Prosím om preventivku, avast furt něco hlásí
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosím om preventivku, avast furt něco hlásí
Tak je to tam furt. Avast furt otravuje - viz příloha
- Přílohy
-
- avast.7z
- (84.06 KiB) Staženo 9 x
Re: Prosím om preventivku, avast furt něco hlásí
Ide o rozsirenie Firefoxu - zakaz ho
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosím om preventivku, avast furt něco hlásí
Všechny rozšíření jsem zakázal a teď mi píše - viz příloha
- Přílohy
-
- avast.7z
- (75.56 KiB) Staženo 9 x
Re: Prosím om preventivku, avast furt něco hlásí
Prescanuj PC s avptool - KVRT
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosím om preventivku, avast furt něco hlásí
Tak s Kašperským se to projíždělo včera několikrát. Vždycky našel 1 až 2 hrozby - dle předchozích prtsc. Když jsem dal vymazat - při dalším testu je našel znova a když jsem dal do karantény tak taky...
Re: Prosím om preventivku, avast furt něco hlásí
Ahoj, jake hrozby nasel Kaspersky? Umisteni souboru a nazev hrozby/detekce me zajima.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím om preventivku, avast furt něco hlásí
Ahoj. Teď našel tohle.
- Přílohy
-
- kvrt.7z
- (32.98 KiB) Staženo 5 x
Re: Prosím om preventivku, avast furt něco hlásí
Uvidime, co navrhne kolega
Ja by som sa vratil na zaciatok
Restartuj PC do nudzoveho rezimu a daj scanovat s MBAM vcetne rootkits
Najdene zmazat
Ja by som sa vratil na zaciatok
Restartuj PC do nudzoveho rezimu a daj scanovat s MBAM vcetne rootkits
Najdene zmazat
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosím om preventivku, avast furt něco hlásí
Smaz rucne celou slozku
C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK_0
Smaz soubor
C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe
Restart PC a zkontroluj, jestli je neco znova nevytvorilo.
Vyfot/vypis mi obsah slozky
C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev
Dej nove logy FRST.txt a Addition.txt
C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK_0
Smaz soubor
C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe
Restart PC a zkontroluj, jestli je neco znova nevytvorilo.
Vyfot/vypis mi obsah slozky
C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev
Dej nove logy FRST.txt a Addition.txt
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím om preventivku, avast furt něco hlásí
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-09-2026
Ran by WinCan (administrator) on OCHMAŇÁCI (14-09-2026 20:57:03)
Running from C:\Users\WinCan\Desktop\FRST64.exe
Loaded Profiles: WinCan
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxEM.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (DTS, Inc. -> ) C:\Windows\System32\DTS\PC\APO3x\DTSAPO3Service.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_5b51a286c5d2f192\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_65ac4d73bb85cb27\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_65ac4d73bb85cb27\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Memeo) [File not signed] C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(services.exe ->) (SafeNet, Inc. -> SafeNet Inc.) C:\Windows\System32\hasplms.exe
(services.exe ->) (WDC) [File not signed] C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2607.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [838432 2019-03-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [1072056 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [750680 2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Microsoft Edge Update] => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.269.9\MicrosoftEdgeUpdateCore.exe [343888 2026-09-14] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31349528 2024-03-20] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [45610456 2026-09-07] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1008336 2026-06-19] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [MicrosoftEdgeAutoLaunch_CCCDB6D5B6877A23EE2B9C7196BB003D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5417288 2026-09-10] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\MountPoints2: {d88fbe70-226d-11eb-bd8a-0492265a3e51} - "E:\WD SmartWare.exe" autoplay=true
HKLM\...\Windows x64\Print Processors\Canon MG3000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDG.DLL [30720 2023-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\Canon MX920 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBL.DLL [30208 2012-09-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX920 series: C:\Windows\system32\CNCALBL.DLL [303104 2012-09-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3000 series: C:\Windows\system32\CNMLMDG.DLL [485376 2023-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MX920 series: C:\Windows\system32\CNMLMBL.DLL [390656 2012-09-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\EPSON L6190 Series 64MonitorBE: C:\Windows\system32\E_YLMBSPE.DLL [184832 2017-07-14] (Seiko Epson Corporation) [File not signed]
HKLM\Software\...\AppCompatFlags\Custom\H3Blade.exe: [{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb] -> HoMM III Compatibility Database
HKLM\Software\...\AppCompatFlags\InstalledSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb [2023-10-18]
Startup: C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DYYHXHYNDOFXWVHK.lnk [2026-09-06]
ShortcutTarget: DYYHXHYNDOFXWVHK.lnk -> (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDDMStatus.lnk [2020-11-09]
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (Western Digital Technologies Inc. -> WDC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDSmartWare.lnk [2020-11-09]
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital Technologies Inc. -> Western Digital)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {FF721096-531A-41FD-A0D5-4018E6B5AD4D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1617408 2026-08-03] (Adobe Inc. -> Adobe Inc.)
Task: {DFCEF145-8CC7-4C07-AA29-FAE91264630D} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9795576 2026-07-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {DAC51482-A7D8-40C3-B165-8DC974D7E2BD} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5805496 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {29F3202B-48E4-4BD9-A215-B29D3476F643} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [3710456 2026-09-11] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {F8087465-D84E-4D39-8275-6B05B1DF0F33} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (No File)
Task: {9358FD62-420A-4437-B963-DBDE25460E9C} - System32\Tasks\DYYHXHYNDOFXWVHK_run => C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe (No File)
Task: {5DE18494-A1E1-471F-9D91-8B78D1C36B2D} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [31000 2024-03-20] (Garmin International, Inc. -> )
Task: {FBA14432-5F90-4239-8EC7-8A2CAE20D3FC} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
Task: {FF0D34D1-109F-47C1-97A1-C7477A1CDB17} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2113024 2023-05-12] () [File not signed]
Task: {70B399D4-1026-494B-BCD6-1CE1488E4962} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24257912 2018-12-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {17BF3C50-985F-422C-B74F-8B43EF4F904B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24257912 2018-12-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {3677C24E-C532-4B61-9A7C-77F82BF3AA1C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\sdxhelper.exe [123168 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {1DDEF508-8FAF-45E1-8484-18A0F0D7AE62} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\sdxhelper.exe [123168 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {02E1ABC8-FBB4-4880-B73A-FA668694E9C5} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2139424 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {85D3EA01-14AC-4D72-811B-307B20393BAD} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2139424 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {D20EBBB1-55CD-47A9-9962-E16B57D92CA0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [3398344 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {3ADB4836-F7CC-465F-8863-98C4B816405B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [3398344 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {82FE661D-EBEA-4C7D-AD42-95C213A01623} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001Core => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {BEB3D2DC-FFC2-482C-A3A3-DFE361843847} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001UA => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {10B09F56-3773-4DFE-A2FD-505198512A1E} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [1328256 2026-09-06] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {F6D84E5D-440B-4244-850B-F1943E28B187} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3710502255-1612003614-3486849990-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [1328256 2026-09-06] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {8B7790D7-C7C6-4F95-BBDA-EEBB98D8522A} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33920 2026-09-06] (Mozilla Corporation -> Mozilla Foundation)
Task: {DD6FA345-2D89-48E4-9ADF-163F924E2CF6} - System32\Tasks\PinnacleStudio24Notifier => C:\Program Files\Pinnacle\Studio 24\programs\PinnacleNotifierWrapper.exe [18016 2020-08-09] (Corel Corporation -> Pinnacle)
Task: {DF3240D2-ADCE-49F6-8375-C59F53ED6921} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-3710502255-1612003614-3486849990-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7286672 2026-09-05] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {35F96309-5C60-4DDB-B090-D1981429FB1C} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-3710502255-1612003614-3486849990-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7286672 2026-09-05] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {CAC9768D-0009-41A4-B09E-076BC62AF186} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6558608 2026-09-05] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {174FBE8F-D1C6-44CB-B652-188CA553D944} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-09-02] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {8B0A5DAB-758B-42C2-9DF7-79C89F64A39E} - System32\Tasks\Teamviewer-QS-updater-4ddf6hs => C:\Users\WinCan\AppData\Local\TeamViewer\CustomConfigs\4ddf6hs\TeamViewer.exe [36779288 2021-02-18] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
Task: {979BAF55-3D9F-40E0-9FF9-5748880F8FEF} - System32\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {0458FF29-A5E5-45CB-9F27-EB03127CFB4F} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Teamviewer-QS-updater-4ddf6hs.job => C:\Users\WinCan\AppData\Local\TeamViewer\CustomConfigs\4ddf6hs\TeamViewer.exe
Task: C:\WINDOWS\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 94.142.233.120 94.142.233.140 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{ffdec9c8-ae1c-4630-8bde-449ed677045f}: [DhcpNameServer] 94.142.233.120 94.142.233.140 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{ffdec9c8-ae1c-4630-8bde-449ed677045f}: [DhcpDomain] NetisRouter_64eeb71803bf
FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF DefaultProfile: lcrq4t87.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\ul0pjuxr.default [2023-07-23]
FF NewTab: Mozilla\Firefox\Profiles\ul0pjuxr.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
FF ProfilePath: C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release [2026-09-14]
FF Homepage: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://www.seznam.cz/
FF NewTab: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
FF Notifications: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://www.tipli.cz; hxxps://www.muziker.cz; hxxps://www.luxor.cz; hxxps://www.facebook.com; hxxps://www.bezvasport.cz
FF Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2026-09-05]
FF Extension: (SponsorBlock pro YouTube – Přeskoč sponzory) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\sponsorBlocker@ajay.app.xpi [2026-07-13]
FF Extension: (TinEye Reverse Image Search) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\tineye@ideeinc.com.xpi [2025-05-31]
FF Extension: (Audio Equalizer) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\{63d150c4-394c-4275-bc32-c464e76a891c}.xpi [2026-07-04]
FF Extension: (Flash Player 2021) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\{6cc0a66e-ae3d-4cd8-9a03-5cd93b392903}.xpi [2022-01-02]
FF Plugin: @java.com/DTPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-09-07] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [File not signed]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @photodex.com/PhotodexPresenter -> C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll [2023-05-25] () [File not signed]
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default [2026-09-06]
Edge DownloadDir: C:\Users\WinCan\Downloads
Edge HomePage: Default -> hxxps://www.google.cz/
Edge StartupUrls: Default -> "hxxps://www.google.cz/"
Edge Extension: (Dokumenty Google offline) - C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-14]
Edge Extension: (Edge relevant text changes) - C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-27]
Edge DownloadDir: Default -> C:\Users\WinCan\Downloads
Chrome:
=======
CHR Profile: C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default [2026-09-06]
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR Extension: (Dokumenty Google offline) - C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-07-06]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-03]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [182776 2026-08-03] (Adobe Inc. -> Adobe Inc.)
S3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8039352 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1044920 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2755512 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1097656 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-06-06] (Avast Software s.r.o. -> AVAST Software)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3642064 2026-06-23] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [31302032 2026-09-05] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9619824 2018-12-26] (Microsoft Corporation -> Microsoft Corporation)
R2 DTSAPO3Service; C:\WINDOWS\System32\DTS\PC\APO3x\DTSAPO3Service.exe [206720 2018-09-05] (DTS, Inc. -> )
R2 hasplms; C:\Windows\system32\hasplms.exe [4665168 2015-09-24] (SafeNet, Inc. -> SafeNet Inc.)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [443344 2020-05-25] (Canon Inc. -> )
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11671792 2026-09-05] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [4291576 2026-09-05] (Malwarebytes Inc -> Malwarebytes)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [130048 2010-01-21] (WDC) [File not signed]
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\NisSrv.exe [2372048 2020-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WDSmartWareBackgroundService; C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MsMpEng.exe [128376 2020-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aksdf; \??\C:\Windows\system32\drivers\aksdf.sys [109200 2015-09-24] (SafeNet, Inc. -> )
R2 aksfridge; \??\C:\Windows\system32\drivers\aksfridge.sys [205528 2015-09-24] (SafeNet, Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [21088 2026-04-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [245856 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [393824 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [317024 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [80992 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswDrvBrg; C:\WINDOWS\System32\drivers\aswDrvBrg.sys [86112 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [29144 2025-06-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [34912 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [299616 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [637024 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [100960 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [71776 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [857696 2026-09-05] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1299040 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [250976 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [473184 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 DSoftAPRtlWlanu; C:\WINDOWS\System32\drivers\DSoftAPrtwlanu.sys [5608960 2016-11-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 e1dexpress; C:\WINDOWS\System32\DriverStore\FileRepository\e1d.inf_amd64_e64afe811c7e4662\e1d.sys [607400 2022-02-22] (Intel Corporation -> Intel Corporation)
R1 ElbyCDIO; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [42616 2017-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG)
R2 hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [350552 2015-09-24] (SafeNet, Inc. -> )
S4 IObitUnlocker; \??\C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [41536 2022-08-17] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [235624 2026-09-07] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2026-09-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [246376 2026-09-05] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2020-11-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [428264 2020-11-02] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [69864 2020-11-02] (Microsoft Windows -> Microsoft Corporation)
==================== SvcHost (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-09-14 20:57 - 2026-09-14 20:57 - 000030617 _____ C:\Users\WinCan\Desktop\FRST.txt
2026-09-14 20:56 - 2026-09-14 20:56 - 000000000 ____D C:\Users\WinCan\Desktop\FRST-OlderVersion
2026-09-12 12:24 - 2026-09-12 12:24 - 000033768 _____ C:\Users\WinCan\Desktop\kvrt.7z
2026-09-11 19:30 - 2026-09-11 19:30 - 120297344 _____ (AO Kaspersky Lab) C:\Users\WinCan\Desktop\KVRT.exe
2026-09-07 19:13 - 2026-09-07 19:13 - 057449955 _____ (KLCP ) C:\Users\WinCan\Desktop\K-Lite_Codec_Pack_1995_Full.exe
2026-09-06 11:39 - 2026-09-06 11:39 - 009630992 _____ (Malwarebytes) C:\Users\WinCan\Desktop\AdwCleaner.exe
2026-09-06 10:36 - 2026-09-06 10:36 - 000000000 ____D C:\Users\WinCan\AppData\LocalLow\Temp
2026-09-06 10:21 - 2026-09-14 20:49 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-09-06 10:17 - 2026-09-07 19:05 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-09-05 13:48 - 2026-09-05 13:48 - 000002167 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 7.lnk
2026-09-05 13:48 - 2026-09-05 13:48 - 000002155 _____ C:\Users\Public\Desktop\CCleaner 7.lnk
2026-09-05 13:48 - 2026-09-05 13:48 - 000000000 ____D C:\WINDOWS\system32\Tasks\Piriform
2026-09-05 13:48 - 2026-09-05 13:48 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\CCleaner
2026-09-05 13:48 - 2026-09-05 13:48 - 000000000 ____D C:\ProgramData\Piriform
2026-09-05 13:48 - 2026-09-05 13:48 - 000000000 ____D C:\Program Files\Piriform
2026-09-05 13:48 - 2026-09-05 13:48 - 000000000 ____D C:\Program Files\Common Files\Piriform
2026-09-05 13:47 - 2026-09-05 13:47 - 001749200 _____ (Gen Digital Inc.) C:\Users\WinCan\Desktop\ccsetup_online_setup.exe
2026-09-05 12:25 - 2026-09-14 20:55 - 000000000 ____D C:\Users\WinCan\AppData\Local\Malwarebytes
2026-09-05 12:25 - 2026-09-05 12:25 - 000002104 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2026-09-05 12:25 - 2026-09-05 12:25 - 000002092 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2026-09-05 12:24 - 2026-09-05 12:24 - 000000000 ____D C:\ProgramData\Malwarebytes
2026-09-05 12:24 - 2026-09-05 12:24 - 000000000 ____D C:\Program Files\Malwarebytes
2026-09-05 12:15 - 2026-09-05 12:15 - 000000000 ____D C:\Users\WinCan\AppData\Local\Sentry
2026-09-05 09:38 - 2026-09-14 20:56 - 002455552 _____ (Farbar) C:\Users\WinCan\Desktop\FRST64.exe
2026-08-30 21:37 - 2026-08-30 21:37 - 000012155 _____ C:\Users\WinCan\Downloads\[SkT]Neuteces___It_Follows_(2014)(CZ)[WebRip]_=_CSFD_60_.torrent
2026-08-30 21:34 - 2026-08-30 21:34 - 000088310 _____ C:\Users\WinCan\Downloads\[SkT]Stáhni_mě_do_pekla___Drag_Me_to_Hell_(2009)(CZ_EN)[2160p][HDR10_DV][HEVC]_=_CSFD_67_.torrent
2026-08-30 21:21 - 2026-08-30 21:21 - 000021656 _____ C:\Users\WinCan\Downloads\[SkT]Spider-Man__Zbrusu_nový_den___Spider-Man__Brand_New_Day_(2026)(CZ)[1080p][CAM]_=_CSFD_83_.torrent
2026-08-30 21:09 - 2026-08-30 21:09 - 000019419 _____ C:\Users\WinCan\Downloads\[SkT]Interstellar_(2014)(CZ_EN)[2160p][HDR_DV][HEVC]_=_CSFD_85_.torrent
2026-08-30 21:06 - 2026-08-30 21:06 - 000019984 _____ C:\Users\WinCan\Downloads\[SkT]Sirat___Sirāt_(2025)(CZ_ES)[WEB-DL][1080p]_=_CSFD_74_.torrent
2026-08-30 21:03 - 2026-08-30 21:03 - 000097068 _____ C:\Users\WinCan\Downloads\[SkT]Interstellar_(2014)_BDRip.CZ.EN.1080p_=_CSFD_85_.torrent
2026-08-24 16:22 - 2026-08-24 16:22 - 000024967 _____ C:\Users\WinCan\Downloads\[SkT]Posedlost___Obsession_(2026)(CZ_EN)[1080p]_=_CSFD_82_.torrent
2026-08-24 16:22 - 2026-08-24 16:22 - 000021136 _____ C:\Users\WinCan\Downloads\[SkT]Toy_Story_5__Příběh_hraček_(2026)(CZ_SK_EN)[1080p]_=_CSFD_81_.torrent
2026-08-24 16:20 - 2026-08-24 16:20 - 000022245 _____ C:\Users\WinCan\Downloads\[SkT]Den_odhalení___Disclosure_Day_(2026)(CZ_EN)[1080p]_=_CSFD_61_.torrent
2026-08-24 15:31 - 2026-09-06 10:41 - 000002148 _____ C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-09-14 20:57 - 2023-07-18 18:13 - 000000000 ____D C:\FRST
2026-09-14 20:54 - 2020-11-16 11:43 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-09-14 20:54 - 2020-11-16 11:38 - 000008192 ___SH C:\DumpStack.log.tmp
2026-09-14 20:54 - 2020-11-02 20:17 - 000000000 ____D C:\ProgramData\Avast Software
2026-09-14 20:54 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-09-14 20:54 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-09-14 20:54 - 2019-07-26 08:35 - 000000000 __SHD C:\Users\WinCan\IntelGraphicsProfiles
2026-09-14 20:54 - 2019-07-26 08:35 - 000000000 ____D C:\Intel
2026-09-14 20:51 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2026-09-14 20:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-09-14 20:49 - 2020-11-16 11:43 - 002575330 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-09-14 20:49 - 2020-11-16 11:01 - 000732278 _____ C:\WINDOWS\system32\perfh007.dat
2026-09-14 20:49 - 2020-11-16 11:01 - 000149678 _____ C:\WINDOWS\system32\perfc007.dat
2026-09-14 20:49 - 2019-12-07 16:43 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2026-09-14 20:49 - 2019-12-07 16:43 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2026-09-14 20:49 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2026-09-14 20:48 - 2023-01-17 16:59 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-09-14 20:48 - 2020-06-18 11:09 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-09-14 20:47 - 2025-02-17 06:54 - 000003578 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-14 20:47 - 2023-07-15 12:33 - 000002397 _____ C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-09-14 20:47 - 2022-07-07 16:16 - 000003904 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001UA
2026-09-14 20:47 - 2022-07-07 16:16 - 000003894 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001Core
2026-09-14 20:47 - 2021-12-12 20:55 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-14 20:47 - 2020-11-16 11:43 - 000003370 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-12 14:37 - 2020-11-16 11:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-09-12 12:29 - 2019-09-06 12:37 - 000000000 ____D C:\Users\WinCan\AppData\Local\D3DSCache
2026-09-12 12:16 - 2023-07-22 10:52 - 000000000 ____D C:\KVRT2020_Data
2026-09-12 12:12 - 2023-06-25 10:41 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\MPC-HC
2026-09-11 20:07 - 2022-10-12 15:15 - 000002157 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-09-11 20:07 - 2022-10-12 15:15 - 000002072 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2026-09-11 20:07 - 2020-11-16 11:43 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2026-09-11 19:36 - 2021-06-06 12:13 - 000000000 ____D C:\Users\WinCan\AppData\Local\Avast Software
2026-09-08 19:20 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-09-08 19:20 - 2019-07-26 08:38 - 230964456 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-09-08 19:20 - 2019-07-26 08:38 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-09-08 19:14 - 2019-11-14 14:06 - 000000424 _____ C:\WINDOWS\Tasks\Teamviewer-QS-updater-4ddf6hs.job
2026-09-08 19:14 - 2019-09-30 11:48 - 000000422 _____ C:\WINDOWS\Tasks\update-sys.job
2026-09-08 19:14 - 2019-09-30 11:48 - 000000422 _____ C:\WINDOWS\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001.job
2026-09-07 19:25 - 2025-02-18 18:57 - 000002442 _____ C:\WINDOWS\system32\Tasks\PinnacleStudio24Notifier
2026-09-07 19:25 - 2024-04-21 19:43 - 000002702 _____ C:\WINDOWS\system32\Tasks\GarminUpdaterTask
2026-09-07 19:25 - 2023-06-25 10:29 - 000003024 _____ C:\WINDOWS\system32\Tasks\klcp_update
2026-09-07 19:25 - 2023-06-05 18:52 - 000002424 _____ C:\WINDOWS\system32\Tasks\DYYHXHYNDOFXWVHK_run
2026-09-07 19:25 - 2022-10-01 08:52 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2026-09-07 19:25 - 2020-11-16 11:43 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-09-07 19:25 - 2020-11-16 11:43 - 000003340 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-09-07 19:25 - 2020-11-16 11:43 - 000003220 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2026-09-07 19:25 - 2020-11-16 11:43 - 000003058 _____ C:\WINDOWS\system32\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-07 19:25 - 2020-11-16 11:43 - 000002930 _____ C:\WINDOWS\system32\Tasks\Teamviewer-QS-updater-4ddf6hs
2026-09-07 19:25 - 2020-11-16 11:43 - 000002802 _____ C:\WINDOWS\system32\Tasks\update-sys
2026-09-07 19:25 - 2020-11-16 11:43 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2026-09-07 19:05 - 2019-07-26 10:50 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-09-06 11:43 - 2026-05-16 10:07 - 000001320 _____ C:\Users\WinCan\Desktop\Emilka Holubová - Montezumův poklad.lnk
2026-09-06 11:43 - 2024-11-30 12:46 - 000002463 _____ C:\Users\WinCan\Desktop\HappyFoto smart moments.lnk
2026-09-06 11:43 - 2024-05-12 20:07 - 000001382 _____ C:\Users\WinCan\Desktop\SimCity.lnk
2026-09-06 11:43 - 2023-05-08 09:45 - 000001203 _____ C:\Users\WinCan\Desktop\Photodex ProShow Producer.lnk
2026-09-06 11:43 - 2023-01-05 19:55 - 000002120 _____ C:\Users\WinCan\Desktop\Pepakura Designer 5.lnk
2026-09-06 11:43 - 2022-04-08 20:03 - 000001107 _____ C:\Users\WinCan\Desktop\Adobe Photoshop 2020.lnk
2026-09-06 11:43 - 2022-04-07 19:15 - 000001880 _____ C:\Users\WinCan\Desktop\ZPS 19 CZ.lnk
2026-09-06 11:43 - 2021-12-02 19:17 - 000001238 _____ C:\Users\WinCan\Desktop\ABCgames Cheater.lnk
2026-09-06 11:43 - 2020-11-12 09:19 - 000001356 _____ C:\Users\WinCan\Desktop\Need for Speed Underground 2.lnk
2026-09-06 11:43 - 2019-11-05 14:27 - 000001024 _____ C:\Users\WinCan\Desktop\aviedimux.lnk
2026-09-06 10:41 - 2021-10-09 16:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2026-09-06 10:41 - 2019-07-26 10:50 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-09-06 10:24 - 2020-11-16 11:16 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\Microsoft\Windows
2026-09-06 10:20 - 2019-12-07 11:14 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows
2026-09-05 14:10 - 2020-11-16 11:16 - 000000000 ____D C:\Users\WinCan
2026-09-05 13:50 - 2026-06-01 06:12 - 000000000 ____D C:\WINDOWS\Minidump
2026-09-05 13:50 - 2022-02-21 20:02 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2026-09-05 13:50 - 2020-11-10 13:26 - 000000000 ____D C:\Users\WinCan\AppData\Local\CrashDumps
2026-09-05 13:47 - 2026-01-25 11:55 - 000000000 ____D C:\Program Files\FormatFactory5.21.0.0
2026-09-05 12:24 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2026-09-05 10:24 - 2019-09-18 10:33 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\Microsoft\Word
2026-09-05 09:28 - 2020-11-02 20:18 - 000857696 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2026-09-01 20:55 - 2023-07-23 11:21 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\qBittorrent
2026-08-30 21:26 - 2019-07-26 10:57 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\vlc
==================== Files in the root of some directories ========
2019-07-26 11:17 - 2019-07-26 11:17 - 001389056 _____ (Indigo Rose Corporation) C:\Program Files (x86)\uninstallWinCanVX.exe
2023-06-25 09:42 - 2025-05-31 10:07 - 000001224 _____ () C:\Users\WinCan\AppData\Roaming\DESKTOP-Q0QN2E9.MTBF.txt
2023-06-25 09:42 - 2025-05-31 14:23 - 000005632 _____ () C:\Users\WinCan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2025-11-22 16:40 - 2025-11-22 16:41 - 000095816 _____ () C:\Users\WinCan\AppData\Local\dxdiag.log
2019-09-30 11:48 - 2019-09-30 11:48 - 000000003 _____ () C:\Users\WinCan\AppData\Local\updater.log
2019-09-30 11:48 - 2026-01-18 11:24 - 000000059 _____ () C:\Users\WinCan\AppData\Local\UserProducts.xml
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Ran by WinCan (administrator) on OCHMAŇÁCI (14-09-2026 20:57:03)
Running from C:\Users\WinCan\Desktop\FRST64.exe
Loaded Profiles: WinCan
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxEM.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (DTS, Inc. -> ) C:\Windows\System32\DTS\PC\APO3x\DTSAPO3Service.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_5b51a286c5d2f192\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_65ac4d73bb85cb27\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_65ac4d73bb85cb27\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Memeo) [File not signed] C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(services.exe ->) (SafeNet, Inc. -> SafeNet Inc.) C:\Windows\System32\hasplms.exe
(services.exe ->) (WDC) [File not signed] C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2607.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [838432 2019-03-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [1072056 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [750680 2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Microsoft Edge Update] => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.269.9\MicrosoftEdgeUpdateCore.exe [343888 2026-09-14] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31349528 2024-03-20] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [45610456 2026-09-07] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1008336 2026-06-19] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [MicrosoftEdgeAutoLaunch_CCCDB6D5B6877A23EE2B9C7196BB003D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5417288 2026-09-10] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\MountPoints2: {d88fbe70-226d-11eb-bd8a-0492265a3e51} - "E:\WD SmartWare.exe" autoplay=true
HKLM\...\Windows x64\Print Processors\Canon MG3000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDG.DLL [30720 2023-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\Canon MX920 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBL.DLL [30208 2012-09-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX920 series: C:\Windows\system32\CNCALBL.DLL [303104 2012-09-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3000 series: C:\Windows\system32\CNMLMDG.DLL [485376 2023-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MX920 series: C:\Windows\system32\CNMLMBL.DLL [390656 2012-09-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\EPSON L6190 Series 64MonitorBE: C:\Windows\system32\E_YLMBSPE.DLL [184832 2017-07-14] (Seiko Epson Corporation) [File not signed]
HKLM\Software\...\AppCompatFlags\Custom\H3Blade.exe: [{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb] -> HoMM III Compatibility Database
HKLM\Software\...\AppCompatFlags\InstalledSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb [2023-10-18]
Startup: C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DYYHXHYNDOFXWVHK.lnk [2026-09-06]
ShortcutTarget: DYYHXHYNDOFXWVHK.lnk -> (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDDMStatus.lnk [2020-11-09]
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (Western Digital Technologies Inc. -> WDC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDSmartWare.lnk [2020-11-09]
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital Technologies Inc. -> Western Digital)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {FF721096-531A-41FD-A0D5-4018E6B5AD4D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1617408 2026-08-03] (Adobe Inc. -> Adobe Inc.)
Task: {DFCEF145-8CC7-4C07-AA29-FAE91264630D} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9795576 2026-07-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {DAC51482-A7D8-40C3-B165-8DC974D7E2BD} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5805496 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {29F3202B-48E4-4BD9-A215-B29D3476F643} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [3710456 2026-09-11] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {F8087465-D84E-4D39-8275-6B05B1DF0F33} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (No File)
Task: {9358FD62-420A-4437-B963-DBDE25460E9C} - System32\Tasks\DYYHXHYNDOFXWVHK_run => C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe (No File)
Task: {5DE18494-A1E1-471F-9D91-8B78D1C36B2D} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [31000 2024-03-20] (Garmin International, Inc. -> )
Task: {FBA14432-5F90-4239-8EC7-8A2CAE20D3FC} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
Task: {FF0D34D1-109F-47C1-97A1-C7477A1CDB17} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2113024 2023-05-12] () [File not signed]
Task: {70B399D4-1026-494B-BCD6-1CE1488E4962} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24257912 2018-12-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {17BF3C50-985F-422C-B74F-8B43EF4F904B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24257912 2018-12-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {3677C24E-C532-4B61-9A7C-77F82BF3AA1C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\sdxhelper.exe [123168 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {1DDEF508-8FAF-45E1-8484-18A0F0D7AE62} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\sdxhelper.exe [123168 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {02E1ABC8-FBB4-4880-B73A-FA668694E9C5} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2139424 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {85D3EA01-14AC-4D72-811B-307B20393BAD} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2139424 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {D20EBBB1-55CD-47A9-9962-E16B57D92CA0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [3398344 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {3ADB4836-F7CC-465F-8863-98C4B816405B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [3398344 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {82FE661D-EBEA-4C7D-AD42-95C213A01623} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001Core => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {BEB3D2DC-FFC2-482C-A3A3-DFE361843847} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001UA => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {10B09F56-3773-4DFE-A2FD-505198512A1E} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [1328256 2026-09-06] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {F6D84E5D-440B-4244-850B-F1943E28B187} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3710502255-1612003614-3486849990-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [1328256 2026-09-06] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {8B7790D7-C7C6-4F95-BBDA-EEBB98D8522A} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33920 2026-09-06] (Mozilla Corporation -> Mozilla Foundation)
Task: {DD6FA345-2D89-48E4-9ADF-163F924E2CF6} - System32\Tasks\PinnacleStudio24Notifier => C:\Program Files\Pinnacle\Studio 24\programs\PinnacleNotifierWrapper.exe [18016 2020-08-09] (Corel Corporation -> Pinnacle)
Task: {DF3240D2-ADCE-49F6-8375-C59F53ED6921} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-3710502255-1612003614-3486849990-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7286672 2026-09-05] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {35F96309-5C60-4DDB-B090-D1981429FB1C} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-3710502255-1612003614-3486849990-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7286672 2026-09-05] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {CAC9768D-0009-41A4-B09E-076BC62AF186} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6558608 2026-09-05] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {174FBE8F-D1C6-44CB-B652-188CA553D944} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-09-02] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {8B0A5DAB-758B-42C2-9DF7-79C89F64A39E} - System32\Tasks\Teamviewer-QS-updater-4ddf6hs => C:\Users\WinCan\AppData\Local\TeamViewer\CustomConfigs\4ddf6hs\TeamViewer.exe [36779288 2021-02-18] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
Task: {979BAF55-3D9F-40E0-9FF9-5748880F8FEF} - System32\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {0458FF29-A5E5-45CB-9F27-EB03127CFB4F} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Teamviewer-QS-updater-4ddf6hs.job => C:\Users\WinCan\AppData\Local\TeamViewer\CustomConfigs\4ddf6hs\TeamViewer.exe
Task: C:\WINDOWS\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 94.142.233.120 94.142.233.140 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{ffdec9c8-ae1c-4630-8bde-449ed677045f}: [DhcpNameServer] 94.142.233.120 94.142.233.140 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{ffdec9c8-ae1c-4630-8bde-449ed677045f}: [DhcpDomain] NetisRouter_64eeb71803bf
FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF DefaultProfile: lcrq4t87.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\ul0pjuxr.default [2023-07-23]
FF NewTab: Mozilla\Firefox\Profiles\ul0pjuxr.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
FF ProfilePath: C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release [2026-09-14]
FF Homepage: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://www.seznam.cz/
FF NewTab: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
FF Notifications: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://www.tipli.cz; hxxps://www.muziker.cz; hxxps://www.luxor.cz; hxxps://www.facebook.com; hxxps://www.bezvasport.cz
FF Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2026-09-05]
FF Extension: (SponsorBlock pro YouTube – Přeskoč sponzory) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\sponsorBlocker@ajay.app.xpi [2026-07-13]
FF Extension: (TinEye Reverse Image Search) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\tineye@ideeinc.com.xpi [2025-05-31]
FF Extension: (Audio Equalizer) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\{63d150c4-394c-4275-bc32-c464e76a891c}.xpi [2026-07-04]
FF Extension: (Flash Player 2021) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\{6cc0a66e-ae3d-4cd8-9a03-5cd93b392903}.xpi [2022-01-02]
FF Plugin: @java.com/DTPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-09-07] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [File not signed]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @photodex.com/PhotodexPresenter -> C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll [2023-05-25] () [File not signed]
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default [2026-09-06]
Edge DownloadDir: C:\Users\WinCan\Downloads
Edge HomePage: Default -> hxxps://www.google.cz/
Edge StartupUrls: Default -> "hxxps://www.google.cz/"
Edge Extension: (Dokumenty Google offline) - C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-14]
Edge Extension: (Edge relevant text changes) - C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-27]
Edge DownloadDir: Default -> C:\Users\WinCan\Downloads
Chrome:
=======
CHR Profile: C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default [2026-09-06]
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR Extension: (Dokumenty Google offline) - C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-07-06]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-03]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [182776 2026-08-03] (Adobe Inc. -> Adobe Inc.)
S3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8039352 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1044920 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2755512 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1097656 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-06-06] (Avast Software s.r.o. -> AVAST Software)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3642064 2026-06-23] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [31302032 2026-09-05] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9619824 2018-12-26] (Microsoft Corporation -> Microsoft Corporation)
R2 DTSAPO3Service; C:\WINDOWS\System32\DTS\PC\APO3x\DTSAPO3Service.exe [206720 2018-09-05] (DTS, Inc. -> )
R2 hasplms; C:\Windows\system32\hasplms.exe [4665168 2015-09-24] (SafeNet, Inc. -> SafeNet Inc.)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [443344 2020-05-25] (Canon Inc. -> )
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11671792 2026-09-05] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [4291576 2026-09-05] (Malwarebytes Inc -> Malwarebytes)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [130048 2010-01-21] (WDC) [File not signed]
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\NisSrv.exe [2372048 2020-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WDSmartWareBackgroundService; C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MsMpEng.exe [128376 2020-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aksdf; \??\C:\Windows\system32\drivers\aksdf.sys [109200 2015-09-24] (SafeNet, Inc. -> )
R2 aksfridge; \??\C:\Windows\system32\drivers\aksfridge.sys [205528 2015-09-24] (SafeNet, Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [21088 2026-04-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [245856 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [393824 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [317024 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [80992 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswDrvBrg; C:\WINDOWS\System32\drivers\aswDrvBrg.sys [86112 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [29144 2025-06-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [34912 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [299616 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [637024 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [100960 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [71776 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [857696 2026-09-05] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1299040 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [250976 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [473184 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 DSoftAPRtlWlanu; C:\WINDOWS\System32\drivers\DSoftAPrtwlanu.sys [5608960 2016-11-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 e1dexpress; C:\WINDOWS\System32\DriverStore\FileRepository\e1d.inf_amd64_e64afe811c7e4662\e1d.sys [607400 2022-02-22] (Intel Corporation -> Intel Corporation)
R1 ElbyCDIO; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [42616 2017-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG)
R2 hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [350552 2015-09-24] (SafeNet, Inc. -> )
S4 IObitUnlocker; \??\C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [41536 2022-08-17] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [235624 2026-09-07] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2026-09-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [246376 2026-09-05] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2020-11-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [428264 2020-11-02] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [69864 2020-11-02] (Microsoft Windows -> Microsoft Corporation)
==================== SvcHost (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-09-14 20:57 - 2026-09-14 20:57 - 000030617 _____ C:\Users\WinCan\Desktop\FRST.txt
2026-09-14 20:56 - 2026-09-14 20:56 - 000000000 ____D C:\Users\WinCan\Desktop\FRST-OlderVersion
2026-09-12 12:24 - 2026-09-12 12:24 - 000033768 _____ C:\Users\WinCan\Desktop\kvrt.7z
2026-09-11 19:30 - 2026-09-11 19:30 - 120297344 _____ (AO Kaspersky Lab) C:\Users\WinCan\Desktop\KVRT.exe
2026-09-07 19:13 - 2026-09-07 19:13 - 057449955 _____ (KLCP ) C:\Users\WinCan\Desktop\K-Lite_Codec_Pack_1995_Full.exe
2026-09-06 11:39 - 2026-09-06 11:39 - 009630992 _____ (Malwarebytes) C:\Users\WinCan\Desktop\AdwCleaner.exe
2026-09-06 10:36 - 2026-09-06 10:36 - 000000000 ____D C:\Users\WinCan\AppData\LocalLow\Temp
2026-09-06 10:21 - 2026-09-14 20:49 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-09-06 10:17 - 2026-09-07 19:05 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-09-05 13:48 - 2026-09-05 13:48 - 000002167 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 7.lnk
2026-09-05 13:48 - 2026-09-05 13:48 - 000002155 _____ C:\Users\Public\Desktop\CCleaner 7.lnk
2026-09-05 13:48 - 2026-09-05 13:48 - 000000000 ____D C:\WINDOWS\system32\Tasks\Piriform
2026-09-05 13:48 - 2026-09-05 13:48 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\CCleaner
2026-09-05 13:48 - 2026-09-05 13:48 - 000000000 ____D C:\ProgramData\Piriform
2026-09-05 13:48 - 2026-09-05 13:48 - 000000000 ____D C:\Program Files\Piriform
2026-09-05 13:48 - 2026-09-05 13:48 - 000000000 ____D C:\Program Files\Common Files\Piriform
2026-09-05 13:47 - 2026-09-05 13:47 - 001749200 _____ (Gen Digital Inc.) C:\Users\WinCan\Desktop\ccsetup_online_setup.exe
2026-09-05 12:25 - 2026-09-14 20:55 - 000000000 ____D C:\Users\WinCan\AppData\Local\Malwarebytes
2026-09-05 12:25 - 2026-09-05 12:25 - 000002104 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2026-09-05 12:25 - 2026-09-05 12:25 - 000002092 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2026-09-05 12:24 - 2026-09-05 12:24 - 000000000 ____D C:\ProgramData\Malwarebytes
2026-09-05 12:24 - 2026-09-05 12:24 - 000000000 ____D C:\Program Files\Malwarebytes
2026-09-05 12:15 - 2026-09-05 12:15 - 000000000 ____D C:\Users\WinCan\AppData\Local\Sentry
2026-09-05 09:38 - 2026-09-14 20:56 - 002455552 _____ (Farbar) C:\Users\WinCan\Desktop\FRST64.exe
2026-08-30 21:37 - 2026-08-30 21:37 - 000012155 _____ C:\Users\WinCan\Downloads\[SkT]Neuteces___It_Follows_(2014)(CZ)[WebRip]_=_CSFD_60_.torrent
2026-08-30 21:34 - 2026-08-30 21:34 - 000088310 _____ C:\Users\WinCan\Downloads\[SkT]Stáhni_mě_do_pekla___Drag_Me_to_Hell_(2009)(CZ_EN)[2160p][HDR10_DV][HEVC]_=_CSFD_67_.torrent
2026-08-30 21:21 - 2026-08-30 21:21 - 000021656 _____ C:\Users\WinCan\Downloads\[SkT]Spider-Man__Zbrusu_nový_den___Spider-Man__Brand_New_Day_(2026)(CZ)[1080p][CAM]_=_CSFD_83_.torrent
2026-08-30 21:09 - 2026-08-30 21:09 - 000019419 _____ C:\Users\WinCan\Downloads\[SkT]Interstellar_(2014)(CZ_EN)[2160p][HDR_DV][HEVC]_=_CSFD_85_.torrent
2026-08-30 21:06 - 2026-08-30 21:06 - 000019984 _____ C:\Users\WinCan\Downloads\[SkT]Sirat___Sirāt_(2025)(CZ_ES)[WEB-DL][1080p]_=_CSFD_74_.torrent
2026-08-30 21:03 - 2026-08-30 21:03 - 000097068 _____ C:\Users\WinCan\Downloads\[SkT]Interstellar_(2014)_BDRip.CZ.EN.1080p_=_CSFD_85_.torrent
2026-08-24 16:22 - 2026-08-24 16:22 - 000024967 _____ C:\Users\WinCan\Downloads\[SkT]Posedlost___Obsession_(2026)(CZ_EN)[1080p]_=_CSFD_82_.torrent
2026-08-24 16:22 - 2026-08-24 16:22 - 000021136 _____ C:\Users\WinCan\Downloads\[SkT]Toy_Story_5__Příběh_hraček_(2026)(CZ_SK_EN)[1080p]_=_CSFD_81_.torrent
2026-08-24 16:20 - 2026-08-24 16:20 - 000022245 _____ C:\Users\WinCan\Downloads\[SkT]Den_odhalení___Disclosure_Day_(2026)(CZ_EN)[1080p]_=_CSFD_61_.torrent
2026-08-24 15:31 - 2026-09-06 10:41 - 000002148 _____ C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-09-14 20:57 - 2023-07-18 18:13 - 000000000 ____D C:\FRST
2026-09-14 20:54 - 2020-11-16 11:43 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-09-14 20:54 - 2020-11-16 11:38 - 000008192 ___SH C:\DumpStack.log.tmp
2026-09-14 20:54 - 2020-11-02 20:17 - 000000000 ____D C:\ProgramData\Avast Software
2026-09-14 20:54 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-09-14 20:54 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-09-14 20:54 - 2019-07-26 08:35 - 000000000 __SHD C:\Users\WinCan\IntelGraphicsProfiles
2026-09-14 20:54 - 2019-07-26 08:35 - 000000000 ____D C:\Intel
2026-09-14 20:51 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2026-09-14 20:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-09-14 20:49 - 2020-11-16 11:43 - 002575330 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-09-14 20:49 - 2020-11-16 11:01 - 000732278 _____ C:\WINDOWS\system32\perfh007.dat
2026-09-14 20:49 - 2020-11-16 11:01 - 000149678 _____ C:\WINDOWS\system32\perfc007.dat
2026-09-14 20:49 - 2019-12-07 16:43 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2026-09-14 20:49 - 2019-12-07 16:43 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2026-09-14 20:49 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2026-09-14 20:48 - 2023-01-17 16:59 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-09-14 20:48 - 2020-06-18 11:09 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-09-14 20:47 - 2025-02-17 06:54 - 000003578 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-14 20:47 - 2023-07-15 12:33 - 000002397 _____ C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-09-14 20:47 - 2022-07-07 16:16 - 000003904 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001UA
2026-09-14 20:47 - 2022-07-07 16:16 - 000003894 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001Core
2026-09-14 20:47 - 2021-12-12 20:55 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-14 20:47 - 2020-11-16 11:43 - 000003370 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-12 14:37 - 2020-11-16 11:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-09-12 12:29 - 2019-09-06 12:37 - 000000000 ____D C:\Users\WinCan\AppData\Local\D3DSCache
2026-09-12 12:16 - 2023-07-22 10:52 - 000000000 ____D C:\KVRT2020_Data
2026-09-12 12:12 - 2023-06-25 10:41 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\MPC-HC
2026-09-11 20:07 - 2022-10-12 15:15 - 000002157 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-09-11 20:07 - 2022-10-12 15:15 - 000002072 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2026-09-11 20:07 - 2020-11-16 11:43 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2026-09-11 19:36 - 2021-06-06 12:13 - 000000000 ____D C:\Users\WinCan\AppData\Local\Avast Software
2026-09-08 19:20 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-09-08 19:20 - 2019-07-26 08:38 - 230964456 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-09-08 19:20 - 2019-07-26 08:38 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-09-08 19:14 - 2019-11-14 14:06 - 000000424 _____ C:\WINDOWS\Tasks\Teamviewer-QS-updater-4ddf6hs.job
2026-09-08 19:14 - 2019-09-30 11:48 - 000000422 _____ C:\WINDOWS\Tasks\update-sys.job
2026-09-08 19:14 - 2019-09-30 11:48 - 000000422 _____ C:\WINDOWS\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001.job
2026-09-07 19:25 - 2025-02-18 18:57 - 000002442 _____ C:\WINDOWS\system32\Tasks\PinnacleStudio24Notifier
2026-09-07 19:25 - 2024-04-21 19:43 - 000002702 _____ C:\WINDOWS\system32\Tasks\GarminUpdaterTask
2026-09-07 19:25 - 2023-06-25 10:29 - 000003024 _____ C:\WINDOWS\system32\Tasks\klcp_update
2026-09-07 19:25 - 2023-06-05 18:52 - 000002424 _____ C:\WINDOWS\system32\Tasks\DYYHXHYNDOFXWVHK_run
2026-09-07 19:25 - 2022-10-01 08:52 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2026-09-07 19:25 - 2020-11-16 11:43 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-09-07 19:25 - 2020-11-16 11:43 - 000003340 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-09-07 19:25 - 2020-11-16 11:43 - 000003220 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2026-09-07 19:25 - 2020-11-16 11:43 - 000003058 _____ C:\WINDOWS\system32\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-07 19:25 - 2020-11-16 11:43 - 000002930 _____ C:\WINDOWS\system32\Tasks\Teamviewer-QS-updater-4ddf6hs
2026-09-07 19:25 - 2020-11-16 11:43 - 000002802 _____ C:\WINDOWS\system32\Tasks\update-sys
2026-09-07 19:25 - 2020-11-16 11:43 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2026-09-07 19:05 - 2019-07-26 10:50 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-09-06 11:43 - 2026-05-16 10:07 - 000001320 _____ C:\Users\WinCan\Desktop\Emilka Holubová - Montezumův poklad.lnk
2026-09-06 11:43 - 2024-11-30 12:46 - 000002463 _____ C:\Users\WinCan\Desktop\HappyFoto smart moments.lnk
2026-09-06 11:43 - 2024-05-12 20:07 - 000001382 _____ C:\Users\WinCan\Desktop\SimCity.lnk
2026-09-06 11:43 - 2023-05-08 09:45 - 000001203 _____ C:\Users\WinCan\Desktop\Photodex ProShow Producer.lnk
2026-09-06 11:43 - 2023-01-05 19:55 - 000002120 _____ C:\Users\WinCan\Desktop\Pepakura Designer 5.lnk
2026-09-06 11:43 - 2022-04-08 20:03 - 000001107 _____ C:\Users\WinCan\Desktop\Adobe Photoshop 2020.lnk
2026-09-06 11:43 - 2022-04-07 19:15 - 000001880 _____ C:\Users\WinCan\Desktop\ZPS 19 CZ.lnk
2026-09-06 11:43 - 2021-12-02 19:17 - 000001238 _____ C:\Users\WinCan\Desktop\ABCgames Cheater.lnk
2026-09-06 11:43 - 2020-11-12 09:19 - 000001356 _____ C:\Users\WinCan\Desktop\Need for Speed Underground 2.lnk
2026-09-06 11:43 - 2019-11-05 14:27 - 000001024 _____ C:\Users\WinCan\Desktop\aviedimux.lnk
2026-09-06 10:41 - 2021-10-09 16:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2026-09-06 10:41 - 2019-07-26 10:50 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-09-06 10:24 - 2020-11-16 11:16 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\Microsoft\Windows
2026-09-06 10:20 - 2019-12-07 11:14 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows
2026-09-05 14:10 - 2020-11-16 11:16 - 000000000 ____D C:\Users\WinCan
2026-09-05 13:50 - 2026-06-01 06:12 - 000000000 ____D C:\WINDOWS\Minidump
2026-09-05 13:50 - 2022-02-21 20:02 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2026-09-05 13:50 - 2020-11-10 13:26 - 000000000 ____D C:\Users\WinCan\AppData\Local\CrashDumps
2026-09-05 13:47 - 2026-01-25 11:55 - 000000000 ____D C:\Program Files\FormatFactory5.21.0.0
2026-09-05 12:24 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2026-09-05 10:24 - 2019-09-18 10:33 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\Microsoft\Word
2026-09-05 09:28 - 2020-11-02 20:18 - 000857696 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2026-09-01 20:55 - 2023-07-23 11:21 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\qBittorrent
2026-08-30 21:26 - 2019-07-26 10:57 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\vlc
==================== Files in the root of some directories ========
2019-07-26 11:17 - 2019-07-26 11:17 - 001389056 _____ (Indigo Rose Corporation) C:\Program Files (x86)\uninstallWinCanVX.exe
2023-06-25 09:42 - 2025-05-31 10:07 - 000001224 _____ () C:\Users\WinCan\AppData\Roaming\DESKTOP-Q0QN2E9.MTBF.txt
2023-06-25 09:42 - 2025-05-31 14:23 - 000005632 _____ () C:\Users\WinCan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2025-11-22 16:40 - 2025-11-22 16:41 - 000095816 _____ () C:\Users\WinCan\AppData\Local\dxdiag.log
2019-09-30 11:48 - 2019-09-30 11:48 - 000000003 _____ () C:\Users\WinCan\AppData\Local\updater.log
2019-09-30 11:48 - 2026-01-18 11:24 - 000000059 _____ () C:\Users\WinCan\AppData\Local\UserProducts.xml
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Re: Prosím om preventivku, avast furt něco hlásí
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-09-2026
Ran by WinCan (14-09-2026 20:57:55)
Running from C:\Users\WinCan\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) (2020-11-16 09:43:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3710502255-1612003614-3486849990-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-3710502255-1612003614-3486849990-503 - Limited - Disabled)
Guest (S-1-5-21-3710502255-1612003614-3486849990-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3710502255-1612003614-3486849990-504 - Limited - Disabled)
WinCan (S-1-5-21-3710502255-1612003614-3486849990-1001 - Administrators - Enabled) => C:\Users\WinCan
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Malwarebytes (Disabled - Up to date) {A537353A-1D6A-F6B5-9153-CE1CF80FBE66}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Disabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: Avast Antivirus (Disabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 26.00 (x64) (HKLM\...\7-Zip) (Version: 26.00 - Igor Pavlov)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 26.002.21901 - Adobe)
Adobe Photoshop 2020 (HKLM-x32\...\PHSP_21_0_1) (Version: 21.0.1 - Adobe Systems Incorporated)
Adobe Reader 6.0 CE (HKLM-x32\...\{AC76BA86-7AD7-1029-7646-CE0000000001}) (Version: 6.0 - Adobe Systems Incorporated)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601180}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
ANT Drivers Installer x64 (HKLM\...\{D2B4737B-0A1E-4C5B-AEB9-49A2BBD336ED}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Asian Language And Spelling Dictionaries Support For Adobe Acrobat Reader (HKLM\...\{AC76BA86-7AD7-0000-0000-BC16014E7500}) (Version: 22.001.20085 - Adobe Systems Incorporated)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.15 - tippach engineering)
Audacity 3.2.1 (HKLM\...\Audacity_is1) (Version: 3.2.1 - Audacity Team)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 26.7.11086.3745 - Gen Digital Inc.)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1579.3 - AVAST Software) Hidden
Avidemux VC++ 64bits (HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\{1ae8e4e5-b412-4a2c-97a5-a5600de76af7}) (Version: 2.7.5 - Mean)
AviSynth 2.5 (HKLM-x32\...\AviSynth) (Version: - )
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (HKLM\...\98157A226B40B173301B0F53C8E98C47805D5152) (Version: 04/19/2012 2.3.1.0 - Garmin)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: 4.7.0 - Canon Inc.)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.3.1.4 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.3.0 - Canon Inc.)
Canon MG3000 series Elektronická příručka (HKLM-x32\...\Canon MG3000 series Elektronická příručka) (Version: 1.3.0 - Canon Inc.)
Canon MG3000 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3000_series) (Version: 1.03 - Canon Inc.)
Canon MX920 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX920_series) (Version: 1.01 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.6.4 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.6.0 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.)
Canon Nástroj pro rychlou volbu (HKLM-x32\...\Speed Dial Utility) (Version: 1.6.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.8.5 - Canon Inc.)
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.11.1509.1940 - Piriform)
Dazzle Video Capture DVC100 X64 Driver 1.09 (HKLM-x32\...\{FB4B9EB9-68B2-4C42-8C38-B65F8FE5A5CA}) (Version: 1.09.0000 - Pinnacle)
DazzleBDAX64 (HKLM-x32\...\{F28AD4BC-AE49-4735-9E50-64212BD2083B}) (Version: 1.05.0000 - Corel)
D-Link DWA-131 - V5.04b03 (HKLM-x32\...\{B7C11488-750D-4E48-A9A4-7207A335984D}) (Version: 5.00.0000 - D-Link)
Elevated Installer (HKLM-x32\...\{5D30B228-8185-473A-A710-59B503D0E631}) (Version: 7.20.3.0 - Garmin Ltd or its subsidiaries) Hidden
Emilka Holubová - Montezumův poklad (HKLM-x32\...\Emilka Holubová - Montezumův poklad) (Version: - )
Format Factory (HKLM\...\{78C04871-9AE4-4FBF-B0B1-FF4C3D7CE509}) (Version: 5.21.0.0 - Free Time)
Garmin Express (HKLM-x32\...\{c6571d14-572e-41c8-ba10-46a74d5d0e01}) (Version: 7.20.3.0 - Garmin Ltd or its subsidiaries)
Garmin Express (HKLM-x32\...\{E57F5608-BBB3-4623-8062-86BA4081C0ED}) (Version: 7.20.3.0 - Garmin Ltd or its subsidiaries) Hidden
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.13 - Google LLC) Hidden
HappyFoto smart moments 1.21.2 (HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\6bd89b96-088f-5cd6-b726-d60a7bac81f7) (Version: 1.21.2 - )
HD Video Converter Factory 16.0 (HKLM-x32\...\HD Video Converter Factory) (Version: 16.0 - WonderFox Soft, Inc.)
Heroes of Might and Magic 3 Complete (HKLM-x32\...\1207658787_is1) (Version: 4.0 - GOG.com)
Heroes of Might and Magic® III: Horn of the Abyss (HKLM-x32\...\HotA + HD_is1) (Version: 1.8.0 - HotA Crew)
HoMM III Compatibility Database (HKLM\...\{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb) (Version: - )
HP Dropbox Plugin (HKLM-x32\...\{1E18E86D-632C-48B5-962C-B60C2E53A478}) (Version: 36.0.41.58587 - HP)
HP Google Drive Plugin (HKLM-x32\...\{039DDA62-50CC-4E7F-9D54-7CF032A2D362}) (Version: 36.0.41.58587 - HP)
HP OfficeJet 200 Mobile Series Hilfe (HKLM-x32\...\{56622DE2-3A79-4B0D-9EA5-0E1F2468AA5E}) (Version: 38.0.0 - HP)
HWiNFO64 Version 6.32 (HKLM\...\HWiNFO64_is1) (Version: 6.32 - Martin Malik - REALiX)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.6912 - Intel Corporation)
IObit Unlocker (HKLM-x32\...\IObit Unlocker_is1) (Version: 1.3.0.11 - IObit)
JamManagerXT version 2.0 (HKLM-x32\...\{777248DB-00AD-4567-9382-E991118BC6CC}_is1) (Version: 2.0 - Harman International, Inc.)
Java 8 Update 401 (64-bit) (HKLM\...\{71024AE4-039E-4CA4-87B4-2F64180401F0}) (Version: 8.0.4010.10 - Oracle Corporation)
K-Lite Mega Codec Pack 17.6.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 17.6.0 - KLCP)
Malwarebytes version 5.6.5.306 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.6.5.306 - Malwarebytes)
Microsoft .NET Host - 6.0.13 (x86) (HKLM-x32\...\{41E9A2CE-CF7F-4F2E-80FD-50FDCBB8F286}) (Version: 48.55.52137 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.13 (x86) (HKLM-x32\...\{A0047888-886B-41B9-8080-0E8DC3539B81}) (Version: 48.55.52137 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.13 (x86) (HKLM-x32\...\{87EA745D-32DA-4DCA-9ED4-BF4BA6232E1E}) (Version: 48.55.52137 - Microsoft Corporation) Hidden
Microsoft Access MUI (Czech) 2013 (HKLM-x32\...\{90150000-0015-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 153.0.4234.32 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 153.0.4234.32 - Microsoft Corporation) Hidden
Microsoft Excel MUI (Czech) 2013 (HKLM-x32\...\{90150000-0016-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Groove MUI (Czech) 2013 (HKLM-x32\...\{90150000-00BA-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2013 (HKLM-x32\...\{90150000-0044-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Czech) 2013 (HKLM-x32\...\{90150000-012B-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM-x32\...\{90150000-001F-0407-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2013 (HKLM-x32\...\{90150000-00E1-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2013 (HKLM-x32\...\{90150000-00E2-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2019 - cs-cz (HKLM\...\Proplus2019Retail - cs-cz) (Version: 16.0.11126.20188 - Microsoft Corporation)
Microsoft Office Proofing (Czech) 2013 (HKLM-x32\...\{90150000-002C-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM-x32\...\{90150000-001F-0409-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2013 (HKLM-x32\...\{90150000-006E-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 18.151.0729.0013 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\OneDriveSetup.exe) (Version: 26.158.0816.0003 - Microsoft Corporation)
Microsoft OneNote MUI (Czech) 2013 (HKLM-x32\...\{90150000-00A1-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2013 (HKLM-x32\...\{90150000-001A-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2013 (HKLM-x32\...\{90150000-0018-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2013 (HKLM-x32\...\{90150000-0019-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft SharePoint Designer MUI (Czech) 2013 (HKLM-x32\...\{90150000-0017-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 (HKLM-x32\...\{7DAD0258-515C-3DD4-8964-BD714199E0F7}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 (HKLM-x32\...\{E30D8B21-D82D-3211-82CC-0F0A5D1495E8}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35208 (HKLM-x32\...\{9387bec2-2f2b-48d1-a0ce-692c5df7042d}) (Version: 14.44.35208.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.32.31332 (HKLM-x32\...\{a98dc6ff-d360-4878-9f0a-915eba86eaf3}) (Version: 14.32.31332.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35208 (HKLM\...\{7E35F76C-5801-4A4A-817C-66AF46D3E5AD}) (Version: 14.44.35208 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35208 (HKLM\...\{130A991B-6E86-4D62-86F4-656E6C9DA867}) (Version: 14.44.35208 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.32.31332 (HKLM-x32\...\{8972AC25-452E-4FFE-945A-EB9E28C20322}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31332 (HKLM-x32\...\{AEAA18F7-9C96-4A43-BC07-8B88A4913EEB}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.13 (x86) (HKLM-x32\...\{ACFA81A9-FD2F-4731-BE64-9163E3E9FF58}) (Version: 48.55.53270 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.13 (x86) (HKLM-x32\...\{d0da1241-5784-4a15-98a5-cf37e3f102e6}) (Version: 6.0.13.32001 - Microsoft Corporation)
Microsoft Word MUI (Czech) 2013 (HKLM-x32\...\{90150000-001B-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft X MUI (Czech) 2013 (HKLM-x32\...\{90150000-0101-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox) (Version: 155.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.0.1 - Mozilla)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM-x32\...\{90150000-001F-0405-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM-x32\...\{90150000-001F-041B-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Need for Speed Underground 2 (HKLM-x32\...\Need for Speed Underground 2) (Version: - )
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 8.4.6 - Notepad++ Team)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.11126.20188 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11126.20188 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.11126.20188 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Pepakura Designer 5 (HKLM\...\pepakura_designer5) (Version: - TamaSoftware Ltd.)
Photodex Presenter (HKLM-x32\...\Photodex Presenter) (Version: - Photodex Corporation)
Pinnacle Studio 24 (HKLM\...\{0F0E21A5-6F97-4AA7-B69A-E4F9D7AFBD29}) (Version: 24.0.1.183 - Corel Corporation)
Prince Of Persia (HKLM-x32\...\{F3B0AC10-3636-4166-81CF-86CD7A8B0123}) (Version: 1.0 - Ubisoft)
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.1.0 - The qBittorrent project)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.053.1001.2021 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8666 - Realtek Semiconductor Corp.)
Registrace uživatele zařízení Canon MG3000 series (HKLM-x32\...\Registrace uživatele zařízení Canon MG3000 series) (Version: - Canon Inc.)
Revo Uninstaller 2.6.8 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.6.8 - VS Revo Group, Ltd.)
SimCity (HKLM-x32\...\SimCity_R.G. Mechanics_is1) (Version: - R.G. Mechanics, markfiter)
Sothink Movie DVD Maker (HKLM-x32\...\{4F94119D-1B71-400e-9F04-B4E5CEAE71F8}_is1) (Version: 3.7 - SourceTec Software Co., LTD)
StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment)
TLauncher (HKLM-x32\...\TLauncher) (Version: 2.9307 - TLauncher Inc.)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
Utajený svět umění 1.0 (HKLM-x32\...\{Utajený svět umění}_is1) (Version: - Špidla Data Processing, s.r.o.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.20 - VideoLAN)
WD SmartWare (HKLM\...\{604CB4FC-3D32-405F-A109-165F170529B6}) (Version: 1.2.0.20 - Western Digital)
Windows Driver Package - Digitech (usbser) Ports (04/24/2009 1.1.2600.0) (HKLM\...\9A5D99BED6F7F105B74795DCF16F3088223BEFBB) (Version: 04/24/2009 1.1.2600.0 - Digitech)
Windows-Treiberpaket - VITEC Multimedia (VMx) MEDIA (02/25/2015 4.0.3.0) (HKLM\...\212DF3ED83CD24D2A506FCE7EA5B32305933B000) (Version: 02/25/2015 4.0.3.0 - VITEC Multimedia)
WinRAR 6.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.11.0 - win.rar GmbH)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)
ZPS 19 CZ (HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\{E83AA227-7862-F115-2E87-46DCA9E3D879}) (Version: v.19.2004.2.262 - 18.08.2020 - libbi)
Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2026-09-11] ()
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_5.5.2.0_x64__kgqvnymyfvs32 [2026-08-07] (king.com)
DTS Headphone:X v1 -> C:\Program Files\WindowsApps\DTSInc.DTSHeadphoneXv1_1.2.4.0_x64__t5j2fzbtdg37r [2019-07-26] (DTS, Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_166.1.1185.0_x64__v10z8vjag6ke6 [2026-08-20] (HP Inc.)
Intel® Graphics Control Panel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsControlPanel_3.3.0.0_x64__8j3eq9eme6ctt [2026-04-23] (INTEL CORP)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-07-26] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-07-26] (Microsoft Corporation) [MS Ad]
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2026-03-02] (INTEL CORP) [Startup Task]
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.2.175.0_x64__dt26b99r8h8gj [2019-07-26] (Realtek Semiconductor Corp)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2635.100.0_x64__cv1g1gvanyjgm [2026-09-14] (WhatsApp Inc.) [Startup Task]
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{03B29243-35DA-4858-920E-B70A007DF5AA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.217.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{0982FB18-B2DC-43DF-9DA3-A54C41F699EA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.233.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{1108FD1C-492F-4251-B9DB-77F0274267B2}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{22D49062-B8D3-4DD5-B9C2-A044EA04D5CD}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.223.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2ABD6384-2E18-40E8-8439-F06D21E0B03D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.43\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2E1C6470-986B-46B5-B238-4B0AA6D46629}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.257.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2EF7E390-2F7C-4F9A-9B7D-4A87B56B711D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.51\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2FDB3305-19B8-4FE2-972B-ED5E97CBBD6E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{38971E90-14FD-44F6-AA45-1447B653F873}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.45\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{4FFB4BD8-A109-4F25-A4DB-313678B19417}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5DAC192F-A8F1-4D44-8DCD-959914949B87}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.269.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5E9DEE2B-5F44-4C87-84B8-D2E7B11D7017}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.229.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5EA43877-C6D8-4885-B77A-C0BB27E94372}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.269.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5FC44EBC-3A1F-4FBB-85E5-34405788C8D7}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.41\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{608D599A-DCA6-4A7C-BED7-AFCD8465345A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.175.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{64C6EFB9-8F79-4106-B975-067448DC768F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.177.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{674CB023-C9D4-4286-B1FF-A1FF76AD4B27}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.227.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{682D84E1-25A0-4741-9EA9-E57BA894B8C3}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.251.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A012BDE-3690-4747-9C3E-5E4FC354304A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.241.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6DD6748E-7DAE-47EF-B4D5-03AA1B06D697}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{72726D01-426C-4B35-8266-B4496CAA889E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.183.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{78C1ADF4-6DAE-4164-AEFA-4E3EAD9E750A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.19\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{7C9A348D-C321-47AC-904F-150312A5430F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.175.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{81093D63-7825-417B-BFC8-ADC63FA4E53D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.269.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{83F21C4B-8643-4A08-A29A-822AFD835037}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.193.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{88B20FC8-EBD6-4181-B5F6-50F45BFF722E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.167.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{8DC94452-5748-435A-B24F-B0F57718821E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.225.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{997809F3-33FD-4FD6-A2ED-CEF50F3263B1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.169.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A087E49F-1F8E-4603-A200-55537B737421}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.25\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{ABF66F82-B04C-4FE4-8272-661539463FE1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.171.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{AE1542A7-3989-481B-93A9-1500C5F56B14}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B12A60CF-E572-4314-8F54-4E96C6660780}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.237.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B258532D-3529-4BEB-BF38-F08F98B3968C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B29F5F83-90DF-479A-BDE7-8A9F4412E394}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.171.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B314A279-F12F-4B54-A0AC-148FA68207CF}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.241.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BC4C72EF-3055-4A6D-86E1-AE4D24DB63CA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.35\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BCF99248-58CE-4562-B227-14D1E171B49D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.221.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.61\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D513E9C8-03B8-41AC-AA64-ABA87305A70F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.265.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D610770A-6AE5-45D7-8ECD-4D130A66EF51}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.251.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D6EDECA7-CB7A-485F-A3FF-FCA4DFEC563C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.263.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{DAA7499A-B3AC-4419-A89B-124318504051}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E3D57E77-FE71-4D06-BD34-D48820074909}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.181.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E76F97B1-1AE9-497C-9FA4-F57BBABAD54A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.17\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1658933-2997-4DDB-869C-061D53A9718E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1CBF5EB-347F-4E4C-90AC-E43339FC34EC}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.55\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F583F9E9-8B95-4D88-BC72-AE190E9B71F9}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.239.19\psuser_64.dll => No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2026-02-12] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2026-06-08] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2019-06-16] (Notepad++ -> )
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2020-10-10] (IObit Information Technology -> IObit Information Technology)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-09-05] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2026-02-12] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [ImagePreview] -> {02A62A55-544C-42CD-8EE0-F364E8338D3D} => -> No File
ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2020-10-10] (IObit Information Technology -> IObit Information Technology)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2026-02-12] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [ImagePreview] -> {02A62A55-544C-42CD-8EE0-F364E8338D3D} => -> No File
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-09-05] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2020-10-10] (IObit Information Technology -> IObit Information Technology)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\system32\x264vfw64.dll [3799552 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\system32\lagarith.dll [148992 2011-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\system32\xvidvfw.dll [310784 2019-12-28] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\system32\ac3acm.acm [180736 2012-07-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [vidc.mjpg] => pvmjpgx40.dll
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\SysWOW64\x264vfw.dll [3850240 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\SysWOW64\lagarith.dll [216064 2011-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [284160 2019-12-28] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [122880 2012-07-21] (fccHandler) [File not signed]
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Drivers32: [vidc.iv50] => C:\Windows\SysWOW64\ir50_32.dll [9216 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2025-09-29 23:10 - 2025-09-29 23:10 - 000030720 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2026-03-22 11:46 - 2026-02-12 12:00 - 000101888 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2009-06-16 09:58 - 2009-06-16 09:58 - 000028672 _____ (Memeo) [File not signed] [File is in use] C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\MemeoRemoteCore.dll
2009-07-12 00:14 - 2009-07-12 00:14 - 001655296 _____ (Microsoft Corporation) [File not signed] C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL
2020-07-09 08:15 - 2017-07-14 04:13 - 000184832 _____ (Seiko Epson Corporation) [File not signed] C:\WINDOWS\System32\E_YLMBSPE.DLL
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
SearchScopes: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre-1.8\bin\ssv.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
BHO: No Name -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> No File
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre-1.8\bin\jp2ssv.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll [2003-05-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.)
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\localhost -> localhost
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 06:49 - 2026-09-12 12:04 - 000000029 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 94.142.233.120 - 94.142.233.140
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Intel(R) Ethernet Connection (2) I219-V -> e1d.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\ProgramData\CDLAB;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\StartupFolder: => "Dell Display Manager.lnk"
HKLM\...\StartupApproved\StartupFolder: => "WDDMStatus.lnk"
HKLM\...\StartupApproved\StartupFolder: => "WDSmartWare.lnk"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "DriverUpdUI.exe"
HKLM\...\StartupApproved\Run32: => "CanonQuickMenu"
HKLM\...\StartupApproved\Run32: => "EEventManager"
HKLM\...\StartupApproved\Run32: => "FUFAXRCV"
HKLM\...\StartupApproved\Run32: => "FUFAXSTM"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "QHSafeTray"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "ut"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_0CA051CF8065D8F1D67A1DD7052AD263"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "Microsoft Edge Update"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_CCCDB6D5B6877A23EE2B9C7196BB003D"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "GarminExpress"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "Adobe Acrobat Synchronizer"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "Battle.net"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{1637CBAA-95D5-4984-AA49-471B9B27E06E}] => (Allow) C:\Program Files (x86)\D-Link\DWA-131 revE\IHV\RTLDHCP.exe (Realtek Semiconductor Corp -> Realtek)
FirewallRules: [{93750F76-E968-4BF2-BBAE-CC84E78FD560}] => (Allow) C:\Program Files (x86)\D-Link\DWA-131 revE\IHV\PortableWiFi.exe (D-Link Corporation -> D-Link Corp.)
FirewallRules: [{A5A30DBE-483B-4C91-BB1B-54D175987DBE}] => (Allow) C:\Program Files (x86)\D-Link\DWA-131 revE\IHV\PortableWiFi.exe (D-Link Corporation -> D-Link Corp.)
FirewallRules: [{76E2D9E5-3612-45C7-90FF-F3EC6C211008}] => (Allow) C:\Program Files (x86)\D-Link\DWA-131 revE\IHV\RTLDHCP.exe (Realtek Semiconductor Corp -> Realtek)
FirewallRules: [{8B45759A-07AB-4EAE-A27E-B52CA32F21AB}] => (Allow) LPort=5357
FirewallRules: [{1D03EF9A-CED5-4E4B-85E3-518CFA64FDDE}] => (Allow) C:\Windows\system32\hasplms.exe (SafeNet, Inc. -> SafeNet Inc.)
FirewallRules: [{A5842179-AA5C-4E3A-A73A-DA40296F55EB}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{45286C8A-3F35-4594-BA4D-476B6589221F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{0D7CE25C-B3F9-4F51-AF16-DCBE8FD530BD}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{6020407F-DA9C-4299-B96C-44B4EFB74FA7}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [TCP Query User{B3F461A3-DC57-4EA0-A936-56807F11DB73}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{8B3DC743-5F97-425F-806A-C690154D2F42}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{357AAC47-911A-4051-A230-833B1243F28C}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{88EC4F5B-26FE-4F26-8B23-5860B8F12AFD}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{EC0EBF4F-9FF7-46C6-976F-E12D209FC7CB}] => (Allow) C:\Program Files (x86)\Ubisoft\Prince of Persia\Prince of Persia.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{1F93CB93-21B8-4276-9F19-FD2918745BD5}] => (Allow) C:\Program Files (x86)\Ubisoft\Prince of Persia\Prince of Persia.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{CFA8364F-2E17-4EC6-AEE0-63A0ABEAF8F8}] => (Allow) C:\Program Files (x86)\Ubisoft\Prince of Persia\PrinceOfPersia_Launcher.exe (Ubisoft) [File not signed]
FirewallRules: [{363D74F5-6010-4C32-B23E-9B275ECC574A}] => (Allow) C:\Program Files (x86)\Ubisoft\Prince of Persia\PrinceOfPersia_Launcher.exe (Ubisoft) [File not signed]
FirewallRules: [{699C5B6C-3EBB-4FAB-A0DC-78D3A63175DE}] => (Allow) C:\Program Files (x86)\R.G. Mechanics\SimCity\SimCity\SimCity.exe (Electronic Arts Inc.) [File not signed]
FirewallRules: [{DCFEDF17-0769-4E30-A2FE-258C01418922}] => (Allow) C:\Program Files (x86)\R.G. Mechanics\SimCity\SimCity\SimCity.exe (Electronic Arts Inc.) [File not signed]
FirewallRules: [{46A4AC5D-90D6-48ED-A1DC-17EA003FA58E}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{F407D8A1-292C-45C7-8651-9B229CD1F526}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{3A2C6DEF-5E53-445B-958D-8C45927329E5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2609.33021.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0A28643E-640C-4DD7-8561-0FD4AACF77AC}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2609.33021.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{21C69F86-C019-4BA5-9858-90DA138C662E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2609.33021.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3D3482D6-62CE-4779-A3BB-525D6BBAF61B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2609.33021.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Restore Points =========================
05-09-2026 12:59:40 Naplánovaný kontrolní bod
08-09-2026 19:19:48 Instalační služba modulů systému Windows
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (09/14/2026 08:54:53 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/14/2026 08:44:41 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/12/2026 12:15:47 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/12/2026 12:02:51 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/12/2026 09:05:40 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/11/2026 09:29:20 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/11/2026 09:28:46 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]
Error: (09/11/2026 07:53:34 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
System errors:
=============
Error: (09/14/2026 08:49:37 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:0801;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME Z370-A II;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 6a6edd797d16c0eb44ab7d933e8613115974ba08db838c07d3789723e16726b5
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (09/12/2026 12:20:43 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:0801;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME Z370-A II;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 6a6edd797d16c0eb44ab7d933e8613115974ba08db838c07d3789723e16726b5
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (09/12/2026 12:07:47 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:0801;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME Z370-A II;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 6a6edd797d16c0eb44ab7d933e8613115974ba08db838c07d3789723e16726b5
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (09/12/2026 12:04:07 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: Při pokusu o načtení souboru místních hostitelů došlo k chybě.
Error: (09/12/2026 10:05:45 AM) (Source: DCOM) (EventID: 10010) (User: OCHMAŇÁCI)
Description: Server {5F7F3F7B-1177-4D4B-B1DB-BC6F671B8F25} se v daném časovém limitu neregistroval u služby DCOM.
Error: (09/12/2026 09:10:36 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:0801;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME Z370-A II;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 6a6edd797d16c0eb44ab7d933e8613115974ba08db838c07d3789723e16726b5
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (09/11/2026 09:34:16 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:0801;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME Z370-A II;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 6a6edd797d16c0eb44ab7d933e8613115974ba08db838c07d3789723e16726b5
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (09/11/2026 09:28:29 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AppX Deployment Service (AppXSVC) neuspěla při spuštění v důsledku následující chyby:
Přístup byl odepřen.
Windows Defender:
================
CodeIntegrity:
===============
Date: 2026-09-14 20:45:39
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Avast Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2026-09-11 19:36:09
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 0801 04/24/2019
Motherboard: ASUSTeK COMPUTER INC. PRIME Z370-A II
Processor: Intel(R) Core(TM) i5-8600K CPU @ 3.60GHz
Percentage of memory in use: 22%
Total physical RAM: 16246.92 MB
Available physical RAM: 12586.93 MB
Total Virtual: 32630.92 MB
Available Virtual: 29294.21 MB
==================== Drives ================================
Disk 0 - Drive c: (SSD1_SYSTEM) (Fixed) (Total:222.49 GB GB) (Free:13.02 GB GB) (Model: INTEL SSDSC2KB240G8) NTFS
Disk 1 - Drive d: (SSD2_DATA) (Fixed) (Total:447.13 GB GB) (Free:57.2 GB GB) (Model: INTEL SSDSC2KB480G8) NTFS
Disk 0 - \\?\Volume{1b2b2591-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.57 GB) (Free:0.13 GB) NTFS
Disk 0 - \\?\Volume{1b2b2591-0000-0000-0000-80c337000000}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS
==================== MBR & Partition Table ====================
============================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.57 GB) (Disk ID: 1B2B2591)
Partitions:
===========
Partition Style : MBR
Partition Count : 4
Disk Signature : 0x1B2B2591
Partition 1
Type : MBR 0x07 (NTFS / exFAT / HPFS)
Size : 579 MB
Offset : 1 MB
Partition GUID : {1B2B2591-0000-0000-0000-100000000000}
Bootable : Yes
Recognized : Yes
Hidden Sectors : 2048
------------------------------------------------------------
Partition 2
Type : MBR 0x07 (NTFS / exFAT / HPFS)
Size : 222.49 GB
Offset : 580 MB
Partition GUID : {1B2B2591-0000-0000-0000-402400000000}
Bootable : No
Recognized : Yes
Hidden Sectors : 1187840
------------------------------------------------------------
Partition 3
Type : MBR 0x27 (Windows Recovery)
Size : 526 MB
Offset : 228408 MB
Partition GUID : {1B2B2591-0000-0000-0000-80C337000000}
Bootable : No
Recognized : Yes
Hidden Sectors : 467779584
------------------------------------------------------------
Partition Entries : 4
Actual Partitions : 3
============================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 447.13 GB) (Disk ID: 9FC5B07B)
Partitions:
===========
Partition Style : MBR
Partition Count : 4
Disk Signature : 0x9FC5B07B
Partition 1
Type : MBR 0x07 (NTFS / exFAT / HPFS)
Size : 447.13 GB
Offset : 1 MB
Partition GUID : {9FC5B07B-0000-0000-0000-100000000000}
Bootable : No
Recognized : Yes
Hidden Sectors : 2048
------------------------------------------------------------
Partition Entries : 4
Actual Partitions : 1
Partitions:
===========
Partition Style : MBR
Partition Count : 1
Disk Signature : 0x00000000
Partition Entries : 1
Actual Partitions : 0
============================================================
==================== End of Addition.txt =======================
Ran by WinCan (14-09-2026 20:57:55)
Running from C:\Users\WinCan\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) (2020-11-16 09:43:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3710502255-1612003614-3486849990-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-3710502255-1612003614-3486849990-503 - Limited - Disabled)
Guest (S-1-5-21-3710502255-1612003614-3486849990-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3710502255-1612003614-3486849990-504 - Limited - Disabled)
WinCan (S-1-5-21-3710502255-1612003614-3486849990-1001 - Administrators - Enabled) => C:\Users\WinCan
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Malwarebytes (Disabled - Up to date) {A537353A-1D6A-F6B5-9153-CE1CF80FBE66}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Disabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: Avast Antivirus (Disabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 26.00 (x64) (HKLM\...\7-Zip) (Version: 26.00 - Igor Pavlov)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 26.002.21901 - Adobe)
Adobe Photoshop 2020 (HKLM-x32\...\PHSP_21_0_1) (Version: 21.0.1 - Adobe Systems Incorporated)
Adobe Reader 6.0 CE (HKLM-x32\...\{AC76BA86-7AD7-1029-7646-CE0000000001}) (Version: 6.0 - Adobe Systems Incorporated)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601180}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
ANT Drivers Installer x64 (HKLM\...\{D2B4737B-0A1E-4C5B-AEB9-49A2BBD336ED}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Asian Language And Spelling Dictionaries Support For Adobe Acrobat Reader (HKLM\...\{AC76BA86-7AD7-0000-0000-BC16014E7500}) (Version: 22.001.20085 - Adobe Systems Incorporated)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.15 - tippach engineering)
Audacity 3.2.1 (HKLM\...\Audacity_is1) (Version: 3.2.1 - Audacity Team)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 26.7.11086.3745 - Gen Digital Inc.)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1579.3 - AVAST Software) Hidden
Avidemux VC++ 64bits (HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\{1ae8e4e5-b412-4a2c-97a5-a5600de76af7}) (Version: 2.7.5 - Mean)
AviSynth 2.5 (HKLM-x32\...\AviSynth) (Version: - )
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (HKLM\...\98157A226B40B173301B0F53C8E98C47805D5152) (Version: 04/19/2012 2.3.1.0 - Garmin)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: 4.7.0 - Canon Inc.)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.3.1.4 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.3.0 - Canon Inc.)
Canon MG3000 series Elektronická příručka (HKLM-x32\...\Canon MG3000 series Elektronická příručka) (Version: 1.3.0 - Canon Inc.)
Canon MG3000 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3000_series) (Version: 1.03 - Canon Inc.)
Canon MX920 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX920_series) (Version: 1.01 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.6.4 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.6.0 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.)
Canon Nástroj pro rychlou volbu (HKLM-x32\...\Speed Dial Utility) (Version: 1.6.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.8.5 - Canon Inc.)
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.11.1509.1940 - Piriform)
Dazzle Video Capture DVC100 X64 Driver 1.09 (HKLM-x32\...\{FB4B9EB9-68B2-4C42-8C38-B65F8FE5A5CA}) (Version: 1.09.0000 - Pinnacle)
DazzleBDAX64 (HKLM-x32\...\{F28AD4BC-AE49-4735-9E50-64212BD2083B}) (Version: 1.05.0000 - Corel)
D-Link DWA-131 - V5.04b03 (HKLM-x32\...\{B7C11488-750D-4E48-A9A4-7207A335984D}) (Version: 5.00.0000 - D-Link)
Elevated Installer (HKLM-x32\...\{5D30B228-8185-473A-A710-59B503D0E631}) (Version: 7.20.3.0 - Garmin Ltd or its subsidiaries) Hidden
Emilka Holubová - Montezumův poklad (HKLM-x32\...\Emilka Holubová - Montezumův poklad) (Version: - )
Format Factory (HKLM\...\{78C04871-9AE4-4FBF-B0B1-FF4C3D7CE509}) (Version: 5.21.0.0 - Free Time)
Garmin Express (HKLM-x32\...\{c6571d14-572e-41c8-ba10-46a74d5d0e01}) (Version: 7.20.3.0 - Garmin Ltd or its subsidiaries)
Garmin Express (HKLM-x32\...\{E57F5608-BBB3-4623-8062-86BA4081C0ED}) (Version: 7.20.3.0 - Garmin Ltd or its subsidiaries) Hidden
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.13 - Google LLC) Hidden
HappyFoto smart moments 1.21.2 (HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\6bd89b96-088f-5cd6-b726-d60a7bac81f7) (Version: 1.21.2 - )
HD Video Converter Factory 16.0 (HKLM-x32\...\HD Video Converter Factory) (Version: 16.0 - WonderFox Soft, Inc.)
Heroes of Might and Magic 3 Complete (HKLM-x32\...\1207658787_is1) (Version: 4.0 - GOG.com)
Heroes of Might and Magic® III: Horn of the Abyss (HKLM-x32\...\HotA + HD_is1) (Version: 1.8.0 - HotA Crew)
HoMM III Compatibility Database (HKLM\...\{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb) (Version: - )
HP Dropbox Plugin (HKLM-x32\...\{1E18E86D-632C-48B5-962C-B60C2E53A478}) (Version: 36.0.41.58587 - HP)
HP Google Drive Plugin (HKLM-x32\...\{039DDA62-50CC-4E7F-9D54-7CF032A2D362}) (Version: 36.0.41.58587 - HP)
HP OfficeJet 200 Mobile Series Hilfe (HKLM-x32\...\{56622DE2-3A79-4B0D-9EA5-0E1F2468AA5E}) (Version: 38.0.0 - HP)
HWiNFO64 Version 6.32 (HKLM\...\HWiNFO64_is1) (Version: 6.32 - Martin Malik - REALiX)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.6912 - Intel Corporation)
IObit Unlocker (HKLM-x32\...\IObit Unlocker_is1) (Version: 1.3.0.11 - IObit)
JamManagerXT version 2.0 (HKLM-x32\...\{777248DB-00AD-4567-9382-E991118BC6CC}_is1) (Version: 2.0 - Harman International, Inc.)
Java 8 Update 401 (64-bit) (HKLM\...\{71024AE4-039E-4CA4-87B4-2F64180401F0}) (Version: 8.0.4010.10 - Oracle Corporation)
K-Lite Mega Codec Pack 17.6.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 17.6.0 - KLCP)
Malwarebytes version 5.6.5.306 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.6.5.306 - Malwarebytes)
Microsoft .NET Host - 6.0.13 (x86) (HKLM-x32\...\{41E9A2CE-CF7F-4F2E-80FD-50FDCBB8F286}) (Version: 48.55.52137 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.13 (x86) (HKLM-x32\...\{A0047888-886B-41B9-8080-0E8DC3539B81}) (Version: 48.55.52137 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.13 (x86) (HKLM-x32\...\{87EA745D-32DA-4DCA-9ED4-BF4BA6232E1E}) (Version: 48.55.52137 - Microsoft Corporation) Hidden
Microsoft Access MUI (Czech) 2013 (HKLM-x32\...\{90150000-0015-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 153.0.4234.32 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 153.0.4234.32 - Microsoft Corporation) Hidden
Microsoft Excel MUI (Czech) 2013 (HKLM-x32\...\{90150000-0016-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Groove MUI (Czech) 2013 (HKLM-x32\...\{90150000-00BA-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2013 (HKLM-x32\...\{90150000-0044-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Czech) 2013 (HKLM-x32\...\{90150000-012B-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM-x32\...\{90150000-001F-0407-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2013 (HKLM-x32\...\{90150000-00E1-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2013 (HKLM-x32\...\{90150000-00E2-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2019 - cs-cz (HKLM\...\Proplus2019Retail - cs-cz) (Version: 16.0.11126.20188 - Microsoft Corporation)
Microsoft Office Proofing (Czech) 2013 (HKLM-x32\...\{90150000-002C-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM-x32\...\{90150000-001F-0409-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2013 (HKLM-x32\...\{90150000-006E-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 18.151.0729.0013 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\OneDriveSetup.exe) (Version: 26.158.0816.0003 - Microsoft Corporation)
Microsoft OneNote MUI (Czech) 2013 (HKLM-x32\...\{90150000-00A1-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2013 (HKLM-x32\...\{90150000-001A-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2013 (HKLM-x32\...\{90150000-0018-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2013 (HKLM-x32\...\{90150000-0019-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft SharePoint Designer MUI (Czech) 2013 (HKLM-x32\...\{90150000-0017-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 (HKLM-x32\...\{7DAD0258-515C-3DD4-8964-BD714199E0F7}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 (HKLM-x32\...\{E30D8B21-D82D-3211-82CC-0F0A5D1495E8}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35208 (HKLM-x32\...\{9387bec2-2f2b-48d1-a0ce-692c5df7042d}) (Version: 14.44.35208.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.32.31332 (HKLM-x32\...\{a98dc6ff-d360-4878-9f0a-915eba86eaf3}) (Version: 14.32.31332.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35208 (HKLM\...\{7E35F76C-5801-4A4A-817C-66AF46D3E5AD}) (Version: 14.44.35208 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35208 (HKLM\...\{130A991B-6E86-4D62-86F4-656E6C9DA867}) (Version: 14.44.35208 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.32.31332 (HKLM-x32\...\{8972AC25-452E-4FFE-945A-EB9E28C20322}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31332 (HKLM-x32\...\{AEAA18F7-9C96-4A43-BC07-8B88A4913EEB}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.13 (x86) (HKLM-x32\...\{ACFA81A9-FD2F-4731-BE64-9163E3E9FF58}) (Version: 48.55.53270 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.13 (x86) (HKLM-x32\...\{d0da1241-5784-4a15-98a5-cf37e3f102e6}) (Version: 6.0.13.32001 - Microsoft Corporation)
Microsoft Word MUI (Czech) 2013 (HKLM-x32\...\{90150000-001B-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft X MUI (Czech) 2013 (HKLM-x32\...\{90150000-0101-0405-0000-0000000FF1CE}) (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox) (Version: 155.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.0.1 - Mozilla)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM-x32\...\{90150000-001F-0405-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM-x32\...\{90150000-001F-041B-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Need for Speed Underground 2 (HKLM-x32\...\Need for Speed Underground 2) (Version: - )
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 8.4.6 - Notepad++ Team)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.11126.20188 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11126.20188 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.11126.20188 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Pepakura Designer 5 (HKLM\...\pepakura_designer5) (Version: - TamaSoftware Ltd.)
Photodex Presenter (HKLM-x32\...\Photodex Presenter) (Version: - Photodex Corporation)
Pinnacle Studio 24 (HKLM\...\{0F0E21A5-6F97-4AA7-B69A-E4F9D7AFBD29}) (Version: 24.0.1.183 - Corel Corporation)
Prince Of Persia (HKLM-x32\...\{F3B0AC10-3636-4166-81CF-86CD7A8B0123}) (Version: 1.0 - Ubisoft)
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.1.0 - The qBittorrent project)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.053.1001.2021 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8666 - Realtek Semiconductor Corp.)
Registrace uživatele zařízení Canon MG3000 series (HKLM-x32\...\Registrace uživatele zařízení Canon MG3000 series) (Version: - Canon Inc.)
Revo Uninstaller 2.6.8 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.6.8 - VS Revo Group, Ltd.)
SimCity (HKLM-x32\...\SimCity_R.G. Mechanics_is1) (Version: - R.G. Mechanics, markfiter)
Sothink Movie DVD Maker (HKLM-x32\...\{4F94119D-1B71-400e-9F04-B4E5CEAE71F8}_is1) (Version: 3.7 - SourceTec Software Co., LTD)
StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment)
TLauncher (HKLM-x32\...\TLauncher) (Version: 2.9307 - TLauncher Inc.)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
Utajený svět umění 1.0 (HKLM-x32\...\{Utajený svět umění}_is1) (Version: - Špidla Data Processing, s.r.o.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.20 - VideoLAN)
WD SmartWare (HKLM\...\{604CB4FC-3D32-405F-A109-165F170529B6}) (Version: 1.2.0.20 - Western Digital)
Windows Driver Package - Digitech (usbser) Ports (04/24/2009 1.1.2600.0) (HKLM\...\9A5D99BED6F7F105B74795DCF16F3088223BEFBB) (Version: 04/24/2009 1.1.2600.0 - Digitech)
Windows-Treiberpaket - VITEC Multimedia (VMx) MEDIA (02/25/2015 4.0.3.0) (HKLM\...\212DF3ED83CD24D2A506FCE7EA5B32305933B000) (Version: 02/25/2015 4.0.3.0 - VITEC Multimedia)
WinRAR 6.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.11.0 - win.rar GmbH)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)
ZPS 19 CZ (HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\{E83AA227-7862-F115-2E87-46DCA9E3D879}) (Version: v.19.2004.2.262 - 18.08.2020 - libbi)
Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2026-09-11] ()
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_5.5.2.0_x64__kgqvnymyfvs32 [2026-08-07] (king.com)
DTS Headphone:X v1 -> C:\Program Files\WindowsApps\DTSInc.DTSHeadphoneXv1_1.2.4.0_x64__t5j2fzbtdg37r [2019-07-26] (DTS, Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_166.1.1185.0_x64__v10z8vjag6ke6 [2026-08-20] (HP Inc.)
Intel® Graphics Control Panel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsControlPanel_3.3.0.0_x64__8j3eq9eme6ctt [2026-04-23] (INTEL CORP)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-07-26] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-07-26] (Microsoft Corporation) [MS Ad]
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2026-03-02] (INTEL CORP) [Startup Task]
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.2.175.0_x64__dt26b99r8h8gj [2019-07-26] (Realtek Semiconductor Corp)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2635.100.0_x64__cv1g1gvanyjgm [2026-09-14] (WhatsApp Inc.) [Startup Task]
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{03B29243-35DA-4858-920E-B70A007DF5AA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.217.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{0982FB18-B2DC-43DF-9DA3-A54C41F699EA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.233.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{1108FD1C-492F-4251-B9DB-77F0274267B2}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{22D49062-B8D3-4DD5-B9C2-A044EA04D5CD}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.223.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2ABD6384-2E18-40E8-8439-F06D21E0B03D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.43\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2E1C6470-986B-46B5-B238-4B0AA6D46629}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.257.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2EF7E390-2F7C-4F9A-9B7D-4A87B56B711D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.51\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2FDB3305-19B8-4FE2-972B-ED5E97CBBD6E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{38971E90-14FD-44F6-AA45-1447B653F873}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.45\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{4FFB4BD8-A109-4F25-A4DB-313678B19417}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5DAC192F-A8F1-4D44-8DCD-959914949B87}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.269.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5E9DEE2B-5F44-4C87-84B8-D2E7B11D7017}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.229.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5EA43877-C6D8-4885-B77A-C0BB27E94372}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.269.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5FC44EBC-3A1F-4FBB-85E5-34405788C8D7}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.41\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{608D599A-DCA6-4A7C-BED7-AFCD8465345A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.175.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{64C6EFB9-8F79-4106-B975-067448DC768F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.177.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{674CB023-C9D4-4286-B1FF-A1FF76AD4B27}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.227.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{682D84E1-25A0-4741-9EA9-E57BA894B8C3}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.251.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A012BDE-3690-4747-9C3E-5E4FC354304A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.241.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6DD6748E-7DAE-47EF-B4D5-03AA1B06D697}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{72726D01-426C-4B35-8266-B4496CAA889E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.183.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{78C1ADF4-6DAE-4164-AEFA-4E3EAD9E750A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.19\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{7C9A348D-C321-47AC-904F-150312A5430F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.175.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{81093D63-7825-417B-BFC8-ADC63FA4E53D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.269.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{83F21C4B-8643-4A08-A29A-822AFD835037}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.193.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{88B20FC8-EBD6-4181-B5F6-50F45BFF722E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.167.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{8DC94452-5748-435A-B24F-B0F57718821E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.225.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{997809F3-33FD-4FD6-A2ED-CEF50F3263B1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.169.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A087E49F-1F8E-4603-A200-55537B737421}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.25\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{ABF66F82-B04C-4FE4-8272-661539463FE1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.171.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{AE1542A7-3989-481B-93A9-1500C5F56B14}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B12A60CF-E572-4314-8F54-4E96C6660780}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.237.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B258532D-3529-4BEB-BF38-F08F98B3968C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B29F5F83-90DF-479A-BDE7-8A9F4412E394}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.171.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B314A279-F12F-4B54-A0AC-148FA68207CF}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.241.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BC4C72EF-3055-4A6D-86E1-AE4D24DB63CA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.35\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BCF99248-58CE-4562-B227-14D1E171B49D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.221.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.61\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D513E9C8-03B8-41AC-AA64-ABA87305A70F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.265.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D610770A-6AE5-45D7-8ECD-4D130A66EF51}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.251.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D6EDECA7-CB7A-485F-A3FF-FCA4DFEC563C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.263.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{DAA7499A-B3AC-4419-A89B-124318504051}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E3D57E77-FE71-4D06-BD34-D48820074909}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.181.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E76F97B1-1AE9-497C-9FA4-F57BBABAD54A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.17\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1658933-2997-4DDB-869C-061D53A9718E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1CBF5EB-347F-4E4C-90AC-E43339FC34EC}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.55\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F583F9E9-8B95-4D88-BC72-AE190E9B71F9}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.239.19\psuser_64.dll => No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2026-02-12] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2026-06-08] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2019-06-16] (Notepad++ -> )
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2020-10-10] (IObit Information Technology -> IObit Information Technology)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-09-05] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2026-02-12] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [ImagePreview] -> {02A62A55-544C-42CD-8EE0-F364E8338D3D} => -> No File
ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2020-10-10] (IObit Information Technology -> IObit Information Technology)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2026-02-12] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [ImagePreview] -> {02A62A55-544C-42CD-8EE0-F364E8338D3D} => -> No File
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-09-05] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2020-10-10] (IObit Information Technology -> IObit Information Technology)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\system32\x264vfw64.dll [3799552 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\system32\lagarith.dll [148992 2011-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\system32\xvidvfw.dll [310784 2019-12-28] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\system32\ac3acm.acm [180736 2012-07-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [vidc.mjpg] => pvmjpgx40.dll
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\SysWOW64\x264vfw.dll [3850240 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\SysWOW64\lagarith.dll [216064 2011-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [284160 2019-12-28] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [122880 2012-07-21] (fccHandler) [File not signed]
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Drivers32: [vidc.iv50] => C:\Windows\SysWOW64\ir50_32.dll [9216 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2025-09-29 23:10 - 2025-09-29 23:10 - 000030720 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2026-03-22 11:46 - 2026-02-12 12:00 - 000101888 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2009-06-16 09:58 - 2009-06-16 09:58 - 000028672 _____ (Memeo) [File not signed] [File is in use] C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\MemeoRemoteCore.dll
2009-07-12 00:14 - 2009-07-12 00:14 - 001655296 _____ (Microsoft Corporation) [File not signed] C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL
2020-07-09 08:15 - 2017-07-14 04:13 - 000184832 _____ (Seiko Epson Corporation) [File not signed] C:\WINDOWS\System32\E_YLMBSPE.DLL
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
SearchScopes: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre-1.8\bin\ssv.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
BHO: No Name -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> No File
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre-1.8\bin\jp2ssv.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll [2003-05-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.)
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\localhost -> localhost
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 06:49 - 2026-09-12 12:04 - 000000029 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 94.142.233.120 - 94.142.233.140
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Intel(R) Ethernet Connection (2) I219-V -> e1d.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\ProgramData\CDLAB;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\StartupFolder: => "Dell Display Manager.lnk"
HKLM\...\StartupApproved\StartupFolder: => "WDDMStatus.lnk"
HKLM\...\StartupApproved\StartupFolder: => "WDSmartWare.lnk"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "DriverUpdUI.exe"
HKLM\...\StartupApproved\Run32: => "CanonQuickMenu"
HKLM\...\StartupApproved\Run32: => "EEventManager"
HKLM\...\StartupApproved\Run32: => "FUFAXRCV"
HKLM\...\StartupApproved\Run32: => "FUFAXSTM"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "QHSafeTray"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "ut"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_0CA051CF8065D8F1D67A1DD7052AD263"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "Microsoft Edge Update"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_CCCDB6D5B6877A23EE2B9C7196BB003D"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "GarminExpress"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "Adobe Acrobat Synchronizer"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\StartupApproved\Run: => "Battle.net"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{1637CBAA-95D5-4984-AA49-471B9B27E06E}] => (Allow) C:\Program Files (x86)\D-Link\DWA-131 revE\IHV\RTLDHCP.exe (Realtek Semiconductor Corp -> Realtek)
FirewallRules: [{93750F76-E968-4BF2-BBAE-CC84E78FD560}] => (Allow) C:\Program Files (x86)\D-Link\DWA-131 revE\IHV\PortableWiFi.exe (D-Link Corporation -> D-Link Corp.)
FirewallRules: [{A5A30DBE-483B-4C91-BB1B-54D175987DBE}] => (Allow) C:\Program Files (x86)\D-Link\DWA-131 revE\IHV\PortableWiFi.exe (D-Link Corporation -> D-Link Corp.)
FirewallRules: [{76E2D9E5-3612-45C7-90FF-F3EC6C211008}] => (Allow) C:\Program Files (x86)\D-Link\DWA-131 revE\IHV\RTLDHCP.exe (Realtek Semiconductor Corp -> Realtek)
FirewallRules: [{8B45759A-07AB-4EAE-A27E-B52CA32F21AB}] => (Allow) LPort=5357
FirewallRules: [{1D03EF9A-CED5-4E4B-85E3-518CFA64FDDE}] => (Allow) C:\Windows\system32\hasplms.exe (SafeNet, Inc. -> SafeNet Inc.)
FirewallRules: [{A5842179-AA5C-4E3A-A73A-DA40296F55EB}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{45286C8A-3F35-4594-BA4D-476B6589221F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{0D7CE25C-B3F9-4F51-AF16-DCBE8FD530BD}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{6020407F-DA9C-4299-B96C-44B4EFB74FA7}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [TCP Query User{B3F461A3-DC57-4EA0-A936-56807F11DB73}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{8B3DC743-5F97-425F-806A-C690154D2F42}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{357AAC47-911A-4051-A230-833B1243F28C}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{88EC4F5B-26FE-4F26-8B23-5860B8F12AFD}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{EC0EBF4F-9FF7-46C6-976F-E12D209FC7CB}] => (Allow) C:\Program Files (x86)\Ubisoft\Prince of Persia\Prince of Persia.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{1F93CB93-21B8-4276-9F19-FD2918745BD5}] => (Allow) C:\Program Files (x86)\Ubisoft\Prince of Persia\Prince of Persia.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{CFA8364F-2E17-4EC6-AEE0-63A0ABEAF8F8}] => (Allow) C:\Program Files (x86)\Ubisoft\Prince of Persia\PrinceOfPersia_Launcher.exe (Ubisoft) [File not signed]
FirewallRules: [{363D74F5-6010-4C32-B23E-9B275ECC574A}] => (Allow) C:\Program Files (x86)\Ubisoft\Prince of Persia\PrinceOfPersia_Launcher.exe (Ubisoft) [File not signed]
FirewallRules: [{699C5B6C-3EBB-4FAB-A0DC-78D3A63175DE}] => (Allow) C:\Program Files (x86)\R.G. Mechanics\SimCity\SimCity\SimCity.exe (Electronic Arts Inc.) [File not signed]
FirewallRules: [{DCFEDF17-0769-4E30-A2FE-258C01418922}] => (Allow) C:\Program Files (x86)\R.G. Mechanics\SimCity\SimCity\SimCity.exe (Electronic Arts Inc.) [File not signed]
FirewallRules: [{46A4AC5D-90D6-48ED-A1DC-17EA003FA58E}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{F407D8A1-292C-45C7-8651-9B229CD1F526}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{3A2C6DEF-5E53-445B-958D-8C45927329E5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2609.33021.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0A28643E-640C-4DD7-8561-0FD4AACF77AC}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2609.33021.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{21C69F86-C019-4BA5-9858-90DA138C662E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2609.33021.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3D3482D6-62CE-4779-A3BB-525D6BBAF61B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2609.33021.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Restore Points =========================
05-09-2026 12:59:40 Naplánovaný kontrolní bod
08-09-2026 19:19:48 Instalační služba modulů systému Windows
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (09/14/2026 08:54:53 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/14/2026 08:44:41 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/12/2026 12:15:47 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/12/2026 12:02:51 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/12/2026 09:05:40 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/11/2026 09:29:20 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/11/2026 09:28:46 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]
Error: (09/11/2026 07:53:34 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\MFC80U.DLL se nezdařilo.
Závislé sestavení Microsoft.VC80.MFCLOC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
System errors:
=============
Error: (09/14/2026 08:49:37 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:0801;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME Z370-A II;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 6a6edd797d16c0eb44ab7d933e8613115974ba08db838c07d3789723e16726b5
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (09/12/2026 12:20:43 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:0801;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME Z370-A II;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 6a6edd797d16c0eb44ab7d933e8613115974ba08db838c07d3789723e16726b5
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (09/12/2026 12:07:47 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:0801;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME Z370-A II;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 6a6edd797d16c0eb44ab7d933e8613115974ba08db838c07d3789723e16726b5
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (09/12/2026 12:04:07 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: Při pokusu o načtení souboru místních hostitelů došlo k chybě.
Error: (09/12/2026 10:05:45 AM) (Source: DCOM) (EventID: 10010) (User: OCHMAŇÁCI)
Description: Server {5F7F3F7B-1177-4D4B-B1DB-BC6F671B8F25} se v daném časovém limitu neregistroval u služby DCOM.
Error: (09/12/2026 09:10:36 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:0801;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME Z370-A II;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 6a6edd797d16c0eb44ab7d933e8613115974ba08db838c07d3789723e16726b5
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (09/11/2026 09:34:16 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:0801;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME Z370-A II;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 6a6edd797d16c0eb44ab7d933e8613115974ba08db838c07d3789723e16726b5
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (09/11/2026 09:28:29 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AppX Deployment Service (AppXSVC) neuspěla při spuštění v důsledku následující chyby:
Přístup byl odepřen.
Windows Defender:
================
CodeIntegrity:
===============
Date: 2026-09-14 20:45:39
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Avast Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2026-09-11 19:36:09
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 0801 04/24/2019
Motherboard: ASUSTeK COMPUTER INC. PRIME Z370-A II
Processor: Intel(R) Core(TM) i5-8600K CPU @ 3.60GHz
Percentage of memory in use: 22%
Total physical RAM: 16246.92 MB
Available physical RAM: 12586.93 MB
Total Virtual: 32630.92 MB
Available Virtual: 29294.21 MB
==================== Drives ================================
Disk 0 - Drive c: (SSD1_SYSTEM) (Fixed) (Total:222.49 GB GB) (Free:13.02 GB GB) (Model: INTEL SSDSC2KB240G8) NTFS
Disk 1 - Drive d: (SSD2_DATA) (Fixed) (Total:447.13 GB GB) (Free:57.2 GB GB) (Model: INTEL SSDSC2KB480G8) NTFS
Disk 0 - \\?\Volume{1b2b2591-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.57 GB) (Free:0.13 GB) NTFS
Disk 0 - \\?\Volume{1b2b2591-0000-0000-0000-80c337000000}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS
==================== MBR & Partition Table ====================
============================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.57 GB) (Disk ID: 1B2B2591)
Partitions:
===========
Partition Style : MBR
Partition Count : 4
Disk Signature : 0x1B2B2591
Partition 1
Type : MBR 0x07 (NTFS / exFAT / HPFS)
Size : 579 MB
Offset : 1 MB
Partition GUID : {1B2B2591-0000-0000-0000-100000000000}
Bootable : Yes
Recognized : Yes
Hidden Sectors : 2048
------------------------------------------------------------
Partition 2
Type : MBR 0x07 (NTFS / exFAT / HPFS)
Size : 222.49 GB
Offset : 580 MB
Partition GUID : {1B2B2591-0000-0000-0000-402400000000}
Bootable : No
Recognized : Yes
Hidden Sectors : 1187840
------------------------------------------------------------
Partition 3
Type : MBR 0x27 (Windows Recovery)
Size : 526 MB
Offset : 228408 MB
Partition GUID : {1B2B2591-0000-0000-0000-80C337000000}
Bootable : No
Recognized : Yes
Hidden Sectors : 467779584
------------------------------------------------------------
Partition Entries : 4
Actual Partitions : 3
============================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 447.13 GB) (Disk ID: 9FC5B07B)
Partitions:
===========
Partition Style : MBR
Partition Count : 4
Disk Signature : 0x9FC5B07B
Partition 1
Type : MBR 0x07 (NTFS / exFAT / HPFS)
Size : 447.13 GB
Offset : 1 MB
Partition GUID : {9FC5B07B-0000-0000-0000-100000000000}
Bootable : No
Recognized : Yes
Hidden Sectors : 2048
------------------------------------------------------------
Partition Entries : 4
Actual Partitions : 1
Partitions:
===========
Partition Style : MBR
Partition Count : 1
Disk Signature : 0x00000000
Partition Entries : 1
Actual Partitions : 0
============================================================
==================== End of Addition.txt =======================
- Přílohy
-
- vypis.7z
- (24.83 KiB) Staženo 4 x
Re: Prosím om preventivku, avast furt něco hlásí
- Znovu spustte FRST.exe/FRST64.exe
- stisknete Ctrl + y (obe klavesy zaroven)
- otevre se fixlist.txt, do nejz vlozte obsah bileho pole nize
- stisknete Ctrl + s (ulozite zmeny), pote fixlist zavrete
- kliknete na tlacitko Fix
- po restartu bude vedle FRST vytvoren fixlog, jehoz obsah vlozte do pristi odpovedi
Kód: Vybrat vše
Start CreateRestorePoint: CloseProcesses: C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK_0.dat HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\MountPoints2: {d88fbe70-226d-11eb-bd8a-0492265a3e51} - "E:\WD SmartWare.exe" autoplay=true C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DYYHXHYNDOFXWVHK.lnk Task: {F8087465-D84E-4D39-8275-6B05B1DF0F33} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (No File) Task: {9358FD62-420A-4437-B963-DBDE25460E9C} - System32\Tasks\DYYHXHYNDOFXWVHK_run => C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe (No File) FF NewTab: Mozilla\Firefox\Profiles\ul0pjuxr.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName= FF NewTab: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName= CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{03B29243-35DA-4858-920E-B70A007DF5AA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.217.3\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{0982FB18-B2DC-43DF-9DA3-A54C41F699EA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.233.3\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{1108FD1C-492F-4251-B9DB-77F0274267B2}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.37\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{22D49062-B8D3-4DD5-B9C2-A044EA04D5CD}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.223.11\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2ABD6384-2E18-40E8-8439-F06D21E0B03D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.43\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2E1C6470-986B-46B5-B238-4B0AA6D46629}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.257.13\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2EF7E390-2F7C-4F9A-9B7D-4A87B56B711D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.51\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2FDB3305-19B8-4FE2-972B-ED5E97CBBD6E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.39\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{38971E90-14FD-44F6-AA45-1447B653F873}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.45\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{4FFB4BD8-A109-4F25-A4DB-313678B19417}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.31\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5E9DEE2B-5F44-4C87-84B8-D2E7B11D7017}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.229.3\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5FC44EBC-3A1F-4FBB-85E5-34405788C8D7}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.41\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{608D599A-DCA6-4A7C-BED7-AFCD8465345A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.175.29\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{64C6EFB9-8F79-4106-B975-067448DC768F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.177.11\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{674CB023-C9D4-4286-B1FF-A1FF76AD4B27}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.227.11\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{682D84E1-25A0-4741-9EA9-E57BA894B8C3}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.251.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A012BDE-3690-4747-9C3E-5E4FC354304A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.241.13\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6DD6748E-7DAE-47EF-B4D5-03AA1B06D697}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.39\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{72726D01-426C-4B35-8266-B4496CAA889E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.183.29\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{78C1ADF4-6DAE-4164-AEFA-4E3EAD9E750A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.19\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{7C9A348D-C321-47AC-904F-150312A5430F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.175.27\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{83F21C4B-8643-4A08-A29A-822AFD835037}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.193.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{88B20FC8-EBD6-4181-B5F6-50F45BFF722E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.167.21\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{8DC94452-5748-435A-B24F-B0F57718821E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.225.7\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{997809F3-33FD-4FD6-A2ED-CEF50F3263B1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.169.31\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A087E49F-1F8E-4603-A200-55537B737421}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.25\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{ABF66F82-B04C-4FE4-8272-661539463FE1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.171.37\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{AE1542A7-3989-481B-93A9-1500C5F56B14}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.27\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B12A60CF-E572-4314-8F54-4E96C6660780}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.237.7\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B258532D-3529-4BEB-BF38-F08F98B3968C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.15\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B29F5F83-90DF-479A-BDE7-8A9F4412E394}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.171.39\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B314A279-F12F-4B54-A0AC-148FA68207CF}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.241.15\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BC4C72EF-3055-4A6D-86E1-AE4D24DB63CA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.35\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BCF99248-58CE-4562-B227-14D1E171B49D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.221.3\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.61\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.21\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D513E9C8-03B8-41AC-AA64-ABA87305A70F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.265.7\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D610770A-6AE5-45D7-8ECD-4D130A66EF51}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.251.21\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D6EDECA7-CB7A-485F-A3FF-FCA4DFEC563C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.263.3\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{DAA7499A-B3AC-4419-A89B-124318504051}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.29\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E3D57E77-FE71-4D06-BD34-D48820074909}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.181.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E76F97B1-1AE9-497C-9FA4-F57BBABAD54A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.17\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1658933-2997-4DDB-869C-061D53A9718E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.21\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1CBF5EB-347F-4E4C-90AC-E43339FC34EC}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.55\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F583F9E9-8B95-4D88-BC72-AE190E9B71F9}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.239.19\psuser_64.dll => No File HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName= BHO: No Name -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> No File BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File FirewallRules: [{8B45759A-07AB-4EAE-A27E-B52CA32F21AB}] => (Allow) LPort=5357 Folder: C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev EmptyTemp: End
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím om preventivku, avast furt něco hlásí
Fix result of Farbar Recovery Scan Tool (x64) Version: 15-09-2026
Ran by WinCan (15-09-2026 22:21:03) Run:5
Running from C:\Users\WinCan\Desktop
Loaded Profiles: WinCan
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:
C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK_0.dat
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\MountPoints2: {d88fbe70-226d-11eb-bd8a-0492265a3e51} - "E:\WD SmartWare.exe" autoplay=true
C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DYYHXHYNDOFXWVHK.lnk
Task: {F8087465-D84E-4D39-8275-6B05B1DF0F33} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (No File)
Task: {9358FD62-420A-4437-B963-DBDE25460E9C} - System32\Tasks\DYYHXHYNDOFXWVHK_run => C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe (No File)
FF NewTab: Mozilla\Firefox\Profiles\ul0pjuxr.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
FF NewTab: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{03B29243-35DA-4858-920E-B70A007DF5AA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.217.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{0982FB18-B2DC-43DF-9DA3-A54C41F699EA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.233.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{1108FD1C-492F-4251-B9DB-77F0274267B2}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{22D49062-B8D3-4DD5-B9C2-A044EA04D5CD}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.223.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2ABD6384-2E18-40E8-8439-F06D21E0B03D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.43\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2E1C6470-986B-46B5-B238-4B0AA6D46629}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.257.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2EF7E390-2F7C-4F9A-9B7D-4A87B56B711D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.51\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2FDB3305-19B8-4FE2-972B-ED5E97CBBD6E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{38971E90-14FD-44F6-AA45-1447B653F873}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.45\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{4FFB4BD8-A109-4F25-A4DB-313678B19417}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5E9DEE2B-5F44-4C87-84B8-D2E7B11D7017}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.229.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5FC44EBC-3A1F-4FBB-85E5-34405788C8D7}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.41\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{608D599A-DCA6-4A7C-BED7-AFCD8465345A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.175.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{64C6EFB9-8F79-4106-B975-067448DC768F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.177.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{674CB023-C9D4-4286-B1FF-A1FF76AD4B27}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.227.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{682D84E1-25A0-4741-9EA9-E57BA894B8C3}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.251.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A012BDE-3690-4747-9C3E-5E4FC354304A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.241.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6DD6748E-7DAE-47EF-B4D5-03AA1B06D697}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{72726D01-426C-4B35-8266-B4496CAA889E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.183.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{78C1ADF4-6DAE-4164-AEFA-4E3EAD9E750A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.19\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{7C9A348D-C321-47AC-904F-150312A5430F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.175.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{83F21C4B-8643-4A08-A29A-822AFD835037}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.193.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{88B20FC8-EBD6-4181-B5F6-50F45BFF722E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.167.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{8DC94452-5748-435A-B24F-B0F57718821E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.225.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{997809F3-33FD-4FD6-A2ED-CEF50F3263B1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.169.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A087E49F-1F8E-4603-A200-55537B737421}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.25\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{ABF66F82-B04C-4FE4-8272-661539463FE1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.171.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{AE1542A7-3989-481B-93A9-1500C5F56B14}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B12A60CF-E572-4314-8F54-4E96C6660780}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.237.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B258532D-3529-4BEB-BF38-F08F98B3968C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B29F5F83-90DF-479A-BDE7-8A9F4412E394}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.171.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B314A279-F12F-4B54-A0AC-148FA68207CF}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.241.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BC4C72EF-3055-4A6D-86E1-AE4D24DB63CA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.35\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BCF99248-58CE-4562-B227-14D1E171B49D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.221.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.61\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D513E9C8-03B8-41AC-AA64-ABA87305A70F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.265.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D610770A-6AE5-45D7-8ECD-4D130A66EF51}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.251.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D6EDECA7-CB7A-485F-A3FF-FCA4DFEC563C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.263.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{DAA7499A-B3AC-4419-A89B-124318504051}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E3D57E77-FE71-4D06-BD34-D48820074909}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.181.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E76F97B1-1AE9-497C-9FA4-F57BBABAD54A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.17\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1658933-2997-4DDB-869C-061D53A9718E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1CBF5EB-347F-4E4C-90AC-E43339FC34EC}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.55\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F583F9E9-8B95-4D88-BC72-AE190E9B71F9}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.239.19\psuser_64.dll => No File
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
BHO: No Name -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> No File
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
FirewallRules: [{8B45759A-07AB-4EAE-A27E-B52CA32F21AB}] => (Allow) LPort=5357
Folder: C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev
EmptyTemp:
End
*****************
CreateRestorePoint: Error(1=5%) -> Failed to create a restore point.
Processes closed successfully.
C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK_0.dat => moved successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d88fbe70-226d-11eb-bd8a-0492265a3e51} => removed successfully
C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DYYHXHYNDOFXWVHK.lnk => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{F8087465-D84E-4D39-8275-6B05B1DF0F33}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F8087465-D84E-4D39-8275-6B05B1DF0F33}" => removed successfully
C:\WINDOWS\System32\Tasks\CCleaner Update => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleaner Update" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9358FD62-420A-4437-B963-DBDE25460E9C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9358FD62-420A-4437-B963-DBDE25460E9C}" => removed successfully
C:\WINDOWS\System32\Tasks\DYYHXHYNDOFXWVHK_run => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DYYHXHYNDOFXWVHK_run" => removed successfully
"Firefox newtab" => removed successfully
"Firefox newtab" => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{03B29243-35DA-4858-920E-B70A007DF5AA} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{0982FB18-B2DC-43DF-9DA3-A54C41F699EA} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{1108FD1C-492F-4251-B9DB-77F0274267B2} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{22D49062-B8D3-4DD5-B9C2-A044EA04D5CD} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2ABD6384-2E18-40E8-8439-F06D21E0B03D} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2E1C6470-986B-46B5-B238-4B0AA6D46629} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2EF7E390-2F7C-4F9A-9B7D-4A87B56B711D} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2FDB3305-19B8-4FE2-972B-ED5E97CBBD6E} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{38971E90-14FD-44F6-AA45-1447B653F873} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{4FFB4BD8-A109-4F25-A4DB-313678B19417} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5E9DEE2B-5F44-4C87-84B8-D2E7B11D7017} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5FC44EBC-3A1F-4FBB-85E5-34405788C8D7} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{608D599A-DCA6-4A7C-BED7-AFCD8465345A} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{64C6EFB9-8F79-4106-B975-067448DC768F} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{674CB023-C9D4-4286-B1FF-A1FF76AD4B27} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{682D84E1-25A0-4741-9EA9-E57BA894B8C3} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A012BDE-3690-4747-9C3E-5E4FC354304A} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6DD6748E-7DAE-47EF-B4D5-03AA1B06D697} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{72726D01-426C-4B35-8266-B4496CAA889E} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{78C1ADF4-6DAE-4164-AEFA-4E3EAD9E750A} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{7C9A348D-C321-47AC-904F-150312A5430F} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{83F21C4B-8643-4A08-A29A-822AFD835037} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{88B20FC8-EBD6-4181-B5F6-50F45BFF722E} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{8DC94452-5748-435A-B24F-B0F57718821E} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{997809F3-33FD-4FD6-A2ED-CEF50F3263B1} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A087E49F-1F8E-4603-A200-55537B737421} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{ABF66F82-B04C-4FE4-8272-661539463FE1} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{AE1542A7-3989-481B-93A9-1500C5F56B14} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B12A60CF-E572-4314-8F54-4E96C6660780} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B258532D-3529-4BEB-BF38-F08F98B3968C} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B29F5F83-90DF-479A-BDE7-8A9F4412E394} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B314A279-F12F-4B54-A0AC-148FA68207CF} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BC4C72EF-3055-4A6D-86E1-AE4D24DB63CA} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BCF99248-58CE-4562-B227-14D1E171B49D} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D513E9C8-03B8-41AC-AA64-ABA87305A70F} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D610770A-6AE5-45D7-8ECD-4D130A66EF51} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D6EDECA7-CB7A-485F-A3FF-FCA4DFEC563C} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{DAA7499A-B3AC-4419-A89B-124318504051} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E3D57E77-FE71-4D06-BD34-D48820074909} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E76F97B1-1AE9-497C-9FA4-F57BBABAD54A} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1658933-2997-4DDB-869C-061D53A9718E} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1CBF5EB-347F-4E4C-90AC-E43339FC34EC} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F583F9E9-8B95-4D88-BC72-AE190E9B71F9} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\Software\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6} => removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8B45759A-07AB-4EAE-A27E-B52CA32F21AB}" => removed successfully
========================= Folder: C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev ========================
====== End of Folder: ======
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 786432 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 15961151 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => -4876694 B
Edge => 0 B
Chrome => 0 B
Firefox => 450316597 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , Caches, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 456442 B
systemprofile32 => 724 B
LocalService => 0 B
NetworkService => 0 B
WinCan => 289835015 B
RecycleBin => 0 B
EmptyTemp: => 722.27 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 22:24:05 ====
Ran by WinCan (15-09-2026 22:21:03) Run:5
Running from C:\Users\WinCan\Desktop
Loaded Profiles: WinCan
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:
C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK_0.dat
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\MountPoints2: {d88fbe70-226d-11eb-bd8a-0492265a3e51} - "E:\WD SmartWare.exe" autoplay=true
C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DYYHXHYNDOFXWVHK.lnk
Task: {F8087465-D84E-4D39-8275-6B05B1DF0F33} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (No File)
Task: {9358FD62-420A-4437-B963-DBDE25460E9C} - System32\Tasks\DYYHXHYNDOFXWVHK_run => C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe (No File)
FF NewTab: Mozilla\Firefox\Profiles\ul0pjuxr.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
FF NewTab: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{03B29243-35DA-4858-920E-B70A007DF5AA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.217.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{0982FB18-B2DC-43DF-9DA3-A54C41F699EA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.233.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{1108FD1C-492F-4251-B9DB-77F0274267B2}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{22D49062-B8D3-4DD5-B9C2-A044EA04D5CD}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.223.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2ABD6384-2E18-40E8-8439-F06D21E0B03D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.43\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2E1C6470-986B-46B5-B238-4B0AA6D46629}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.257.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2EF7E390-2F7C-4F9A-9B7D-4A87B56B711D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.51\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2FDB3305-19B8-4FE2-972B-ED5E97CBBD6E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{38971E90-14FD-44F6-AA45-1447B653F873}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.45\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{4FFB4BD8-A109-4F25-A4DB-313678B19417}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5E9DEE2B-5F44-4C87-84B8-D2E7B11D7017}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.229.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5FC44EBC-3A1F-4FBB-85E5-34405788C8D7}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.41\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{608D599A-DCA6-4A7C-BED7-AFCD8465345A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.175.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{64C6EFB9-8F79-4106-B975-067448DC768F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.177.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{674CB023-C9D4-4286-B1FF-A1FF76AD4B27}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.227.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{682D84E1-25A0-4741-9EA9-E57BA894B8C3}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.251.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A012BDE-3690-4747-9C3E-5E4FC354304A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.241.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6DD6748E-7DAE-47EF-B4D5-03AA1B06D697}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.187.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{72726D01-426C-4B35-8266-B4496CAA889E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.183.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{78C1ADF4-6DAE-4164-AEFA-4E3EAD9E750A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.19\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{7C9A348D-C321-47AC-904F-150312A5430F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.175.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{83F21C4B-8643-4A08-A29A-822AFD835037}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.193.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{88B20FC8-EBD6-4181-B5F6-50F45BFF722E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.167.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{8DC94452-5748-435A-B24F-B0F57718821E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.225.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{997809F3-33FD-4FD6-A2ED-CEF50F3263B1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.169.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A087E49F-1F8E-4603-A200-55537B737421}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.25\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{ABF66F82-B04C-4FE4-8272-661539463FE1}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.171.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{AE1542A7-3989-481B-93A9-1500C5F56B14}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B12A60CF-E572-4314-8F54-4E96C6660780}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.237.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B258532D-3529-4BEB-BF38-F08F98B3968C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B29F5F83-90DF-479A-BDE7-8A9F4412E394}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.171.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B314A279-F12F-4B54-A0AC-148FA68207CF}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.241.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BC4C72EF-3055-4A6D-86E1-AE4D24DB63CA}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.35\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BCF99248-58CE-4562-B227-14D1E171B49D}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.221.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.61\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D513E9C8-03B8-41AC-AA64-ABA87305A70F}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.265.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D610770A-6AE5-45D7-8ECD-4D130A66EF51}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.251.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D6EDECA7-CB7A-485F-A3FF-FCA4DFEC563C}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.263.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{DAA7499A-B3AC-4419-A89B-124318504051}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E3D57E77-FE71-4D06-BD34-D48820074909}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.181.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E76F97B1-1AE9-497C-9FA4-F57BBABAD54A}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.185.17\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1658933-2997-4DDB-869C-061D53A9718E}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.195.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1CBF5EB-347F-4E4C-90AC-E43339FC34EC}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.173.55\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F583F9E9-8B95-4D88-BC72-AE190E9B71F9}\InprocServer32 -> C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.239.19\psuser_64.dll => No File
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
BHO: No Name -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> No File
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
FirewallRules: [{8B45759A-07AB-4EAE-A27E-B52CA32F21AB}] => (Allow) LPort=5357
Folder: C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev
EmptyTemp:
End
*****************
CreateRestorePoint: Error(1=5%) -> Failed to create a restore point.
Processes closed successfully.
C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK_0.dat => moved successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d88fbe70-226d-11eb-bd8a-0492265a3e51} => removed successfully
C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DYYHXHYNDOFXWVHK.lnk => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{F8087465-D84E-4D39-8275-6B05B1DF0F33}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F8087465-D84E-4D39-8275-6B05B1DF0F33}" => removed successfully
C:\WINDOWS\System32\Tasks\CCleaner Update => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleaner Update" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9358FD62-420A-4437-B963-DBDE25460E9C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9358FD62-420A-4437-B963-DBDE25460E9C}" => removed successfully
C:\WINDOWS\System32\Tasks\DYYHXHYNDOFXWVHK_run => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DYYHXHYNDOFXWVHK_run" => removed successfully
"Firefox newtab" => removed successfully
"Firefox newtab" => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{03B29243-35DA-4858-920E-B70A007DF5AA} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{0982FB18-B2DC-43DF-9DA3-A54C41F699EA} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{1108FD1C-492F-4251-B9DB-77F0274267B2} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{22D49062-B8D3-4DD5-B9C2-A044EA04D5CD} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2ABD6384-2E18-40E8-8439-F06D21E0B03D} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2E1C6470-986B-46B5-B238-4B0AA6D46629} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2EF7E390-2F7C-4F9A-9B7D-4A87B56B711D} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{2FDB3305-19B8-4FE2-972B-ED5E97CBBD6E} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{38971E90-14FD-44F6-AA45-1447B653F873} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{4FFB4BD8-A109-4F25-A4DB-313678B19417} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5E9DEE2B-5F44-4C87-84B8-D2E7B11D7017} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{5FC44EBC-3A1F-4FBB-85E5-34405788C8D7} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{608D599A-DCA6-4A7C-BED7-AFCD8465345A} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{64C6EFB9-8F79-4106-B975-067448DC768F} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{674CB023-C9D4-4286-B1FF-A1FF76AD4B27} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{682D84E1-25A0-4741-9EA9-E57BA894B8C3} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A012BDE-3690-4747-9C3E-5E4FC354304A} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{6DD6748E-7DAE-47EF-B4D5-03AA1B06D697} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{72726D01-426C-4B35-8266-B4496CAA889E} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{78C1ADF4-6DAE-4164-AEFA-4E3EAD9E750A} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{7C9A348D-C321-47AC-904F-150312A5430F} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{83F21C4B-8643-4A08-A29A-822AFD835037} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{88B20FC8-EBD6-4181-B5F6-50F45BFF722E} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{8DC94452-5748-435A-B24F-B0F57718821E} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{997809F3-33FD-4FD6-A2ED-CEF50F3263B1} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A087E49F-1F8E-4603-A200-55537B737421} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{ABF66F82-B04C-4FE4-8272-661539463FE1} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{AE1542A7-3989-481B-93A9-1500C5F56B14} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B12A60CF-E572-4314-8F54-4E96C6660780} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B258532D-3529-4BEB-BF38-F08F98B3968C} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B29F5F83-90DF-479A-BDE7-8A9F4412E394} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{B314A279-F12F-4B54-A0AC-148FA68207CF} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BC4C72EF-3055-4A6D-86E1-AE4D24DB63CA} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{BCF99248-58CE-4562-B227-14D1E171B49D} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D513E9C8-03B8-41AC-AA64-ABA87305A70F} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D610770A-6AE5-45D7-8ECD-4D130A66EF51} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{D6EDECA7-CB7A-485F-A3FF-FCA4DFEC563C} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{DAA7499A-B3AC-4419-A89B-124318504051} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E3D57E77-FE71-4D06-BD34-D48820074909} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E76F97B1-1AE9-497C-9FA4-F57BBABAD54A} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1658933-2997-4DDB-869C-061D53A9718E} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F1CBF5EB-347F-4E4C-90AC-E43339FC34EC} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001_Classes\CLSID\{F583F9E9-8B95-4D88-BC72-AE190E9B71F9} => removed successfully
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\Software\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6} => removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8B45759A-07AB-4EAE-A27E-B52CA32F21AB}" => removed successfully
========================= Folder: C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev ========================
====== End of Folder: ======
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 786432 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 15961151 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => -4876694 B
Edge => 0 B
Chrome => 0 B
Firefox => 450316597 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , Caches, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 456442 B
systemprofile32 => 724 B
LocalService => 0 B
NetworkService => 0 B
WinCan => 289835015 B
RecycleBin => 0 B
EmptyTemp: => 722.27 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 22:24:05 ====
Re: Prosím om preventivku, avast furt něco hlásí
Vyborne. Pro svou vlastni jistotu ted PC proskenuj cimkoliv (KVRT, MBAM, ESET Online Scanner, ...) a pokud uz Avast nic nehlasi, z naší strany je hotovo.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.


Přispějete na provoz fóra?