avast Secure Browser VPS Differential Update => C:\Program Files\AVAST Software\Browser\Application\vps_helper.exe [2481240 2026-04-28] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {E589ACE3-9A3F-4010-934A-A2C3F9CA8722} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9607904 2026-04-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {8081DD6F-33E0-4925-BD44-7CD454EF9007} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [6618336 2026-06-08] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup" --configpath "C:\ProgramData\Avast Software\Cleanup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\Cle (the data entry has 53 more characters).
Task: {ED087005-F5ED-4BAA-A10B-1388B075D776} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [9711840 2026-05-25] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {59455D6F-1699-4575-AF1C-C2FAFE884368} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5783720 2026-05-10] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {C8795379-0DF4-462C-87AB-1EA019AC24A6} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [6599848 2026-05-18] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramDat (the data entry has 80 more characters).
Task: {AF31FAC6-76B8-4750-BE20-5E4FBBD5A8DF} - System32\Tasks\Avast Software\Avast SecureLine VPN Emergency Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [3962024 2026-05-18] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {64F851AC-9DC5-4F82-8D93-E722CF4E2053} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [9607904 2026-04-22] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {8FF5E1D4-2301-4147-9A7C-C740DA0D4EED} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2025-10-13] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {62849193-DCCA-43F2-BBEF-A4965F81B7E5} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-12-20] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {B4DBBC08-B154-4D4A-BFEC-5A5919B45F4E} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-12-20] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {6645D3B6-B054-4BB2-8FA0-CAD12559956E} - System32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-4100794883-594294777-4078157440-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [8070264 2026-06-08] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {C94B5387-D667-48D7-90BA-A60D275C4D3C} - System32\Tasks\Driver Easy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe [3978504 2021-07-29] (Easeware Technology Limited -> Easeware) -> C:\Program Files\Easeware\DriverEasy\--scan
Task: {D7E64E95-675F-4D7B-8152-70206E3F4782} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem150.0.7863.0{B4855A26-A5B2-42A3-86FA-064973AB3D02} => C:\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\updater.exe [8728216 2026-05-28] (Google LLC -> Google LLC)
Task: {332BA3F2-647E-4F68-972E-D96063AF45E5} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28644032 2024-11-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {301DA454-CB17-49A2-857B-E8697009A517} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28644032 2024-11-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {FD07FBB9-DB7A-45A6-8350-620F09F8E58D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2024-11-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {9718E1B5-6F76-4E69-8429-4B0AA55FBC16} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2024-11-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {FBA6C3D1-D71B-4318-8649-E31A58A7AB7F} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [187600 2024-11-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {F0967C94-4003-4F2E-BC23-35C1254E3973} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4463024 2024-11-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {8CAA8C6A-0118-4520-AF3F-A96ECD2ACAAA} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428136 2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {547F0924-581E-4096-9B1E-F93D2922AE95} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-4100794883-594294777-4078157440-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428136 2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {4E19860A-DD24-412B-89E5-E14A431C1FEC} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-4100794883-594294777-4078157440-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428136 2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {1D936731-2918-4DB8-BB0C-28F2DC962CDC} - System32\Tasks\OneDrive Startup Task-S-1-5-21-4100794883-594294777-4078157440-1001 => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\OneDriveLauncher.exe [758672 2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {2C69AC19-6CC4-489F-8C1E-D7EF8C7CEC59} - System32\Tasks\OneDrive Startup Task-S-1-5-21-4100794883-594294777-4078157440-1002 => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\OneDriveLauncher.exe [758672 2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {D9BAAD56-7E21-4588-AF1A-2E5ED9F17AFD} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-4100794883-594294777-4078157440-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [8070264 2026-06-08] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {098176F0-A36D-46BB-9807-FA400857B42B} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-4100794883-594294777-4078157440-1002 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [8070264 2026-06-08] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {5C5043BA-A727-4AE0-A936-0B595556501D} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-4100794883-594294777-4078157440-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [8070264 2026-06-08] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {010D94B8-647E-4AE9-8A53-24FB48AEE89F} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6633736 2026-06-08] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {7C100259-C016-412E-A7FE-EF2A1EDF88F0} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-01-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {836B4CE6-F3B6-4A55-8D92-5433B786A917} - System32\Tasks\SVC Update => C:\Windows\explorer.exe [6089584 2025-10-17] (Microsoft Windows -> Microsoft Corporation) -> "hxxp://sh.st/AeotZ"
Task: {BD31C756-945E-451D-960A-36DD42CA35DE} - System32\Tasks\Yahoo! Powered loros => C:\Windows\System32\wscript.exe [181760 2025-05-19] (Microsoft Windows -> Microsoft Corporation) -> "C:\ProgramData\{508095E3-DAC2-1F25-5C04-8167C6460AA9}\dome.txt" "68747470733a2f2f7275647564756c752e636f6d" "//B" "//E:jscript" "--IsErIk"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Driver Easy Scheduled Scan.job => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}\255646D696: [DhcpNameServer] 192.168.203.58
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}\64259445A51224F687026343930302341626C656: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}\64259445A51224F687026343930302341626C656: [DhcpDomain] fritz.box
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}\64259445A51224F6870264F6E60275C414E40273336303: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}\64259445A51224F6870264F6E60275C414E40273336303: [DhcpDomain] fritz.box
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}\75C414E4D2632343336383: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}\75C414E4D2632343336383: [DhcpDomain] speedport.ip
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}\A5C61647F6E6B616: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}\D6F647F6027682330392F583331363: [DhcpNameServer] 10.207.221.63
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}\F623D275C414E49373: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{55ce6633-305c-40a9-a070-23b119cc62e3}\F623D275C414E49373: [DhcpDomain] localdomain
Tcpip\..\Interfaces\{a52be96a-74db-4743-942c-58b4084397db}: [NameServer] 10.8.0.1
Tcpip\..\Interfaces\{ebf21f83-2c88-4ad0-b337-d1497d87215a}: [NameServer] 10.8.0.1
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-10-15] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-01-31] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-10-15] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-12-20] (Avast Software s.r.o. -> Gen Digital Inc.)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-12-20] (Avast Software s.r.o. -> Gen Digital Inc.)
Edge:
=======
Edge DefaultProfile: Profile 1
Edge Profile: C:\Users\Win10\AppData\Local\Microsoft\Edge\User Data\Default [2026-04-15]
Edge Extension: (Google Docs Offline) - C:\Users\Win10\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-04-09]
Edge Extension: (Edge relevant text changes) - C:\Users\Win10\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Profile: C:\Users\Win10\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2026-06-08]
Edge Extension: (Dokumenty Google offline) - C:\Users\Win10\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-04-17]
Edge Extension: (Edge relevant text changes) - C:\Users\Win10\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Default [2026-06-08]
CHR Notifications: Default -> hxxps://meet.google.com
CHR Session Restore: Default -> is enabled.
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2026-06-08]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-06-08]
CHR Extension: (Avast Passwords) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2025-05-03]
CHR Extension: (Google Docs Offline) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-08]
CHR Extension: (Secured Search) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilnidodcffjfecahcfiihlhiohnaobic [2019-11-01]
CHR Extension: (Search Manager) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Default\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce [2019-11-26]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]
CHR Extension: (Avast AntiTrack) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2026-04-20]
CHR Profile: C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Guest Profile [2025-06-26]
CHR Profile: C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Profile 6 [2026-06-08]
CHR Notifications: Profile 6 -> hxxps://teams.microsoft.com
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-05-20]
CHR Extension: (Google Docs Offline) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-04-17]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-03-19]
CHR Extension: (Avast AntiTrack) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2026-04-22]
CHR Profile: C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Profile 7 [2026-04-15]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Profile 7\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-09-16]
CHR Extension: (Google Docs Offline) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Profile 7\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-11-07]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Win10\AppData\Local\Google\Chrome\User Data\Profile 7\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-09-26]
CHR Profile: C:\Users\Win10\AppData\Local\Google\Chrome\User Data\System Profile [2026-06-08]
CHR HKLM\...\Chrome\Extension: [ilnidodcffjfecahcfiihlhiohnaobic]
CHR HKLM\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce]
CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej]
CHR HKU\S-1-5-21-4100794883-594294777-4078157440-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKU\S-1-5-21-4100794883-594294777-4078157440-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ilnidodcffjfecahcfiihlhiohnaobic]
CHR HKU\S-1-5-21-4100794883-594294777-4078157440-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce]
CHR HKU\S-1-5-21-4100794883-594294777-4078157440-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [ilnidodcffjfecahcfiihlhiohnaobic]
CHR HKLM-x32\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce]
CHR HKLM-x32\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7984296 2026-05-10] (Gen Digital Inc. -> Gen Digital Inc.)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-12-20] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1038504 2026-05-10] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2736296 2026-05-10] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [1091752 2026-05-10] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastATServiceHost; C:\Program Files\Avast Software\AntiTrack\x86\ATServiceHost.exe [237280 2026-05-05] (Gen Digital Inc. -> AVAST Software)
R2 AvastCleanupSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [22259936 2026-06-08] (Gen Digital Inc. -> Gen Digital Inc.)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-12-20] (Avast Software s.r.o. -> Gen Digital Inc.)
S3 AvastSecureBrowserElevationService; C:\Program Files\AVAST Software\Browser\Application\147.0.34541.118\elevation_service.exe [3733200 2026-04-28] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-05-24] (Avast Software s.r.o. -> AVAST Software)
S3 brlapi; C:\WINDOWS\brltty\bin\brltty.exe [847886 2019-10-15] (Microsoft Windows -> )
S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [298496 2017-12-05] (Brother Industries, Ltd.) [File not signed]
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [30663800 2026-06-08] (Gen Digital Inc. -> Gen Digital Inc.)
S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13652176 2024-11-09] (Microsoft Corporation -> Microsoft Corporation)
S4 FileSyncHelper; C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncHelper.exe [3610984 2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
R2 HPSIService; C:\WINDOWS\system32\HPSIsvc.exe [126856 2012-11-08] (Hewlett-Packard Company -> HP)
S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [22384 2023-11-18] (Microsoft Windows -> Microsoft Corporation)
S4 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\26.078.0426.0002\OneDriveUpdaterService.exe [4018024 2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [15081640 2026-05-18] (Gen Digital Inc. -> Gen Digital Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-10-17] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ZoomCptService; "C:\Program Files\Common Files\Zoom\Support\CptService.exe" -user_path "C:\Users\Win10\AppData\Roaming\Zoom"
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 asw-ovpn-dco; C:\WINDOWS\System32\drivers\asw-ovpn-dco.sys [148720 2026-03-11] (Microsoft Windows Hardware Compatibility Publisher -> OpenVPN, Inc)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [259168 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [451168 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [315488 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [87136 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [29144 2025-07-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [32864 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [289376 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [633440 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [96864 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [71776 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [911456 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1292896 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [250464 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [466016 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [87792 2026-04-16] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
R3 aswWintun; C:\WINDOWS\System32\drivers\aswWintun.sys [40832 2024-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
S3 aswWireGuard; C:\WINDOWS\System32\drivers\aswWireguard.sys [174912 2025-06-23] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
S3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [19968 2012-11-08] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.)
R3 taphss6; C:\WINDOWS\System32\drivers\taphss6.sys [42064 2017-08-22] (AnchorFree Inc -> Anchorfree Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys (No File) <==== ATTENTION
==================== SvcHost (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-08 21:50 - 2026-06-08 21:51 - 000035631 _____ C:\Users\Win10\Desktop\FRST.txt
2026-06-08 21:49 - 2026-06-08 21:50 - 000000000 ____D C:\FRST
2026-06-08 21:45 - 2026-06-08 21:46 - 002646016 _____ (Farbar) C:\Users\Win10\Desktop\FRST64.exe
2026-05-21 21:40 - 2026-05-21 21:40 - 000008262 _____ C:\Users\Win10\Downloads\Seznam žáků konzulární výuka_2025_26 ČŠŘ.xlsx
2026-05-19 07:58 - 2026-05-19 07:58 - 000000140 _____ C:\Users\Win10\Desktop\Erikaweg 77, 93053 Regensburg.url
2026-05-13 12:17 - 2026-05-13 12:17 - 000004614 _____ C:\Users\Win10\Downloads\Konzulární výuka - seznam žáků ČŠŘ.ods
2026-05-12 20:14 - 2026-05-12 22:46 - 000012720 _____ C:\Users\Win10\Downloads\Seznam_zaku_Weiden_2026_27 (1).xlsx
2026-05-12 20:13 - 2026-05-12 20:13 - 000012792 _____ C:\Users\Win10\Downloads\Seznam_zaku_Weiden_2026_27.xlsx
2026-05-12 11:44 - 2026-05-12 11:45 - 000013361 _____ C:\Users\Win10\Downloads\Texty na web.odt
2026-05-10 17:28 - 2026-05-10 17:28 - 000324264 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-08 21:53 - 2020-09-17 11:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2026-06-08 21:46 - 2025-02-10 21:03 - 000000000 ____D C:\Users\Win10\AppData\Local\Avast AntiTrack
2026-06-08 21:45 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-06-08 21:31 - 2019-09-26 21:48 - 000000000 ____D C:\Users\Win10\AppData\Local\D3DSCache
2026-06-08 21:27 - 2020-09-17 10:42 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-06-08 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-06-08 21:05 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2026-06-08 20:58 - 2021-12-18 23:45 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-06-08 20:55 - 2022-12-12 21:30 - 000000000 ____D C:\ProgramData\Package Cache
2026-06-08 20:11 - 2020-08-04 22:34 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-06-08 19:52 - 2020-09-17 11:01 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-06-08 19:52 - 2020-09-17 11:01 - 000003630 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-06-08 19:47 - 2017-11-10 17:24 - 000000000 __SHD C:\Users\Win10\IntelGraphicsProfiles
2026-05-20 09:04 - 2026-04-16 14:02 - 000002776 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2026-05-20 09:04 - 2026-04-16 14:01 - 000003140 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-4100794883-594294777-4078157440-1002
2026-05-20 09:04 - 2026-04-16 14:01 - 000003126 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4100794883-594294777-4078157440-1002
2026-05-20 09:04 - 2025-02-07 21:22 - 000003140 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-4100794883-594294777-4078157440-1001
2026-05-20 09:04 - 2021-12-11 10:21 - 000003126 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4100794883-594294777-4078157440-1001
2026-05-19 09:22 - 2019-02-06 00:01 - 000000000 ____D C:\Users\Win10\AppData\Local\CrashDumps
2026-05-19 09:22 - 2018-01-08 11:35 - 000000000 ____D C:\Users\Win10\AppData\Roaming\Microsoft\Office
2026-05-19 07:54 - 2026-04-16 14:01 - 000002202 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-05-19 07:54 - 2026-04-16 14:01 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2026-05-19 07:24 - 2020-09-17 11:07 - 000721640 _____ C:\WINDOWS\system32\perfh005.dat
2026-05-19 07:24 - 2020-09-17 11:07 - 000145958 _____ C:\WINDOWS\system32\perfc005.dat
2026-05-19 07:24 - 2020-09-17 10:55 - 002575330 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-05-19 07:24 - 2019-12-07 16:51 - 000733960 _____ C:\WINDOWS\system32\perfh007.dat
2026-05-19 07:24 - 2019-12-07 16:51 - 000150344 _____ C:\WINDOWS\system32\perfc007.dat
2026-05-19 07:24 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2026-05-19 07:20 - 2020-09-17 11:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-05-19 07:20 - 2020-09-17 10:42 - 000008192 ___SH C:\DumpStack.log.tmp
2026-05-19 07:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2026-05-19 07:20 - 2018-01-08 05:29 - 000000000 ____D C:\ProgramData\AVAST Software
2026-05-19 07:20 - 2017-11-10 17:23 - 000000000 ____D C:\Intel
2026-05-18 12:13 - 2020-09-17 10:43 - 000000000 ____D C:\Users\venad
2026-05-18 12:13 - 2019-12-07 11:03 - 001310720 _____ C:\WINDOWS\system32\config\BBI
2026-05-18 11:09 - 2018-01-05 05:06 - 000002293 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-05-13 12:17 - 2018-01-08 11:24 - 000000000 ____D C:\Users\Win10\AppData\Roaming\Microsoft\Excel
2026-05-13 09:22 - 2018-01-05 18:40 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-05-13 09:14 - 2018-01-05 18:40 - 220340424 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-05-12 20:19 - 2018-01-08 11:35 - 000000000 ____D C:\Users\Win10\AppData\Roaming\Microsoft\Word
2026-05-12 20:14 - 2017-10-23 08:32 - 000000000 ____D C:\Users\Win10\AppData\Local\Packages
2026-05-11 20:42 - 2025-10-18 20:38 - 000003642 _____ C:\WINDOWS\system32\Tasks\Avast Secure Browser VPS Differential Update
2026-05-11 20:42 - 2024-12-20 22:33 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2026-05-11 20:42 - 2024-12-20 22:33 - 000002409 _____ C:\Users\Public\Desktop\Avast Secure Browser.lnk
2026-05-11 12:38 - 2020-09-17 10:43 - 000000000 ____D C:\Users\Win10
2026-05-11 10:41 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2026-05-10 17:33 - 2020-09-17 11:01 - 000003252 _____ C:\WINDOWS\system32\Tasks\Yahoo! Powered loros
2026-05-10 17:28 - 2020-10-13 23:40 - 000289376 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2026-05-10 17:28 - 2020-04-14 21:32 - 000633440 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2026-05-10 17:28 - 2019-01-06 13:43 - 000315488 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2026-05-10 17:28 - 2019-01-06 13:43 - 000087136 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2026-05-10 17:28 - 2018-10-30 00:56 - 000032864 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2026-05-10 17:28 - 2018-01-08 00:31 - 001292896 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys
2026-05-10 17:28 - 2018-01-08 00:31 - 000466016 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys
2026-05-10 17:28 - 2018-01-08 00:31 - 000096864 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2026-05-10 17:28 - 2018-01-08 00:31 - 000071776 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2026-05-10 17:27 - 2019-01-14 23:21 - 000451168 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2026-05-10 17:27 - 2018-01-08 00:31 - 000911456 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2026-05-10 17:27 - 2018-01-08 00:31 - 000259168 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys
==================== Files in the root of some directories ========
2018-01-08 12:39 - 2018-01-08 12:39 - 000000045 _____ () C:\Users\Win10\AppData\Roaming\WB.CFG
2018-01-03 03:45 - 2018-01-03 03:45 - 000032038 _____ () C:\Users\Win10\AppData\Local\SquareClock.Production_Home_Siko_WebIcon.ico
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-06-2026
Ran by Win10 (08-06-2026 21:55:28)
Running from C:\Users\Win10\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) (2020-09-17 09:01:59)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-4100794883-594294777-4078157440-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-4100794883-594294777-4078157440-503 - Limited - Disabled)
Gast (S-1-5-21-4100794883-594294777-4078157440-501 - Limited - Disabled)
venad (S-1-5-21-4100794883-594294777-4078157440-1002 - Limited - Enabled) => C:\Users\venad
WDAGUtilityAccount (S-1-5-21-4100794883-594294777-4078157440-504 - Limited - Disabled)
Win10 (S-1-5-21-4100794883-594294777-4078157440-1001 - Administrators - Enabled) => C:\Users\Win10
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 25.001.21151 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601120}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Aiseesoft Launcher 1.0.16 (HKLM-x32\...\{F628FD57-7A1A-43BB-B0CA-6B25856D1353}_is1) (Version: 1.0.16 - Aiseesoft Studio)
AppLogLibSetup (HKLM-x32\...\{52FB0C8F-DF05-4C61-AEB6-18C55F8C385F}) (Version: 1.0.3.0 - Brother Industries Ltd.) Hidden
Avast AntiTrack (HKLM-x32\...\AvastAntiTrackPremium) (Version: 4.5.6990.13980 - Avast Software)
Avast Cleanup Premium (HKLM\...\Avast Cleanup) (Version: 26.6.18725.23578 - Gen Digital Inc.)
Avast Premium Security (HKLM\...\Avast Antivirus) (Version: 26.4.10932.3593 - Gen Digital Inc.)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 147.0.34541.118 - Autoři prohlížeče Avast Secure Browser)
Avast SecureLine VPN (HKLM\...\Avast SecureLine) (Version: 26.4.12238.17036 - Avast Software)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1697.6 - AVAST Software) Hidden
BrLauncher (HKLM-x32\...\{88FCD471-DBBF-4A75-8066-ACACE05DE3CF}) (Version: 2.0.14.0 - Brother Industries Ltd.) Hidden
BrLogRx (HKLM-x32\...\{190861E7-09C5-42D8-BB4B-0AFB234BCFC1}) (Version: 1.0.3.1 - Brother Industries Ltd.) Hidden
Brother PCFax Driver (HKLM-x32\...\{79262B43-9E15-4732-A034-BFD29D9BD077}) (Version: 1.4.1.0 - Brother Industries Ltd.) Hidden
Brother Printer Driver (HKLM-x32\...\{815D4CF3-0244-4142-98F8-51E5C7442DB7}) (Version: 1.4.0.0 - Brother Industries Ltd.) Hidden
Brother Scanner Driver (HKLM-x32\...\{01A1E3D8-E030-4A0B-B91E-4E1E8E1E02D3}) (Version: 1.0.23.1 - Brother Industries Ltd.) Hidden
BrSupportTools (HKLM-x32\...\{D0F69DE9-EE0B-4A7A-8248-6D5EC97D171C}) (Version: 1.0.23.0 - Brother Industries Ltd.) Hidden
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.8.1355.1753 - Piriform)
CCleaner Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.8.1067.0 - Piriform Software) Hidden
CCleaner Update Helper (HKLM-x32\...\{E4EAC0E2-A80B-479F-BA45-DCDA595C9A93}) (Version: 1.8.1583.3 - Piriform Software) Hidden
ControlCenter4 (HKLM-x32\...\{CAFE5834-5440-41B8-8C56-4DD946A1A5E1}) (Version: 4.6.21.1 - Brother Industries, Ltd.) Hidden
ControlCenter4 CSDK (HKLM-x32\...\{FD8A9511-BFC9-43B5-BB75-9CEC0EA03CF0}) (Version: 4.6.1.1 - Brother Industries, Ltd.) Hidden
Documentation Manager (HKLM\...\{6EEC9A89-A963-48FB-9B63-368C997963E7}) (Version: 22.190.0.4 - Intel Corporation) Hidden
Driver Easy 5.7.0 (HKLM\...\DriverEasy_is1) (Version: 5.7.0 - Easeware)
Google Chrome (HKLM\...\{AB53BB27-D54C-3E8F-8EFF-C3B1068B5BA5}) (Version: 148.0.7778.168 - Google LLC)
HowToGuide (HKLM-x32\...\{36580EEB-4EDF-4880-BBD4-097E2C645ECD}) (Version: 1.0.1.0 - Brother Industries Ltd.) Hidden
HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - )
HttpToUsbBridge (HKLM-x32\...\{6FF1DBC1-A313-460D-B1F2-6444D2F01DEE}) (Version: 2.0.18.1 - Brother Industries Ltd.)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 25.20.100.6446 - Intel Corporation)
Intel® Software Installer (HKLM-x32\...\{17ca2588-1bb5-40ca-b48f-6a80ffbce846}) (Version: 22.190.0.4 - Intel Corporation) Hidden
IrfanView 4.73 (64-bit) (HKLM\...\IrfanView64) (Version: 4.73 - Irfan Skiljan)
Microsoft Edge (HKLM-x32\...\{95BD5391-9A58-375B-859C-1F6CBA883AC1}) (Version: 149.0.4022.52 - Microsoft Corporation)
Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 148.0.3967.70 - Microsoft Corporation) Hidden
Microsoft Office 2016 pro podnikatele - cs-cz (HKLM\...\HomeBusinessRetail - cs-cz) (Version: 16.0.18129.20158 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 26.078.0426.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{2953E19B-9F91-4A49-A23B-7E25970A1951}) (Version: 3.73.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4048 (HKLM\...\{91415F19-4C22-3609-A105-92ED3522D83C}) (Version: 9.0.30729.4048 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4048 (HKLM-x32\...\{5B1F2843-B379-3FF2-B0D3-64DD143ED53A}) (Version: 9.0.30729.4048 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
NetworkRepairTool (HKLM-x32\...\{96CEE8C3-B934-48A4-ADA6-91B7CE8A5002}) (Version: 1.2.17.0 - Brother Industries, Ltd.) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.18129.20100 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.18129.20158 - Microsoft Corporation) Hidden
PaperPort Image Printer 64-bit (HKLM\...\{715CAACC-579B-4831-A5F4-A83A8DE3EFE2}) (Version: 14.00.0002 - Nuance Communications, Inc.)
PC-FAXReceive (HKLM-x32\...\{9C609AF4-9CC1-45F0-B954-29DF7DD40329}) (Version: 1.8.004.0 - Brother Insutries Ltd.) Hidden
PCFaxTx (HKLM-x32\...\{FD9C7169-7728-477A-91D1-AF3822CE494F}) (Version: 3.7.5.1 - Brother Industries Ltd.) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8216 - Realtek Semiconductor Corp.)
RemoteSetup (HKLM-x32\...\{FAB8A30A-B074-48F9-9D73-5E9A757403F8}) (Version: 3.10.2.0 - Brother Industries Ltd.) Hidden
Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP)
ScannerUtilityInstaller (HKLM-x32\...\{D65C0754-7790-427F-AD73-D7C644260F57}) (Version: 1.19.9.1 - Brother) Hidden
SlimPDF Reader 1.0 (HKLM-x32\...\{7E1FEE27-F869-4D4B-8AA3-64C7FD99BD7C}_is1) (Version: 1.0 - Investintech.com Inc.)
SoftwareUpdateNotification (HKLM-x32\...\{34F12379-C924-41E6-921D-51C71217F58C}) (Version: 1.0.9.0 - Brother Industries, Ltd.) Hidden
StatusMonitor (HKLM-x32\...\{D42470A0-E4C3-41C9-9A92-B1B23FD13F8C}) (Version: 1.21.6.0 - Brother Insutries Ltd.) Hidden
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.4.0.2781 - Microsoft Corporation)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
UsbRepairTool (HKLM-x32\...\{F8762A81-32B5-4144-9F3C-9274F515A651}) (Version: 1.4.0.0 - Brother Industries, Ltd.) Hidden
Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation)
WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)
Zoom Workplace (64-bit) (HKLM\...\{8B11DE91-11A7-4DDC-8CD8-0C551728F53D}) (Version: 6.6.23272 - Zoom)
Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2026-03-13] ()
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-14] (Autodesk Inc.)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.27.9360.0_x64__rz1tebttyb220 [2026-05-10] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-02-17] (Microsoft Corporation)
Doplněk pro Fotky -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2021-03-14] (Microsoft Corporation)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_164.1.1128.0_x64__v10z8vjag6ke6 [2026-04-26] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-12] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-12] (Microsoft Corporation) [MS Ad]
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2025-01-18] (INTEL CORP) [Startup Task]
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-4100794883-594294777-4078157440-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-4100794883-594294777-4078157440-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-4100794883-594294777-4078157440-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files (x86)\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-10] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-10] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2026-01-31] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-10] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-12-15] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2024-05-12] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2024-05-12] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-10] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-12-15] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.078.0426.0002\FileSyncShell64.dll [2026-05-19] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-10] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-12-15] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2024-05-12] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2024-05-12] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Win10\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\371b6590bc8d800\Česká škola v Řezně (ceskaskolavrezne@gmail.com) - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 6"
==================== Loaded Modules (Whitelisted) =============
2022-12-12 21:29 - 2018-05-02 16:25 - 000091648 _____ () [File not signed] C:\WINDOWS\system32\BrNetSti.dll
2022-12-12 21:29 - 2005-04-22 14:36 - 000143360 _____ () [File not signed] C:\WINDOWS\system32\BrSNMP64.dll
2019-01-29 01:30 - 2012-09-29 14:25 - 000409088 _____ () [File not signed] C:\WINDOWS\System32\HPM1210LM.DLL
2019-01-29 01:30 - 2012-09-29 14:53 - 001038336 _____ () [File not signed] C:\WINDOWS\system32\spool\DRIVERS\x64\3\HPM1210GC.dll
2019-01-29 01:30 - 2012-09-29 14:26 - 003120128 _____ () [File not signed] C:\WINDOWS\system32\spool\DRIVERS\x64\3\hpm1210su.dll
2019-01-29 01:30 - 2012-09-29 14:25 - 000074240 _____ () [File not signed] C:\WINDOWS\system32\spool\PRTPROCS\x64\HPM1210PP.dll
2025-08-15 02:15 - 2025-08-15 02:15 - 000030720 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://us.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_nxtad_18_02¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dus%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzutAyE0FyCyE0B0D0A0A0EyEzzyCyByCzztN0D0Tzu0StBtCzyzytN1L2XzuyEtFtBtCtFtDtFyDtCtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyCzzyBtA0BtBtC0AtGyBtA0B0DtGtCyEtAtDtGtCyBtBtCtGyCyE0B0EyEzyzytCyBtA0B0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2StC1P1S1TtDzytDtAtGyEyEyC1OtGyEyEtB1TtGzyyC1S1RtG1RtDyE1R1RyCyDyE1O1TyBzy2QtN0A0LzuyEtN1B2Z1V1T1S1NzutN1Q2Z1B1P1RzutCyDtCyDyEtDyBzzzyzz%26cr%3D1857007285%26a%3Dwbf_nxtad_18_02%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_nxtad_18_02¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzutAyE0FyCyE0B0D0A0A0EyEzzyCyByCzztN0D0Tzu0StBtCzyzytN1L2XzuyEtFtBtCtFtDtFyDtCtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyCzzyBtA0BtBtC0AtGyBtA0B0DtGtCyEtAtDtGtCyBtBtCtGyCyE0B0EyEzyzytCyBtA0B0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2StC1P1S1TtDzytDtAtGyEyEyC1OtGyEyEtB1TtGzyyC1S1RtG1RtDyE1R1RyCyDyE1O1TyBzy2QtN0A0LzuyEtN1B2Z1V1T1S1NzutN1Q2Z1B1P1RzutCyDtCyDyEtDyBzzzyzz%26cr%3D1857007285%26a%3Dwbf_nxtad_18_02%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_nxtad_18_02¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzutAyE0FyCyE0B0D0A0A0EyEzzyCyByCzztN0D0Tzu0StBtCzyzytN1L2XzuyEtFtBtCtFtDtFyDtCtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyCzzyBtA0BtBtC0AtGyBtA0B0DtGtCyEtAtDtGtCyBtBtCtGyCyE0B0EyEzyzytCyBtA0B0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2StC1P1S1TtDzytDtAtGyEyEyC1OtGyEyEtB1TtGzyyC1S1RtG1RtDyE1R1RyCyDyE1O1TyBzy2QtN0A0LzuyEtN1B2Z1V1T1S1NzutN1Q2Z1B1P1RzutCyDtCyDyEtDyBzzzyzz%26cr%3D1857007285%26a%3Dwbf_nxtad_18_02%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_nxtad_18_02¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzutAyE0FyCyE0B0D0A0A0EyEzzyCyByCzztN0D0Tzu0StBtCzyzytN1L2XzuyEtFtBtCtFtDtFyDtCtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyCzzyBtA0BtBtC0AtGyBtA0B0DtGtCyEtAtDtGtCyBtBtCtGyCyE0B0EyEzyzytCyBtA0B0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2StC1P1S1TtDzytDtAtGyEyEyC1OtGyEyEtB1TtGzyyC1S1RtG1RtDyE1R1RyCyDyE1O1TyBzy2QtN0A0LzuyEtN1B2Z1V1T1S1NzutN1Q2Z1B1P1RzutCyDtCyDyEtDyBzzzyzz%26cr%3D1857007285%26a%3Dwbf_nxtad_18_02%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_nxtad_18_02¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzutAyE0FyCyE0B0D0A0A0EyEzzyCyByCzztN0D0Tzu0StBtCzyzytN1L2XzuyEtFtBtCtFtDtFyDtCtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyCzzyBtA0BtBtC0AtGyBtA0B0DtGtCyEtAtDtGtCyBtBtCtGyCyE0B0EyEzyzytCyBtA0B0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2StC1P1S1TtDzytDtAtGyEyEyC1OtGyEyEtB1TtGzyyC1S1RtG1RtDyE1R1RyCyDyE1O1TyBzy2QtN0A0LzuyEtN1B2Z1V1T1S1NzutN1Q2Z1B1P1RzutCyDtCyDyEtDyBzzzyzz%26cr%3D1857007285%26a%3Dwbf_nxtad_18_02%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2024-10-15] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-11-18] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-11-18] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-11-18] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-11-18] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-11-18] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-11-18] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-11-18] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-11-18] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-4100794883-594294777-4078157440-1001\...\sharepoint.com -> hxxps://uniregensburg-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2017-09-29 15:46 - 2019-01-06 13:41 - 000000862 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.0.1
Windows Firewall is enabled.
Network Binding:
=============
Avast SecureLine VPN: Avast SecureLine Wintun Adapter -> aswWintun.sys
Ethernet 2: Anchorfree HSS VPN Adapter -> taphss6.sys
Avast SecureLine VPN OpenVPN Data Channel Offload: Avast SecureLine OpenVPN Data Channel Offload -> asw-ovpn-dco.sys
WLAN 2: Intel(R) Dual Band Wireless-AC 7265 -> Netwtw04.sys
Bluetooth-Netzwerkverbindung 3: Bluetooth Device (Personal Area Network) #3 -> bthpan.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-4100794883-594294777-4078157440-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Win10\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\4884467258948709200\134048997145697797.jpg
HKU\S-1-5-21-4100794883-594294777-4078157440-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 0) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKLM\...\StartupApproved\Run: => "RtHDVBg_ASC"
HKLM\...\StartupApproved\Run: => "RtHDVBg_CTPreset"
HKLM\...\StartupApproved\Run32: => "ControlCenter4"
HKLM\...\StartupApproved\Run32: => "BrStsMon00"
HKLM\...\StartupApproved\Run32: => "BrotherSoftwareUpdateNotification"
HKLM\...\StartupApproved\Run32: => "PDFProHook"
HKU\S-1-5-21-4100794883-594294777-4078157440-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-4100794883-594294777-4078157440-1001\...\StartupApproved\Run: => "Adobe Acrobat Synchronizer"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{E0C0FE22-1749-43D9-B55D-28A42369571E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F6034572-5C00-4CC6-8E87-EA9FB53D8F99}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{48E2AF9B-BAB2-40D3-8BFD-250E30F57A8E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{382E47CF-53AB-467D-AF70-5DA65F87421F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{13861FF3-FBAB-4C61-8943-02AB9D6EB0D5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{391405A9-C422-4A15-8069-1744B9152A67}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{36484CF9-63C1-4E94-8FF3-B27520B6D7B8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{009A831E-DD8D-4E3D-B9C6-9DB561FAD3E4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{DB290DB1-CF81-4EA9-BF6E-8251828765C2}] => (Allow) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{DC1668CF-8B60-4D98-A0EF-079676DCB90D}] => (Allow) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{7CF7BFB4-DB2F-496A-B986-2F010486007F}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{23D5C5A5-107C-49FF-A41B-37AA3C3C7F77}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{966A7EC3-B47F-41FC-870F-1FD7173F0052}] => (Allow) C:\Users\Win10\Downloads\Install\wlan_wiz\.\wlan_assistant\waw.exe () [File not signed]
FirewallRules: [{3D542DF4-EB30-4A3F-951E-1E529324E7DB}] => (Allow) LPort=54925
FirewallRules: [{6AF0F5E9-A3B3-4887-80CF-041FC2A9A0B4}] => (Allow) c:\program files (x86)\pc-faxreceive\brengineprocess.exe (Brother Industries, Ltd. -> Brother Industries, Ltd.)
FirewallRules: [{BBF83237-2129-40D7-A443-24614993072F}] => (Allow) c:\program files (x86)\pc-faxreceive\brengineprocess.exe (Brother Industries, Ltd. -> Brother Industries, Ltd.)
FirewallRules: [{AA7CB7C3-1F1F-4E6B-892A-0D9A2ED51A5D}] => (Allow) C:\Program Files\Easeware\DriverEasy\DriverEasy.exe (Easeware Technology Limited -> Easeware)
FirewallRules: [{88B93FCD-D564-420C-9848-9C142705C0D9}] => (Allow) C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\CefSharp.BrowserSubprocess.exe => No File
FirewallRules: [{1275582F-5278-4C2B-B1F5-188FA85D17BC}] => (Allow) C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\CefSharp.BrowserSubprocess.exe => No File
FirewallRules: [{DA8B6EB7-B09F-4637-A6D2-1F1E55521E83}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{D8A541EB-88F3-459A-80FF-CF25B871C5C5}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{BEDE3570-AA4E-4A38-B25E-28B2F6E67346}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{0A445ADA-488A-4477-BD51-AA172794BDD9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{DA7BBD3A-9060-478B-A2F1-AC11C976FB24}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{6160C577-87C2-44A5-81CE-2ECDA6E32F11}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{D046FF12-9948-40AE-BC8F-A7D7D0C9CA52}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\Zoom.exe => No File
FirewallRules: [{9054A91B-99FB-4E99-AA8A-D3E851B9B98E}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{71D3FFAE-A01B-4FFE-9425-0BBA6DC5F7DB}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{9893B72D-3B5F-431C-8EA7-DB1530ADD522}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.125.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CDE105D0-2BB6-4B87-8740-985C91574D71}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.125.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7A71BB49-1606-4C81-B4AA-FDB23F225234}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.125.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A8F4A18F-BB16-4B2F-825B-866B78914D01}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.125.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{8BE7DC06-8577-4C2E-832E-B7ABDFDE56DC}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{80505E9F-38C9-4C70-A4F0-E93FDC843D60}] => (Allow) C:\Program Files\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Communications, Inc.)
FirewallRules: [{6A515D62-4487-449D-A56E-F1A6237FA587}] => (Allow) C:\Program Files\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{E747843E-6733-4EDA-8334-2A978D6E09B1}] => (Allow) C:\Program Files\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{3318439E-E0F3-4BE7-A2FD-0F976A46A6A9}] => (Allow) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{2212B1A9-1C8F-4723-B741-2EC871BFFA51}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:117.68 GB) (Free:3.32 GB) (3%)
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (06/08/2026 08:55:27 PM) (Source: MsiInstaller) (EventID: 11605) (User: DESKTOP-9USA425)
Description: Product: Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.51.36231 -- Disk full: There is not enough disk space on the volume 'C:' to continue the install with recovery enabled. 2 528 KB are required, but only 1 920 KB are available. Click Ignore to continue the install without saving recovery information, click Retry to check for available space again, or click Cancel to quit the installation.
Error: (06/08/2026 08:54:52 PM) (Source: MsiInstaller) (EventID: 11714) (User: DESKTOP-9USA425)
Description: Product: Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.51.36231 -- Error 1714. The older version of Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.51.36231 cannot be removed. Contact your technical support group. System Error 1612.
Error: (06/08/2026 08:50:12 PM) (Source: MsiInstaller) (EventID: 11714) (User: DESKTOP-9USA425)
Description: Product: Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.51.36231 -- Error 1714. The older version of Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.51.36231 cannot be removed. Contact your technical support group. System Error 1612.
Error: (06/08/2026 08:45:25 PM) (Source: MsiInstaller) (EventID: 11714) (User: DESKTOP-9USA425)
Description: Product: Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.51.36231 -- Error 1714. The older version of Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.51.36231 cannot be removed. Contact your technical support group. System Error 1612.
Error: (06/08/2026 08:42:55 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\AVAST Software\Browser\Application\defs\26060806\aswEngin.dll se nezdařilo.
Závislé sestavení local.crt,processorArchitecture="amd64",publicKeyToken="6d2c827d54b21b5d",type="win32",version="14.0.0.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (05/13/2026 11:27:42 AM) (Source: MsiInstaller) (EventID: 11714) (User: NT-AUTORITÄT)
Description: Product: Adobe Refresh Manager -- Error 1714.The older version of Adobe Refresh Manager cannot be removed. Contact your technical support group. System Error 1612.
Error: (05/13/2026 09:38:20 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AcroCEF.exe, verze: 25.1.21151.0, časové razítko: 0x697e3cf2
Název chybujícího modulu: libcef.dll, verze: 112.7.0.0, časové razítko: 0x631bae2d
Kód výjimky: 0x80000003
Posun chyby: 0x00000000035e8476
ID chybujícího procesu: 0x3970
Čas spuštění chybující aplikace: 0x01dce2ab76700eb3
Cesta k chybující aplikaci: C:\Program Files\Adobe\Acrobat DC\Acrobat\AcroCEF\AcroCEF.exe
Cesta k chybujícímu modulu: C:\Program Files\Adobe\Acrobat DC\Acrobat\AcroCEF\libcef.dll
ID zprávy: b4cc7924-9ee8-4278-bbfd-43ec23b378a0
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (05/13/2026 09:37:59 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AcroCEF.exe, verze: 25.1.21151.0, časové razítko: 0x697e3cf2
Název chybujícího modulu: libcef.dll, verze: 112.7.0.0, časové razítko: 0x631bae2d
Kód výjimky: 0x80000003
Posun chyby: 0x00000000035e8476
ID chybujícího procesu: 0x3e50
Čas spuštění chybující aplikace: 0x01dce2ab6b8ae965
Cesta k chybující aplikaci: C:\Program Files\Adobe\Acrobat DC\Acrobat\AcroCEF\AcroCEF.exe
Cesta k chybujícímu modulu: C:\Program Files\Adobe\Acrobat DC\Acrobat\AcroCEF\libcef.dll
ID zprávy: 9e28b67b-4e59-4882-8fd8-84051dd05502
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
System errors:
=============
Error: (06/08/2026 08:58:30 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: Server {ABE0ADC7-22F4-5F3C-BC9F-A97BDCC41E24} se v daném časovém limitu neregistroval u služby DCOM.
Error: (06/08/2026 08:56:29 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: Server {ABE0ADC7-22F4-5F3C-BC9F-A97BDCC41E24} se v daném časovém limitu neregistroval u služby DCOM.
Error: (06/08/2026 07:47:45 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby FDResPub bylo dosaženo časového limitu (30000 ms).
Error: (05/21/2026 10:10:34 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9USA425)
Description: Server Microsoft.Windows.ContentDeliveryManager_10.0.19041.4239_neutral_neutral_cw5n1h2txyewy!App.AppXwdz8g2fxr36xz0tdtagygnvemf85s7gg.mca se v daném časovém limitu neregistroval u služby DCOM.
Error: (05/21/2026 08:37:13 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby FDResPub bylo dosaženo časového limitu (30000 ms).
Error: (05/21/2026 08:36:46 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9USA425)
Description: Server {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} se v daném časovém limitu neregistroval u služby DCOM.
Error: (05/20/2026 11:49:07 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9USA425)
Description: Server {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} se v daném časovém limitu neregistroval u služby DCOM.
Error: (05/20/2026 11:49:07 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9USA425)
Description: Server Microsoft.AAD.BrokerPlugin_1000.19041.4239.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider se v daném časovém limitu neregistroval u služby DCOM.
Windows Defender:
================Event[0]:
Date: 2026-04-15 11:22:55
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.25.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT-AUTORITÄT\Netzwerkdienst
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80072ee7
Popis chyby: Der Servername oder die Serveradresse konnte nicht verarbeitet werden.
Date: 2026-04-15 11:22:55
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.25.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT-AUTORITÄT\Netzwerkdienst
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80072ee7
Popis chyby: Der Servername oder die Serveradresse konnte nicht verarbeitet werden.
Date: 2026-04-15 11:22:55
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.25.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT-AUTORITÄT\Netzwerkdienst
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80072ee7
Popis chyby: Der Servername oder die Serveradresse konnte nicht verarbeitet werden.
Date: 2026-04-15 11:22:55
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.25.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT-AUTORITÄT\Netzwerkdienst
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80072ee7
Popis chyby: Der Servername oder die Serveradresse konnte nicht verarbeitet werden.
Date: 2026-04-15 11:22:55
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.25.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT-AUTORITÄT\Netzwerkdienst
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80072ee7
Popis chyby: Der Servername oder die Serveradresse konnte nicht verarbeitet werden.
CodeIntegrity:
===============
Date: 2026-01-31 16:41:40
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\144.0.7559.110\chrome.dll that did not meet the Microsoft signing level requirements.
Date: 2025-07-11 08:58:16
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\fcon.dll because the set of per-page image hashes could not be found on the system.
Date: 2025-07-11 08:58:12
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
BIOS: INSYDE Corp. V1.06 06/26/2017
Motherboard: APL ASAHI_AP
Processor: Intel(R) Pentium(R) CPU N4200 @ 1.10GHz
Percentage of memory in use: 76%
Total physical RAM: 3936.22 MB
Available physical RAM: 933.5 MB
Total Virtual: 10950.35 MB
Available Virtual: 6618.04 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:117.68 GB) (Free:3.32 GB) (Model: HFS128G39TND-N210A) NTFS
\\?\Volume{06c8d6f0-b448-475e-b6a0-16cff428fa5a}\ (Wiederherstellung) (Fixed) (Total:0.49 GB) (Free:0.47 GB) NTFS
\\?\Volume{41fe8dbe-9697-4a09-86a0-592c411d7a30}\ () (Fixed) (Total:0.85 GB) (Free:0.13 GB) NTFS
\\?\Volume{671fbb72-550f-4964-a185-2deb4fe7fa9c}\ () (Fixed) (Total:0.1 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 1BF85FCF)
Partition: GPT.
==================== End of Addition.txt =======================
zavirovany PC
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin

- Příspěvky: 120001
- Registrován: 30 Říj 2003 13:42
- Místo/Bydliště: Plzeň
- Kontaktovat uživatele:
Re: zavirovany PC
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 <==== ATTENTION
HKU\S-1-5-21-4100794883-594294777-4078157440-1001\...\MountPoints2: {cb632fe1-1b6d-11e9-9ddf-34f64bdaae48} - "D:\SISetup.exe"
BootExecute: autocheck autochk * icarus_rvrt.exe
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys (No File) <==== ATTENTION
C:\DumpStack.log.tmp
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
FirewallRules: [{BEDE3570-AA4E-4A38-B25E-28B2F6E67346}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{0A445ADA-488A-4477-BD51-AA172794BDD9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{DA7BBD3A-9060-478B-A2F1-AC11C976FB24}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{6160C577-87C2-44A5-81CE-2ECDA6E32F11}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{D046FF12-9948-40AE-BC8F-A7D7D0C9CA52}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\Zoom.exe => No File
FirewallRules: [{9054A91B-99FB-4E99-AA8A-D3E851B9B98E}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{71D3FFAE-A01B-4FFE-9425-0BBA6DC5F7DB}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\airhost.exe => No File
EmptyTemp:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: zavirovany PC
Fix result of Farbar Recovery Scan Tool (x64) Version: 11-06-2026
Ran by Win10 (12-06-2026 20:19:56) Run:1
Running from C:\Users\Win10\Downloads
Loaded Profiles: Win10 & venad
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 <==== ATTENTION
HKU\S-1-5-21-4100794883-594294777-4078157440-1001\...\MountPoints2: {cb632fe1-1b6d-11e9-9ddf-34f64bdaae48} - "D:\SISetup.exe"
BootExecute: autocheck autochk * icarus_rvrt.exe
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys (No File) <==== ATTENTION
C:\DumpStack.log.tmp
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
FirewallRules: [{BEDE3570-AA4E-4A38-B25E-28B2F6E67346}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{0A445ADA-488A-4477-BD51-AA172794BDD9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{DA7BBD3A-9060-478B-A2F1-AC11C976FB24}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{6160C577-87C2-44A5-81CE-2ECDA6E32F11}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{D046FF12-9948-40AE-BC8F-A7D7D0C9CA52}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\Zoom.exe => No File
FirewallRules: [{9054A91B-99FB-4E99-AA8A-D3E851B9B98E}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{71D3FFAE-A01B-4FFE-9425-0BBA6DC5F7DB}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\airhost.exe => No File
EmptyTemp:
End
*****************
Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
"HKLM\Software\Policies\Microsoft\Windows\System\\EnableSmartScreen" => removed successfully
HKU\S-1-5-21-4100794883-594294777-4078157440-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cb632fe1-1b6d-11e9-9ddf-34f64bdaae48} => removed successfully
HKLM\System\CurrentControlSet\Control\Session Manager\\"BootExecute"="autocheck autochk *" => value restored successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
HKLM\System\CurrentControlSet\Services\cpuz148 => removed successfully
cpuz148 => service removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BEDE3570-AA4E-4A38-B25E-28B2F6E67346}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0A445ADA-488A-4477-BD51-AA172794BDD9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DA7BBD3A-9060-478B-A2F1-AC11C976FB24}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6160C577-87C2-44A5-81CE-2ECDA6E32F11}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D046FF12-9948-40AE-BC8F-A7D7D0C9CA52}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9054A91B-99FB-4E99-AA8A-D3E851B9B98E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{71D3FFAE-A01B-4FFE-9425-0BBA6DC5F7DB}" => removed successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 14896612 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 7210 B
Windows/system/drivers => 2027215547 B
Edge => 27210648 B
Chrome => 892644212 B
Firefox => 0 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 3212 B
systemprofile32 => 0 B
LocalService => 8466 B
NetworkService => 0 B
Win10 => 919474828 B
venad => 648048 B
RecycleBin => 1002 B
EmptyTemp: => 3.6 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 12-06-2026 20:42:16)
C:\DumpStack.log.tmp => Could not move
==== End of Fixlog 20:42:16 ====
Ran by Win10 (12-06-2026 20:19:56) Run:1
Running from C:\Users\Win10\Downloads
Loaded Profiles: Win10 & venad
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 <==== ATTENTION
HKU\S-1-5-21-4100794883-594294777-4078157440-1001\...\MountPoints2: {cb632fe1-1b6d-11e9-9ddf-34f64bdaae48} - "D:\SISetup.exe"
BootExecute: autocheck autochk * icarus_rvrt.exe
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys (No File) <==== ATTENTION
C:\DumpStack.log.tmp
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
FirewallRules: [{BEDE3570-AA4E-4A38-B25E-28B2F6E67346}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{0A445ADA-488A-4477-BD51-AA172794BDD9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{DA7BBD3A-9060-478B-A2F1-AC11C976FB24}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{6160C577-87C2-44A5-81CE-2ECDA6E32F11}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.123.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => No File
FirewallRules: [{D046FF12-9948-40AE-BC8F-A7D7D0C9CA52}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\Zoom.exe => No File
FirewallRules: [{9054A91B-99FB-4E99-AA8A-D3E851B9B98E}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{71D3FFAE-A01B-4FFE-9425-0BBA6DC5F7DB}] => (Allow) C:\Users\Win10\AppData\Roaming\Zoom\bin\airhost.exe => No File
EmptyTemp:
End
*****************
Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
"HKLM\Software\Policies\Microsoft\Windows\System\\EnableSmartScreen" => removed successfully
HKU\S-1-5-21-4100794883-594294777-4078157440-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cb632fe1-1b6d-11e9-9ddf-34f64bdaae48} => removed successfully
HKLM\System\CurrentControlSet\Control\Session Manager\\"BootExecute"="autocheck autochk *" => value restored successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
HKLM\System\CurrentControlSet\Services\cpuz148 => removed successfully
cpuz148 => service removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BEDE3570-AA4E-4A38-B25E-28B2F6E67346}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0A445ADA-488A-4477-BD51-AA172794BDD9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DA7BBD3A-9060-478B-A2F1-AC11C976FB24}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6160C577-87C2-44A5-81CE-2ECDA6E32F11}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D046FF12-9948-40AE-BC8F-A7D7D0C9CA52}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9054A91B-99FB-4E99-AA8A-D3E851B9B98E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{71D3FFAE-A01B-4FFE-9425-0BBA6DC5F7DB}" => removed successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 14896612 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 7210 B
Windows/system/drivers => 2027215547 B
Edge => 27210648 B
Chrome => 892644212 B
Firefox => 0 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 3212 B
systemprofile32 => 0 B
LocalService => 8466 B
NetworkService => 0 B
Win10 => 919474828 B
venad => 648048 B
RecycleBin => 1002 B
EmptyTemp: => 3.6 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 12-06-2026 20:42:16)
C:\DumpStack.log.tmp => Could not move
==== End of Fixlog 20:42:16 ====
- Rudy
- Site Admin

- Příspěvky: 120001
- Registrován: 30 Říj 2003 13:42
- Místo/Bydliště: Plzeň
- Kontaktovat uživatele:
Re: zavirovany PC
Smazáno. Log již vypadá OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
- Rudy
- Site Admin

- Příspěvky: 120001
- Registrován: 30 Říj 2003 13:42
- Místo/Bydliště: Plzeň
- Kontaktovat uživatele:
Re: zavirovany PC
Rádo se stalo! 
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?