prosím o kontrolu PC - zamrzá mi PC
Napsal: 14 zář 2022 18:16
Dobrý den, po dlouhé době prosím o kontrolu. Od včera se mi seká PC, najednou zamrzne, na nic nereaguje, ani Ctr Alt Del, musím vypnout ze zásuvky.
Posílám log a děkuji
Doplňuji- již z notebooku, opět se zasekl, nereaguje nic, zaseklá obrazovka s poslední stránkou, myš bez reakce.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022
Ran by safro (administrator) on DESKTOP-B59IHMH (HP HP ProDesk 400 G6 MT) (14-09-2022 19:09:43)
Running from C:\Users\safro\Desktop
Loaded Profiles: safro
Platform: Microsoft Windows 10 Pro Version 21H2 19044.2006 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\DPAgent.exe ->) (DigitalPersona, Inc. -> DigitalPersona, Inc.) C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpAgent.exe
(C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpHostW.exe ->) (DigitalPersona, Inc. -> Crossmatch, Inc.) C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpCardEngine.exe
(C:\Program Files\HP\Sure Click\servers\BrService.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BrHostSvr.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\Windows\CxSvc\CxAudioSvc.exe ->) (Synaptics Incorporated -> Conexant) C:\Windows\System32\MicTray64.exe
(cmd.exe ->) (Bromium, Inc. -> ) C:\Program Files\HP\Sure Click\servers\BrHostHelper\BrHostHelper.exe <2>
(DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxEM.exe
(DriverStore\FileRepository\hpanalyticscomp.inf_amd64_d501376b0829abda\x64\TouchpointAnalyticsClientService.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_d501376b0829abda\x64\TouchpointGpuInfo.exe
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\BridgeCommunication.exe <2>
(DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\HotKeyServiceUWP.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\HPHotkeyNotification.exe
(explorer.exe ->) (INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3408.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe
(HP Inc. -> HP) C:\Program Files (x86)\HP\HP Notifications\HPNotifications.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\safro\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <12>
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler.exe
(Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler64.exe
(services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Security Update Service\4.3.20.873\SecurityUpdateService.exe
(services.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BemSvc.exe
(services.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BrService.exe
(services.exe ->) (Conexant Systems LLC.) [File not signed] C:\Windows\CxSvc\CxUtilSvc.exe
(services.exe ->) (DigitalPersona, Inc. -> Crossmatch, Inc.) C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpHostW.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Hewlett-Packard Company -> HP) C:\Windows\System32\HPSIsvc.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_d501376b0829abda\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\SysInfoCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpdsusoftwarecomponent.inf_amd64_61c94b8083a252da\HotkeyServiceDSU.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpdsusoftwarecomponent.inf_amd64_61c94b8083a252da\LanWlanWwanSwitchingServiceDSU.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\HotKeyServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\LanWlanWwanSwitchingServiceUWP.exe
(services.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(services.exe ->) (Huawei Technologies Co., Ltd. -> ) [File not signed] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_1d1c7ad354f3422f\RstMwService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_003a6d3c4c50c291\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_f37f66cf59feb38a\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_f37f66cf59feb38a\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe
(services.exe ->) (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe
(services.exe ->) (Synaptics Incorporated -> Conexant Systems LLC.) C:\Windows\CxSvc\CxAudioSvc.exe
(services.exe ->) (Synaptics Incorporated -> Conexant Systems, Inc.) C:\Windows\System32\CxUIUSvc64.exe
(svchost.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BrConsole.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe
(svchost.exe ->) (HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.10.1627.0_x64__v10z8vjag6ke6\HP.JumpStarts.exe
(svchost.exe ->) (INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3408.0_x64__8j3eq9eme6ctt\IGCC.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22062.543.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(winlogon.exe ->) (DigitalPersona, Inc. -> Crossmatch, Inc.) C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\DPAgent.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [194496 2022-08-25] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [644000 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
HKLM-x32\...\Run: [HPUsageTrackingLEDM] => "C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe" "C:\Program Files (x86)\HP\HP UT LEDM\" (No File)
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [6206360 2021-03-23] (Acronis International GmbH -> )
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [446392 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
HKLM-x32\...\Run: [HPNotifications] => C:\Program Files (x86)\HP\HP Notifications\HPNotifications.exe [1607816 2021-02-11] (HP Inc. -> HP)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\DPAgent.exe, <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38274576 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\Run: [MicrosoftEdgeAutoLaunch_8B3575D364394B552A9C25D557FBDA68] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3795360 2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\MountPoints2: {7a5cf040-089d-11eb-8d2d-9c7bef4836a0} - "D:\HiSuiteDownLoader.exe"
HKLM\...\Windows x64\Print Processors\HPM1210PrintProc: C:\Windows\System32\spool\prtprocs\x64\HPM1210PP.dll [74240 2012-09-29] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\HPM1210LM: C:\WINDOWS\system32\HPM1210LM.DLL [409088 2012-09-29] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files (x86)\CCleaner Browser\Application\105.0.18318.104\Installer\chrmstp.exe [2022-09-07] (Piriform Software Ltd -> Piriform Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.102\Installer\chrmstp.exe [2022-09-08] (Google LLC -> Google LLC)
Lsa: [Notification Packages] DPPassFilter scecli
GroupPolicy: Restriction - Chrome <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0A6936E2-A67E-4079-B4E1-6D5160B6DEEC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-08-12] (Piriform Software Ltd -> Piriform)
Task: {2D6BCF35-3111-459A-81CC-E1AA30AB298C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [847392 2022-08-17] (HP Inc. -> HP Inc.)
Task: {389EEA1C-6579-4DBF-B986-F95EDFA4E59F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPPrinterLowInk => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPPrinterLowInk\HPPrinterLowInk.exe [221328 2022-08-17] (HP Inc. -> )
Task: {39376A57-326A-46A8-B0BE-B14769FEC2DF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [142232 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {3EC33D0B-64CD-46FE-9BAA-CC43475BD936} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3003824 2022-09-06] (Piriform Software Ltd -> Piriform Software)
Task: {47536DBB-1CEA-4DE2-8B83-93CEC6B2F1D3} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [64408 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {4919C92A-D5B9-4804-B247-AC2F4D880E13} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-26] (Piriform Software Ltd -> Piriform Software)
Task: {4BC634D0-D3E1-4940-A495-AF0606B5475C} - System32\Tasks\HP\HP Support Assistant\sp107720 => C:\hpswsetup\sp107720\setup.exe [17930488 2020-11-12] (Access Denied) [File not signed] /s (Access Denied) <==== ATTENTION
Task: {5900877C-211C-4DC6-AB3C-80F350DDD9AF} - System32\Tasks\CCleanerSkipUAC - safro => C:\Program Files\CCleaner\CCleaner.exe [31990800 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {5E576C41-5785-4935-B90D-AD74B91D5250} - System32\Tasks\HP\Sure Click\Sure Click UI 4.3.20.873 => C:\Program Files\HP\Sure Click\servers\BrConsole.exe [136552 2022-08-03] (Bromium, Inc. -> HP)
Task: {668D7370-DD23-408F-8A89-60BAE90EFD78} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1555696 2022-08-03] (Adobe Inc. -> Adobe Inc.)
Task: {709AC467-E180-428E-9231-8801F8172A4C} - System32\Tasks\HP\Sure Click\Sure Click 4.3.20.873 => C:\Program Files\HP\Sure Click\servers\BrLauncher.exe [2648424 2022-08-03] (Bromium, Inc. -> HP)
Task: {765327D4-AD9D-461D-8EFE-C248B8CE929B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23706576 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {81F4C074-68D7-4840-99FB-F64AA5437684} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2022-08-17] (HP Inc. -> HP Inc.)
Task: {88567D73-D7CB-4EE6-B7F4-0BC61083A718} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-26] (Piriform Software Ltd -> Piriform Software)
Task: {8985FA80-2793-4156-B08F-1ABE766C17D7} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23706576 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {8D502118-8950-44B8-AD26-20FB1A0CB24C} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice
Task: {9F3A6E60-E7D7-48A4-8CB8-2D5AC323C225} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3003824 2022-09-06] (Piriform Software Ltd -> Piriform Software)
Task: {AC65271B-B74D-4F10-9AE7-6568003195E6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-20] (Google LLC -> Google LLC)
Task: {B40A10DD-19D7-4E49-A1C4-DCD22CBF7975} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
Task: {BA9229BA-8D09-4310-83AA-8F724BD41864} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {BE34625F-F5D1-49C3-9F71-08480FAECBFF} - System32\Tasks\HP\HP Wolf Security\Launch Console => C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe [289304 2022-07-26] (HP Inc. -> HP Inc.)
Task: {F76EF933-82CA-4A32-85C0-D85C886AC1E3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-20] (Google LLC -> Google LLC)
Task: {F7A539B4-E664-4205-A979-856F25E23AAD} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [142232 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 62.24.64.2 8.8.8.8 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{5d78b6c1-816b-4e77-8125-9f3ad7ca951c}: [DhcpNameServer] 62.24.64.2 8.8.8.8 8.8.8.8 192.168.1.1
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\safro\AppData\Local\Microsoft\Edge\User Data\Default [2022-09-14]
Edge Extension: (HP Wolf Security Extension) - C:\Users\safro\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aoganjpeihhkhippgnniaclfocnihgln [2022-09-04]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\safro\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-09-03]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
FireFox:
========
FF DefaultProfile: dhpnfwib.default
FF ProfilePath: C:\Users\safro\AppData\Roaming\Mozilla\Firefox\Profiles\dhpnfwib.default [2020-06-13]
FF ProfilePath: C:\Users\safro\AppData\Roaming\Mozilla\Firefox\Profiles\8e4py1bm.default-release-1613465552607 [2022-09-14]
FF Homepage: Mozilla\Firefox\Profiles\8e4py1bm.default-release-1613465552607 -> hxxps://www.seznam.cz/
FF Notifications: Mozilla\Firefox\Profiles\8e4py1bm.default-release-1613465552607 -> hxxps://www.wish.com; hxxps://www.eva.cz; hxxps://czechtheworld.com; hxxps://www.sportisimo.cz; hxxps://www.youtube.com; hxxps://www.aliexpress.com; hxxps://cz.pinterest.com; hxxps://www.spektrumzdravi.cz; hxxps://www.instagram.com
FF Extension: (HP Wolf Security Extension) - C:\Users\safro\AppData\Roaming\Mozilla\Firefox\Profiles\8e4py1bm.default-release-1613465552607\Extensions\firefoxhpwolfsecurityextension@bromium.com.xpi [2022-08-28] [UpdateUrl:hxxps://addons.bromium-online.com/updates.json]
FF Extension: (Tlačítko Uložit pro Pinterest) - C:\Users\safro\AppData\Roaming\Mozilla\Firefox\Profiles\8e4py1bm.default-release-1613465552607\Extensions\jid1-YcMV6ngYmQRA2w@jetpack.xpi [2022-03-02]
FF HKLM-x32\...\Firefox\Extensions: [quickprint@hp.com] - C:\Program Files (x86)\Hewlett-Packard\SmartPrint\QPExtension
FF Extension: (SmartPrintButton) - C:\Program Files (x86)\Hewlett-Packard\SmartPrint\QPExtension [2011-01-26] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [dpmaxz_ng@jetpack] - C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome => not found
FF HKLM-x32\...\Firefox\Extensions: [brofox_host@bromium.com] - C:\Program Files\HP\Sure Click\4.2.5.22\servers\FakeDir => not found
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-09-09] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-03-04] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\npCCleanerBrowserUpdate3.dll [2021-01-26] (Piriform Software Ltd -> Piriform Software)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\npCCleanerBrowserUpdate3.dll [2021-01-26] (Piriform Software Ltd -> Piriform Software)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2022-09-14]
Chrome:
=======
CHR Profile: C:\Users\safro\AppData\Local\Google\Chrome\User Data\Default [2022-09-14]
CHR Notifications: Default -> hxxps://wp.aliexpress.com; hxxps://www.aliexpress.com; hxxps://www.eva.cz
CHR Extension: (HP Wolf Security Extension) - C:\Users\safro\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpmlagmcbcnjhkdjiofoenkfbaclgjkk [2022-05-05]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\safro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-06-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\safro\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-01]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [9022120 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S4 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [12952232 2021-03-23] (Acronis International GmbH -> )
S4 AcronisCyberProtectionService; C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe [1425256 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S4 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1052280 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172264 2022-08-03] (Adobe Inc. -> Adobe Inc.)
R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6391536 2021-05-19] (Acronis International GmbH -> )
R2 BrEndpointSvc; C:\Program Files\HP\Sure Click\servers\BemSvc.exe [4355432 2022-08-03] (Bromium, Inc. -> HP)
R2 BrService; C:\Program Files\HP\Sure Click\servers\BrService.exe [10305896 2022-08-03] (Bromium, Inc. -> HP)
S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-26] (Piriform Software Ltd -> Piriform Software)
S3 CCleanerBrowserElevationService; C:\Program Files (x86)\CCleaner Browser\Application\105.0.18318.104\elevation_service.exe [1997592 2022-09-06] (Piriform Software Ltd -> Piriform Software)
S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-26] (Piriform Software Ltd -> Piriform Software)
R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082896 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12126112 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
R2 CxAudioSvc; C:\WINDOWS\CxSvc\CxAudioSvc.exe [85512 2021-11-03] (Synaptics Incorporated -> Conexant Systems LLC.)
R2 CxUIUSvc; C:\WINDOWS\System32\CxUIUSvc64.exe [123232 2021-11-03] (Synaptics Incorporated -> Conexant Systems, Inc.)
R2 CxUtilSvc; C:\Windows\CxSvc\CxUtilSvc.exe [166400 2020-03-13] (Conexant Systems LLC.) [File not signed]
R2 DpHost; C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpHostW.exe [530136 2020-04-30] (DigitalPersona, Inc. -> Crossmatch, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3342360 2022-08-25] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3342360 2022-08-25] (ESET, spol. s r.o. -> ESET)
R2 HotKeyServiceDSU; C:\WINDOWS\System32\DriverStore\FileRepository\hpdsusoftwarecomponent.inf_amd64_61c94b8083a252da\HotKeyServiceDSU.exe [694920 2022-05-11] (HP Inc. -> HP Inc.)
R2 HotKeyServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\HotKeyServiceUWP.exe [1526176 2020-08-18] (HP Inc. -> HP Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [891256 2020-07-30] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\AppHelperCap.exe [771072 2022-07-31] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\DiagsCap.exe [769528 2022-07-31] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\NetworkCap.exe [766464 2022-07-31] (HP Inc. -> HP Inc.)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149448 2020-07-23] (HP Inc. -> HP)
R2 HPSIService; C:\windows\system32\HPSIsvc.exe [126856 2012-11-08] (Hewlett-Packard Company -> HP)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\SysInfoCap.exe [770032 2022-07-31] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_d501376b0829abda\x64\TouchpointAnalyticsClientService.exe [489712 2022-05-26] (HP Inc. -> HP Inc.)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [192320 2020-09-07] (Huawei Technologies Co., Ltd. -> ) [File not signed]
S4 LanWlanSwitchingService; C:\Program Files (x86)\HP\HP Hotkey Support\LanWlanSwitchingService.exe [628776 2019-05-28] (HP Inc. -> HP)
R2 LanWlanWwanSwitchingServiceDSU; C:\WINDOWS\System32\DriverStore\FileRepository\hpdsusoftwarecomponent.inf_amd64_61c94b8083a252da\LanWlanWwanSwitchingServiceDSU.exe [584320 2022-05-11] (HP Inc. -> HP Inc.)
R2 LanWlanWwanSwitchingServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\LanWlanWwanSwitchingServiceUWP.exe [782744 2020-08-18] (HP Inc. -> HP Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7391408 2021-06-04] (Malwarebytes Inc -> Malwarebytes)
S4 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4878840 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S4 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S4 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [2136488 2021-03-23] (Acronis International GmbH -> )
R2 SecurityUpdateService; C:\Program Files\HP\Security Update Service\4.3.20.873\SecurityUpdateService.exe [4353384 2022-08-03] (Bromium, Inc. -> HP)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224192 2022-09-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7398360 2021-03-23] (Acronis International GmbH -> )
S4 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5910328 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [367096 2021-03-23] (Bitdefender SRL -> Bitdefender)
R0 bemk_4_3_20_873; C:\WINDOWS\System32\DRIVERS\bemk_4_3_20_873.sys [292264 2022-08-03] (Bromium, Inc. -> HP)
R0 BrCow_4_3_20_873; C:\WINDOWS\System32\DRIVERS\BrCow_4_3_20_873.sys [70056 2022-08-03] (Bromium, Inc. -> Windows (R) Win 7 DDK provider)
R2 BrFilter_4_3_20_873; C:\WINDOWS\System32\DRIVERS\BrFilter_4_3_20_873.sys [237456 2022-08-03] (Bromium, Inc. -> HP)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [194312 2022-08-25] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [116960 2022-07-20] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2022-08-23] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [234192 2022-07-20] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [52880 2022-07-20] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [79216 2022-07-20] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [119528 2022-07-20] (ESET, spol. s r.o. -> ESET)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [199128 2021-03-30] (Malwarebytes Inc -> Malwarebytes)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2020-06-29] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R2 file_protector; C:\WINDOWS\System32\DRIVERS\file_protector.sys [720392 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [392840 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R0 fltsrv; C:\WINDOWS\System32\DRIVERS\fltsrv.sys [183944 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys [25592 2021-09-16] (HP Inc. -> HP Inc.)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2020-09-07] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220752 2022-06-23] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-12-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [198888 2022-09-14] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [69016 2022-09-14] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2022-09-14] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [156880 2022-09-14] (Malwarebytes Inc -> Malwarebytes)
R3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [29168 2016-01-06] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.)
S0 ngelam; C:\WINDOWS\System32\drivers\ngelam.sys [15816 2021-03-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Acronis International GmbH)
R1 ngscan; C:\WINDOWS\System32\DRIVERS\ngscan.sys [179104 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S3 Ser2pl; C:\WINDOWS\System32\drivers\ser2pl64.sys [258544 2019-08-01] (WDKTestCert charles-yeh,131345514351795974 -> Prolific Technology Inc.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 tib; C:\WINDOWS\system32\DRIVERS\tib.sys [887032 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [175648 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [694920 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R3 uxen; C:\Program Files\HP\Sure Click\bin\uxen.sys [1867168 2022-07-07] (Bromium, Inc. -> HP)
R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [334984 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [251016 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 ax_pvi; \??\C:\Program Files\HP\Sure Click\bin\ax_pvi.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-09-14 19:09 - 2022-09-14 19:10 - 000037436 _____ C:\Users\safro\Desktop\FRST.txt
2022-09-14 19:09 - 2022-09-14 19:09 - 000000000 ____D C:\FRST
2022-09-14 19:07 - 2022-09-14 19:07 - 002371072 _____ (Farbar) C:\Users\safro\Desktop\FRST64.exe
2022-09-14 19:05 - 2022-09-14 19:06 - 000999324 _____ C:\WINDOWS\Minidump\091422-15296-01.dmp
2022-09-14 19:05 - 2022-09-14 19:05 - 1308825348 _____ C:\WINDOWS\MEMORY.DMP
2022-09-14 18:21 - 2022-09-14 18:21 - 028860993 _____ C:\Users\safro\Downloads\Já mám kdo má zdraví a hygiena.pdf
2022-09-14 17:58 - 2022-09-14 17:58 - 000198888 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2022-09-14 17:58 - 2022-09-14 17:58 - 000156880 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2022-09-14 17:58 - 2022-09-14 17:58 - 000069016 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2022-09-14 16:14 - 2022-09-14 16:14 - 000001298 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Sure Click Secure Browser.lnk
2022-09-14 15:33 - 2022-09-14 15:33 - 000413696 _____ C:\WINDOWS\system32\AzureCheck.dll
2022-09-14 15:33 - 2022-09-14 15:33 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-09-14 15:33 - 2022-09-14 15:33 - 000098816 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2022-09-14 15:33 - 2022-09-14 15:33 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2022-09-14 15:33 - 2022-09-14 15:33 - 000011813 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-09-14 15:20 - 2022-09-14 15:20 - 000000000 ___HD C:\$WinREAgent
2022-09-14 14:59 - 2022-09-14 14:59 - 000472716 _____ C:\Users\safro\Downloads\OznProCleny_2022_07_70340762(1).pdf
2022-09-14 14:58 - 2022-09-14 14:58 - 000474560 _____ C:\Users\safro\Downloads\OznProCleny_2022_08_70340762.pdf
2022-09-13 20:35 - 2022-09-13 20:35 - 002041052 _____ C:\Users\safro\Downloads\JÁ MÁM KDO MÁ OVOCE ZELENINA ČERNOBÍLE.pdf
2022-09-13 18:39 - 2022-09-13 18:39 - 000088683 _____ C:\Users\safro\Downloads\KUPNÍ_SMLOUVA_Andrle.pdf
2022-09-13 18:38 - 2022-09-13 18:38 - 005515808 _____ C:\Users\safro\Downloads\Kupni_smlouva(1).pdf
2022-09-13 17:21 - 2022-09-13 17:21 - 000228903 _____ C:\Users\safro\Downloads\Venclovskych.pdf
2022-09-13 17:17 - 2022-09-13 17:17 - 005515808 _____ C:\Users\safro\Downloads\Kupni_smlouva.pdf
2022-09-13 15:11 - 2022-09-13 15:11 - 009889460 _____ C:\Users\safro\Downloads\pop-it hrátky .pdf
2022-09-13 14:49 - 2022-09-13 14:49 - 024634157 _____ C:\Users\safro\Downloads\ovoce a zelenina(1).pdf
2022-09-13 14:48 - 2022-09-13 14:48 - 012963072 _____ C:\Users\safro\Downloads\S radostí jdu do školky.pdf
2022-09-12 18:37 - 2022-09-12 18:37 - 000033891 _____ C:\Users\safro\Downloads\order_2022002860.pdf
2022-09-11 17:50 - 2022-09-11 17:50 - 003095063 _____ C:\Users\safro\Downloads\JÁ MÁM KDO MÁ PODZIM.pdf
2022-09-11 17:47 - 2022-09-11 17:48 - 033151825 _____ C:\Users\safro\Downloads\ČINNOST A PRAVIDLA V MŠ.pdf
2022-09-11 17:35 - 2022-09-11 17:35 - 006787991 _____ C:\Users\safro\Downloads\LOTO ZIMA 2.pdf
2022-09-11 16:42 - 2022-09-11 16:42 - 004101131 _____ C:\Users\safro\Downloads\LOTO PODZIM 1_4.pdf
2022-09-11 16:22 - 2022-09-11 16:22 - 004101131 _____ C:\Users\safro\Downloads\LOTO PODZIM 1.pdf
2022-09-11 16:19 - 2022-09-11 16:20 - 004101131 _____ C:\Users\safro\Downloads\LOTO 1.pdf
2022-09-11 10:55 - 2022-09-11 10:55 - 000027032 _____ C:\Users\safro\Downloads\návod loto.pdf
2022-09-11 08:21 - 2022-09-11 08:21 - 000051962 _____ C:\Users\safro\Downloads\MASKY.pdf
2022-09-11 08:14 - 2022-09-11 08:14 - 001741220 _____ C:\Users\safro\Downloads\JAK TO CHODÍ U JEŽKŮ (autor Jana Peregrinová).pdf
2022-09-10 19:05 - 2022-09-10 19:05 - 003179411 _____ C:\Users\safro\Downloads\OBRÁZKOVÉ HODINY.pdf
2022-09-10 19:05 - 2022-09-10 19:05 - 001440308 _____ C:\Users\safro\Downloads\OBRÁZKOVÝ ČASOVAČ PRO MRŇATA.pdf
2022-09-10 14:47 - 2022-09-10 14:47 - 003208378 _____ C:\Users\safro\Downloads\grafomotorické listy čísla.pdf
2022-09-10 14:14 - 2022-09-10 14:14 - 002968205 _____ C:\Users\safro\Downloads\číslo(1).pdf
2022-09-10 13:59 - 2022-09-10 13:59 - 002793988 _____ C:\Users\safro\Downloads\Grafomotorické listy - čísla.pdf
2022-09-10 13:52 - 2022-09-10 13:52 - 002793490 _____ C:\Users\safro\Downloads\číslo.pdf
2022-09-10 08:04 - 2022-09-10 08:04 - 003669575 _____ C:\Users\safro\Downloads\reflexe dětí (1).pdf
2022-09-09 19:18 - 2022-09-09 19:18 - 003775889 _____ C:\Users\safro\Downloads\REFLEXE DĚTÍ-ČINNOSTI.pdf
2022-09-09 19:15 - 2022-09-09 19:15 - 009889454 _____ C:\Users\safro\Downloads\Pop-it hrátky s barvami(aktualizace).pdf
2022-09-09 19:07 - 2022-09-09 19:07 - 009917417 _____ C:\Users\safro\Downloads\popit(4).pdf
2022-09-09 15:41 - 2022-09-09 15:41 - 006300081 _____ C:\Users\safro\Downloads\TS-01-02-2022(2).pdf
2022-09-09 15:40 - 2022-09-09 15:40 - 006300081 _____ C:\Users\safro\Downloads\TS-01-02-2022.pdf
2022-09-09 15:40 - 2022-09-09 15:40 - 006300081 _____ C:\Users\safro\Downloads\TS-01-02-2022(1).pdf
2022-09-09 15:40 - 2022-09-09 15:40 - 005002120 _____ C:\Users\safro\Downloads\TS-03-04-2022.pdf
2022-09-09 15:27 - 2022-09-09 15:27 - 003078144 _____ C:\Users\safro\Downloads\STAG86218.pdf
2022-09-08 16:42 - 2022-09-08 16:43 - 007456401 _____ C:\Users\safro\Downloads\obrázkové rébusy.pdf
2022-09-07 16:37 - 2022-09-07 16:37 - 003063795 _____ C:\Users\safro\Downloads\ZIMNÍ LETNÍ SPORTY.pdf
2022-09-07 16:35 - 2022-09-07 16:35 - 037929167 _____ C:\Users\safro\Downloads\Lidské tělo - pracovní listy (1).pdf
2022-09-07 16:33 - 2022-09-07 16:33 - 001586859 _____ C:\Users\safro\Downloads\Paleček a jeho kamarádi.zip
2022-09-06 20:18 - 2022-09-06 20:18 - 000000349 _____ C:\Users\safro\Desktop\VŠECHNY MOJE PRSTY.txt
2022-09-06 19:21 - 2022-09-06 19:21 - 000000000 _____ C:\Users\safro\Downloads\basnicky.pdf
2022-09-06 18:09 - 2022-09-06 18:09 - 014433846 _____ C:\Users\safro\Downloads\PODZIM - POSTŘEHOVKA.pdf
2022-09-06 18:07 - 2022-09-06 18:07 - 021025248 _____ C:\Users\safro\Downloads\VŠE O MNĚ! - představovací pracovní listy.pdf
2022-09-06 17:54 - 2022-09-13 16:17 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-09-05 19:07 - 2022-09-05 19:07 - 001503009 _____ C:\Users\safro\Downloads\video-1661181799.mp4
2022-09-05 18:54 - 2022-09-05 18:54 - 000301234 _____ C:\Users\safro\Downloads\S PLASTELÍNOU CELÝ ROK (1).pdf
2022-09-05 16:35 - 2022-09-05 16:35 - 011499909 _____ C:\Users\safro\Downloads\POZNÁVÁME SVĚT S VČELKOU.pdf
2022-09-04 19:04 - 2022-09-04 19:04 - 000948522 _____ C:\Users\safro\Downloads\KNOFLÍKY.pdf
2022-09-04 14:35 - 2022-09-04 14:35 - 002057241 _____ C:\Users\safro\Downloads\Babí léto- pavoučkové honičky, chytačky a jiné (autor Jana Peregrinová).pdf
2022-09-04 09:22 - 2022-09-04 09:22 - 000193107 _____ C:\Users\safro\Downloads\SVOLÁVAČKY 2019-2022.pdf
2022-09-03 09:08 - 2022-09-03 09:08 - 000018935 _____ C:\Users\safro\Downloads\seznamy s VS Mk 2022 2023.xlsx
2022-09-03 09:07 - 2022-09-03 09:07 - 000020396 _____ C:\Users\safro\Downloads\seznamy s VS GK 2022 2023.xlsx
2022-09-03 08:57 - 2022-09-03 08:57 - 045144412 _____ C:\Users\safro\Downloads\Podzim na poli a v zahradě - prac. listy.pdf
2022-09-03 08:55 - 2022-09-03 08:55 - 049630503 _____ C:\Users\safro\Downloads\Dušičky a HALLOWEEN - prac. listy.pdf
2022-09-03 08:54 - 2022-09-03 08:54 - 006934366 _____ C:\Users\safro\Downloads\PŘEDMATEMATICKÁ GRAMOTNOST LISTY....pdf
2022-09-03 08:53 - 2022-09-03 08:53 - 003023509 _____ C:\Users\safro\Downloads\Pracovní listy - ABECEDA(2).pdf
2022-09-03 08:50 - 2022-09-03 08:51 - 008120234 _____ C:\Users\safro\Downloads\PŘEDŠKOLÁKŮV ÚKOLNÍČEK(1).pdf
2022-09-02 18:09 - 2022-09-02 18:09 - 000319209 _____ C:\Users\safro\Downloads\DENÍK ASISTENTKY PEDAGOGA(2).pdf
2022-09-02 18:06 - 2022-09-02 18:06 - 000319209 _____ C:\Users\safro\Downloads\DENÍK ASISTENTKY PEDAGOGA(1).pdf
2022-09-02 17:37 - 2022-09-02 17:37 - 003060790 _____ C:\Users\safro\Downloads\pruvodce-legislativou-pro-pedagogy-ms-1-9-2022(1)(1).pdf
2022-09-02 17:35 - 2022-09-02 17:35 - 003060790 _____ C:\Users\safro\Downloads\pruvodce-legislativou-pro-pedagogy-ms-1-9-2022(1).pdf
2022-09-02 17:34 - 2022-09-02 17:34 - 003060790 _____ C:\Users\safro\Downloads\pruvodce-legislativou-pro-pedagogy-ms-1-9-2022.pdf
2022-09-02 17:34 - 2022-09-02 17:34 - 000163595 _____ C:\Users\safro\Downloads\aktualizace-pruvodce-legislativou-1-9-2022.pdf
2022-09-02 17:02 - 2022-09-02 17:02 - 029940962 _____ C:\Users\safro\Downloads\Ovoce a zelenina (2).pdf
2022-09-01 19:13 - 2022-09-01 19:13 - 007402630 _____ C:\Users\safro\Downloads\Počítání, přiřazování 0 - 10 (1).pdf
2022-09-01 19:05 - 2022-09-01 19:05 - 009885647 _____ C:\Users\safro\Downloads\pop-it hrátky(1).pdf
2022-09-01 19:00 - 2022-09-01 19:00 - 005948955 _____ C:\Users\safro\Downloads\Bludiště a labyrinty(1).pdf
2022-09-01 18:56 - 2022-09-01 18:56 - 000468988 _____ C:\Users\safro\Downloads\Hry a aktivity k seznamování(1).pdf
2022-09-01 18:22 - 2022-09-01 18:22 - 004771794 _____ C:\Users\safro\Downloads\Značky MŠ.pdf
2022-09-01 16:40 - 2022-09-01 16:40 - 004797817 _____ C:\Users\safro\Downloads\pdf_20220820_221955_0000(1).pdf
2022-09-01 16:39 - 2022-09-01 16:39 - 004797817 _____ C:\Users\safro\Downloads\pdf_20220820_221955_0000.pdf
2022-09-01 15:49 - 2022-09-01 15:49 - 000543510 _____ C:\Users\safro\Downloads\015PDF_TŘÍDĚNÍ ODPADU_4strA4(1).pdf
2022-08-31 17:56 - 2022-08-31 17:56 - 014503745 _____ C:\Users\safro\Downloads\domečky plakáty.pdf
2022-08-30 18:49 - 2022-08-30 18:49 - 021689713 _____ C:\Users\safro\Downloads\lesní domečky plakáty.pdf
2022-08-30 18:43 - 2022-08-30 18:43 - 001324561 _____ C:\Users\safro\Downloads\Jdeme do školky PL.pdf
2022-08-30 18:13 - 2022-08-30 18:13 - 000131894 _____ C:\Users\safro\Desktop\Vnitřní řád školní jídelny.pdf
2022-08-30 18:10 - 2022-08-30 18:17 - 000008041 _____ C:\Users\safro\Downloads\vnitřní řád.odt
2022-08-29 18:00 - 2022-08-29 18:00 - 000468988 _____ C:\Users\safro\Downloads\Hry a aktivity k seznamování.pdf
2022-08-29 17:56 - 2022-08-29 17:56 - 029296142 _____ C:\Users\safro\Downloads\51. Drakiáda.pdf
2022-08-29 17:55 - 2022-08-29 17:55 - 000543510 _____ C:\Users\safro\Downloads\015PDF_TŘÍDĚNÍ ODPADU_4strA4.pdf
2022-08-29 17:54 - 2022-08-29 17:54 - 003963215 _____ C:\Users\safro\Downloads\Moje babička _A5 (2 stránky na list A4).pdf
2022-08-28 19:31 - 2022-08-28 19:31 - 000104777 _____ C:\Users\safro\Downloads\Potvrzeni_platby(2).PDF
2022-08-28 14:38 - 2022-08-28 14:38 - 000960619 _____ C:\Users\safro\Downloads\ORGANŘÁD.pdf
2022-08-27 09:46 - 2022-08-27 09:46 - 000010720 _____ C:\Users\safro\Desktop\PODZIMNÍ PRÁZDNINY - prázdninový provoz v MŠ.xlsx
2022-08-27 09:23 - 2022-08-27 09:23 - 040785457 _____ C:\Users\safro\Downloads\BEE BOT- HRA VLÁČEK -.pdf
2022-08-27 08:51 - 2022-08-27 08:51 - 000595859 _____ C:\Users\safro\Downloads\Rad_venkovnich_ploch k 1.9.19_od 25.5.20.pdf
2022-08-26 18:01 - 2022-08-03 06:29 - 000292264 _____ (HP) C:\WINDOWS\system32\Drivers\bemk_4_3_20_873.sys
2022-08-26 18:01 - 2022-08-03 06:29 - 000237456 _____ (HP) C:\WINDOWS\system32\Drivers\BrFilter_4_3_20_873.sys
2022-08-26 18:01 - 2022-08-03 06:29 - 000070056 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\BrCow_4_3_20_873.sys
2022-08-26 17:42 - 2022-08-26 17:42 - 000001277 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Wolf Security .lnk
2022-08-25 19:19 - 2022-08-25 19:21 - 040735816 _____ C:\Users\safro\Downloads\VELKÉ a MALÉ.pdf
2022-08-25 18:57 - 2022-08-25 18:57 - 001489271 _____ C:\Users\safro\Downloads\meta_napadnicek_07_2vydani_elverze.pdf
2022-08-25 18:55 - 2022-08-25 18:55 - 004921723 _____ C:\Users\safro\Downloads\nectunepisu_ucim_se_cesky.pdf
2022-08-25 18:54 - 2022-08-25 18:54 - 005520774 _____ C:\Users\safro\Downloads\deti_s_omj_v_ms_metodika_0(3).pdf
2022-08-25 18:54 - 2022-08-25 18:54 - 001539978 _____ C:\Users\safro\Downloads\Metodika integrace dětí s OMJ - 2020.pdf
2022-08-25 18:53 - 2022-08-25 18:53 - 000964983 _____ C:\Users\safro\Downloads\Loto_MS_CIC.pdf
2022-08-25 18:53 - 2022-08-25 18:53 - 000112784 _____ C:\Users\safro\Downloads\meta_desatero_ms_final.pdf
2022-08-25 18:52 - 2022-08-25 18:52 - 005520774 _____ C:\Users\safro\Downloads\deti_s_omj_v_ms_metodika.pdf
2022-08-25 18:50 - 2022-08-25 18:50 - 000448796 _____ C:\Users\safro\Downloads\uvod_do_zaclenovani_deti_s_omj_do_ms.pdf
2022-08-23 10:04 - 2022-08-23 11:59 - 000016112 _____ C:\Users\safro\Desktop\ROZPIS SLUŽEB 2022- TABULKA.xlsx
2022-08-22 19:32 - 2022-08-22 19:32 - 000367126 _____ C:\Users\safro\Downloads\464991984.pdf
2022-08-22 17:35 - 2022-09-05 16:51 - 000105168 _____ C:\Users\safro\Desktop\test 2022-2023 Rozpis přímé a nepřímé práce - testovací verze 2 - kopie.xlsx
2022-08-22 17:34 - 2022-09-05 16:24 - 000103140 _____ C:\Users\safro\Desktop\test 2 Rozpis přímé a nepřímé práce - testovací verze 2 - kopie.xlsx
2022-08-22 17:32 - 2022-08-22 18:08 - 000174080 _____ C:\Users\safro\Desktop\Pracovní rozpis 2022 -2023.xls
2022-08-22 17:32 - 2021-11-07 21:26 - 000174080 _____ C:\Users\safro\Desktop\Pracovní rozpis 2021-2022.xls
2022-08-22 08:50 - 2022-08-22 08:50 - 000033966 _____ C:\Users\safro\Downloads\order_2022002680.pdf
2022-08-21 19:12 - 2022-08-21 19:12 - 016770450 _____ C:\Users\safro\Downloads\PUNTÍKATÁ ABECEDA.pdf
2022-08-20 11:15 - 2022-08-20 11:15 - 017327913 _____ C:\Users\safro\Downloads\les 1 - 10.pdf
2022-08-20 11:13 - 2022-08-20 11:13 - 006564002 _____ C:\Users\safro\Downloads\rychla dvojka+pexeso_podzim_pdf.pdf
2022-08-18 20:29 - 2022-08-18 20:29 - 000461667 _____ C:\Users\safro\Downloads\ŠABLONA HRACÍ KOSTKA.pdf
2022-08-18 09:18 - 2022-08-18 09:18 - 001608272 _____ C:\Users\safro\Downloads\SMYSLY HROU.pdf
2022-08-18 09:05 - 2022-08-18 09:07 - 000168298 _____ C:\Users\safro\Downloads\viptalisman_154528.jpeg
2022-08-18 08:59 - 2022-08-18 09:02 - 000338885 _____ C:\Users\safro\Downloads\viptalisman_45876.jpeg
2022-08-18 08:58 - 2022-08-18 08:58 - 000350396 _____ C:\Users\safro\Downloads\viptalisman_64052.jpeg
2022-08-18 08:56 - 2022-08-18 09:02 - 000199424 _____ C:\Users\safro\Downloads\viptalisman_170467.jpeg
2022-08-18 08:34 - 2022-08-18 08:34 - 003420441 _____ C:\Users\safro\Downloads\2625764.pdf
2022-08-17 08:45 - 2022-08-17 08:45 - 006876559 _____ C:\Users\safro\Downloads\NAŠÍ TŘÍDA.pdf
2022-08-17 08:44 - 2022-08-17 08:44 - 002689291 _____ C:\Users\safro\Downloads\Hra oblečení.pdf
2022-08-16 17:38 - 2022-08-16 17:38 - 010715676 _____ C:\Users\safro\Downloads\Značky (1).pdf
2022-08-16 09:27 - 2022-08-16 09:27 - 000717262 _____ C:\Users\safro\Downloads\Safrova 1.pdf
2022-08-15 16:41 - 2022-08-15 16:41 - 010477662 _____ C:\Users\safro\Downloads\Plotovka ŠKOLKA.pdf
2022-08-15 16:38 - 2022-08-15 16:38 - 021916715 _____ C:\Users\safro\Downloads\jablíčko braní .pdf
2022-08-15 16:37 - 2022-08-15 16:37 - 004662979 _____ C:\Users\safro\Downloads\Barvy a tvary.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-09-14 19:07 - 2022-02-08 20:32 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-09-14 19:07 - 2020-07-21 23:30 - 000000000 ____D C:\Program Files\CCleaner
2022-09-14 19:07 - 2020-06-20 08:46 - 000000000 ____D C:\Program Files (x86)\Google
2022-09-14 19:07 - 2019-12-07 16:45 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2022-09-14 19:06 - 2020-11-23 21:53 - 000000000 ____D C:\WINDOWS\Minidump
2022-09-14 19:06 - 2020-06-13 15:45 - 000000000 ____D C:\Users\safro\AppData\LocalLow\Mozilla
2022-09-14 19:06 - 2020-06-13 15:38 - 000000000 ___RD C:\Users\safro\OneDrive
2022-09-14 19:06 - 2020-06-13 15:36 - 000000000 __SHD C:\Users\safro\IntelGraphicsProfiles
2022-09-14 19:06 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-09-14 19:05 - 2020-09-15 19:47 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-09-14 19:05 - 2020-09-15 19:42 - 000008192 ___SH C:\DumpStack.log.tmp
2022-09-14 19:05 - 2020-09-15 19:42 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-09-14 19:05 - 2020-09-15 18:57 - 000000000 ____D C:\Users\safro
2022-09-14 19:05 - 2020-09-11 15:11 - 000010456 __RSH C:\ProgramData\ntuser.pol
2022-09-14 19:05 - 2020-03-13 07:22 - 000000000 ____D C:\ProgramData\Bromium
2022-09-14 19:05 - 2020-03-13 07:10 - 000000000 ___HD C:\Intel
2022-09-14 19:05 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-09-14 19:02 - 2021-10-09 13:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2022-09-14 18:12 - 2022-05-11 14:53 - 000713078 _____ C:\WINDOWS\system32\perfh005.dat
2022-09-14 18:12 - 2022-05-11 14:53 - 000143796 _____ C:\WINDOWS\system32\perfc005.dat
2022-09-14 18:12 - 2020-09-15 19:50 - 001683936 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-09-14 18:11 - 2021-05-05 18:20 - 000000000 ___RD C:\Users\safro\Downloads\OBRÁZKY PRODUKTŮ
2022-09-14 16:15 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-09-14 16:14 - 2022-05-12 16:52 - 000547488 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-09-14 16:13 - 2020-12-27 15:54 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2022-09-14 16:13 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-09-14 16:13 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2022-09-14 15:35 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-09-14 15:32 - 2020-09-15 19:44 - 003011072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-09-14 15:02 - 2020-06-13 15:36 - 000000000 ____D C:\Users\safro\AppData\Local\Packages
2022-09-14 14:27 - 2020-06-13 16:25 - 141646296 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-09-14 14:27 - 2020-06-13 16:25 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-09-13 21:21 - 2020-06-17 07:02 - 000000000 ____D C:\Users\safro\AppData\Local\CrashDumps
2022-09-13 16:17 - 2020-06-13 15:45 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-09-13 15:04 - 2021-09-30 15:46 - 000000000 ____D C:\Users\safro\Desktop\MOMENTKY ZÁŘÍ
2022-09-13 14:35 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-09-10 18:09 - 2020-07-16 19:49 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-09-10 18:09 - 2020-07-16 19:49 - 000002282 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-09-10 18:08 - 2021-12-11 21:32 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3530282796-2492871232-3359154168-1001
2022-09-10 18:08 - 2020-09-15 19:47 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3530282796-2492871232-3359154168-1001
2022-09-10 18:08 - 2020-09-15 18:57 - 000002389 _____ C:\Users\safro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-09-08 16:33 - 2020-06-20 08:46 - 000002309 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-09-08 16:33 - 2020-06-20 08:46 - 000002268 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-09-07 16:31 - 2022-05-01 16:02 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-09-07 16:26 - 2020-03-13 07:20 - 000000000 ____D C:\Program Files\Microsoft Office
2022-09-07 16:20 - 2020-07-21 23:31 - 000002395 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner Browser.lnk
2022-09-07 16:20 - 2020-07-21 23:30 - 000000000 ____D C:\Program Files (x86)\CCleaner Browser
2022-09-07 16:19 - 2020-06-13 15:45 - 000001013 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-09-05 21:21 - 2021-12-30 22:35 - 000016576 _____ C:\Users\safro\Desktop\INZERCE NA FB.txt
2022-09-02 17:16 - 2021-05-31 19:36 - 000031728 _____ C:\Users\safro\Desktop\newsletter 1.txt
2022-09-02 15:01 - 2020-06-13 15:37 - 000000000 ____D C:\Users\safro\AppData\Roaming\hpqLog
2022-08-30 17:23 - 2020-09-15 19:47 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-08-30 17:23 - 2020-09-15 19:47 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-08-29 21:20 - 2020-11-28 19:30 - 000004742 _____ C:\Users\safro\Desktop\PROVIZE KOLAGEN.txt
2022-08-27 09:34 - 2021-10-24 13:42 - 000000000 ____D C:\Users\safro\Desktop\ŠKOLKA ZÁSTUPCE
2022-08-26 18:01 - 2020-03-13 07:23 - 000019325 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2022-08-26 17:42 - 2020-09-15 19:47 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2022-08-26 17:42 - 2020-06-18 16:19 - 000000000 ____D C:\Users\safro\AppData\Local\HP
2022-08-26 17:42 - 2020-03-13 07:14 - 000000000 ____D C:\Program Files\HP
2022-08-26 17:42 - 2019-04-19 20:34 - 000000000 ____D C:\ProgramData\HP
2022-08-25 18:14 - 2020-04-02 13:43 - 000194312 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys
2022-08-23 12:00 - 2020-04-01 15:27 - 000016336 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys
2022-08-23 08:01 - 2020-09-15 19:47 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-08-23 08:01 - 2020-09-15 19:47 - 000003516 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-08-22 17:32 - 2022-06-10 15:13 - 000000000 ____D C:\Users\safro\Desktop\ROZPIS PRÁZDNINY - MUSTR
2022-08-22 17:29 - 2022-06-12 19:31 - 000000000 ____D C:\Users\safro\Desktop\TABULKY ADÉLKA
2022-08-22 15:53 - 2020-09-15 19:47 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-08-21 19:06 - 2022-06-13 17:35 - 000000000 ____D C:\Users\safro\Desktop\PRÁZDNINOVÝ PROVOZ PLÁNOVÁNÍ
2022-08-15 21:26 - 2020-10-16 22:05 - 000029330 _____ C:\Users\safro\Desktop\finclub partnerský odkaz.txt
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-08-2022
Ran by safro (14-09-2022 19:11:24)
Running from C:\Users\safro\Desktop
Microsoft Windows 10 Pro Version 21H2 19044.2006 (X64) (2020-09-15 17:48:02)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3530282796-2492871232-3359154168-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3530282796-2492871232-3359154168-503 - Limited - Disabled)
Guest (S-1-5-21-3530282796-2492871232-3359154168-501 - Limited - Disabled)
safro (S-1-5-21-3530282796-2492871232-3359154168-1001 - Administrator - Enabled) => C:\Users\safro
WDAGUtilityAccount (S-1-5-21-3530282796-2492871232-3359154168-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET Security (Enabled - Up to date) {DF8BEACB-94C9-218A-73AD-A78362A8C516}
AV: ESET Security (Enabled - Up to date) {89B55CC4-3881-78B2-11E2-479AE0371896}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
FW: ESET Firewall (Enabled) {B066057A-E576-007C-D591-56C163D3B33B}
FW: ESET Firewall (Enabled) {E7B06BEE-DEA6-20D2-58F2-0EB69C7B826D}
FW: ESET Firewall (Enabled) {B18EDDE1-72EE-79EA-3ABD-EEAF1EE45FED}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Acronis Drivers (HKLM\...\{7C36ADC0-5219-4D31-90D1-4211321481EF}) (Version: 25.8.39216 - Acronis) Hidden
Acronis True Image (HKLM-x32\...\{F0A1A9E1-CD4B-4504-836F-1946F5815ECB}) (Version: 25.8.39216 - Acronis) Hidden
Acronis True Image (HKLM-x32\...\{F0A1A9E1-CD4B-4504-836F-1946F5815ECB}Visible) (Version: 25.8.39216 - Acronis)
Adobe Acrobat DC (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 21.007.20091 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601013}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
ApowerCompress V1.1.14 (HKLM-x32\...\{10998dc6-e8e2-48ef-9378-0db3d4c7f32a}_is1) (Version: 1.1.14 - Apowersoft LIMITED)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 6.03 - Piriform)
CCleaner Browser (HKLM-x32\...\CCleaner Browser) (Version: 105.0.18318.104 - Autoři prohlížeče CCleaner Browser)
CCleaner Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.8.1067.0 - Piriform Software) Hidden
Dynamic Application Loader Host Interface Service (HKLM\...\{0E6217C5-C8FC-4745-AAC2-154D672F8EF3}) (Version: 1.0.0.0 - Intel Corporation) Hidden
ESET Security (HKLM\...\{0C3F76CB-98AA-49B1-9B72-CD040E3E17E8}) (Version: 15.2.17.0 - ESET, spol. s r.o.)
Express Burn Disc Burning Software (HKLM-x32\...\ExpressBurn) (Version: 10.30 - NCH Software)
Express Zip File Compression (HKLM-x32\...\ExpressZip) (Version: 9.26 - NCH Software)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 105.0.5195.102 - Google LLC)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 11.0.0.320 - Huawei Technologies Co., Ltd.)
HP Client Security Manager (HKLM\...\{456CC699-FD29-4835-9CE6-BB3E63DC76E3}) (Version: 9.5.3.2908 - HP Inc.) Hidden
HP Client Security Manager (HKLM\...\HPProtectTools) (Version: 9.5.3.2908 - HP Inc.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.19.0 - HP)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
HP Hotkey Support (HKLM-x32\...\{6606696F-B31A-48B7-B05D-FB5DDFAD9FAB}) (Version: 6.2.52.1 - HP Inc.)
HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - )
HP Notifications (HKLM-x32\...\{84937F28-9CB4-49E7-A2CF-E32D97E6DAE6}) (Version: 1.1.28.1 - HP)
HP Security Update Service (HKLM\...\{6CC3B2F8-3BC4-49B5-BDD4-8D587132D14E}) (Version: 4.3.20.873 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{0543AB37-B3F9-4948-A6D7-AB574271DEAC}) (Version: 1.4.9.2 - HP Inc.) Hidden
HP Wolf Security - Console (HKLM\...\{0C64ED5A-DD21-44C9-BA9D-CF2BE681DABE}) (Version: 11.0.16.42 - HP Inc.)
HP Wolf Security (HKLM\...\{AE1E39EE-133E-11ED-A25C-10604B96B11E}) (Version: 4.3.20.873 - HP Inc.)
HP Wolf Security Application Support for Chrome 102.0.5005.148 (HKLM\...\{2EA6032E-FD0D-4CDE-97BB-E482EBB4FD8C}) (Version: 4.3.7.401 - HP Inc.) Hidden
HP Wolf Security Application Support for Sure Sense (HKLM\...\{7D3F430E-EE63-4508-90B4-0C92E924A789}) (Version: 4.3.20.873 - HP Inc.) Hidden
HP Wolf Security Application Support for Windows (HKLM\...\{5621D48E-25BD-4A4A-B336-5C6D63ECC922}) (Version: 4.3.2.1711 - HP Inc.) Hidden
HP Wolf Security Application Support for Windows (HKLM\...\{76FD5CC3-3B06-4C18-9103-FBDB3C4C7F15}) (Version: 4.3.1.220 - HP Inc.) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
Intel(R) Chipset Device Software (HKLM\...\{00C43022-CFDA-4942-9D3F-04199C91C939}) (Version: 10.1.18121.8164 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{37942a92-9e3f-4d70-9b5c-5955cbc54505}) (Version: 10.1.18121.8164 - Intel(R) Corporation)
Intel(R) Icls (HKLM\...\{4AFF8BD2-8533-46B3-89CA-2F929B022F70}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) LMS (HKLM\...\{277F237D-10EF-46D5-BE31-25C1ADE3E13F}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2105.15.0.2157 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{959E6738-F665-4E07-8D7E-88C449AD2479}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{A9B23394-82C4-4885-92F6-5C21D2AFAF14}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{005DE983-782C-43E6-959E-2DB59D503529}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.7261 - Intel Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Malwarebytes version 4.4.0.117 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.4.0.117 - Malwarebytes)
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.15601.20088 - Microsoft Corporation)
Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.15601.20088 - Microsoft Corporation)
Microsoft 365 - sk-sk (HKLM\...\O365HomePremRetail - sk-sk) (Version: 16.0.15601.20088 - Microsoft Corporation)
Microsoft 365 Apps pro firmy - cs-cz (HKLM\...\O365BusinessRetail - cs-cz) (Version: 16.0.15601.20088 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 105.0.1343.33 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 105.0.1343.33 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\OneDriveSetup.exe) (Version: 22.176.0821.0003 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\Teams) (Version: 1.3.00.9267 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft VC++ redistributables repacked. (HKLM\...\{BACA8ED0-DB44-468A-9D76-7D4588B90D60}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft VC++ redistributables repacked. (HKLM-x32\...\{3FED85F2-4004-4F8A-B65B-DDC1F6013FAA}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27027 (HKLM-x32\...\{fd9b6070-d13e-45dc-819b-41806bf45b6b}) (Version: 14.16.27027.1 - Microsoft Corporation)
Microsoft Visual C++ 2017 X64 Additional Runtime - 14.16.27024 (HKLM\...\{9D29FC96-9EEE-4253-943F-96B3BBFDD0B6}) (Version: 14.16.27024 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2017 X64 Minimum Runtime - 14.16.27024 (HKLM\...\{F1B0FB3A-E0EA-47A6-9383-3650655403B0}) (Version: 14.16.27024 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 104.0.2 (x64 cs)) (Version: 104.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 77.0.1 - Mozilla)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.15601.20064 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.15601.20064 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.3.0.9267 - Microsoft Corporation)
Windows Driver Package - HP Inc bemk_4_3_20_873 ActivityMonitor (08/03/2022 4.3.20.873) (HKLM\...\A860DA88F48409D3E51FF0984F930FCD71447B04) (Version: 08/03/2022 4.3.20.873 - HP Inc) Hidden
Windows Driver Package - HP Inc. BrCow_4_3_20_873 ActivityMonitor (08/03/2022 4.3.20.873) (HKLM\...\31D92F2DB933E63AE12DBA928A1E33EAB2D0D1F5) (Version: 08/03/2022 4.3.20.873 - HP Inc.) Hidden
Windows Driver Package - HP Inc. BrFilter_4_3_20_873 ActivityMonitor (08/03/2022 4.3.20.873) (HKLM\...\94B38AA31003D81A3F8F2D2FA533E85149B9831E) (Version: 08/03/2022 4.3.20.873 - HP Inc.) Hidden
Packages:
=========
Audio Controls -> C:\Program Files\WindowsApps\22094SynapticsIncorporate.AudioControls_1.3.99.0_x64__qt57b6kdvhcfw [2022-01-03] (Synaptics Hong Kong Limited, Taiwan Branch (H.K.))
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_7.21.71.0_x64__kgqvnymyfvs32 [2022-07-23] (king.com)
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.88.4.0_x64__kgqvnymyfvs32 [2022-09-13] (king.com)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-07-13] (Microsoft Corporation)
HP Desktop Support Utilities -> C:\Program Files\WindowsApps\AD2F1837.HPDesktopSupportUtilities_7.0.7.0_x64__v10z8vjag6ke6 [2022-07-29] (HP Inc.)
HP JumpStarts -> C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.10.1627.0_x64__v10z8vjag6ke6 [2021-05-22] (HP Inc.)
HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_1.8.2.0_x64__v10z8vjag6ke6 [2022-08-06] (HP Inc.)
HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.0.42.0_x64__v10z8vjag6ke6 [2021-04-09] (HP Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_138.2.414.0_x64__v10z8vjag6ke6 [2022-09-09] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.20.22.0_x64__v10z8vjag6ke6 [2022-08-24] (HP Inc.)
HP System Information -> C:\Program Files\WindowsApps\AD2F1837.HPSystemInformation_8.10.29.0_x64__v10z8vjag6ke6 [2022-03-26] (HP Inc.)
Intel® Graphics Control Panel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsControlPanel_3.3.0.0_x64__8j3eq9eme6ctt [2020-06-13] (INTEL CORP)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-06-14] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-06-14] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.14.9020.0_x64__8wekyb3d8bbwe [2022-09-09] (Microsoft Studios) [MS Ad]
Microsoft To Do -> C:\Program Files\WindowsApps\Microsoft.Todos_2.78.52391.0_x64__8wekyb3d8bbwe [2022-09-07] (Microsoft Corporation) [Startup Task]
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3408.0_x64__8j3eq9eme6ctt [2022-04-20] (INTEL CORP) [Startup Task]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0 [2022-09-09] (Spotify AB) [Startup Task]
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3530282796-2492871232-3359154168-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\safro\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20077.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3530282796-2492871232-3359154168-1001_Classes\CLSID\{81843de1-cd70-4c5e-bdb6-316862e1d82f}\localserver32 -> hp-sure-sense: => No File
CustomCLSID: HKU\S-1-5-21-3530282796-2492871232-3359154168-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\safro\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20077.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ BromiumOverlay_4_3_20_873] -> {6CDCC3E8-D8FF-46EF-B8BE-63A05E327848} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ShellIconOverlayIdentifiers: [ AcronisDrive] -> {5D74FD4B-4EFB-4586-8022-8637BBE40970} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_8_39216.dll [2021-03-23] (Acronis International GmbH -> )
ShellIconOverlayIdentifiers: [ AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_8_39216.dll [2021-03-23] (Acronis International GmbH -> )
ShellIconOverlayIdentifiers: [ AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_8_39216.dll [2021-03-23] (Acronis International GmbH -> )
ShellIconOverlayIdentifiers: [ AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_8_39216.dll [2021-03-23] (Acronis International GmbH -> )
ShellIconOverlayIdentifiers-x32: [ BromiumOverlay_4_3_20_873] -> {6CDCC3E8-D8FF-46EF-B8BE-63A05E327848} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-08-25] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [ExpressZip] -> {8EEA165E-0B8B-4BA7-9796-50214C767171} => C:\Program Files (x86)\NCH Software\ExpressZip\ezcm64.dll [2022-06-22] () [File not signed]
ContextMenuHandlers2: [Bromium TrustDrive Context Menu_4_3_20_873] -> {5F4F5529-DD35-4B9F-812F-A5B0B4F15294} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-08-25] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-08-14] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [vSentry_TrustFile_4_3_20_873] -> {833378FE-1986-46BA-9B4E-F8F1DEBC9B06} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-08-25] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [ExpressZip] -> {8EEA165E-0B8B-4BA7-9796-50214C767171} => C:\Program Files (x86)\NCH Software\ExpressZip\ezcm64.dll [2022-06-22] () [File not signed]
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-08-14] (Malwarebytes Corporation -> Malwarebytes)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2020-04-30 13:40 - 2020-04-30 13:40 - 000382464 _____ (Crossmatch, Inc.) [File not signed] C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DPCPFelica.dll
2020-04-30 13:40 - 2020-04-30 13:40 - 000338432 _____ (Crossmatch, Inc.) [File not signed] C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DPDevice2.dll
2020-04-30 13:40 - 2020-04-30 13:40 - 000456192 _____ (Crossmatch, Inc.) [File not signed] C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DPDevice5.dll
2009-05-21 20:09 - 2009-05-21 20:09 - 000554496 _____ (Hewlett-Packard Co.) [File not signed] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusg.dll
2022-04-20 22:06 - 2022-04-20 22:07 - 042859520 _____ (Intel Corporation) [File not signed] C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3408.0_x64__8j3eq9eme6ctt\IGCC.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
BHO: HP Sure Click Plugin_4_3_20_873 -> {26B469ED-0C6C-4BC2-8F30-D1836BBD070C} -> C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin64.dll [2022-08-03] (Bromium, Inc. -> HP)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2022-08-06] (Microsoft Corporation -> Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2022-08-17] (HP Inc. -> HP Inc.)
BHO-x32: HP Sure Click Plugin_4_3_20_873 -> {26B469ED-0C6C-4BC2-8F30-D1836BBD070C} -> C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin32.dll [2022-08-03] (Bromium, Inc. -> HP)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-08-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2022-08-17] (HP Inc. -> HP Inc.)
Handler: bromium - {EFF88B17-05AA-4736-BBCA-6A03400B39CA} - C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin64.dll [2022-08-03] (Bromium, Inc. -> HP)
Handler-x32: bromium - {EFF88B17-05AA-4736-BBCA-6A03400B39CA} - C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin32.dll [2022-08-03] (Bromium, Inc. -> HP)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\sharepoint.com -> hxxps://zuzanasafrova-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 06:49 - 2019-03-19 06:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\safro\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\19986_en_1.jfif
DNS Servers: 62.24.64.2 - 8.8.8.8
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "Acronis Scheduler2 Service"
HKLM\...\StartupApproved\Run32: => "TrueImageMonitor.exe"
HKLM\...\StartupApproved\Run32: => "AcronisTibMounterMonitor"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{253765AF-6682-4F58-8108-F2FF57D018CC}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS0A47\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{8E3605D4-D7D0-4835-A9C0-4C6E17D81D49}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS0A47\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{1D1AC294-67C7-449F-B527-24A7F5D0524C}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS5245\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{76351B47-0487-4A3D-B6C7-D98201C980B1}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS5245\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{CA87FA9C-E4E0-4302-9746-E0CFFFC23447}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS410D\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{ADE09D99-424D-4B7C-B3B7-57D4697A759D}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS410D\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{9F577F38-1432-42DE-8F0E-0078A513B5E5}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{339BA818-E9BE-4226-A0BE-7B7F8094AB66}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{1F010DFC-99C7-435F-B2B3-069741850443}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS673E\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{195CD1A2-1281-42F5-86D8-9F64FD72BE20}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS673E\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{2952212B-EA1B-4EC6-A151-8E3498771CC0}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS6790\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{414301D5-E4D8-456C-A9D7-9FB4D02CC9B8}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS6790\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{56CC5B86-C044-4983-9150-1D28D7287435}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS2700\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{8F0BB5C1-EDEC-45A7-B70D-49F977103A6E}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS2700\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{3C0DAF24-7C80-471B-BF7B-18FB20E13E5A}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{5210CF9F-369C-40BE-AA95-008CC54DC725}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{01F84695-7E52-4959-8385-045647903AFF}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7B949C30-6CD9-4BE9-A67C-59C4E3333142}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{ECD5779D-2D1F-4F5B-8462-36255AEC10B2}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (Acronis International GmbH -> )
FirewallRules: [{CAF77069-3B48-42B8-8441-923A70EBB9F3}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{2013B30C-DBC8-4FCD-9282-13063FB85708}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImage.exe (Acronis International GmbH -> )
FirewallRules: [{C98B0971-4CFE-4482-88C5-5AD9398158BA}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis International GmbH -> )
FirewallRules: [{6BB94324-D70D-4876-9DD1-48AA5352079F}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe (Acronis International GmbH -> )
FirewallRules: [{5E2DE3CF-1A15-4F51-A6D0-AB96B9946580}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\TrueImageHome\TrueImageHomeService.exe (Acronis International GmbH -> )
FirewallRules: [{DE86193C-81CB-4AA6-AEF7-8699F6C719E4}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\MediaBuilder.exe (Acronis International GmbH -> )
FirewallRules: [{BF0E20CA-BE6F-488D-A03A-C16E2C29A834}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\SystemReport.exe (Acronis International GmbH -> )
FirewallRules: [{F73E6D29-55E5-47FB-A849-5337A4BDE5A7}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\acronis_drive.exe (Acronis International GmbH -> )
FirewallRules: [{DBD80C8C-8BBC-4A9C-BFBF-0F20DB908653}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{8A9A5504-BE9E-47BE-96F5-A282DC0A8478}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe (Acronis International GmbH -> )
FirewallRules: [{08796D48-DB93-4C05-8502-10CE5EDA597D}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\ga_service.exe (Acronis International GmbH -> )
FirewallRules: [{F99A23C6-58E0-4120-BAA1-B68580F16031}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\LicenseActivator.exe (Acronis International GmbH -> )
FirewallRules: [{52C217FA-F9C6-4D83-8C8F-360114AD758C}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Home\report_sender.exe (Acronis International GmbH -> )
FirewallRules: [{4C2F913B-8D9D-4751-9553-B124544C0632}] => (Allow) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{DD913895-271F-4A82-A185-FE20F6217141}] => (Allow) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{9434A9F1-9EBE-4DB3-AD01-C4405308528C}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe (Acronis International GmbH -> )
FirewallRules: [{F729D9BA-4C7C-4F5A-89B5-E2B9274C7DC4}] => (Allow) C:\Program Files (x86)\Acronis\Agent\aakore.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{9623B756-CD2C-4399-B0A9-84C427C23757}] => (Allow) C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{D9CC45DE-EF76-4528-902A-5C0D97A81925}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{967AB825-3B55-4D7C-9607-8C55914EE8B4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E8744E57-E136-4B03-A8F5-9A28187DEA2D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{BE897E38-3625-4D1B-87C5-C05D069D0283}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{07CCB5DF-6E9C-4497-8000-A7EB9E255021}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{9DB6BE07-BB00-4DA2-B78A-AD4519D5A147}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{328B8951-E11D-4CE6-849D-57047EAEDAFC}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{69E97C25-168E-42EF-A4E8-0C3B0E8F3D0A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{942DC55D-5F70-4DFE-8F7B-A36057039DED}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AF363D57-9993-4191-9ADC-9BCE7DD0FDE1}] => (Allow) C:\Users\safro\Desktop\ZMENŠENÍ PDF SOUBORŮ\ApowerCompress\ApowerCompress.exe => No File
FirewallRules: [{4EBA6F7A-A5BD-424B-B10A-539496858B7C}] => (Allow) C:\Users\safro\Desktop\ZMENŠENÍ PDF SOUBORŮ\ApowerCompress\ApowerCompress.exe => No File
FirewallRules: [{78E5483B-2AB3-4479-B2C1-E1F1A32E27DC}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.3.7.401\brchromium\102.0.5005.148\BrChrome.exe (Bromium, Inc. -> HP)
FirewallRules: [{1492ABF0-893B-4D7D-BCF6-AB6E0879A100}] => (Allow) C:\Program Files\HP\Sure Click\4.3.20.873\servers\manifests\chrome\brchromium\102.0.5005.148\BrChrome.exe (Bromium, Inc. -> HP)
FirewallRules: [{5DB05D50-CC4D-41B7-8E5F-426ACEE8A469}] => (Allow) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe (Piriform Software Ltd -> Piriform Software)
FirewallRules: [{4E394FCC-9205-4A79-8593-F23833A0D7EE}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{062CE7D5-E494-40EF-A9F0-CBC26095D0C3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7C5CA617-E112-4650-ABD5-71F92F202944}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{23DCCB52-1219-4B8D-B9B3-0AAF28DFC2EF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{AAFEAC0E-09A6-4515-8D1A-0EB0CBFEB9A6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{EEF23329-D1B7-49C6-AD92-BC0C190A387A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{94CB3B36-ACDA-496E-A447-355A8B3D5F65}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C122C173-AD86-4414-92EB-1996DA9F47F8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{98C4E797-5E32-467C-954F-43B7C2AA6C83}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D72DA0B3-F383-42DA-AB99-9DB5EF605DF8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{AEDF36DB-B0A2-4788-BD99-3710E4982D88}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{445142C1-06AE-44D1-BDEA-691CE6CFCCAF}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F405C915-DD02-491A-8465-966DE8868BAE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B23EEE75-3A8D-4BEB-A136-9604BA82D0BC}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\105.0.1343.33\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2958B19B-3A62-48D9-B965-6CFBE63A9B54}] => (Allow) C:\hp\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{A7911963-69AB-4B0E-B57B-E4721659BCFB}] => (Allow) C:\hp\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
==================== Restore Points =========================
13-09-2022 16:21:10 Grab_MSIExecute
13-09-2022 17:09:04 Grab_MSIExecute
14-09-2022 14:30:05 Instalační služba modulů systému Windows
14-09-2022 14:57:17 Piriform Driver Updater - Update 10.27.0.11
14-09-2022 15:11:06 Grab_MSIExecute
14-09-2022 15:11:17 Grab_MSIExecute
14-09-2022 15:20:03 Instalační služba modulů systému Windows
14-09-2022 15:21:28 Instalační služba modulů systému Windows
14-09-2022 16:17:02 Grab_MSIExecute
14-09-2022 16:54:03 Grab_MSIExecute
14-09-2022 18:10:29 Grab_MSIExecute
14-09-2022 19:03:21 Grab_MSIExecute
14-09-2022 19:08:34 Grab_MSIExecute
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (09/14/2022 06:30:08 PM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002
Error: (09/14/2022 06:30:08 PM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002
Error: (09/14/2022 06:30:08 PM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003
Error: (09/14/2022 03:07:33 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.
Error: (09/14/2022 03:07:33 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]
Error: (09/14/2022 03:07:33 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.
Error: (09/14/2022 03:07:33 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]
Error: (09/13/2022 04:18:25 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe, identifikátor PID: 4284, identifikátor PID ProfSvc: 1744.
System errors:
=============
Error: (09/14/2022 07:06:00 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: Počítač byl restartován z procesu kontroly chyb. Kontrola chyb: 0x0000007e (0xffffffffc0000005, 0xfffff8054625bd4e, 0xffffc8087b702438, 0xfffff8054b49a920). Výpis byl uložen do: C:\WINDOWS\MEMORY.DMP. ID hlášení: 19f1c498-129b-45f2-9355-7f89d8c2841b
Error: (09/14/2022 07:05:43 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (19:00:19, 14.09.2022) bylo neočekávané.
Error: (09/14/2022 06:16:40 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-B59IHMH)
Description: Nelze spustit server DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Došlo k chybě:
2147942767
při provádění příkazu:
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
Error: (09/14/2022 06:07:40 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (16:51:07, 14.09.2022) bylo neočekávané.
Error: (09/14/2022 04:52:42 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-B59IHMH)
Description: Nelze spustit server DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Došlo k chybě:
2147942767
při provádění příkazu:
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
Error: (09/14/2022 04:51:07 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (16:14:04, 14.09.2022) bylo neočekávané.
Error: (09/14/2022 04:13:27 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Server byla ukončena s následující chybou:
Probíhá vypnutí systému.
Error: (09/14/2022 04:13:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba XTU3SERVICE neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
CodeIntegrity:
===============
Date: 2022-09-14 19:10:50
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2022-09-14 19:10:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: HP R03 Ver. 02.13.00 03/24/2022
Motherboard: HP 8599
Processor: Intel(R) Core(TM) i5-9500 CPU @ 3.00GHz
Percentage of memory in use: 38%
Total physical RAM: 16222.29 MB
Available physical RAM: 9932.96 MB
Total Virtual: 18654.29 MB
Available Virtual: 12491.71 MB
==================== Drives ================================
Drive c: (Windows ) (Fixed) (Total:475.99 GB) (Free:329.92 GB) (Model: WDC PC SN520 SDAPNUW-512G-1006) (Protected) NTFS
Drive f: (2020 Elements) (Fixed) (Total:2794.49 GB) (Free:2768.05 GB) (Model: WD Elements 25A3 USB Device) NTFS
Drive g: (Elements) (Fixed) (Total:1862.98 GB) (Free:1489.89 GB) (Model: WD Elements 107C USB Device) NTFS
Drive h: (DISK DOMACI) (Fixed) (Total:465.65 GB) (Free:453.32 GB) (Model: ST500LM0 12 HN-M500MB USB Device) FAT32
\\?\Volume{b6f8fb7c-259c-467e-96e7-cf221b314ba1}\ (Windows RE Tools) (Fixed) (Total:0.67 GB) (Free:0.25 GB) NTFS
\\?\Volume{f2dd5105-3d43-4ecb-9619-823b99375fc3}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.16 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: 390A4304)
Partition: GPT.
==========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: D954268B)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
==========================================================
Disk: 2 (Size: 2794.5 GB) (Disk ID: 16F2A91F)
Partition: GPT.
==========================================================
Disk: 3 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 666ABBD5)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=0C)
==================== End of Addition.txt =======================
Posílám log a děkuji
Doplňuji- již z notebooku, opět se zasekl, nereaguje nic, zaseklá obrazovka s poslední stránkou, myš bez reakce.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022
Ran by safro (administrator) on DESKTOP-B59IHMH (HP HP ProDesk 400 G6 MT) (14-09-2022 19:09:43)
Running from C:\Users\safro\Desktop
Loaded Profiles: safro
Platform: Microsoft Windows 10 Pro Version 21H2 19044.2006 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\DPAgent.exe ->) (DigitalPersona, Inc. -> DigitalPersona, Inc.) C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpAgent.exe
(C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpHostW.exe ->) (DigitalPersona, Inc. -> Crossmatch, Inc.) C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpCardEngine.exe
(C:\Program Files\HP\Sure Click\servers\BrService.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BrHostSvr.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\Windows\CxSvc\CxAudioSvc.exe ->) (Synaptics Incorporated -> Conexant) C:\Windows\System32\MicTray64.exe
(cmd.exe ->) (Bromium, Inc. -> ) C:\Program Files\HP\Sure Click\servers\BrHostHelper\BrHostHelper.exe <2>
(DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxEM.exe
(DriverStore\FileRepository\hpanalyticscomp.inf_amd64_d501376b0829abda\x64\TouchpointAnalyticsClientService.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_d501376b0829abda\x64\TouchpointGpuInfo.exe
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\BridgeCommunication.exe <2>
(DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\HotKeyServiceUWP.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\HPHotkeyNotification.exe
(explorer.exe ->) (INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3408.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe
(HP Inc. -> HP) C:\Program Files (x86)\HP\HP Notifications\HPNotifications.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\safro\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <12>
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler.exe
(Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler64.exe
(services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Security Update Service\4.3.20.873\SecurityUpdateService.exe
(services.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BemSvc.exe
(services.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BrService.exe
(services.exe ->) (Conexant Systems LLC.) [File not signed] C:\Windows\CxSvc\CxUtilSvc.exe
(services.exe ->) (DigitalPersona, Inc. -> Crossmatch, Inc.) C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpHostW.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Hewlett-Packard Company -> HP) C:\Windows\System32\HPSIsvc.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_d501376b0829abda\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\SysInfoCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpdsusoftwarecomponent.inf_amd64_61c94b8083a252da\HotkeyServiceDSU.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpdsusoftwarecomponent.inf_amd64_61c94b8083a252da\LanWlanWwanSwitchingServiceDSU.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\HotKeyServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\LanWlanWwanSwitchingServiceUWP.exe
(services.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(services.exe ->) (Huawei Technologies Co., Ltd. -> ) [File not signed] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_1d1c7ad354f3422f\RstMwService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_003a6d3c4c50c291\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_f37f66cf59feb38a\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_f37f66cf59feb38a\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe
(services.exe ->) (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe
(services.exe ->) (Synaptics Incorporated -> Conexant Systems LLC.) C:\Windows\CxSvc\CxAudioSvc.exe
(services.exe ->) (Synaptics Incorporated -> Conexant Systems, Inc.) C:\Windows\System32\CxUIUSvc64.exe
(svchost.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BrConsole.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe
(svchost.exe ->) (HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.10.1627.0_x64__v10z8vjag6ke6\HP.JumpStarts.exe
(svchost.exe ->) (INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3408.0_x64__8j3eq9eme6ctt\IGCC.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22062.543.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(winlogon.exe ->) (DigitalPersona, Inc. -> Crossmatch, Inc.) C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\DPAgent.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [194496 2022-08-25] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [644000 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
HKLM-x32\...\Run: [HPUsageTrackingLEDM] => "C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe" "C:\Program Files (x86)\HP\HP UT LEDM\" (No File)
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [6206360 2021-03-23] (Acronis International GmbH -> )
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [446392 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
HKLM-x32\...\Run: [HPNotifications] => C:\Program Files (x86)\HP\HP Notifications\HPNotifications.exe [1607816 2021-02-11] (HP Inc. -> HP)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\DPAgent.exe, <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38274576 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\Run: [MicrosoftEdgeAutoLaunch_8B3575D364394B552A9C25D557FBDA68] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3795360 2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\MountPoints2: {7a5cf040-089d-11eb-8d2d-9c7bef4836a0} - "D:\HiSuiteDownLoader.exe"
HKLM\...\Windows x64\Print Processors\HPM1210PrintProc: C:\Windows\System32\spool\prtprocs\x64\HPM1210PP.dll [74240 2012-09-29] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\HPM1210LM: C:\WINDOWS\system32\HPM1210LM.DLL [409088 2012-09-29] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files (x86)\CCleaner Browser\Application\105.0.18318.104\Installer\chrmstp.exe [2022-09-07] (Piriform Software Ltd -> Piriform Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.102\Installer\chrmstp.exe [2022-09-08] (Google LLC -> Google LLC)
Lsa: [Notification Packages] DPPassFilter scecli
GroupPolicy: Restriction - Chrome <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0A6936E2-A67E-4079-B4E1-6D5160B6DEEC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-08-12] (Piriform Software Ltd -> Piriform)
Task: {2D6BCF35-3111-459A-81CC-E1AA30AB298C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [847392 2022-08-17] (HP Inc. -> HP Inc.)
Task: {389EEA1C-6579-4DBF-B986-F95EDFA4E59F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPPrinterLowInk => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPPrinterLowInk\HPPrinterLowInk.exe [221328 2022-08-17] (HP Inc. -> )
Task: {39376A57-326A-46A8-B0BE-B14769FEC2DF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [142232 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {3EC33D0B-64CD-46FE-9BAA-CC43475BD936} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3003824 2022-09-06] (Piriform Software Ltd -> Piriform Software)
Task: {47536DBB-1CEA-4DE2-8B83-93CEC6B2F1D3} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [64408 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {4919C92A-D5B9-4804-B247-AC2F4D880E13} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-26] (Piriform Software Ltd -> Piriform Software)
Task: {4BC634D0-D3E1-4940-A495-AF0606B5475C} - System32\Tasks\HP\HP Support Assistant\sp107720 => C:\hpswsetup\sp107720\setup.exe [17930488 2020-11-12] (Access Denied) [File not signed] /s (Access Denied) <==== ATTENTION
Task: {5900877C-211C-4DC6-AB3C-80F350DDD9AF} - System32\Tasks\CCleanerSkipUAC - safro => C:\Program Files\CCleaner\CCleaner.exe [31990800 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {5E576C41-5785-4935-B90D-AD74B91D5250} - System32\Tasks\HP\Sure Click\Sure Click UI 4.3.20.873 => C:\Program Files\HP\Sure Click\servers\BrConsole.exe [136552 2022-08-03] (Bromium, Inc. -> HP)
Task: {668D7370-DD23-408F-8A89-60BAE90EFD78} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1555696 2022-08-03] (Adobe Inc. -> Adobe Inc.)
Task: {709AC467-E180-428E-9231-8801F8172A4C} - System32\Tasks\HP\Sure Click\Sure Click 4.3.20.873 => C:\Program Files\HP\Sure Click\servers\BrLauncher.exe [2648424 2022-08-03] (Bromium, Inc. -> HP)
Task: {765327D4-AD9D-461D-8EFE-C248B8CE929B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23706576 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {81F4C074-68D7-4840-99FB-F64AA5437684} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2022-08-17] (HP Inc. -> HP Inc.)
Task: {88567D73-D7CB-4EE6-B7F4-0BC61083A718} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-26] (Piriform Software Ltd -> Piriform Software)
Task: {8985FA80-2793-4156-B08F-1ABE766C17D7} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23706576 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {8D502118-8950-44B8-AD26-20FB1A0CB24C} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice
Task: {9F3A6E60-E7D7-48A4-8CB8-2D5AC323C225} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3003824 2022-09-06] (Piriform Software Ltd -> Piriform Software)
Task: {AC65271B-B74D-4F10-9AE7-6568003195E6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-20] (Google LLC -> Google LLC)
Task: {B40A10DD-19D7-4E49-A1C4-DCD22CBF7975} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
Task: {BA9229BA-8D09-4310-83AA-8F724BD41864} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {BE34625F-F5D1-49C3-9F71-08480FAECBFF} - System32\Tasks\HP\HP Wolf Security\Launch Console => C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe [289304 2022-07-26] (HP Inc. -> HP Inc.)
Task: {F76EF933-82CA-4A32-85C0-D85C886AC1E3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-20] (Google LLC -> Google LLC)
Task: {F7A539B4-E664-4205-A979-856F25E23AAD} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [142232 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 62.24.64.2 8.8.8.8 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{5d78b6c1-816b-4e77-8125-9f3ad7ca951c}: [DhcpNameServer] 62.24.64.2 8.8.8.8 8.8.8.8 192.168.1.1
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\safro\AppData\Local\Microsoft\Edge\User Data\Default [2022-09-14]
Edge Extension: (HP Wolf Security Extension) - C:\Users\safro\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aoganjpeihhkhippgnniaclfocnihgln [2022-09-04]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\safro\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-09-03]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
FireFox:
========
FF DefaultProfile: dhpnfwib.default
FF ProfilePath: C:\Users\safro\AppData\Roaming\Mozilla\Firefox\Profiles\dhpnfwib.default [2020-06-13]
FF ProfilePath: C:\Users\safro\AppData\Roaming\Mozilla\Firefox\Profiles\8e4py1bm.default-release-1613465552607 [2022-09-14]
FF Homepage: Mozilla\Firefox\Profiles\8e4py1bm.default-release-1613465552607 -> hxxps://www.seznam.cz/
FF Notifications: Mozilla\Firefox\Profiles\8e4py1bm.default-release-1613465552607 -> hxxps://www.wish.com; hxxps://www.eva.cz; hxxps://czechtheworld.com; hxxps://www.sportisimo.cz; hxxps://www.youtube.com; hxxps://www.aliexpress.com; hxxps://cz.pinterest.com; hxxps://www.spektrumzdravi.cz; hxxps://www.instagram.com
FF Extension: (HP Wolf Security Extension) - C:\Users\safro\AppData\Roaming\Mozilla\Firefox\Profiles\8e4py1bm.default-release-1613465552607\Extensions\firefoxhpwolfsecurityextension@bromium.com.xpi [2022-08-28] [UpdateUrl:hxxps://addons.bromium-online.com/updates.json]
FF Extension: (Tlačítko Uložit pro Pinterest) - C:\Users\safro\AppData\Roaming\Mozilla\Firefox\Profiles\8e4py1bm.default-release-1613465552607\Extensions\jid1-YcMV6ngYmQRA2w@jetpack.xpi [2022-03-02]
FF HKLM-x32\...\Firefox\Extensions: [quickprint@hp.com] - C:\Program Files (x86)\Hewlett-Packard\SmartPrint\QPExtension
FF Extension: (SmartPrintButton) - C:\Program Files (x86)\Hewlett-Packard\SmartPrint\QPExtension [2011-01-26] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [dpmaxz_ng@jetpack] - C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome => not found
FF HKLM-x32\...\Firefox\Extensions: [brofox_host@bromium.com] - C:\Program Files\HP\Sure Click\4.2.5.22\servers\FakeDir => not found
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-09-09] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-03-04] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\npCCleanerBrowserUpdate3.dll [2021-01-26] (Piriform Software Ltd -> Piriform Software)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\npCCleanerBrowserUpdate3.dll [2021-01-26] (Piriform Software Ltd -> Piriform Software)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2022-09-14]
Chrome:
=======
CHR Profile: C:\Users\safro\AppData\Local\Google\Chrome\User Data\Default [2022-09-14]
CHR Notifications: Default -> hxxps://wp.aliexpress.com; hxxps://www.aliexpress.com; hxxps://www.eva.cz
CHR Extension: (HP Wolf Security Extension) - C:\Users\safro\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpmlagmcbcnjhkdjiofoenkfbaclgjkk [2022-05-05]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\safro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-06-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\safro\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-01]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [9022120 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S4 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [12952232 2021-03-23] (Acronis International GmbH -> )
S4 AcronisCyberProtectionService; C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe [1425256 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S4 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1052280 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172264 2022-08-03] (Adobe Inc. -> Adobe Inc.)
R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6391536 2021-05-19] (Acronis International GmbH -> )
R2 BrEndpointSvc; C:\Program Files\HP\Sure Click\servers\BemSvc.exe [4355432 2022-08-03] (Bromium, Inc. -> HP)
R2 BrService; C:\Program Files\HP\Sure Click\servers\BrService.exe [10305896 2022-08-03] (Bromium, Inc. -> HP)
S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-26] (Piriform Software Ltd -> Piriform Software)
S3 CCleanerBrowserElevationService; C:\Program Files (x86)\CCleaner Browser\Application\105.0.18318.104\elevation_service.exe [1997592 2022-09-06] (Piriform Software Ltd -> Piriform Software)
S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-26] (Piriform Software Ltd -> Piriform Software)
R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082896 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12126112 2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
R2 CxAudioSvc; C:\WINDOWS\CxSvc\CxAudioSvc.exe [85512 2021-11-03] (Synaptics Incorporated -> Conexant Systems LLC.)
R2 CxUIUSvc; C:\WINDOWS\System32\CxUIUSvc64.exe [123232 2021-11-03] (Synaptics Incorporated -> Conexant Systems, Inc.)
R2 CxUtilSvc; C:\Windows\CxSvc\CxUtilSvc.exe [166400 2020-03-13] (Conexant Systems LLC.) [File not signed]
R2 DpHost; C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpHostW.exe [530136 2020-04-30] (DigitalPersona, Inc. -> Crossmatch, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3342360 2022-08-25] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3342360 2022-08-25] (ESET, spol. s r.o. -> ESET)
R2 HotKeyServiceDSU; C:\WINDOWS\System32\DriverStore\FileRepository\hpdsusoftwarecomponent.inf_amd64_61c94b8083a252da\HotKeyServiceDSU.exe [694920 2022-05-11] (HP Inc. -> HP Inc.)
R2 HotKeyServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\HotKeyServiceUWP.exe [1526176 2020-08-18] (HP Inc. -> HP Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [891256 2020-07-30] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\AppHelperCap.exe [771072 2022-07-31] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\DiagsCap.exe [769528 2022-07-31] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\NetworkCap.exe [766464 2022-07-31] (HP Inc. -> HP Inc.)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149448 2020-07-23] (HP Inc. -> HP)
R2 HPSIService; C:\windows\system32\HPSIsvc.exe [126856 2012-11-08] (Hewlett-Packard Company -> HP)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\SysInfoCap.exe [770032 2022-07-31] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_d501376b0829abda\x64\TouchpointAnalyticsClientService.exe [489712 2022-05-26] (HP Inc. -> HP Inc.)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [192320 2020-09-07] (Huawei Technologies Co., Ltd. -> ) [File not signed]
S4 LanWlanSwitchingService; C:\Program Files (x86)\HP\HP Hotkey Support\LanWlanSwitchingService.exe [628776 2019-05-28] (HP Inc. -> HP)
R2 LanWlanWwanSwitchingServiceDSU; C:\WINDOWS\System32\DriverStore\FileRepository\hpdsusoftwarecomponent.inf_amd64_61c94b8083a252da\LanWlanWwanSwitchingServiceDSU.exe [584320 2022-05-11] (HP Inc. -> HP Inc.)
R2 LanWlanWwanSwitchingServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_42257e45eaa17009\LanWlanWwanSwitchingServiceUWP.exe [782744 2020-08-18] (HP Inc. -> HP Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7391408 2021-06-04] (Malwarebytes Inc -> Malwarebytes)
S4 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4878840 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S4 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S4 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [2136488 2021-03-23] (Acronis International GmbH -> )
R2 SecurityUpdateService; C:\Program Files\HP\Security Update Service\4.3.20.873\SecurityUpdateService.exe [4353384 2022-08-03] (Bromium, Inc. -> HP)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224192 2022-09-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7398360 2021-03-23] (Acronis International GmbH -> )
S4 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5910328 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [367096 2021-03-23] (Bitdefender SRL -> Bitdefender)
R0 bemk_4_3_20_873; C:\WINDOWS\System32\DRIVERS\bemk_4_3_20_873.sys [292264 2022-08-03] (Bromium, Inc. -> HP)
R0 BrCow_4_3_20_873; C:\WINDOWS\System32\DRIVERS\BrCow_4_3_20_873.sys [70056 2022-08-03] (Bromium, Inc. -> Windows (R) Win 7 DDK provider)
R2 BrFilter_4_3_20_873; C:\WINDOWS\System32\DRIVERS\BrFilter_4_3_20_873.sys [237456 2022-08-03] (Bromium, Inc. -> HP)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [194312 2022-08-25] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [116960 2022-07-20] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2022-08-23] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [234192 2022-07-20] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [52880 2022-07-20] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [79216 2022-07-20] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [119528 2022-07-20] (ESET, spol. s r.o. -> ESET)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [199128 2021-03-30] (Malwarebytes Inc -> Malwarebytes)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2020-06-29] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R2 file_protector; C:\WINDOWS\System32\DRIVERS\file_protector.sys [720392 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [392840 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R0 fltsrv; C:\WINDOWS\System32\DRIVERS\fltsrv.sys [183944 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys [25592 2021-09-16] (HP Inc. -> HP Inc.)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2020-09-07] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220752 2022-06-23] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-12-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [198888 2022-09-14] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [69016 2022-09-14] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2022-09-14] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [156880 2022-09-14] (Malwarebytes Inc -> Malwarebytes)
R3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [29168 2016-01-06] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.)
S0 ngelam; C:\WINDOWS\System32\drivers\ngelam.sys [15816 2021-03-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Acronis International GmbH)
R1 ngscan; C:\WINDOWS\System32\DRIVERS\ngscan.sys [179104 2021-03-23] (Acronis International GmbH -> Acronis International GmbH)
S3 Ser2pl; C:\WINDOWS\System32\drivers\ser2pl64.sys [258544 2019-08-01] (WDKTestCert charles-yeh,131345514351795974 -> Prolific Technology Inc.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 tib; C:\WINDOWS\system32\DRIVERS\tib.sys [887032 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [175648 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [694920 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R3 uxen; C:\Program Files\HP\Sure Click\bin\uxen.sys [1867168 2022-07-07] (Bromium, Inc. -> HP)
R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [334984 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [251016 2021-05-19] (Acronis International GmbH -> Acronis International GmbH)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 ax_pvi; \??\C:\Program Files\HP\Sure Click\bin\ax_pvi.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-09-14 19:09 - 2022-09-14 19:10 - 000037436 _____ C:\Users\safro\Desktop\FRST.txt
2022-09-14 19:09 - 2022-09-14 19:09 - 000000000 ____D C:\FRST
2022-09-14 19:07 - 2022-09-14 19:07 - 002371072 _____ (Farbar) C:\Users\safro\Desktop\FRST64.exe
2022-09-14 19:05 - 2022-09-14 19:06 - 000999324 _____ C:\WINDOWS\Minidump\091422-15296-01.dmp
2022-09-14 19:05 - 2022-09-14 19:05 - 1308825348 _____ C:\WINDOWS\MEMORY.DMP
2022-09-14 18:21 - 2022-09-14 18:21 - 028860993 _____ C:\Users\safro\Downloads\Já mám kdo má zdraví a hygiena.pdf
2022-09-14 17:58 - 2022-09-14 17:58 - 000198888 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2022-09-14 17:58 - 2022-09-14 17:58 - 000156880 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2022-09-14 17:58 - 2022-09-14 17:58 - 000069016 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2022-09-14 16:14 - 2022-09-14 16:14 - 000001298 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Sure Click Secure Browser.lnk
2022-09-14 15:33 - 2022-09-14 15:33 - 000413696 _____ C:\WINDOWS\system32\AzureCheck.dll
2022-09-14 15:33 - 2022-09-14 15:33 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-09-14 15:33 - 2022-09-14 15:33 - 000098816 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2022-09-14 15:33 - 2022-09-14 15:33 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2022-09-14 15:33 - 2022-09-14 15:33 - 000011813 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-09-14 15:20 - 2022-09-14 15:20 - 000000000 ___HD C:\$WinREAgent
2022-09-14 14:59 - 2022-09-14 14:59 - 000472716 _____ C:\Users\safro\Downloads\OznProCleny_2022_07_70340762(1).pdf
2022-09-14 14:58 - 2022-09-14 14:58 - 000474560 _____ C:\Users\safro\Downloads\OznProCleny_2022_08_70340762.pdf
2022-09-13 20:35 - 2022-09-13 20:35 - 002041052 _____ C:\Users\safro\Downloads\JÁ MÁM KDO MÁ OVOCE ZELENINA ČERNOBÍLE.pdf
2022-09-13 18:39 - 2022-09-13 18:39 - 000088683 _____ C:\Users\safro\Downloads\KUPNÍ_SMLOUVA_Andrle.pdf
2022-09-13 18:38 - 2022-09-13 18:38 - 005515808 _____ C:\Users\safro\Downloads\Kupni_smlouva(1).pdf
2022-09-13 17:21 - 2022-09-13 17:21 - 000228903 _____ C:\Users\safro\Downloads\Venclovskych.pdf
2022-09-13 17:17 - 2022-09-13 17:17 - 005515808 _____ C:\Users\safro\Downloads\Kupni_smlouva.pdf
2022-09-13 15:11 - 2022-09-13 15:11 - 009889460 _____ C:\Users\safro\Downloads\pop-it hrátky .pdf
2022-09-13 14:49 - 2022-09-13 14:49 - 024634157 _____ C:\Users\safro\Downloads\ovoce a zelenina(1).pdf
2022-09-13 14:48 - 2022-09-13 14:48 - 012963072 _____ C:\Users\safro\Downloads\S radostí jdu do školky.pdf
2022-09-12 18:37 - 2022-09-12 18:37 - 000033891 _____ C:\Users\safro\Downloads\order_2022002860.pdf
2022-09-11 17:50 - 2022-09-11 17:50 - 003095063 _____ C:\Users\safro\Downloads\JÁ MÁM KDO MÁ PODZIM.pdf
2022-09-11 17:47 - 2022-09-11 17:48 - 033151825 _____ C:\Users\safro\Downloads\ČINNOST A PRAVIDLA V MŠ.pdf
2022-09-11 17:35 - 2022-09-11 17:35 - 006787991 _____ C:\Users\safro\Downloads\LOTO ZIMA 2.pdf
2022-09-11 16:42 - 2022-09-11 16:42 - 004101131 _____ C:\Users\safro\Downloads\LOTO PODZIM 1_4.pdf
2022-09-11 16:22 - 2022-09-11 16:22 - 004101131 _____ C:\Users\safro\Downloads\LOTO PODZIM 1.pdf
2022-09-11 16:19 - 2022-09-11 16:20 - 004101131 _____ C:\Users\safro\Downloads\LOTO 1.pdf
2022-09-11 10:55 - 2022-09-11 10:55 - 000027032 _____ C:\Users\safro\Downloads\návod loto.pdf
2022-09-11 08:21 - 2022-09-11 08:21 - 000051962 _____ C:\Users\safro\Downloads\MASKY.pdf
2022-09-11 08:14 - 2022-09-11 08:14 - 001741220 _____ C:\Users\safro\Downloads\JAK TO CHODÍ U JEŽKŮ (autor Jana Peregrinová).pdf
2022-09-10 19:05 - 2022-09-10 19:05 - 003179411 _____ C:\Users\safro\Downloads\OBRÁZKOVÉ HODINY.pdf
2022-09-10 19:05 - 2022-09-10 19:05 - 001440308 _____ C:\Users\safro\Downloads\OBRÁZKOVÝ ČASOVAČ PRO MRŇATA.pdf
2022-09-10 14:47 - 2022-09-10 14:47 - 003208378 _____ C:\Users\safro\Downloads\grafomotorické listy čísla.pdf
2022-09-10 14:14 - 2022-09-10 14:14 - 002968205 _____ C:\Users\safro\Downloads\číslo(1).pdf
2022-09-10 13:59 - 2022-09-10 13:59 - 002793988 _____ C:\Users\safro\Downloads\Grafomotorické listy - čísla.pdf
2022-09-10 13:52 - 2022-09-10 13:52 - 002793490 _____ C:\Users\safro\Downloads\číslo.pdf
2022-09-10 08:04 - 2022-09-10 08:04 - 003669575 _____ C:\Users\safro\Downloads\reflexe dětí (1).pdf
2022-09-09 19:18 - 2022-09-09 19:18 - 003775889 _____ C:\Users\safro\Downloads\REFLEXE DĚTÍ-ČINNOSTI.pdf
2022-09-09 19:15 - 2022-09-09 19:15 - 009889454 _____ C:\Users\safro\Downloads\Pop-it hrátky s barvami(aktualizace).pdf
2022-09-09 19:07 - 2022-09-09 19:07 - 009917417 _____ C:\Users\safro\Downloads\popit(4).pdf
2022-09-09 15:41 - 2022-09-09 15:41 - 006300081 _____ C:\Users\safro\Downloads\TS-01-02-2022(2).pdf
2022-09-09 15:40 - 2022-09-09 15:40 - 006300081 _____ C:\Users\safro\Downloads\TS-01-02-2022.pdf
2022-09-09 15:40 - 2022-09-09 15:40 - 006300081 _____ C:\Users\safro\Downloads\TS-01-02-2022(1).pdf
2022-09-09 15:40 - 2022-09-09 15:40 - 005002120 _____ C:\Users\safro\Downloads\TS-03-04-2022.pdf
2022-09-09 15:27 - 2022-09-09 15:27 - 003078144 _____ C:\Users\safro\Downloads\STAG86218.pdf
2022-09-08 16:42 - 2022-09-08 16:43 - 007456401 _____ C:\Users\safro\Downloads\obrázkové rébusy.pdf
2022-09-07 16:37 - 2022-09-07 16:37 - 003063795 _____ C:\Users\safro\Downloads\ZIMNÍ LETNÍ SPORTY.pdf
2022-09-07 16:35 - 2022-09-07 16:35 - 037929167 _____ C:\Users\safro\Downloads\Lidské tělo - pracovní listy (1).pdf
2022-09-07 16:33 - 2022-09-07 16:33 - 001586859 _____ C:\Users\safro\Downloads\Paleček a jeho kamarádi.zip
2022-09-06 20:18 - 2022-09-06 20:18 - 000000349 _____ C:\Users\safro\Desktop\VŠECHNY MOJE PRSTY.txt
2022-09-06 19:21 - 2022-09-06 19:21 - 000000000 _____ C:\Users\safro\Downloads\basnicky.pdf
2022-09-06 18:09 - 2022-09-06 18:09 - 014433846 _____ C:\Users\safro\Downloads\PODZIM - POSTŘEHOVKA.pdf
2022-09-06 18:07 - 2022-09-06 18:07 - 021025248 _____ C:\Users\safro\Downloads\VŠE O MNĚ! - představovací pracovní listy.pdf
2022-09-06 17:54 - 2022-09-13 16:17 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-09-05 19:07 - 2022-09-05 19:07 - 001503009 _____ C:\Users\safro\Downloads\video-1661181799.mp4
2022-09-05 18:54 - 2022-09-05 18:54 - 000301234 _____ C:\Users\safro\Downloads\S PLASTELÍNOU CELÝ ROK (1).pdf
2022-09-05 16:35 - 2022-09-05 16:35 - 011499909 _____ C:\Users\safro\Downloads\POZNÁVÁME SVĚT S VČELKOU.pdf
2022-09-04 19:04 - 2022-09-04 19:04 - 000948522 _____ C:\Users\safro\Downloads\KNOFLÍKY.pdf
2022-09-04 14:35 - 2022-09-04 14:35 - 002057241 _____ C:\Users\safro\Downloads\Babí léto- pavoučkové honičky, chytačky a jiné (autor Jana Peregrinová).pdf
2022-09-04 09:22 - 2022-09-04 09:22 - 000193107 _____ C:\Users\safro\Downloads\SVOLÁVAČKY 2019-2022.pdf
2022-09-03 09:08 - 2022-09-03 09:08 - 000018935 _____ C:\Users\safro\Downloads\seznamy s VS Mk 2022 2023.xlsx
2022-09-03 09:07 - 2022-09-03 09:07 - 000020396 _____ C:\Users\safro\Downloads\seznamy s VS GK 2022 2023.xlsx
2022-09-03 08:57 - 2022-09-03 08:57 - 045144412 _____ C:\Users\safro\Downloads\Podzim na poli a v zahradě - prac. listy.pdf
2022-09-03 08:55 - 2022-09-03 08:55 - 049630503 _____ C:\Users\safro\Downloads\Dušičky a HALLOWEEN - prac. listy.pdf
2022-09-03 08:54 - 2022-09-03 08:54 - 006934366 _____ C:\Users\safro\Downloads\PŘEDMATEMATICKÁ GRAMOTNOST LISTY....pdf
2022-09-03 08:53 - 2022-09-03 08:53 - 003023509 _____ C:\Users\safro\Downloads\Pracovní listy - ABECEDA(2).pdf
2022-09-03 08:50 - 2022-09-03 08:51 - 008120234 _____ C:\Users\safro\Downloads\PŘEDŠKOLÁKŮV ÚKOLNÍČEK(1).pdf
2022-09-02 18:09 - 2022-09-02 18:09 - 000319209 _____ C:\Users\safro\Downloads\DENÍK ASISTENTKY PEDAGOGA(2).pdf
2022-09-02 18:06 - 2022-09-02 18:06 - 000319209 _____ C:\Users\safro\Downloads\DENÍK ASISTENTKY PEDAGOGA(1).pdf
2022-09-02 17:37 - 2022-09-02 17:37 - 003060790 _____ C:\Users\safro\Downloads\pruvodce-legislativou-pro-pedagogy-ms-1-9-2022(1)(1).pdf
2022-09-02 17:35 - 2022-09-02 17:35 - 003060790 _____ C:\Users\safro\Downloads\pruvodce-legislativou-pro-pedagogy-ms-1-9-2022(1).pdf
2022-09-02 17:34 - 2022-09-02 17:34 - 003060790 _____ C:\Users\safro\Downloads\pruvodce-legislativou-pro-pedagogy-ms-1-9-2022.pdf
2022-09-02 17:34 - 2022-09-02 17:34 - 000163595 _____ C:\Users\safro\Downloads\aktualizace-pruvodce-legislativou-1-9-2022.pdf
2022-09-02 17:02 - 2022-09-02 17:02 - 029940962 _____ C:\Users\safro\Downloads\Ovoce a zelenina (2).pdf
2022-09-01 19:13 - 2022-09-01 19:13 - 007402630 _____ C:\Users\safro\Downloads\Počítání, přiřazování 0 - 10 (1).pdf
2022-09-01 19:05 - 2022-09-01 19:05 - 009885647 _____ C:\Users\safro\Downloads\pop-it hrátky(1).pdf
2022-09-01 19:00 - 2022-09-01 19:00 - 005948955 _____ C:\Users\safro\Downloads\Bludiště a labyrinty(1).pdf
2022-09-01 18:56 - 2022-09-01 18:56 - 000468988 _____ C:\Users\safro\Downloads\Hry a aktivity k seznamování(1).pdf
2022-09-01 18:22 - 2022-09-01 18:22 - 004771794 _____ C:\Users\safro\Downloads\Značky MŠ.pdf
2022-09-01 16:40 - 2022-09-01 16:40 - 004797817 _____ C:\Users\safro\Downloads\pdf_20220820_221955_0000(1).pdf
2022-09-01 16:39 - 2022-09-01 16:39 - 004797817 _____ C:\Users\safro\Downloads\pdf_20220820_221955_0000.pdf
2022-09-01 15:49 - 2022-09-01 15:49 - 000543510 _____ C:\Users\safro\Downloads\015PDF_TŘÍDĚNÍ ODPADU_4strA4(1).pdf
2022-08-31 17:56 - 2022-08-31 17:56 - 014503745 _____ C:\Users\safro\Downloads\domečky plakáty.pdf
2022-08-30 18:49 - 2022-08-30 18:49 - 021689713 _____ C:\Users\safro\Downloads\lesní domečky plakáty.pdf
2022-08-30 18:43 - 2022-08-30 18:43 - 001324561 _____ C:\Users\safro\Downloads\Jdeme do školky PL.pdf
2022-08-30 18:13 - 2022-08-30 18:13 - 000131894 _____ C:\Users\safro\Desktop\Vnitřní řád školní jídelny.pdf
2022-08-30 18:10 - 2022-08-30 18:17 - 000008041 _____ C:\Users\safro\Downloads\vnitřní řád.odt
2022-08-29 18:00 - 2022-08-29 18:00 - 000468988 _____ C:\Users\safro\Downloads\Hry a aktivity k seznamování.pdf
2022-08-29 17:56 - 2022-08-29 17:56 - 029296142 _____ C:\Users\safro\Downloads\51. Drakiáda.pdf
2022-08-29 17:55 - 2022-08-29 17:55 - 000543510 _____ C:\Users\safro\Downloads\015PDF_TŘÍDĚNÍ ODPADU_4strA4.pdf
2022-08-29 17:54 - 2022-08-29 17:54 - 003963215 _____ C:\Users\safro\Downloads\Moje babička _A5 (2 stránky na list A4).pdf
2022-08-28 19:31 - 2022-08-28 19:31 - 000104777 _____ C:\Users\safro\Downloads\Potvrzeni_platby(2).PDF
2022-08-28 14:38 - 2022-08-28 14:38 - 000960619 _____ C:\Users\safro\Downloads\ORGANŘÁD.pdf
2022-08-27 09:46 - 2022-08-27 09:46 - 000010720 _____ C:\Users\safro\Desktop\PODZIMNÍ PRÁZDNINY - prázdninový provoz v MŠ.xlsx
2022-08-27 09:23 - 2022-08-27 09:23 - 040785457 _____ C:\Users\safro\Downloads\BEE BOT- HRA VLÁČEK -.pdf
2022-08-27 08:51 - 2022-08-27 08:51 - 000595859 _____ C:\Users\safro\Downloads\Rad_venkovnich_ploch k 1.9.19_od 25.5.20.pdf
2022-08-26 18:01 - 2022-08-03 06:29 - 000292264 _____ (HP) C:\WINDOWS\system32\Drivers\bemk_4_3_20_873.sys
2022-08-26 18:01 - 2022-08-03 06:29 - 000237456 _____ (HP) C:\WINDOWS\system32\Drivers\BrFilter_4_3_20_873.sys
2022-08-26 18:01 - 2022-08-03 06:29 - 000070056 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\BrCow_4_3_20_873.sys
2022-08-26 17:42 - 2022-08-26 17:42 - 000001277 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Wolf Security .lnk
2022-08-25 19:19 - 2022-08-25 19:21 - 040735816 _____ C:\Users\safro\Downloads\VELKÉ a MALÉ.pdf
2022-08-25 18:57 - 2022-08-25 18:57 - 001489271 _____ C:\Users\safro\Downloads\meta_napadnicek_07_2vydani_elverze.pdf
2022-08-25 18:55 - 2022-08-25 18:55 - 004921723 _____ C:\Users\safro\Downloads\nectunepisu_ucim_se_cesky.pdf
2022-08-25 18:54 - 2022-08-25 18:54 - 005520774 _____ C:\Users\safro\Downloads\deti_s_omj_v_ms_metodika_0(3).pdf
2022-08-25 18:54 - 2022-08-25 18:54 - 001539978 _____ C:\Users\safro\Downloads\Metodika integrace dětí s OMJ - 2020.pdf
2022-08-25 18:53 - 2022-08-25 18:53 - 000964983 _____ C:\Users\safro\Downloads\Loto_MS_CIC.pdf
2022-08-25 18:53 - 2022-08-25 18:53 - 000112784 _____ C:\Users\safro\Downloads\meta_desatero_ms_final.pdf
2022-08-25 18:52 - 2022-08-25 18:52 - 005520774 _____ C:\Users\safro\Downloads\deti_s_omj_v_ms_metodika.pdf
2022-08-25 18:50 - 2022-08-25 18:50 - 000448796 _____ C:\Users\safro\Downloads\uvod_do_zaclenovani_deti_s_omj_do_ms.pdf
2022-08-23 10:04 - 2022-08-23 11:59 - 000016112 _____ C:\Users\safro\Desktop\ROZPIS SLUŽEB 2022- TABULKA.xlsx
2022-08-22 19:32 - 2022-08-22 19:32 - 000367126 _____ C:\Users\safro\Downloads\464991984.pdf
2022-08-22 17:35 - 2022-09-05 16:51 - 000105168 _____ C:\Users\safro\Desktop\test 2022-2023 Rozpis přímé a nepřímé práce - testovací verze 2 - kopie.xlsx
2022-08-22 17:34 - 2022-09-05 16:24 - 000103140 _____ C:\Users\safro\Desktop\test 2 Rozpis přímé a nepřímé práce - testovací verze 2 - kopie.xlsx
2022-08-22 17:32 - 2022-08-22 18:08 - 000174080 _____ C:\Users\safro\Desktop\Pracovní rozpis 2022 -2023.xls
2022-08-22 17:32 - 2021-11-07 21:26 - 000174080 _____ C:\Users\safro\Desktop\Pracovní rozpis 2021-2022.xls
2022-08-22 08:50 - 2022-08-22 08:50 - 000033966 _____ C:\Users\safro\Downloads\order_2022002680.pdf
2022-08-21 19:12 - 2022-08-21 19:12 - 016770450 _____ C:\Users\safro\Downloads\PUNTÍKATÁ ABECEDA.pdf
2022-08-20 11:15 - 2022-08-20 11:15 - 017327913 _____ C:\Users\safro\Downloads\les 1 - 10.pdf
2022-08-20 11:13 - 2022-08-20 11:13 - 006564002 _____ C:\Users\safro\Downloads\rychla dvojka+pexeso_podzim_pdf.pdf
2022-08-18 20:29 - 2022-08-18 20:29 - 000461667 _____ C:\Users\safro\Downloads\ŠABLONA HRACÍ KOSTKA.pdf
2022-08-18 09:18 - 2022-08-18 09:18 - 001608272 _____ C:\Users\safro\Downloads\SMYSLY HROU.pdf
2022-08-18 09:05 - 2022-08-18 09:07 - 000168298 _____ C:\Users\safro\Downloads\viptalisman_154528.jpeg
2022-08-18 08:59 - 2022-08-18 09:02 - 000338885 _____ C:\Users\safro\Downloads\viptalisman_45876.jpeg
2022-08-18 08:58 - 2022-08-18 08:58 - 000350396 _____ C:\Users\safro\Downloads\viptalisman_64052.jpeg
2022-08-18 08:56 - 2022-08-18 09:02 - 000199424 _____ C:\Users\safro\Downloads\viptalisman_170467.jpeg
2022-08-18 08:34 - 2022-08-18 08:34 - 003420441 _____ C:\Users\safro\Downloads\2625764.pdf
2022-08-17 08:45 - 2022-08-17 08:45 - 006876559 _____ C:\Users\safro\Downloads\NAŠÍ TŘÍDA.pdf
2022-08-17 08:44 - 2022-08-17 08:44 - 002689291 _____ C:\Users\safro\Downloads\Hra oblečení.pdf
2022-08-16 17:38 - 2022-08-16 17:38 - 010715676 _____ C:\Users\safro\Downloads\Značky (1).pdf
2022-08-16 09:27 - 2022-08-16 09:27 - 000717262 _____ C:\Users\safro\Downloads\Safrova 1.pdf
2022-08-15 16:41 - 2022-08-15 16:41 - 010477662 _____ C:\Users\safro\Downloads\Plotovka ŠKOLKA.pdf
2022-08-15 16:38 - 2022-08-15 16:38 - 021916715 _____ C:\Users\safro\Downloads\jablíčko braní .pdf
2022-08-15 16:37 - 2022-08-15 16:37 - 004662979 _____ C:\Users\safro\Downloads\Barvy a tvary.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-09-14 19:07 - 2022-02-08 20:32 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-09-14 19:07 - 2020-07-21 23:30 - 000000000 ____D C:\Program Files\CCleaner
2022-09-14 19:07 - 2020-06-20 08:46 - 000000000 ____D C:\Program Files (x86)\Google
2022-09-14 19:07 - 2019-12-07 16:45 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2022-09-14 19:06 - 2020-11-23 21:53 - 000000000 ____D C:\WINDOWS\Minidump
2022-09-14 19:06 - 2020-06-13 15:45 - 000000000 ____D C:\Users\safro\AppData\LocalLow\Mozilla
2022-09-14 19:06 - 2020-06-13 15:38 - 000000000 ___RD C:\Users\safro\OneDrive
2022-09-14 19:06 - 2020-06-13 15:36 - 000000000 __SHD C:\Users\safro\IntelGraphicsProfiles
2022-09-14 19:06 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-09-14 19:05 - 2020-09-15 19:47 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-09-14 19:05 - 2020-09-15 19:42 - 000008192 ___SH C:\DumpStack.log.tmp
2022-09-14 19:05 - 2020-09-15 19:42 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-09-14 19:05 - 2020-09-15 18:57 - 000000000 ____D C:\Users\safro
2022-09-14 19:05 - 2020-09-11 15:11 - 000010456 __RSH C:\ProgramData\ntuser.pol
2022-09-14 19:05 - 2020-03-13 07:22 - 000000000 ____D C:\ProgramData\Bromium
2022-09-14 19:05 - 2020-03-13 07:10 - 000000000 ___HD C:\Intel
2022-09-14 19:05 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-09-14 19:02 - 2021-10-09 13:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2022-09-14 18:12 - 2022-05-11 14:53 - 000713078 _____ C:\WINDOWS\system32\perfh005.dat
2022-09-14 18:12 - 2022-05-11 14:53 - 000143796 _____ C:\WINDOWS\system32\perfc005.dat
2022-09-14 18:12 - 2020-09-15 19:50 - 001683936 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-09-14 18:11 - 2021-05-05 18:20 - 000000000 ___RD C:\Users\safro\Downloads\OBRÁZKY PRODUKTŮ
2022-09-14 16:15 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-09-14 16:14 - 2022-05-12 16:52 - 000547488 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-09-14 16:13 - 2020-12-27 15:54 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2022-09-14 16:13 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-09-14 16:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-09-14 16:13 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2022-09-14 15:35 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-09-14 15:32 - 2020-09-15 19:44 - 003011072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-09-14 15:02 - 2020-06-13 15:36 - 000000000 ____D C:\Users\safro\AppData\Local\Packages
2022-09-14 14:27 - 2020-06-13 16:25 - 141646296 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-09-14 14:27 - 2020-06-13 16:25 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-09-13 21:21 - 2020-06-17 07:02 - 000000000 ____D C:\Users\safro\AppData\Local\CrashDumps
2022-09-13 16:17 - 2020-06-13 15:45 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-09-13 15:04 - 2021-09-30 15:46 - 000000000 ____D C:\Users\safro\Desktop\MOMENTKY ZÁŘÍ
2022-09-13 14:35 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-09-10 18:09 - 2020-07-16 19:49 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-09-10 18:09 - 2020-07-16 19:49 - 000002282 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-09-10 18:08 - 2021-12-11 21:32 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3530282796-2492871232-3359154168-1001
2022-09-10 18:08 - 2020-09-15 19:47 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3530282796-2492871232-3359154168-1001
2022-09-10 18:08 - 2020-09-15 18:57 - 000002389 _____ C:\Users\safro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-09-08 16:33 - 2020-06-20 08:46 - 000002309 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-09-08 16:33 - 2020-06-20 08:46 - 000002268 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-09-07 16:31 - 2022-05-01 16:02 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-09-07 16:26 - 2020-03-13 07:20 - 000000000 ____D C:\Program Files\Microsoft Office
2022-09-07 16:20 - 2020-07-21 23:31 - 000002395 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner Browser.lnk
2022-09-07 16:20 - 2020-07-21 23:30 - 000000000 ____D C:\Program Files (x86)\CCleaner Browser
2022-09-07 16:19 - 2020-06-13 15:45 - 000001013 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-09-05 21:21 - 2021-12-30 22:35 - 000016576 _____ C:\Users\safro\Desktop\INZERCE NA FB.txt
2022-09-02 17:16 - 2021-05-31 19:36 - 000031728 _____ C:\Users\safro\Desktop\newsletter 1.txt
2022-09-02 15:01 - 2020-06-13 15:37 - 000000000 ____D C:\Users\safro\AppData\Roaming\hpqLog
2022-08-30 17:23 - 2020-09-15 19:47 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-08-30 17:23 - 2020-09-15 19:47 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-08-29 21:20 - 2020-11-28 19:30 - 000004742 _____ C:\Users\safro\Desktop\PROVIZE KOLAGEN.txt
2022-08-27 09:34 - 2021-10-24 13:42 - 000000000 ____D C:\Users\safro\Desktop\ŠKOLKA ZÁSTUPCE
2022-08-26 18:01 - 2020-03-13 07:23 - 000019325 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2022-08-26 17:42 - 2020-09-15 19:47 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2022-08-26 17:42 - 2020-06-18 16:19 - 000000000 ____D C:\Users\safro\AppData\Local\HP
2022-08-26 17:42 - 2020-03-13 07:14 - 000000000 ____D C:\Program Files\HP
2022-08-26 17:42 - 2019-04-19 20:34 - 000000000 ____D C:\ProgramData\HP
2022-08-25 18:14 - 2020-04-02 13:43 - 000194312 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys
2022-08-23 12:00 - 2020-04-01 15:27 - 000016336 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys
2022-08-23 08:01 - 2020-09-15 19:47 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-08-23 08:01 - 2020-09-15 19:47 - 000003516 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-08-22 17:32 - 2022-06-10 15:13 - 000000000 ____D C:\Users\safro\Desktop\ROZPIS PRÁZDNINY - MUSTR
2022-08-22 17:29 - 2022-06-12 19:31 - 000000000 ____D C:\Users\safro\Desktop\TABULKY ADÉLKA
2022-08-22 15:53 - 2020-09-15 19:47 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-08-21 19:06 - 2022-06-13 17:35 - 000000000 ____D C:\Users\safro\Desktop\PRÁZDNINOVÝ PROVOZ PLÁNOVÁNÍ
2022-08-15 21:26 - 2020-10-16 22:05 - 000029330 _____ C:\Users\safro\Desktop\finclub partnerský odkaz.txt
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-08-2022
Ran by safro (14-09-2022 19:11:24)
Running from C:\Users\safro\Desktop
Microsoft Windows 10 Pro Version 21H2 19044.2006 (X64) (2020-09-15 17:48:02)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3530282796-2492871232-3359154168-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3530282796-2492871232-3359154168-503 - Limited - Disabled)
Guest (S-1-5-21-3530282796-2492871232-3359154168-501 - Limited - Disabled)
safro (S-1-5-21-3530282796-2492871232-3359154168-1001 - Administrator - Enabled) => C:\Users\safro
WDAGUtilityAccount (S-1-5-21-3530282796-2492871232-3359154168-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET Security (Enabled - Up to date) {DF8BEACB-94C9-218A-73AD-A78362A8C516}
AV: ESET Security (Enabled - Up to date) {89B55CC4-3881-78B2-11E2-479AE0371896}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
FW: ESET Firewall (Enabled) {B066057A-E576-007C-D591-56C163D3B33B}
FW: ESET Firewall (Enabled) {E7B06BEE-DEA6-20D2-58F2-0EB69C7B826D}
FW: ESET Firewall (Enabled) {B18EDDE1-72EE-79EA-3ABD-EEAF1EE45FED}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Acronis Drivers (HKLM\...\{7C36ADC0-5219-4D31-90D1-4211321481EF}) (Version: 25.8.39216 - Acronis) Hidden
Acronis True Image (HKLM-x32\...\{F0A1A9E1-CD4B-4504-836F-1946F5815ECB}) (Version: 25.8.39216 - Acronis) Hidden
Acronis True Image (HKLM-x32\...\{F0A1A9E1-CD4B-4504-836F-1946F5815ECB}Visible) (Version: 25.8.39216 - Acronis)
Adobe Acrobat DC (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 21.007.20091 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601013}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
ApowerCompress V1.1.14 (HKLM-x32\...\{10998dc6-e8e2-48ef-9378-0db3d4c7f32a}_is1) (Version: 1.1.14 - Apowersoft LIMITED)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 6.03 - Piriform)
CCleaner Browser (HKLM-x32\...\CCleaner Browser) (Version: 105.0.18318.104 - Autoři prohlížeče CCleaner Browser)
CCleaner Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.8.1067.0 - Piriform Software) Hidden
Dynamic Application Loader Host Interface Service (HKLM\...\{0E6217C5-C8FC-4745-AAC2-154D672F8EF3}) (Version: 1.0.0.0 - Intel Corporation) Hidden
ESET Security (HKLM\...\{0C3F76CB-98AA-49B1-9B72-CD040E3E17E8}) (Version: 15.2.17.0 - ESET, spol. s r.o.)
Express Burn Disc Burning Software (HKLM-x32\...\ExpressBurn) (Version: 10.30 - NCH Software)
Express Zip File Compression (HKLM-x32\...\ExpressZip) (Version: 9.26 - NCH Software)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 105.0.5195.102 - Google LLC)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 11.0.0.320 - Huawei Technologies Co., Ltd.)
HP Client Security Manager (HKLM\...\{456CC699-FD29-4835-9CE6-BB3E63DC76E3}) (Version: 9.5.3.2908 - HP Inc.) Hidden
HP Client Security Manager (HKLM\...\HPProtectTools) (Version: 9.5.3.2908 - HP Inc.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.19.0 - HP)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
HP Hotkey Support (HKLM-x32\...\{6606696F-B31A-48B7-B05D-FB5DDFAD9FAB}) (Version: 6.2.52.1 - HP Inc.)
HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - )
HP Notifications (HKLM-x32\...\{84937F28-9CB4-49E7-A2CF-E32D97E6DAE6}) (Version: 1.1.28.1 - HP)
HP Security Update Service (HKLM\...\{6CC3B2F8-3BC4-49B5-BDD4-8D587132D14E}) (Version: 4.3.20.873 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{0543AB37-B3F9-4948-A6D7-AB574271DEAC}) (Version: 1.4.9.2 - HP Inc.) Hidden
HP Wolf Security - Console (HKLM\...\{0C64ED5A-DD21-44C9-BA9D-CF2BE681DABE}) (Version: 11.0.16.42 - HP Inc.)
HP Wolf Security (HKLM\...\{AE1E39EE-133E-11ED-A25C-10604B96B11E}) (Version: 4.3.20.873 - HP Inc.)
HP Wolf Security Application Support for Chrome 102.0.5005.148 (HKLM\...\{2EA6032E-FD0D-4CDE-97BB-E482EBB4FD8C}) (Version: 4.3.7.401 - HP Inc.) Hidden
HP Wolf Security Application Support for Sure Sense (HKLM\...\{7D3F430E-EE63-4508-90B4-0C92E924A789}) (Version: 4.3.20.873 - HP Inc.) Hidden
HP Wolf Security Application Support for Windows (HKLM\...\{5621D48E-25BD-4A4A-B336-5C6D63ECC922}) (Version: 4.3.2.1711 - HP Inc.) Hidden
HP Wolf Security Application Support for Windows (HKLM\...\{76FD5CC3-3B06-4C18-9103-FBDB3C4C7F15}) (Version: 4.3.1.220 - HP Inc.) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
Intel(R) Chipset Device Software (HKLM\...\{00C43022-CFDA-4942-9D3F-04199C91C939}) (Version: 10.1.18121.8164 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{37942a92-9e3f-4d70-9b5c-5955cbc54505}) (Version: 10.1.18121.8164 - Intel(R) Corporation)
Intel(R) Icls (HKLM\...\{4AFF8BD2-8533-46B3-89CA-2F929B022F70}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) LMS (HKLM\...\{277F237D-10EF-46D5-BE31-25C1ADE3E13F}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2105.15.0.2157 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{959E6738-F665-4E07-8D7E-88C449AD2479}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{A9B23394-82C4-4885-92F6-5C21D2AFAF14}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{005DE983-782C-43E6-959E-2DB59D503529}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.7261 - Intel Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Malwarebytes version 4.4.0.117 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.4.0.117 - Malwarebytes)
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.15601.20088 - Microsoft Corporation)
Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.15601.20088 - Microsoft Corporation)
Microsoft 365 - sk-sk (HKLM\...\O365HomePremRetail - sk-sk) (Version: 16.0.15601.20088 - Microsoft Corporation)
Microsoft 365 Apps pro firmy - cs-cz (HKLM\...\O365BusinessRetail - cs-cz) (Version: 16.0.15601.20088 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 105.0.1343.33 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 105.0.1343.33 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\OneDriveSetup.exe) (Version: 22.176.0821.0003 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\Teams) (Version: 1.3.00.9267 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft VC++ redistributables repacked. (HKLM\...\{BACA8ED0-DB44-468A-9D76-7D4588B90D60}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft VC++ redistributables repacked. (HKLM-x32\...\{3FED85F2-4004-4F8A-B65B-DDC1F6013FAA}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27027 (HKLM-x32\...\{fd9b6070-d13e-45dc-819b-41806bf45b6b}) (Version: 14.16.27027.1 - Microsoft Corporation)
Microsoft Visual C++ 2017 X64 Additional Runtime - 14.16.27024 (HKLM\...\{9D29FC96-9EEE-4253-943F-96B3BBFDD0B6}) (Version: 14.16.27024 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2017 X64 Minimum Runtime - 14.16.27024 (HKLM\...\{F1B0FB3A-E0EA-47A6-9383-3650655403B0}) (Version: 14.16.27024 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 104.0.2 (x64 cs)) (Version: 104.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 77.0.1 - Mozilla)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.15601.20064 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.15601.20064 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.3.0.9267 - Microsoft Corporation)
Windows Driver Package - HP Inc bemk_4_3_20_873 ActivityMonitor (08/03/2022 4.3.20.873) (HKLM\...\A860DA88F48409D3E51FF0984F930FCD71447B04) (Version: 08/03/2022 4.3.20.873 - HP Inc) Hidden
Windows Driver Package - HP Inc. BrCow_4_3_20_873 ActivityMonitor (08/03/2022 4.3.20.873) (HKLM\...\31D92F2DB933E63AE12DBA928A1E33EAB2D0D1F5) (Version: 08/03/2022 4.3.20.873 - HP Inc.) Hidden
Windows Driver Package - HP Inc. BrFilter_4_3_20_873 ActivityMonitor (08/03/2022 4.3.20.873) (HKLM\...\94B38AA31003D81A3F8F2D2FA533E85149B9831E) (Version: 08/03/2022 4.3.20.873 - HP Inc.) Hidden
Packages:
=========
Audio Controls -> C:\Program Files\WindowsApps\22094SynapticsIncorporate.AudioControls_1.3.99.0_x64__qt57b6kdvhcfw [2022-01-03] (Synaptics Hong Kong Limited, Taiwan Branch (H.K.))
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_7.21.71.0_x64__kgqvnymyfvs32 [2022-07-23] (king.com)
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.88.4.0_x64__kgqvnymyfvs32 [2022-09-13] (king.com)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-07-13] (Microsoft Corporation)
HP Desktop Support Utilities -> C:\Program Files\WindowsApps\AD2F1837.HPDesktopSupportUtilities_7.0.7.0_x64__v10z8vjag6ke6 [2022-07-29] (HP Inc.)
HP JumpStarts -> C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.10.1627.0_x64__v10z8vjag6ke6 [2021-05-22] (HP Inc.)
HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_1.8.2.0_x64__v10z8vjag6ke6 [2022-08-06] (HP Inc.)
HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.0.42.0_x64__v10z8vjag6ke6 [2021-04-09] (HP Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_138.2.414.0_x64__v10z8vjag6ke6 [2022-09-09] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.20.22.0_x64__v10z8vjag6ke6 [2022-08-24] (HP Inc.)
HP System Information -> C:\Program Files\WindowsApps\AD2F1837.HPSystemInformation_8.10.29.0_x64__v10z8vjag6ke6 [2022-03-26] (HP Inc.)
Intel® Graphics Control Panel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsControlPanel_3.3.0.0_x64__8j3eq9eme6ctt [2020-06-13] (INTEL CORP)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-06-14] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-06-14] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.14.9020.0_x64__8wekyb3d8bbwe [2022-09-09] (Microsoft Studios) [MS Ad]
Microsoft To Do -> C:\Program Files\WindowsApps\Microsoft.Todos_2.78.52391.0_x64__8wekyb3d8bbwe [2022-09-07] (Microsoft Corporation) [Startup Task]
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3408.0_x64__8j3eq9eme6ctt [2022-04-20] (INTEL CORP) [Startup Task]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0 [2022-09-09] (Spotify AB) [Startup Task]
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3530282796-2492871232-3359154168-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\safro\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20077.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3530282796-2492871232-3359154168-1001_Classes\CLSID\{81843de1-cd70-4c5e-bdb6-316862e1d82f}\localserver32 -> hp-sure-sense: => No File
CustomCLSID: HKU\S-1-5-21-3530282796-2492871232-3359154168-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\safro\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20077.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ BromiumOverlay_4_3_20_873] -> {6CDCC3E8-D8FF-46EF-B8BE-63A05E327848} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ShellIconOverlayIdentifiers: [ AcronisDrive] -> {5D74FD4B-4EFB-4586-8022-8637BBE40970} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_8_39216.dll [2021-03-23] (Acronis International GmbH -> )
ShellIconOverlayIdentifiers: [ AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_8_39216.dll [2021-03-23] (Acronis International GmbH -> )
ShellIconOverlayIdentifiers: [ AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_8_39216.dll [2021-03-23] (Acronis International GmbH -> )
ShellIconOverlayIdentifiers: [ AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_8_39216.dll [2021-03-23] (Acronis International GmbH -> )
ShellIconOverlayIdentifiers-x32: [ BromiumOverlay_4_3_20_873] -> {6CDCC3E8-D8FF-46EF-B8BE-63A05E327848} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-08-25] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [ExpressZip] -> {8EEA165E-0B8B-4BA7-9796-50214C767171} => C:\Program Files (x86)\NCH Software\ExpressZip\ezcm64.dll [2022-06-22] () [File not signed]
ContextMenuHandlers2: [Bromium TrustDrive Context Menu_4_3_20_873] -> {5F4F5529-DD35-4B9F-812F-A5B0B4F15294} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-08-25] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-08-14] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [vSentry_TrustFile_4_3_20_873] -> {833378FE-1986-46BA-9B4E-F8F1DEBC9B06} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-08-25] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [ExpressZip] -> {8EEA165E-0B8B-4BA7-9796-50214C767171} => C:\Program Files (x86)\NCH Software\ExpressZip\ezcm64.dll [2022-06-22] () [File not signed]
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-08-14] (Malwarebytes Corporation -> Malwarebytes)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2020-04-30 13:40 - 2020-04-30 13:40 - 000382464 _____ (Crossmatch, Inc.) [File not signed] C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DPCPFelica.dll
2020-04-30 13:40 - 2020-04-30 13:40 - 000338432 _____ (Crossmatch, Inc.) [File not signed] C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DPDevice2.dll
2020-04-30 13:40 - 2020-04-30 13:40 - 000456192 _____ (Crossmatch, Inc.) [File not signed] C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DPDevice5.dll
2009-05-21 20:09 - 2009-05-21 20:09 - 000554496 _____ (Hewlett-Packard Co.) [File not signed] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusg.dll
2022-04-20 22:06 - 2022-04-20 22:07 - 042859520 _____ (Intel Corporation) [File not signed] C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3408.0_x64__8j3eq9eme6ctt\IGCC.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
BHO: HP Sure Click Plugin_4_3_20_873 -> {26B469ED-0C6C-4BC2-8F30-D1836BBD070C} -> C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin64.dll [2022-08-03] (Bromium, Inc. -> HP)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2022-08-06] (Microsoft Corporation -> Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2022-08-17] (HP Inc. -> HP Inc.)
BHO-x32: HP Sure Click Plugin_4_3_20_873 -> {26B469ED-0C6C-4BC2-8F30-D1836BBD070C} -> C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin32.dll [2022-08-03] (Bromium, Inc. -> HP)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-08-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2022-08-17] (HP Inc. -> HP Inc.)
Handler: bromium - {EFF88B17-05AA-4736-BBCA-6A03400B39CA} - C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin64.dll [2022-08-03] (Bromium, Inc. -> HP)
Handler-x32: bromium - {EFF88B17-05AA-4736-BBCA-6A03400B39CA} - C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin32.dll [2022-08-03] (Bromium, Inc. -> HP)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-07] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\...\sharepoint.com -> hxxps://zuzanasafrova-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 06:49 - 2019-03-19 06:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3530282796-2492871232-3359154168-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\safro\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\19986_en_1.jfif
DNS Servers: 62.24.64.2 - 8.8.8.8
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "Acronis Scheduler2 Service"
HKLM\...\StartupApproved\Run32: => "TrueImageMonitor.exe"
HKLM\...\StartupApproved\Run32: => "AcronisTibMounterMonitor"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{253765AF-6682-4F58-8108-F2FF57D018CC}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS0A47\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{8E3605D4-D7D0-4835-A9C0-4C6E17D81D49}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS0A47\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{1D1AC294-67C7-449F-B527-24A7F5D0524C}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS5245\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{76351B47-0487-4A3D-B6C7-D98201C980B1}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS5245\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{CA87FA9C-E4E0-4302-9746-E0CFFFC23447}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS410D\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{ADE09D99-424D-4B7C-B3B7-57D4697A759D}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS410D\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{9F577F38-1432-42DE-8F0E-0078A513B5E5}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{339BA818-E9BE-4226-A0BE-7B7F8094AB66}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{1F010DFC-99C7-435F-B2B3-069741850443}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS673E\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{195CD1A2-1281-42F5-86D8-9F64FD72BE20}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS673E\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{2952212B-EA1B-4EC6-A151-8E3498771CC0}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS6790\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{414301D5-E4D8-456C-A9D7-9FB4D02CC9B8}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS6790\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{56CC5B86-C044-4983-9150-1D28D7287435}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS2700\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{8F0BB5C1-EDEC-45A7-B70D-49F977103A6E}] => (Allow) C:\Users\safro\AppData\Local\Temp\7zS2700\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{3C0DAF24-7C80-471B-BF7B-18FB20E13E5A}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{5210CF9F-369C-40BE-AA95-008CC54DC725}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{01F84695-7E52-4959-8385-045647903AFF}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7B949C30-6CD9-4BE9-A67C-59C4E3333142}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{ECD5779D-2D1F-4F5B-8462-36255AEC10B2}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (Acronis International GmbH -> )
FirewallRules: [{CAF77069-3B48-42B8-8441-923A70EBB9F3}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{2013B30C-DBC8-4FCD-9282-13063FB85708}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImage.exe (Acronis International GmbH -> )
FirewallRules: [{C98B0971-4CFE-4482-88C5-5AD9398158BA}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis International GmbH -> )
FirewallRules: [{6BB94324-D70D-4876-9DD1-48AA5352079F}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe (Acronis International GmbH -> )
FirewallRules: [{5E2DE3CF-1A15-4F51-A6D0-AB96B9946580}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\TrueImageHome\TrueImageHomeService.exe (Acronis International GmbH -> )
FirewallRules: [{DE86193C-81CB-4AA6-AEF7-8699F6C719E4}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\MediaBuilder.exe (Acronis International GmbH -> )
FirewallRules: [{BF0E20CA-BE6F-488D-A03A-C16E2C29A834}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\SystemReport.exe (Acronis International GmbH -> )
FirewallRules: [{F73E6D29-55E5-47FB-A849-5337A4BDE5A7}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\acronis_drive.exe (Acronis International GmbH -> )
FirewallRules: [{DBD80C8C-8BBC-4A9C-BFBF-0F20DB908653}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{8A9A5504-BE9E-47BE-96F5-A282DC0A8478}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe (Acronis International GmbH -> )
FirewallRules: [{08796D48-DB93-4C05-8502-10CE5EDA597D}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\ga_service.exe (Acronis International GmbH -> )
FirewallRules: [{F99A23C6-58E0-4120-BAA1-B68580F16031}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\LicenseActivator.exe (Acronis International GmbH -> )
FirewallRules: [{52C217FA-F9C6-4D83-8C8F-360114AD758C}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Home\report_sender.exe (Acronis International GmbH -> )
FirewallRules: [{4C2F913B-8D9D-4751-9553-B124544C0632}] => (Allow) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{DD913895-271F-4A82-A185-FE20F6217141}] => (Allow) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{9434A9F1-9EBE-4DB3-AD01-C4405308528C}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe (Acronis International GmbH -> )
FirewallRules: [{F729D9BA-4C7C-4F5A-89B5-E2B9274C7DC4}] => (Allow) C:\Program Files (x86)\Acronis\Agent\aakore.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{9623B756-CD2C-4399-B0A9-84C427C23757}] => (Allow) C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{D9CC45DE-EF76-4528-902A-5C0D97A81925}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{967AB825-3B55-4D7C-9607-8C55914EE8B4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E8744E57-E136-4B03-A8F5-9A28187DEA2D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{BE897E38-3625-4D1B-87C5-C05D069D0283}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{07CCB5DF-6E9C-4497-8000-A7EB9E255021}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{9DB6BE07-BB00-4DA2-B78A-AD4519D5A147}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{328B8951-E11D-4CE6-849D-57047EAEDAFC}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{69E97C25-168E-42EF-A4E8-0C3B0E8F3D0A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{942DC55D-5F70-4DFE-8F7B-A36057039DED}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AF363D57-9993-4191-9ADC-9BCE7DD0FDE1}] => (Allow) C:\Users\safro\Desktop\ZMENŠENÍ PDF SOUBORŮ\ApowerCompress\ApowerCompress.exe => No File
FirewallRules: [{4EBA6F7A-A5BD-424B-B10A-539496858B7C}] => (Allow) C:\Users\safro\Desktop\ZMENŠENÍ PDF SOUBORŮ\ApowerCompress\ApowerCompress.exe => No File
FirewallRules: [{78E5483B-2AB3-4479-B2C1-E1F1A32E27DC}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.3.7.401\brchromium\102.0.5005.148\BrChrome.exe (Bromium, Inc. -> HP)
FirewallRules: [{1492ABF0-893B-4D7D-BCF6-AB6E0879A100}] => (Allow) C:\Program Files\HP\Sure Click\4.3.20.873\servers\manifests\chrome\brchromium\102.0.5005.148\BrChrome.exe (Bromium, Inc. -> HP)
FirewallRules: [{5DB05D50-CC4D-41B7-8E5F-426ACEE8A469}] => (Allow) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe (Piriform Software Ltd -> Piriform Software)
FirewallRules: [{4E394FCC-9205-4A79-8593-F23833A0D7EE}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{062CE7D5-E494-40EF-A9F0-CBC26095D0C3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7C5CA617-E112-4650-ABD5-71F92F202944}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{23DCCB52-1219-4B8D-B9B3-0AAF28DFC2EF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{AAFEAC0E-09A6-4515-8D1A-0EB0CBFEB9A6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{EEF23329-D1B7-49C6-AD92-BC0C190A387A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{94CB3B36-ACDA-496E-A447-355A8B3D5F65}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C122C173-AD86-4414-92EB-1996DA9F47F8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{98C4E797-5E32-467C-954F-43B7C2AA6C83}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.193.898.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D72DA0B3-F383-42DA-AB99-9DB5EF605DF8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{AEDF36DB-B0A2-4788-BD99-3710E4982D88}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{445142C1-06AE-44D1-BDEA-691CE6CFCCAF}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F405C915-DD02-491A-8465-966DE8868BAE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B23EEE75-3A8D-4BEB-A136-9604BA82D0BC}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\105.0.1343.33\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2958B19B-3A62-48D9-B965-6CFBE63A9B54}] => (Allow) C:\hp\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{A7911963-69AB-4B0E-B57B-E4721659BCFB}] => (Allow) C:\hp\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
==================== Restore Points =========================
13-09-2022 16:21:10 Grab_MSIExecute
13-09-2022 17:09:04 Grab_MSIExecute
14-09-2022 14:30:05 Instalační služba modulů systému Windows
14-09-2022 14:57:17 Piriform Driver Updater - Update 10.27.0.11
14-09-2022 15:11:06 Grab_MSIExecute
14-09-2022 15:11:17 Grab_MSIExecute
14-09-2022 15:20:03 Instalační služba modulů systému Windows
14-09-2022 15:21:28 Instalační služba modulů systému Windows
14-09-2022 16:17:02 Grab_MSIExecute
14-09-2022 16:54:03 Grab_MSIExecute
14-09-2022 18:10:29 Grab_MSIExecute
14-09-2022 19:03:21 Grab_MSIExecute
14-09-2022 19:08:34 Grab_MSIExecute
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (09/14/2022 06:30:08 PM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002
Error: (09/14/2022 06:30:08 PM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002
Error: (09/14/2022 06:30:08 PM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003
Error: (09/14/2022 03:07:33 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.
Error: (09/14/2022 03:07:33 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]
Error: (09/14/2022 03:07:33 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.
Error: (09/14/2022 03:07:33 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]
Error: (09/13/2022 04:18:25 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe, identifikátor PID: 4284, identifikátor PID ProfSvc: 1744.
System errors:
=============
Error: (09/14/2022 07:06:00 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: Počítač byl restartován z procesu kontroly chyb. Kontrola chyb: 0x0000007e (0xffffffffc0000005, 0xfffff8054625bd4e, 0xffffc8087b702438, 0xfffff8054b49a920). Výpis byl uložen do: C:\WINDOWS\MEMORY.DMP. ID hlášení: 19f1c498-129b-45f2-9355-7f89d8c2841b
Error: (09/14/2022 07:05:43 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (19:00:19, 14.09.2022) bylo neočekávané.
Error: (09/14/2022 06:16:40 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-B59IHMH)
Description: Nelze spustit server DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Došlo k chybě:
2147942767
při provádění příkazu:
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
Error: (09/14/2022 06:07:40 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (16:51:07, 14.09.2022) bylo neočekávané.
Error: (09/14/2022 04:52:42 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-B59IHMH)
Description: Nelze spustit server DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Došlo k chybě:
2147942767
při provádění příkazu:
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
Error: (09/14/2022 04:51:07 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (16:14:04, 14.09.2022) bylo neočekávané.
Error: (09/14/2022 04:13:27 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Server byla ukončena s následující chybou:
Probíhá vypnutí systému.
Error: (09/14/2022 04:13:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba XTU3SERVICE neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
CodeIntegrity:
===============
Date: 2022-09-14 19:10:50
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2022-09-14 19:10:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: HP R03 Ver. 02.13.00 03/24/2022
Motherboard: HP 8599
Processor: Intel(R) Core(TM) i5-9500 CPU @ 3.00GHz
Percentage of memory in use: 38%
Total physical RAM: 16222.29 MB
Available physical RAM: 9932.96 MB
Total Virtual: 18654.29 MB
Available Virtual: 12491.71 MB
==================== Drives ================================
Drive c: (Windows ) (Fixed) (Total:475.99 GB) (Free:329.92 GB) (Model: WDC PC SN520 SDAPNUW-512G-1006) (Protected) NTFS
Drive f: (2020 Elements) (Fixed) (Total:2794.49 GB) (Free:2768.05 GB) (Model: WD Elements 25A3 USB Device) NTFS
Drive g: (Elements) (Fixed) (Total:1862.98 GB) (Free:1489.89 GB) (Model: WD Elements 107C USB Device) NTFS
Drive h: (DISK DOMACI) (Fixed) (Total:465.65 GB) (Free:453.32 GB) (Model: ST500LM0 12 HN-M500MB USB Device) FAT32
\\?\Volume{b6f8fb7c-259c-467e-96e7-cf221b314ba1}\ (Windows RE Tools) (Fixed) (Total:0.67 GB) (Free:0.25 GB) NTFS
\\?\Volume{f2dd5105-3d43-4ecb-9619-823b99375fc3}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.16 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: 390A4304)
Partition: GPT.
==========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: D954268B)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
==========================================================
Disk: 2 (Size: 2794.5 GB) (Disk ID: 16F2A91F)
Partition: GPT.
==========================================================
Disk: 3 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 666ABBD5)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=0C)
==================== End of Addition.txt =======================