Prosím o kontrolu.

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Martin000
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 09 Dub 2008 08:37

Prosím o kontrolu.

#1 Příspěvek od Martin000 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-08-2026 01
Ran by Dafi (07-08-2026 17:26:58)
Running from C:\Users\Dafi\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) (2024-01-28 18:01:55)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3938597611-2843190907-3524625560-500 - Administrators - Disabled)
Dafi (DisplayName: ) (S-1-5-21-3938597611-2843190907-3524625560-1001 - Administrators - Enabled) => C:\Users\Dafi
DefaultAccount (S-1-5-21-3938597611-2843190907-3524625560-503 - Limited - Disabled)
Guest (S-1-5-21-3938597611-2843190907-3524625560-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3938597611-2843190907-3524625560-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG Antivirus (Enabled - Up to date) {18A975F9-A60C-37D8-E30B-4BEF31AD3411}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.01 alpha (x64) (HKLM\...\7-Zip) (Version: 19.01 alpha - Igor Pavlov)
7-Zip 23.00 (x64 edition) (HKLM\...\{23170F69-40C1-2702-2300-000001000000}) (Version: 23.00.00.0 - Igor Pavlov)
Aktualizace NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
AVG AntiVirus Free (HKLM\...\AVG Antivirus) (Version: 26.7.11086.3749 - Gen Digital Inc.)
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.10.1464.1889 - Piriform)
CCleaner Browser (HKLM-x32\...\CCleaner Browser) (Version: 150.0.35121.182 - Autoři prohlížeče CCleaner Browser)
CCleaner Update Helper (HKLM-x32\...\{E4EAC0E2-A80B-479F-BA45-DCDA595C9A93}) (Version: 1.8.1691.6 - Piriform Software) Hidden
Codec Pack - All In 1 6.0.3.0 (HKLM-x32\...\Cool's_Codec_pack_4.12) (Version: - )
Corel Applications (HKLM-x32\...\Corel Applications) (Version: - )
CPUID HWMonitor 1.61 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.61 - CPUID, Inc.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.14.0.1709 - Disc Soft Ltd)
Dell SupportAssist (HKLM\...\{5E5B7C3B-96BE-4A47-B28D-CAA7D87F95A8}) (Version: 5.1.1.3567 - Dell Inc.)
Fallout2 (HKLM-x32\...\Fallout2) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 151.0.7922.76 - Google LLC)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Malwarebytes version 5.6.1.257 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.6.1.257 - Malwarebytes)
Microsoft .NET Host - 8.0.22 (x64) (HKLM\...\{872CDB4B-5DDE-4297-BD19-C93B6C93E386}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.22 (x64) (HKLM\...\{7A046DD7-9D61-4C5D-8F5E-24EE192B1B6A}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.22 (x64) (HKLM\...\{C43A1A89-0CA5-43FD-BDC4-3B85DAD06A41}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 151.0.4129.59 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 151.0.4129.59 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\OneDriveSetup.exe) (Version: 26.129.0706.0004 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29334 (HKLM-x32\...\{a9cfe9c7-e54f-46cd-9c5c-542ff8e3e8c4}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29334 (HKLM\...\{2E11EF4E-901F-4B2D-B68E-3DB2A566C857}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29334 (HKLM\...\{8A3F7D5B-422D-49D9-84F7-8DC1B7782967}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29334 (HKLM-x32\...\{14C49FC8-3E9B-4F29-8526-26629B5CF30B}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29334 (HKLM-x32\...\{0D01A812-82A1-481F-8546-8E28E976F8DF}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM\...\{4CCC1CCD-6FA3-4DD5-A06B-E94EA90094CF}) (Version: 64.88.42561 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM-x32\...\{a3899eef-6164-4d42-b8c3-95ae6a844821}) (Version: 8.0.22.35428 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox) (Version: 148.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 119.0 - Mozilla)
NVIDIA Ovladače grafiky 560.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 560.94 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}) (Version: 9.10.0514 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
qBittorrent 4.2.1 (HKLM-x32\...\qBittorrent) (Version: 4.2.1 - The qBittorrent project)
Software tiskárny EPSON (HKLM\...\EPSON Printer and Utilities) (Version: - )
Star Wars Jedi Knight - Jedi Academy Čeština + Dabing (HKLM-x32\...\Star Wars Jedi Knight - Jedi Academy Čeština + Dabing 1.0.0) (Version: 1.0.0 - BonusWeb)
Star Wars Knights Of The Old Republic II The Siths Lords (HKLM-x32\...\Star Wars Knights Of The Old Republic II The Siths Lordsv2.0 Update 1.0b) (Version: v2.0 Update 1.0b - LucasArts by Etnik_23)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
The Witcher Enhanced Edition Director's Cut (HKLM-x32\...\1207658924_is1) (Version: 2.1.0.15 - GOG.com)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 11.50 - Ghisler Software GmbH)
TP-Link TL-WN722N (HKLM-x32\...\{F9C15685-38A9-46A1-9826-97204015C19C}) (Version: 2.1.0 - TP-Link)
TP-Link Wireless Adapter WPS Tool (HKLM-x32\...\{685EFF87-B126-49E4-8213-70C56625C5B5}) (Version: 1.0.0.1 - TP-Link)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.23 - VideoLAN)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.11 - VideoLAN)
War Thunder Launcher 1.0.3.213 (HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment)
WebAdvisor od společnosti McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.2.110 - McAfee, LLC)
WPS Office (12.1.0.28032) (HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\Kingsoft Office) (Version: 12.1.0.28032 - Kingsoft Corp.)

Packages:
=========
Dell SupportAssist -> C:\Program Files\WindowsApps\Dell.SupportAssistforPCs_5.1.1.3567_x64__18ctm2993j0dg [2026-06-04] (Dell Inc)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-11-09] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2024-01-28] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2024-01-28] (Microsoft Corporation) [MS Ad]
Microsoft Mahjong -> C:\Program Files\WindowsApps\Microsoft.MicrosoftMahjong_4.9.2051.0_x64__8wekyb3d8bbwe [2026-02-15] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2026-01-10] (NVIDIA Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8002.3.1.0_x64__8wekyb3d8bbwe [2026-08-07] (Microsoft Corp.)
Windows App Runtime DDLM 5001.119.156.0-x6 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.5001.119.156.0-x6_5001.119.156.0_x64__8wekyb3d8bbwe [2024-06-06] (Microsoft Corporation)
Windows App Runtime DDLM 5001.119.156.0-x8 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.5001.119.156.0-x8_5001.119.156.0_x86__8wekyb3d8bbwe [2024-06-06] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{00020906-0000-4b30-A977-D214852036FF}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{000209F0-0000-4b30-A977-D214852036FF}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{000209FF-0000-4b30-A977-D214852036FF}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{00024512-0000-0000-C000-000000000046}\InprocServer32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\refedit.dll (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{0002CE21-0000-0000-C000-000000000046}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\mui\en_US\resource\ksee\EqnEdit.exe (WPS SOFTWARE PTE. LTD. -> Design Science, Inc.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{227C9E8F-71A1-4B23-9076-682A1A8EAAED}\localserver32 -> "c:\program files\macrium\common\reflectmonitor.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{28A80003-18FD-411D-B0A3-3C81F618E22B}\InprocServer32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.22549\office6\kwpsmenushellext64.dll => No File
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{44720441-94BF-4940-926D-4F38FECF2A48}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{44720444-94BF-4940-926D-4F38FECF2A48}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{45540001-5750-5300-4B49-4E47534F4655}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{45540003-5750-5300-4B49-4E47534F4655}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{45540086-5750-5300-4B49-4E47534F4655}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{45540086-5750-5300-4B49-4E47534F4655}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F}\InprocServer32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\qingshellext64.dll (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{6F13E9B3-DDE3-4EC5-9E2E-81BC3135401E}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{74B989DB-3E7F-425C-AF5A-F6BFBF5B747A}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{91493443-94BF-4940-926D-4F38FECF2A48}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{B722BCCD-4E68-101B-A2BC-00AA00404770}\InprocServer32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\ksoapi.dll (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{CE015F60-05ED-4CFE-9B40-D5345BDC7B1F}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{CE015F62-05ED-4CFE-9B40-D5345BDC7B1F}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{D5A42435-00FB-427E-ADE7-B753DEF2E9D7}\localserver32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\addons\pdfwspv\pdfwspv.dll (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{d7ac9243-9d84-4498-8192-d7ad263b63c8}\InprocServer32 -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\addons\pdfwspv\pdfwspv.dll (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
CustomCLSID: HKU\S-1-5-21-3938597611-2843190907-3524625560-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files (x86)\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ShellIconOverlayIdentifiers: [00avg] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [00avg] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-05-07] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [00avg] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-06-06] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-05-07] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\WINDOWS\system32\igfxpph.dll [2017-03-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\nvshext.dll [2024-09-16] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-05-07] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-06-06] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers1_S-1-5-21-3938597611-2843190907-3524625560-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.22549\office6\kwpsmenushellext64.dll -> No File
ContextMenuHandlers1_S-1-5-21-3938597611-2843190907-3524625560-1001: [Open With qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\qingshellext64.dll [2026-08-07] (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
ContextMenuHandlers4_S-1-5-21-3938597611-2843190907-3524625560-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.2.0.22549\office6\kwpsmenushellext64.dll -> No File
ContextMenuHandlers4_S-1-5-21-3938597611-2843190907-3524625560-1001: [Open With qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\qingshellext64.dll [2026-08-07] (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
ContextMenuHandlers4_S-1-5-21-3938597611-2843190907-3524625560-1001-x32: [qkdesktopshellext] -> {0D8B46EA-7D35-4921-B88C-7E2B1E2D80F0} => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\addons\kdesktopshellext\kdesktopshellext.dll [2026-08-07] (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)
ContextMenuHandlers5_S-1-5-21-3938597611-2843190907-3524625560-1001: [Open With qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\qingshellext64.dll [2026-08-07] (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Dafi\Desktop\Lucie - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
ShortcutWithArgument: C:\Users\Dafi\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Martin - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"

==================== Loaded Modules (Whitelisted) =============

2020-02-23 16:33 - 2018-01-30 10:59 - 000195072 _____ () [File not signed] C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\DC_WFF.dll
2020-02-23 16:33 - 2018-01-30 10:59 - 001715200 _____ (TP-Link Technologies Co., Ltd) [File not signed] C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\language\English(United_States)\nicLan.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\avgSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\avgSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2022-07-22] (McAfee, LLC -> McAfee, LLC)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2022-07-22] (McAfee, LLC -> McAfee, LLC)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2026-08-07 11:05 - 000001012 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 gen-webserver.local www.gen-webserver.local # gen digital helper server
127.0.0.1 revocation.gen-webserver.local www.revocation.gen-webserver.local # gen digital helper server

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.1.1
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Realtek PCIe GbE Family Controller -> rt640x64.sys
Ethernet 2: Realtek USB FE Family Controller -> rtump64x64.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\dotnet\
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Dafi\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\111111111.png
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_C2AB7B4C4369F745A9AA04A850088382"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\StartupApproved\Run: => "Microsoft Edge Update"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{558E563A-BD33-4FF0-9AE6-F8AD9531CEC6}E:\sw hra\gamedata\jamp.exe] => (Block) E:\sw hra\gamedata\jamp.exe => No File
FirewallRules: [TCP Query User{ABB9E6F0-97DE-499C-8B67-219A1976D8E2}E:\sw hra\gamedata\jamp.exe] => (Block) E:\sw hra\gamedata\jamp.exe => No File
FirewallRules: [UDP Query User{B8CCC716-F1B2-4D6D-AF72-DF2BDD1F3557}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{BE75F05E-3E47-496D-AF6F-71EB6271F3D3}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{64E105F3-3AB6-43F9-B739-32CD0831C0B5}] => (Allow) C:\Program Files\AVG\Antivirus\AVGUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{96F2B676-0358-4C88-B529-5D67CA886277}] => (Allow) C:\Program Files\AVG\Antivirus\AVGUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{4093DC9D-3C34-4708-82AA-0FD5520CA0F9}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{AC8D357E-701B-4203-8148-5EAE44A6DE7B}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{4C260CBF-A754-45F4-9313-943C9D167BC4}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{2D34D30B-1E2C-4A27-9F2F-B860E5D7CE4E}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{74EDA6EB-3BA3-47BF-A786-F407864FB873}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{E3303BA8-5C06-4C2B-A467-AE8A00470F86}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{5D256B55-B38E-464A-880B-68389231537B}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{7BBF3463-1D94-405E-9C5C-9755AA5772BB}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{136142E5-C13D-4BB2-A8CC-68B895BE076E}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{FFF644A4-830C-43AA-9EDF-3AA43A888F4B}] => (Allow) C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [TCP Query User{0BD83078-F610-4FFA-8758-2F20819C4678}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{FEE46216-7AEA-4EF7-B9E4-57DDAC829501}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{16D7342C-A041-47BA-9DE1-9DBA013FEC3F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{C3353ACB-603D-4C81-817A-4401758D9348}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{9791D3B8-0181-49C8-9049-ED48F07C38C9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{DBD13189-45D5-433E-83AF-7AA978E55AB2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{AB4235FA-F00D-4010-983D-372F751B0B0C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{62A26828-581D-4A0C-983B-FE6F7B8DA408}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{AF8D778A-9C70-4FFE-B3C6-FABBA27D6E95}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{1DE0EBB0-FF80-4EC2-A79C-16D385D5A921}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{6EBB0C79-2FB0-4B35-AEDA-AA84EA0502BA}] => (Allow) F:\SteamLibrary\steamapps\common\Mafia III\Mafia3DefinitiveEdition.exe (2K Czech) [File not signed]
FirewallRules: [{0463CC21-842F-471E-9562-9E84C4752766}] => (Allow) F:\SteamLibrary\steamapps\common\Mafia III\Mafia3DefinitiveEdition.exe (2K Czech) [File not signed]
FirewallRules: [{24A424EF-1013-4C4C-A207-C510913208A5}] => (Allow) F:\SteamLibrary\steamapps\common\Mafia III\Launcher.exe (2K Games) [File not signed]
FirewallRules: [{C3C762C5-DA5C-4454-9292-893A8865A7B8}] => (Allow) F:\SteamLibrary\steamapps\common\Mafia III\Launcher.exe (2K Games) [File not signed]
FirewallRules: [{885C0E8A-0C75-4F78-9B60-6030C98EE409}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.60031.0_x64__8wekyb3d8bbwe\M365Copilot.exe => No File
FirewallRules: [{F7C8602B-4703-4628-82BF-1BC730F4119C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.60031.0_x64__8wekyb3d8bbwe\M365Copilot.exe => No File
FirewallRules: [{F595BFB2-6179-4828-A00B-C33E284B5BC5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.60031.0_x64__8wekyb3d8bbwe\M365Copilot.exe => No File
FirewallRules: [{453E7832-75E6-45FF-90BA-CB6313E87786}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.60031.0_x64__8wekyb3d8bbwe\M365Copilot.exe => No File
FirewallRules: [{0833BD23-2CDE-46FF-B46B-ACF584085B81}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2607.44041.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F1701C80-7A3F-4040-BB09-10960A4C5C29}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2607.44041.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{21545106-CA59-462D-A736-4A71A5E9A660}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2607.44041.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{03592CB8-486E-4B54-BA1C-5BB50EA481C3}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2607.44041.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A6B99512-7CC7-43B6-BED0-0396E4BC38AB}] => (Allow) C:\Program Files\CCleaner Browser\Application\CCleanerBrowser.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{5E83848D-DA19-483F-96DF-F1BFAEB88E88}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

22-07-2026 12:11:35 Naplánovaný kontrolní bod
02-08-2026 19:28:27 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (08/07/2026 11:15:31 AM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Nový svazek (E:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (08/02/2026 07:27:52 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Nový svazek (E:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (07/22/2026 12:01:28 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Nový svazek (E:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (07/22/2026 11:15:12 AM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Nový svazek (E:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (07/17/2026 09:59:38 AM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Nový svazek (E:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (07/10/2026 08:13:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: KingdomCome.exe, verze: 1.9.7.0, časové razítko: 0x69ccd4c1
Název chybujícího modulu: WHGame.DLL, verze: 0.0.0.0, časové razítko: 0x69ccd815
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000003ea7be
ID chybujícího procesu: 0x3fe4
Čas spuštění chybující aplikace: 0x01dd104877e51cca
Cesta k chybující aplikaci: C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe
Cesta k chybujícímu modulu: C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\WHGame.DLL
ID zprávy: 18c24e69-5560-4f84-b89f-a574cdbac19a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/08/2026 10:51:47 AM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Nový svazek (E:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (07/07/2026 01:24:04 PM) (Source: .NET Runtime) (EventID: 1000) (User: )
Description: LogFileWriter:CreateOrOpenALogFile failed. No log file available. System.UnauthorizedAccessException: Access to the path 'C:\ProgramData\Dell\DTP\Logs\DTP.Instrumentation.UserProcess\S-1-5-18\DTP.Instrumentation.UserProcess.02.log' is denied.
at Microsoft.Win32.SafeHandles.SafeFileHandle.CreateFile(String fullPath, FileMode mode, FileAccess access, FileShare share, FileOptions options)
at Microsoft.Win32.SafeHandles.SafeFileHandle.Open(String fullPath, FileMode mode, FileAccess access, FileShare share, FileOptions options, Int64 preallocationSize, Nullable`1 unixCreateMode)
at System.IO.Strategies.OSFileStreamStrategy..ctor(String path, FileMode mode, FileAccess access, FileShare share, FileOptions options, Int64 preallocationSize, Nullable`1 unixCreateMode)
at System.IO.Strategies.FileStreamHelpers.ChooseStrategyCore(String path, FileMode mode, FileAccess access, FileShare share, FileOptions options, Int64 preallocationSize, Nullable`1 unixCreateMode)
at System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, Int64 preallocationSize)
at System.IO.File.Create(String path, Int32 bufferSize, FileOptions options)
at Dell.Client.Framework.Common.FilesystemWindows.FileCreate(String path, FileSecurity fileSecurity)
at Dell.Client.Framework.Common.LogFileWriter.CreateOrOpenALogFile()
at Dell.Client.Framework.Common.LogFileWriter.Write(LogEntry logEntry)


System errors:
=============
Error: (08/07/2026 11:23:05 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-UPBMIK4)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (08/07/2026 11:22:36 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-UPBMIK4)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (08/07/2026 11:05:54 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (08/07/2026 11:05:54 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).

Error: (08/04/2026 07:52:29 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: FirmwareManufacturer:Dell Inc.;FirmwareVersion:A14;OEMManufacturerName:Dell Inc.;OEMModelSKU:;OSArchitecture:amd64;
BucketId: 0733eef7e4fe450df1130ace777bd0d4723eee2e4f3df73a5cf07e401f02889c
BucketConfidenceLevel:
UpdateType: 0
HResult: 0

Error: (08/04/2026 07:50:38 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-UPBMIK4)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (08/04/2026 07:50:01 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-UPBMIK4)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (08/04/2026 07:49:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Google Update (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.


Windows Defender:
================
CodeIntegrity:
===============
Date: 2025-12-16 20:12:21
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\143.0.7499.41\chrome_elf.dll that did not meet the Microsoft signing level requirements.

Date: 2025-10-19 17:35:14
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\141.0.7390.78\chrome.dll that did not meet the Microsoft signing level requirements.

Date: 2025-10-06 21:09:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: Dell Inc. A14 06/24/2018
Motherboard: Dell Inc. 0M5DCD
Processor: Intel(R) Core(TM) i7-2600 CPU @ 3.40GHz
Percentage of memory in use: 41%
Total physical RAM: 16357.05 MB
Available physical RAM: 9590.93 MB
Total Virtual: 19557.05 MB
Available Virtual: 10834.5 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:446.56 GB) (Free:104.47 GB) (Model: KINGSTON SA400S37480G ATA Device) NTFS
Drive e: (Nový svazek) (Fixed) (Total:232.88 GB) (Free:149.69 GB) (Model: ST3250312AS ATA Device) NTFS
Drive f: () (Fixed) (Total:446.56 GB) (Free:355.99 GB) (Model: KINGSTON SA400S37480G ATA Device) NTFS
Drive g: (Moje Nehrabat) (Fixed) (Total:1862.98 GB) (Free:745.79 GB) (Model: WD Elements 2621 USB Device) NTFS

\\?\Volume{bf4e638e-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.57 GB) (Free:0.1 GB) NTFS
\\?\Volume{f357c740-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.57 GB) (Free:0.1 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 9523BD1D)
Partition 1: (Not Active) - (Size=232.9 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 447.1 GB) (Disk ID: BF4E638E)
Partition 1: (Not Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=446.6 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 447.1 GB) (Disk ID: F357C740)
Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=446.6 GB) - (Type=07 NTFS)

==========================================================
Disk: 3 (Size: 1863 GB) (Disk ID: 16F2A91F)

Partition: GPT.

==================== End of Addition.txt =======================

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-08-2026 01
Ran by Dafi (administrator) on DESKTOP-UPBMIK4 (Dell Inc. OptiPlex 390) (07-08-2026 17:23:57)
Running from C:\Users\Dafi\Desktop\FRST64 (1).exe
Loaded Profiles: Dafi
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) Language: Čeština (Česko)
Default browser: "C:\Program Files\CCleaner Browser\Application\CCleanerBrowser.exe" --single-argument %1
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe
(C:\Program Files\AVG\Antivirus\AVGSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe
(C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.UserProcess.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\DCF\Dell.Update.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> ) C:\Program Files\Dell\DTP\DiagnosticsSubAgent\Dell.TechHub.Diagnostics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\TechHub\Dell.CoreServices.Client.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\AnalyticsSubAgent\Dell.TechHub.Analytics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\DataManagerSubAgent\Dell.TechHub.DataManager.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2607.44041.0_x64__8wekyb3d8bbwe\M365Copilot.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\151.0.4129.59\msedgewebview2.exe
(C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe ->) (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.) C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\promecefpluginhost.exe <2>
(C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wpscloudsvr.exe ->) (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.) C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe <3>
(C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wpscloudsvr.exe ->) (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.) C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wpscenter.exe
(explorer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\151.0.4129.59\msedgewebview2.exe <10>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2607.44041.0_x64__8wekyb3d8bbwe\M365Copilot.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\wsc_proxy.exe
(services.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(services.exe ->) (Dell Technologies Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(services.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\TechHub\Dell.TechHub.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\avgToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.6465_none_7e0fb53c7c8be091\TiWorker.exe
(svchost.exe ->) (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.) C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe
(svchost.exe ->) (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.) C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wpscloudsvr.exe
(TP-Link Technologies Co., Ltd) [File not signed] C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\TWCU.exe
(Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe <6>
(WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.) C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wps.exe <3>

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [1108920 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1794888 2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM\...\Run: [IgfxTray] => C:\WINDOWS\system32\igfxtray.exe [193112 2017-03-09] () [File not signed]
HKLM\...\Run: [HotKeysCmds] => C:\WINDOWS\system32\hkcmd.exe [420960 2017-03-09] () [File not signed]
HKLM\...\Run: [Persistence] => C:\WINDOWS\system32\igfxpers.exe [463960 2017-03-09] () [File not signed]
HKLM-x32\...\Run: [WPSTool] => C:\Users\Dafi\TP-Link Wireless Adapter WPS Tool\TWCU.exe [1891840 2018-01-30] (TP-Link Technologies Co., Ltd) [File not signed]
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [408896 2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\Run: [MicrosoftEdgeAutoLaunch_C2AB7B4C4369F745A9AA04A850088382] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [5024072 2026-07-31] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [5774488 2026-08-03] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {b448eb99-7e8d-11eb-b932-d067e50ea9a0} - "H:\autorun.exe"
HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\...\MountPoints2: {f8ca5cce-7e50-11eb-b931-d067e50ea9a0} - "F:\autorun.exe"
HKLM\...\Print\Monitors\EPSON PGSTM 64Monitor67: C:\WINDOWS\system32\E_L12067.DLL [108032 2008-08-08] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files\CCleaner Browser\Application\150.0.35121.182\Installer\chrmstp.exe [6066592 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files (x86)\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4468376 2026-07-03] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\151.0.7922.76\Installer\chrmstp.exe [7593112 2026-08-07] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {9464D436-7FCE-4D1B-BC6A-08620D4C8BEC} - System32\Tasks\AVG\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [5842360 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {6086E144-BCF9-4DB7-AB71-765D9AABA480} - System32\Tasks\AVG\AVG Antivirus Patcher => C:\Program Files\Common Files\AVG\Icarus\avg-av\icarus.exe [9820152 2026-07-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {4A5D261F-5D57-4072-87B9-FD21AA7E2F93} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [3763936 2026-05-29] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {D4C7F499-D7B8-42A5-A589-5D4015858DB1} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files\CCleaner Browser\Application\CCleanerBrowser.exe [4612608 2026-07-23] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {00E19307-126D-4B82-AD11-E8BD4D101F04} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files\CCleaner Browser\Application\CCleanerBrowser.exe [4612608 2026-07-23] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {CBEFE686-3DAC-4643-B9DD-00DFE14F0C20} - System32\Tasks\CCleanerBrowserProtectS-1-5-21-3938597611-2843190907-3524625560-1001 => C:\Program Files\CCleaner Browser\Application\CCleanerBrowserProtect.exe [2002936 2026-07-03] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {62980A6A-33A3-4EA7-A905-E5F3A3B6F08F} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208688 2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
Task: {E3A1E706-B3CA-48F4-8C61-C31EFB7D1464} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208688 2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
Task: {A44E6D7B-5F57-4AF8-A71F-0CD7F7B86DD6} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\FrameworkAgents\SupportAssistInstaller.exe [1317528 2026-04-28] (Dell Technologies Inc. -> Dell Inc.) -> C:\Program Files\Dell\SupportAssistAgent\bin\AutoUpdate
Task: {DA702CB7-4699-461A-85DC-E2A384D9FDB4} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem152.0.7933.0{E85B845B-E363-40D5-956F-DA5A79FAEF41} => C:\Program Files (x86)\Google\GoogleUpdater\152.0.7933.0\updater.exe [9512088 2026-07-05] (Google LLC -> Google LLC)
Task: {6E4FB60E-1347-4C31-964A-1DE647DA26C5} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Daily => C:\Program Files (x86)\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4468376 2026-07-03] (Google LLC -> Google LLC)
Task: {2A1E9AEA-FB0B-4336-9768-00CE91722447} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Metrics => C:\Program Files (x86)\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4468376 2026-07-03] (Google LLC -> Google LLC)
Task: {C2752090-C0A7-4510-B97A-EF1B6A36E18C} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [707200 2026-04-20] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {464E0A40-7C59-4CE1-8C88-3A56A8D61CF1} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3938597611-2843190907-3524625560-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [707200 2026-04-20] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {3B7A6E53-D620-41EF-93D4-3F2289B2E926} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33920 2026-04-20] (Mozilla Corporation -> Mozilla Foundation)
Task: {20C6EB9B-3B10-497A-8057-81CF4EF29198} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-3938597611-2843190907-3524625560-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7866256 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {01232DA5-3334-409B-A484-127A1FFFD1F6} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-3938597611-2843190907-3524625560-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7866256 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {F4AC05EC-124D-44E4-AE47-EBCAA8F6BDEE} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6558608 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {F43596FD-36C3-4408-9554-5BF76E6BF72E} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-01-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {57CB2A44-8B12-4392-9414-D88F6C46BAA3} - System32\Tasks\WpsExternal_Dafi_interval => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wpscloudsvr.exe [1153408 2026-08-07] (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.) -> /wpscloudlaunch /run_plugin /plugin_name=ktaskschdtool /plugin_entry=ktaskschdtool.dll /task=wpsexternal /launchtask /ver=1.0 /start_from=task_external_interval
Task: {DDE20078-5BCB-4F77-9CA0-BDBEB6A7EA17} - System32\Tasks\WpsExternal_Dafi_startup => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\wpscloudsvr.exe [1153408 2026-08-07] (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.) -> /wpscloudlaunch /run_plugin /plugin_name=ktaskschdtool /plugin_entry=ktaskschdtool.dll /task=wpsexternal /launchtask /ver=1.0 /start_from=task_external_startup
Task: {AAF8E630-2049-43DE-8AC4-C75B54D7DF2A} - System32\Tasks\WpsUpdateTask_Dafi => C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\ksolaunch.exe [795008 2026-08-07] (WPS SOFTWARE PTE. LTD. -> WPS SOFTWARE PTE. LTD.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{b1da4807-c8e5-49e8-b90a-1804c71203a4}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ca65ab3b-b193-419c-83c7-27bd681738f9}: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF DefaultProfile: 6o4tg5hy.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\Dafi\AppData\Roaming\Mozilla\Firefox\Profiles\b47qsz8l.default [2025-08-22]
FF ProfilePath: C:\Users\Dafi\AppData\Roaming\Mozilla\Firefox\Profiles\6o4tg5hy.default-release [2026-08-07]
FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.23 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1691.6\npCCleanerBrowserUpdate3.dll [2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1691.6\npCCleanerBrowserUpdate3.dll [2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin HKU\S-1-5-21-3938597611-2843190907-3524625560-1001: @wpspdf.com/nppdf -> C:\Users\Dafi\AppData\Local\Kingsoft\WPS Office\12.1.0.28032\office6\addons\knppdfplugin\knppdfplugin.dll [No File]

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Dafi\AppData\Local\Microsoft\Edge\User Data\Default [2026-03-26]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\Dafi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bojobppfploabceghnmlahpoonbcbacn [2026-03-16]
Edge Extension: (Dokumenty Google offline) - C:\Users\Dafi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-10]
Edge Extension: (Edge relevant text changes) - C:\Users\Dafi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]
Edge Extension: (WPS PDF - Read, Edit, Fill, Convert, and AI Chat PDF with Ease) - C:\Users\Dafi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mjdgandcagmikhlbjnilkmfnjeamfikk [2025-02-19]
Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [mjdgandcagmikhlbjnilkmfnjeamfikk]
Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default [2026-08-02]
CHR Notifications: Default -> hxxps://www.ceskyraj.com; hxxps://www.youtube.com
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2026-07-18]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-08-02]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2026-08-02]
CHR Extension: (Custom Teamspeak 3 Display - by Frizzant) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkocffpmmelgidgjhkadhmhgfeckcpge [2020-03-29]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2026-07-18]
CHR Extension: (Chrome Remote Desktop) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2025-11-30]
CHR Extension: (WPS PDF - Read, Edit, Fill, Convert, and AI Chat PDF with Ease) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdpelmjpfafjppnhbloffcjpeomlnpah [2026-08-02]
CHR Extension: (Jitsi Meetings) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\kglhbbefdnlheedjiejgomgmfplipfeb [2024-06-07]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Guest Profile [2025-08-22]
CHR Profile: C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1 [2026-08-07]
CHR Notifications: Profile 1 -> hxxps://www.facebook.com; hxxps://www.youtube.com
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2026-07-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-08-07]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2026-08-07]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2026-08-07]
CHR Extension: (WPS PDF - Read, Edit, Fill, Convert, and AI Chat PDF with Ease) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kdpelmjpfafjppnhbloffcjpeomlnpah [2026-08-07]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-10-25]
CHR Profile: C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 2 [2026-06-09]
CHR Notifications: Profile 2 -> hxxps://www.youtube.com
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2026-06-08]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-08]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2026-06-08]
CHR Extension: (WPS PDF - Read, Edit, Fill, Convert, and AI Chat PDF with Ease) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\kdpelmjpfafjppnhbloffcjpeomlnpah [2026-06-08]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-04-04]
CHR Profile: C:\Users\Dafi\AppData\Local\Google\Chrome\User Data\System Profile [2026-08-07]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKU\S-1-5-21-3938597611-2843190907-3524625560-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kdpelmjpfafjppnhbloffcjpeomlnpah]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [1081784 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AVG Tools; C:\Program Files\AVG\Antivirus\avgToolsSvc.exe [1134008 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [8063928 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [109480 2021-06-02] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208688 2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [31251856 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
S3 CCleanerBrowserElevationService; C:\Program Files\CCleaner Browser\Application\150.0.35121.182\elevation_service.exe [4057344 2026-07-23] (Gen Digital Inc. -> Gen Digital Inc.)
S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208688 2024-05-30] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
S2 cphs; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [300128 2017-03-09] () [File not signed]
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [50464 2026-04-25] (Dell Technologies Inc. -> )
R2 DellTechHub; C:\Program Files\Dell\TechHub\Dell.TechHub.exe [149704 2026-03-27] (Dell Technologies Inc. -> Dell)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4993344 2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11514232 2026-07-09] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [4291576 2026-06-07] (Malwarebytes Inc -> Malwarebytes)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [889048 2026-08-07] (McAfee, LLC -> McAfee, LLC)
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25080.5-0\MpDefenderCoreService.exe [2009656 2025-10-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe [1275000 2024-09-16] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [149656 2026-04-28] (Dell Technologies Inc. -> Dell Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25080.5-0\NisSrv.exe [4414464 2025-10-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25080.5-0\MsMpEng.exe [282480 2025-10-07] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 avgArDisk; C:\WINDOWS\System32\drivers\avgArDisk.sys [21088 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [245856 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdriver.sys [393824 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsh.sys [317024 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniv.sys [80992 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgDrvBrg; C:\WINDOWS\System32\drivers\avgDrvBrg.sys [86112 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgElam; C:\WINDOWS\System32\drivers\avgElam.sys [29144 2025-08-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 avgKbd; C:\WINDOWS\System32\drivers\avgKbd.sys [34912 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [299616 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgNetHub; C:\WINDOWS\System32\drivers\avgNetHub.sys [637024 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [100960 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [71776 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [857184 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [1299040 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [250976 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [473184 2026-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 cpuz162; \??\C:\ProgramData\CPUID Software\hwmonitor\8EdvZ3Z0u52M4s [37552 2026-02-14] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 DellInstrumentation; C:\WINDOWS\System32\drivers\DellInstrumentation.sys [33336 2025-11-15] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2021-03-06] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333216 2025-10-07] (Microsoft Windows -> Microsoft Corporation)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [235624 2026-07-16] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-09-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [246376 2026-07-09] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 rtump64x64; C:\WINDOWS\System32\drivers\rtump64x64.sys [1606104 2025-06-27] (Realtek Semiconductor Corp. -> Realtek Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [20880 2025-10-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [627104 2025-10-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102816 2025-10-07] (Microsoft Windows -> Microsoft Corporation)
S3 mimkrnl; System32\drivers\mimkrnl.sys (No File)

==================== SvcHost (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-08-07 17:23 - 2026-08-07 17:23 - 000004074 _____ C:\WINDOWS\system32\Tasks\WpsExternal_Dafi_interval
2026-08-07 13:12 - 2026-08-07 13:12 - 000003808 _____ C:\WINDOWS\system32\Tasks\WpsExternal_Dafi_startup
2026-08-07 13:12 - 2026-08-07 13:12 - 000003756 _____ C:\WINDOWS\system32\Tasks\WpsUpdateTask_Dafi
2026-08-07 13:12 - 2026-08-07 13:12 - 000002465 _____ C:\Users\Dafi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WPS Office.lnk
2026-08-03 11:12 - 2026-08-03 11:11 - 000325560 _____ (Gen Digital Inc.) C:\WINDOWS\system32\avgBoot.exe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-08-07 17:25 - 2025-09-22 11:25 - 000033404 _____ C:\Users\Dafi\Desktop\FRST.txt
2026-08-07 17:25 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2026-08-07 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-08-07 17:24 - 2024-12-02 11:43 - 000000000 ____D C:\FRST
2026-08-07 17:23 - 2025-08-22 14:26 - 000000000 ____D C:\Users\Dafi\Desktop\FRST-OlderVersion
2026-08-07 17:23 - 2025-08-10 10:53 - 002448384 _____ (Farbar) C:\Users\Dafi\Desktop\FRST64 (1).exe
2026-08-07 17:23 - 2024-01-28 16:03 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-08-07 17:23 - 2020-02-14 14:31 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-08-07 17:23 - 2020-02-14 14:31 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2026-08-07 17:22 - 2026-01-17 11:30 - 000000000 ____D C:\Program Files (x86)\Steam
2026-08-07 17:22 - 2020-02-12 12:34 - 000000000 ___RD C:\Users\Dafi\OneDrive
2026-08-07 17:22 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-08-07 13:12 - 2020-05-18 16:23 - 000000000 ____D C:\ProgramData\NVIDIA
2026-08-07 13:07 - 2020-03-14 21:55 - 000000000 ____D C:\Users\Dafi\AppData\Local\D3DSCache
2026-08-07 13:05 - 2025-09-22 14:34 - 000000000 ____D C:\Users\Dafi\AppData\Local\Malwarebytes
2026-08-07 12:56 - 2026-01-02 20:46 - 000003300 _____ C:\WINDOWS\system32\Tasks\Dell SupportAssistAgent AutoUpdate
2026-08-07 12:56 - 2025-02-07 21:27 - 000003104 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3938597611-2843190907-3524625560-1001
2026-08-07 12:56 - 2024-05-30 22:13 - 000002848 _____ C:\WINDOWS\system32\Tasks\CCleanerBrowserProtectS-1-5-21-3938597611-2843190907-3524625560-1001
2026-08-07 12:56 - 2024-05-30 22:10 - 000003092 _____ C:\WINDOWS\system32\Tasks\CCleaner Browser Heartbeat Task (Hourly)
2026-08-07 12:56 - 2024-05-30 22:10 - 000002610 _____ C:\WINDOWS\system32\Tasks\CCleaner Browser Heartbeat Task (Logon)
2026-08-07 12:56 - 2024-05-30 22:09 - 000003456 _____ C:\WINDOWS\system32\Tasks\CCleanerUpdateTaskMachineUA
2026-08-07 12:56 - 2024-05-30 22:09 - 000003232 _____ C:\WINDOWS\system32\Tasks\CCleanerUpdateTaskMachineCore
2026-08-07 12:56 - 2024-01-28 20:01 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-08-07 12:56 - 2024-01-28 20:01 - 000003342 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-08-07 12:56 - 2024-01-28 20:01 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3938597611-2843190907-3524625560-1001
2026-08-07 12:56 - 2024-01-28 20:01 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3938597611-2843190907-3524625560-1001
2026-08-07 12:56 - 2024-01-28 20:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software
2026-08-07 12:30 - 2024-01-28 19:51 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-08-07 11:13 - 2024-01-28 16:10 - 000002380 _____ C:\Users\Dafi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-08-07 11:12 - 2020-05-06 20:20 - 000000000 ____D C:\Users\Dafi\AppData\Local\Avg
2026-08-04 19:47 - 2024-01-28 20:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-08-04 19:47 - 2021-02-01 23:31 - 000008192 ___SH C:\DumpStack.log.tmp
2026-08-04 19:47 - 2020-05-06 20:18 - 000000000 ____D C:\ProgramData\AVG
2026-08-04 19:47 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2026-08-03 22:28 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-08-03 17:06 - 2024-05-30 22:13 - 000002333 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner Browser.lnk
2026-08-03 17:06 - 2024-05-30 22:13 - 000002298 _____ C:\Users\Public\Desktop\CCleaner Browser.lnk
2026-08-03 17:06 - 2024-05-30 22:09 - 000000000 ____D C:\Program Files\CCleaner Browser
2026-08-03 11:12 - 2025-09-27 15:49 - 000473184 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgVmm.sys
2026-08-03 11:12 - 2025-09-27 15:49 - 000317024 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgbidsh.sys
2026-08-03 11:12 - 2025-09-27 15:49 - 000080992 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgbuniv.sys
2026-08-03 11:12 - 2025-09-27 15:49 - 000034912 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgKbd.sys
2026-08-03 11:12 - 2024-01-28 20:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVG
2026-08-03 11:12 - 2020-10-24 19:51 - 000299616 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys
2026-08-03 11:12 - 2020-06-16 12:35 - 000637024 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgNetHub.sys
2026-08-03 11:12 - 2020-05-06 20:19 - 001299040 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgSP.sys
2026-08-03 11:12 - 2020-05-06 20:19 - 000100960 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgRdr2.sys
2026-08-03 11:12 - 2020-05-06 20:19 - 000071776 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgRvrt.sys
2026-08-03 11:11 - 2025-09-27 15:49 - 000857184 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgSnx.sys
2026-08-03 11:11 - 2025-09-27 15:49 - 000393824 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgbidsdriver.sys
2026-08-03 11:11 - 2025-09-27 15:49 - 000245856 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\avgArPot.sys
2026-08-02 19:25 - 2024-01-28 19:57 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-08-02 19:25 - 2024-01-28 19:57 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-07-17 09:47 - 2020-02-12 13:02 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-07-17 09:47 - 2020-02-12 13:01 - 228534800 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-07-16 20:51 - 2023-08-07 17:45 - 000002557 _____ C:\Users\Dafi\Desktop\WPS PDF.lnk
2026-07-16 20:51 - 2020-06-03 19:01 - 000002471 _____ C:\Users\Dafi\Desktop\WPS Office.lnk
2026-07-13 20:16 - 2020-02-14 15:05 - 000000000 ____D C:\Users\Dafi\AppData\Roaming\vlc
2026-07-10 20:13 - 2020-05-11 20:42 - 000000000 ____D C:\Users\Dafi\AppData\Local\CrashDumps
2026-07-09 21:05 - 2025-09-22 14:34 - 000246376 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2026-07-08 12:16 - 2025-10-19 17:32 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleUserPEH
2026-07-08 08:54 - 2024-01-28 20:03 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-07-08 08:54 - 2019-12-07 16:43 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2026-07-08 08:54 - 2019-12-07 16:43 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2026-07-08 08:54 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF

==================== Files in the root of some directories ========

2026-03-26 18:47 - 2026-03-26 18:47 - 000007605 _____ () C:\Users\Dafi\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15920
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Prosím o kontrolu.

#2 Příspěvek od JaRon »

Ahoj,
nevidim tam zavaznejsi problem, mozes preventivne prescanovat s Adwcleanerom
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Martin000
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 09 Dub 2008 08:37

Re: Prosím o kontrolu.

#3 Příspěvek od Martin000 »

Ahoj. Tady to je.
# -------------------------------
# Malwarebytes AdwCleaner 8.6.0.613
# -------------------------------
# Build: 08-19-2025
# Database: 2026-05-07.3 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 08-08-2026
# Duration: 00:00:01
# OS: Windows 10 (Build 19045.6466)
# Cleaned: 9
# Awaiting reboot:4
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

Deleted Preinstalled.DellSupportAssistAgent Folder C:\Users\Dafi\Documents\DELL\SUPPORTASSIST
Deleted Preinstalled.DellSupportAssistAgent Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A44E6D7B-5F57-4AF8-A71F-0CD7F7B86DD6}
Deleted Preinstalled.DellSupportAssistAgent Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A44E6D7B-5F57-4AF8-A71F-0CD7F7B86DD6}
Deleted Preinstalled.DellSupportAssistAgent Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dell SupportAssistAgent AutoUpdate
Deleted Preinstalled.DellSupportAssistAgent Task C:\Windows\System32\Tasks\DELL SUPPORTASSISTAGENT AUTOUPDATE
Needs Reboot Preinstalled.DellSupportAssistAgent Folder C:\Program Files\DELL\SUPPORTASSISTAGENT
Needs Reboot Preinstalled.DellSupportAssistAgent Folder C:\ProgramData\DELL\SUPPORTASSIST
Needs Reboot Preinstalled.DellUpdateforWindows10 Folder C:\Program Files (x86)\DELL\UPDATESERVICE
Needs Reboot Preinstalled.DellUpdateforWindows10 Folder C:\ProgramData\DELL\UPDATESERVICE


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

***** Reboot Required to Complete *****



AdwCleaner[S00].txt - [1405 octets] - [15/08/2022 19:09:06]
AdwCleaner[S01].txt - [1466 octets] - [15/08/2022 19:10:13]
AdwCleaner[S02].txt - [1527 octets] - [15/08/2022 21:24:29]
AdwCleaner[S03].txt - [1603 octets] - [15/03/2024 21:55:01]
AdwCleaner[C03].txt - [1793 octets] - [15/03/2024 21:55:51]
AdwCleaner[S04].txt - [1756 octets] - [10/12/2024 19:01:57]
AdwCleaner[C04].txt - [1926 octets] - [10/12/2024 19:03:44]
AdwCleaner[S05].txt - [1849 octets] - [23/03/2025 09:59:16]
AdwCleaner[C05].txt - [2039 octets] - [23/03/2025 10:00:26]
AdwCleaner[S06].txt - [1971 octets] - [15/06/2025 20:55:09]
AdwCleaner[S07].txt - [2032 octets] - [22/09/2025 11:25:01]
AdwCleaner[S08].txt - [2093 octets] - [22/09/2025 14:13:50]
AdwCleaner[S09].txt - [3160 octets] - [08/08/2026 13:34:07]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C09].txt ##########

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15920
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Prosím o kontrolu.

#4 Příspěvek od JaRon »

Ak nie su problemy, hotovo
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Martin000
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 09 Dub 2008 08:37

Re: Prosím o kontrolu.

#5 Příspěvek od Martin000 »

Díky. Naschle

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15920
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Prosím o kontrolu.

#6 Příspěvek od JaRon »

Ahoooj :worship:
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno