Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventivní prohlídku

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Keempe
Návštěvník
Návštěvník
Příspěvky: 1
Registrován: 13 lis 2015 09:22

Prosím o preventivní prohlídku

#1 Příspěvek od Keempe »

Ahoj,

nejprve bych rád poděkoval za toto fórum. Je úžasný že takhle zdarma pomáháte běžným uživatelům :thumbsup: Návody máte super zpracované a moc oceňuji váš čas, který tomu dáváte. :worship:

Níže zasílám logy z FRST z notebooku u kterého má podezření na nějakou havěť. Postupoval jsem dle návodu, tak doufám že správně.

Předem moc děkuji.


==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <5>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\egui.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\HP\Sure Click\servers\BrService.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BrHostSvr.exe
(C:\Program Files\WindowsApps\AD2F1837.myHP_6.52219.341.0_x64__v10z8vjag6ke6\win32\DesktopExtension.exe ->) (HP Inc.) C:\Program Files\WindowsApps\AD2F1837.myHP_6.52219.341.0_x64__v10z8vjag6ke6\win32\HPAudioSwitch.exe
(C:\Program Files\WindowsApps\MicrosoftTeams_22243.200.1539.2680_x64__8wekyb3d8bbwe\msteams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\105.0.1343.33\msedgewebview2.exe <12>
(cmd.exe ->) (Bromium, Inc. -> ) C:\Program Files\HP\Sure Click\servers\BrHostHelper\BrHostHelper.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_ea0f2e956b37b3be\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_ea0f2e956b37b3be\igfxEMN.exe
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\BridgeCommunication.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <10>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(HP Inc. -> HP) C:\Program Files (x86)\HP\HP Notifications\HPNotifications.exe
(services.exe ->) (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Security Update Service\4.3.20.873\SecurityUpdateService.exe
(services.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BemSvc.exe
(services.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BrService.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (HP Inc. -> ) C:\Windows\System32\DriverStore\FileRepository\hptpsmarthealthcomp.inf_amd64_039afc515dfbbd1b\x64\hptpsmarthealth.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_d501376b0829abda\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\SysInfoCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_e2143fc8249238dd\HotKeyServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_e2143fc8249238dd\LanWlanWwanSwitchingServiceUWP.exe
(services.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_ea0f2e956b37b3be\igfxCUIServiceN.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_897ea327b3fe52f7\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorvd.inf_amd64_a5ea1b1d8db1527e\RstMwService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_98ad395a329efc54\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_393549dac595e659\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\TbtP2pShortcutService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_625d5a9ea859462f\AS\IAS\IntelAudioService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvbl.inf_amd64_55dbf2fda9335868\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvbl.inf_amd64_55dbf2fda9335868\NVWMI\nvWmi64.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_8369ad36cb6a9cd9\RtkAudUService64.exe <3>
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe
(sihost.exe ->) (HP Inc.) C:\Program Files\WindowsApps\AD2F1837.myHP_6.52219.341.0_x64__v10z8vjag6ke6\win32\DesktopExtension.exe
(svchost.exe ->) (Avast Software s.r.o. -> Avast Software) C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe
(svchost.exe ->) (Bromium, Inc. -> HP) C:\Program Files\HP\Sure Click\servers\BrConsole.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe
(svchost.exe ->) (HP Inc.) C:\Program Files\WindowsApps\AD2F1837.myHP_6.52219.341.0_x64__v10z8vjag6ke6\HP.MyHP.exe
(svchost.exe ->) (HP) [File not signed] C:\Program Files (x86)\HP\HP ICS\ICS.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxAccounts.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxTsr.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22062.543.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CredentialUIBroker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.625.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPHelper.exe
(SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_8369ad36cb6a9cd9\RtkAudUService64.exe [3426152 2022-02-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [213728 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [194496 2022-08-12] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [HPNotifications] => C:\Program Files (x86)\HP\HP Notifications\HPNotifications.exe [1607816 2021-02-11] (HP Inc. -> HP)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\104.0.5112.102\Installer\chrmstp.exe [2022-08-23] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
GroupPolicy: Restriction - Chrome <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {14673F5F-3FB9-4C26-8652-8DEB837C90BC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [847392 2022-08-17] (HP Inc. -> HP Inc.)
Task: {1AC01968-7772-4F0E-869E-0CA646E73699} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4943072 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
Task: {2B497D7A-738A-4741-AC23-EA98FA7E6956} - System32\Tasks\HP\HP ICS\ICS => C:\Program Files (x86)\HP\HP ICS\ICS.exe [76820480 2022-04-12] (HP) [File not signed]
Task: {2FFD42F1-33C5-4267-AF6A-8EAB6FB000D3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPPrinterLowInk => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPPrinterLowInk\HPPrinterLowInk.exe [221328 2022-08-17] (HP Inc. -> )
Task: {328CB866-C6B7-4284-80AB-4D02288F52BF} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [933336 2022-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {4924F85D-189B-4991-947D-7E4AD3ED9B33} - System32\Tasks\HP\Sure Click\Sure Click 4.3.20.873 => C:\Program Files\HP\Sure Click\servers\BrLauncher.exe [2648424 2022-08-03] (Bromium, Inc. -> HP)
Task: {4D4AAFC4-7081-4121-89F3-1EACD5DDF02C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-09-26] (Google LLC -> Google LLC)
Task: {5664F1B3-D9B4-4A06-80DD-FD30EB34B4AD} - System32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [1529328 2020-12-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5B371144-4E37-4EA8-ACE0-86860CFDD19B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2022-08-17] (HP Inc. -> HP Inc.)
Task: {6AE82D38-1608-40EA-8BF9-D952B7A14F53} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [64408 2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {6B95685F-E9DF-45B3-839B-93F88AB6058F} - System32\Tasks\HP\Sure Click\Sure Click UI 4.3.20.873 => C:\Program Files\HP\Sure Click\servers\BrConsole.exe [136552 2022-08-03] (Bromium, Inc. -> HP)
Task: {709C8223-8AAD-4EFC-A429-EB206B100DF3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-09-26] (Google LLC -> Google LLC)
Task: {7788858D-4EAF-4019-8A6C-C3B72A58025B} - System32\Tasks\HP\HP Wolf Security\Launch Console => C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe [289304 2022-07-26] (HP Inc. -> HP Inc.)
Task: {9262DCE4-BCC0-477C-A8DB-6FF859DA8371} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2250576 2022-05-24] (Avast Software s.r.o. -> Avast Software)
Task: {AD3B6AB0-9227-4EC2-AF4D-690CB0FAFA4C} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice
Task: {BD33DF51-4AB8-4544-B941-5567EA8C2442} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23709120 2022-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {C694780C-F6D6-4237-8132-B772E7D0542F} - System32\Tasks\MicrosoftEdgeShadowStackRollbackTask => C:\Program Files (x86)\Microsoft\Edge\Application\105.0.1343.42\Installer\setup.exe [3324312 2022-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {C699F1F8-6D21-4675-B483-2866AE3B578B} - System32\Tasks\HPCustParticipation HP LaserJet MFP M129-M134 => C:\Program Files\HP\HP LaserJet MFP M129-M134\Bin\HPCustPartic.exe [6660744 2018-08-22] (Hewlett Packard -> HP Inc.)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (No File)
Task: {D1AEBC24-F7E7-4CE4-AABF-806761D9DDF2} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [142208 2022-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {DF89A714-0397-46BC-8861-9F7313E4C3E8} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [142208 2022-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {E5A89EB9-FC7F-44B1-97DB-74DFE712982E} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23709120 2022-09-16] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{dd652a6e-5241-4e53-8fed-222072e18de4}: [DhcpNameServer] 192.168.1.1 0.0.0.0

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\andre\AppData\Local\Microsoft\Edge\User Data\Default [2022-08-27]
Edge Extension: (HP Wolf Security Extension) - C:\Users\andre\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aoganjpeihhkhippgnniaclfocnihgln [2022-05-05]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-07-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Profile 6
CHR Profile: C:\Users\andre\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-09-16]
CHR Profile: C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-05-22]
CHR Extension: (Dokumenty Google offline) - C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-05-10]
CHR Extension: (HP Wolf Security Extension) - C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gpmlagmcbcnjhkdjiofoenkfbaclgjkk [2022-05-10]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-10-23]
CHR Profile: C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 5 [2022-09-08]
CHR Notifications: Profile 5 -> hxxps://book.lufthansa.com; hxxps://english-malta.com; hxxps://meet.google.com
CHR Extension: (Dokumenty Google offline) - C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-08-31]
CHR Extension: (HP Wolf Security Extension) - C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\gpmlagmcbcnjhkdjiofoenkfbaclgjkk [2022-08-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-17]
CHR Profile: C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 6 [2022-09-16]
CHR Extension: (Dokumenty Google offline) - C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-09-16]
CHR Extension: (HP Wolf Security Extension) - C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\gpmlagmcbcnjhkdjiofoenkfbaclgjkk [2022-08-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\andre\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-20]
CHR Profile: C:\Users\andre\AppData\Local\Google\Chrome\User Data\System Profile [2022-09-16]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65192 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8523800 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [589536 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2014432 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [589536 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-09-26] (Avast Software s.r.o. -> AVAST Software)
R2 BrEndpointSvc; c:\Program Files\HP\Sure Click\servers\BemSvc.exe [4355432 2022-08-03] (Bromium, Inc. -> HP)
R2 BrService; c:\Program Files\HP\Sure Click\servers\BrService.exe [10305896 2022-08-03] (Bromium, Inc. -> HP)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12131256 2022-09-16] (Microsoft Corporation -> Microsoft Corporation)
S3 dcsvc; C:\WINDOWS\system32\dcsvc.dll [831488 2022-09-16] (Microsoft Windows -> Microsoft Corporation)
S3 EHttpSrv; C:\Program Files\ESET\ESET Security\ehttpsrv.exe [53888 2022-08-12] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3428792 2022-08-12] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3428792 2022-08-12] (ESET, spol. s r.o. -> ESET)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [437680 2022-01-24] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 HotKeyServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_e2143fc8249238dd\HotKeyServiceUWP.exe [1556592 2022-06-14] (HP Inc. -> HP Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [891256 2020-07-30] (HP Inc. -> HP Inc.)
R2 HP TechPulse Core; C:\WINDOWS\System32\DriverStore\FileRepository\hptpsmarthealthcomp.inf_amd64_039afc515dfbbd1b\x64\hptpsmarthealth.exe [5920928 2022-06-23] (HP Inc. -> )
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\AppHelperCap.exe [771072 2022-07-31] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\DiagsCap.exe [769528 2022-07-31] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\NetworkCap.exe [766464 2022-07-31] (HP Inc. -> HP Inc.)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149448 2020-07-23] (HP Inc. -> HP)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4a3edf5f323687cd\x64\SysInfoCap.exe [770032 2022-07-31] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_d501376b0829abda\x64\TouchpointAnalyticsClientService.exe [489712 2022-05-26] (HP Inc. -> HP Inc.)
R2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_625d5a9ea859462f\\AS\\IAS\\IntelAudioService.exe [542320 2022-02-23] (Intel Corporation -> Intel)
R2 LanWlanWwanSwitchingServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_e2143fc8249238dd\LanWlanWwanSwitchingServiceUWP.exe [602224 2022-06-14] (HP Inc. -> HP Inc.)
R2 NVWMI; C:\WINDOWS\System32\DriverStore\FileRepository\nvbl.inf_amd64_55dbf2fda9335868\NVWMI\nvWmi64.exe [4453824 2022-03-25] (Nvidia Corporation -> NVIDIA Corporation)
S2 SECOMNService; C:\WINDOWS\System32\SECOMN64.exe [732104 2022-01-17] (Microsoft Windows Hardware Compatibility Publisher -> Sound Research, Corp.)
R2 SecurityUpdateService; C:\Program Files\HP\Security Update Service\4.3.20.873\SecurityUpdateService.exe [4353384 2022-08-03] (Bromium, Inc. -> HP)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [245208 2022-09-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TbtP2pShortcutService; C:\WINDOWS\TbtP2pShortcutService.exe [254112 2021-07-14] (Intel Corporation -> Intel Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [2599312 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [128376 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvbl.inf_amd64_55dbf2fda9335868\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvbl.inf_amd64_55dbf2fda9335868\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AcxHdAudio; C:\WINDOWS\System32\drivers\AcxHdAudio.sys [552960 2022-07-24] (Microsoft Windows -> Microsoft Corporation)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [237632 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [389064 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [257992 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [104904 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [24528 2022-08-01] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [47936 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [274976 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [553880 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [113920 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [88984 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [861936 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [671216 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [221464 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [327408 2022-08-30] (Avast Software s.r.o. -> AVAST Software)
R0 bemk_4_3_20_873; C:\WINDOWS\System32\DRIVERS\bemk_4_3_20_873.sys [292264 2022-08-03] (Bromium, Inc. -> HP)
R0 BrCow_4_3_20_873; C:\WINDOWS\System32\DRIVERS\BrCow_4_3_20_873.sys [70056 2022-08-03] (Bromium, Inc. -> Windows (R) Win 7 DDK provider)
R2 BrFilter_4_3_20_873; C:\WINDOWS\System32\DRIVERS\BrFilter_4_3_20_873.sys [237456 2022-08-03] (Bromium, Inc. -> HP)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [507904 2022-01-29] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [180224 2022-01-29] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [98304 2021-06-05] (Microsoft Corporation) [File not signed]
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [194336 2022-08-12] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2022-08-12] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [235632 2022-08-12] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [80664 2022-08-12] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [121000 2022-08-12] (ESET, spol. s r.o. -> ESET)
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys [25592 2021-09-16] (HP Inc. -> HP Inc.)
R3 HPKbfDriver; C:\WINDOWS\System32\drivers\HPKbfDriver.sys [36224 2019-06-05] (HP Inc. -> HP Inc.)
R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_2546dafe2183e972\iaLPSS2_GPIO2_TGL.sys [131224 2021-07-20] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_1308f85f1b0adf27\iaLPSS2_I2C_TGL.sys [204440 2021-07-20] (Intel Corporation -> Intel Corporation)
R0 iaStorVD; C:\WINDOWS\System32\drivers\iaStorVD.sys [1544912 2021-08-26] (Intel Corporation -> Intel Corporation)
R3 IntcUSB; C:\WINDOWS\System32\DriverStore\FileRepository\intcusb.inf_amd64_d76995074c0f809f\IntcUSB.sys [891456 2022-02-23] (Intel Corporation -> Intel(R) Corporation)
S3 SynStykFilterHID; C:\WINDOWS\System32\drivers\SynTP.sys [810952 2021-09-02] (Synaptics Incorporated -> Synaptics Incorporated)
R3 uxen; c:\Program Files\HP\Sure Click\bin\uxen.sys [1867168 2022-07-07] (Bromium, Inc. -> HP)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [49560 2021-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [421112 2021-06-05] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [73960 2021-06-05] (Microsoft Windows -> Microsoft Corporation)
R3 WiManH; C:\WINDOWS\System32\DriverStore\FileRepository\wiman.inf_amd64_c34c898c5c4d0406\WiManH\WiManH.sys [175688 2021-12-08] (Intel Corporation -> Intel Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [37280 2021-11-23] (HP Inc. -> HP)
S3 ax_pvi; \??\C:\Program Files\HP\Sure Click\bin\ax_pvi.sys [X]
S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

NETSVC: DcSvc -> C:\Windows\system32\dcsvc.dll (Microsoft Corporation)

==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-09-16 19:27 - 2022-09-16 19:28 - 000000000 ____D C:\FRST
2022-09-16 17:26 - 2022-09-16 17:26 - 000015030 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-09-16 17:25 - 2022-09-16 17:25 - 000335872 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-09-16 17:21 - 2022-09-16 17:21 - 000000000 ___HD C:\$WinREAgent
2022-09-16 16:34 - 2022-09-16 16:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2022-09-16 16:34 - 2022-09-16 16:34 - 000000000 ____D C:\ProgramData\ESET
2022-09-16 16:34 - 2022-09-16 16:34 - 000000000 ____D C:\Program Files\ESET
2022-08-31 19:54 - 2022-08-31 19:54 - 000227813 _____ C:\Users\andre\Downloads\Ceník 3_vnější zony.pdf
2022-08-30 20:31 - 2022-08-30 20:30 - 000270560 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2022-08-30 20:31 - 2022-08-30 20:30 - 000221464 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2022-08-30 15:41 - 2022-08-30 15:41 - 000070669 _____ C:\Users\andre\Downloads\2022100.pdf
2022-08-27 20:28 - 2022-08-27 20:28 - 000298849 _____ C:\Users\andre\Downloads\přihláška- Karolína Šimánková.pdf
2022-08-27 19:55 - 2022-08-27 19:55 - 000111177 _____ C:\Users\andre\Downloads\Registrace nové osoby Karolína Šimánková.pdf
2022-08-27 19:54 - 2022-08-27 19:54 - 000290452 _____ C:\Users\andre\Downloads\Přihláška do JK.pdf
2022-08-27 15:49 - 2022-08-03 06:29 - 000292264 _____ (HP) C:\WINDOWS\system32\Drivers\bemk_4_3_20_873.sys
2022-08-27 15:49 - 2022-08-03 06:29 - 000237456 _____ (HP) C:\WINDOWS\system32\Drivers\BrFilter_4_3_20_873.sys
2022-08-27 15:49 - 2022-08-03 06:29 - 000070056 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\BrCow_4_3_20_873.sys
2022-08-27 15:28 - 2022-08-27 15:28 - 000000000 ____D C:\Users\Default\AppData\Local\HP
2022-08-27 15:27 - 2022-08-27 15:27 - 000001277 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Wolf Security .lnk
2022-08-17 21:54 - 2022-08-17 21:54 - 000000000 _____ C:\Users\andre\Downloads\download.php

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-09-16 19:26 - 2022-01-29 20:20 - 001626360 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-09-16 19:26 - 2021-06-05 19:22 - 000692670 _____ C:\WINDOWS\system32\perfh005.dat
2022-09-16 19:26 - 2021-06-05 19:22 - 000143218 _____ C:\WINDOWS\system32\perfc005.dat
2022-09-16 19:26 - 2021-06-05 14:09 - 000000000 ____D C:\WINDOWS\INF
2022-09-16 19:24 - 2021-09-26 10:35 - 000000000 ___RD C:\Users\andre\OneDrive
2022-09-16 19:23 - 2021-09-26 10:34 - 000000000 ____D C:\Users\andre\AppData\Local\D3DSCache
2022-09-16 19:22 - 2021-06-05 19:30 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2022-09-16 19:21 - 2021-09-26 10:39 - 000000000 ____D C:\Program Files (x86)\Google
2022-09-16 19:21 - 2021-09-26 10:34 - 000000000 __SHD C:\Users\andre\IntelGraphicsProfiles
2022-09-16 17:35 - 2021-09-26 13:47 - 000000000 ____D C:\ProgramData\NVIDIA
2022-09-16 17:35 - 2021-09-26 10:43 - 000000000 ____D C:\ProgramData\Avast Software
2022-09-16 17:35 - 2021-06-05 14:10 - 000000000 ___HD C:\Program Files\WindowsApps
2022-09-16 17:35 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-09-16 17:34 - 2022-05-04 19:26 - 000000246 _____ C:\WINDOWS\system32\k107_type_1_restore.txt
2022-09-16 17:34 - 2022-05-04 19:26 - 000000240 _____ C:\WINDOWS\system32\k900_type_1_restore.txt
2022-09-16 17:34 - 2022-05-04 19:26 - 000000237 _____ C:\WINDOWS\system32\k900_restore.txt
2022-09-16 17:34 - 2021-09-27 20:14 - 000002094 __RSH C:\ProgramData\ntuser.pol
2022-09-16 17:34 - 2021-06-20 03:50 - 000000000 ____D C:\ProgramData\Bromium
2022-09-16 17:34 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SystemTemp
2022-09-16 17:34 - 2021-06-05 14:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-09-16 17:33 - 2022-01-29 20:12 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-09-16 17:33 - 2022-01-29 20:04 - 000625416 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-09-16 17:33 - 2021-06-20 03:41 - 000000000 ___HD C:\Intel
2022-09-16 17:33 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\ServiceState
2022-09-16 17:33 - 2021-05-17 01:06 - 000012288 ___SH C:\DumpStack.log.tmp
2022-09-16 17:32 - 2022-01-29 20:06 - 000000000 ____D C:\Users\andre
2022-09-16 17:32 - 2021-06-05 14:01 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2022-09-16 17:31 - 2021-06-05 19:31 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-09-16 17:31 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-09-16 17:31 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SystemResources
2022-09-16 17:31 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\setup
2022-09-16 17:31 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-09-16 17:31 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-09-16 17:31 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-09-16 17:31 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\appraiser
2022-09-16 17:31 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\Provisioning
2022-09-16 17:31 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-09-16 17:31 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-09-16 17:30 - 2021-06-05 14:01 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-09-16 17:28 - 2021-06-05 14:08 - 000249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2022-09-16 17:28 - 2021-06-05 14:08 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2022-09-16 17:25 - 2022-01-29 20:12 - 000004784 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeShadowStackRollbackTask
2022-09-16 17:25 - 2022-01-29 20:05 - 003103744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-09-16 17:25 - 2021-05-17 01:08 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-09-16 17:25 - 2021-05-17 01:08 - 000002282 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-09-16 17:15 - 2022-01-29 20:04 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-09-16 17:10 - 2021-09-26 12:47 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-09-16 17:06 - 2021-09-26 12:47 - 141646296 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-09-16 16:35 - 2021-09-26 10:34 - 000000000 ____D C:\Users\andre\AppData\Local\Packages
2022-09-16 16:35 - 2021-06-05 14:10 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-09-16 16:35 - 2020-05-05 22:05 - 000000000 ____D C:\ProgramData\Packages
2022-09-16 16:34 - 2021-06-20 03:48 - 000000000 ____D C:\Program Files\Microsoft Office
2022-09-16 16:29 - 2022-01-29 20:12 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1060365114-4241724774-1866028218-1001
2022-09-16 16:29 - 2022-01-29 20:12 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1060365114-4241724774-1866028218-1001
2022-09-16 16:29 - 2021-09-26 10:32 - 000002389 _____ C:\Users\andre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-09-16 16:27 - 2022-01-29 20:12 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-09-03 21:10 - 2022-01-29 20:12 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-09-03 21:10 - 2022-01-29 20:12 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-09-03 21:10 - 2022-01-29 20:12 - 000003344 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-09-03 21:10 - 2022-01-29 20:12 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-09-03 21:10 - 2022-01-29 20:12 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1060365114-4241724774-1866028218-500
2022-09-03 21:10 - 2022-01-29 20:12 - 000002670 _____ C:\WINDOWS\system32\Tasks\HPCustParticipation HP LaserJet MFP M129-M134
2022-09-03 21:10 - 2022-01-29 20:12 - 000002618 _____ C:\WINDOWS\system32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-09-03 21:10 - 2022-01-29 20:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-08-30 20:30 - 2021-09-26 10:44 - 000861936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2022-08-30 20:30 - 2021-09-26 10:44 - 000671216 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2022-08-30 20:30 - 2021-09-26 10:44 - 000553880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2022-08-30 20:30 - 2021-09-26 10:44 - 000389064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2022-08-30 20:30 - 2021-09-26 10:44 - 000327408 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2022-08-30 20:30 - 2021-09-26 10:44 - 000274976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2022-08-30 20:30 - 2021-09-26 10:44 - 000257992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2022-08-30 20:30 - 2021-09-26 10:44 - 000237632 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2022-08-30 20:30 - 2021-09-26 10:44 - 000113920 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2022-08-30 20:30 - 2021-09-26 10:44 - 000104904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2022-08-30 20:30 - 2021-09-26 10:44 - 000088984 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2022-08-30 20:30 - 2021-09-26 10:44 - 000047936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2022-08-27 15:49 - 2021-06-20 03:50 - 000012279 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2022-08-27 15:28 - 2021-09-26 10:51 - 000000000 ____D C:\Users\andre\AppData\Local\HP
2022-08-27 15:28 - 2020-05-05 22:11 - 000000000 ____D C:\ProgramData\HP
2022-08-27 15:27 - 2022-01-29 20:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2022-08-27 15:24 - 2021-05-17 01:09 - 000000000 ____D C:\Program Files\HP
2022-08-27 15:09 - 2022-01-29 20:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard
2022-08-23 18:23 - 2021-09-26 10:40 - 000002255 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-08-23 18:23 - 2021-09-26 10:40 - 000002214 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-08-17 11:53 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-08-2022
Ran by andre (16-09-2022 19:30:13)
Running from C:\Users\andre\OneDrive\Desktop
Microsoft Windows 11 Pro Version 21H2 22000.978 (X64) (2022-01-29 18:15:23)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1060365114-4241724774-1866028218-500 - Administrator - Disabled)
andre (S-1-5-21-1060365114-4241724774-1866028218-1001 - Administrator - Enabled) => C:\Users\andre
DefaultAccount (S-1-5-21-1060365114-4241724774-1866028218-503 - Limited - Disabled)
Guest (S-1-5-21-1060365114-4241724774-1866028218-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1060365114-4241724774-1866028218-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Security (Enabled - Up to date) {DF8BEACB-94C9-218A-73AD-A78362A8C516}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: ESET Firewall (Enabled) {E7B06BEE-DEA6-20D2-58F2-0EB69C7B826D}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Reader XI - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated)
Avast Premium Security (HKLM\...\Avast Antivirus) (Version: 22.8.6030 - Avast Software)
ESET Endpoint Security (HKLM\...\{8B3A91BF-F809-49E8-A221-9DA721B5980B}) (Version: 9.1.2057.0 - ESET, spol. s r.o.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 104.0.5112.102 - Google LLC)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.19.0 - HP)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
HP Dropbox Plugin (HKLM-x32\...\{2B241F10-5647-4C07-B982-CC0B81682A59}) (Version: 36.0.102.68541 - HP)
HP EmailSMTP Plugin (HKLM-x32\...\{FBCFDA37-DD90-4465-9E8B-26C2D2260EFF}) (Version: 43.0.0.0 - HP)
HP FTP Plugin (HKLM-x32\...\{5B4F8499-E03E-4A81-850D-81B27CC8EC9C}) (Version: 43.0.0.0 - HP)
HP Google Drive Plugin (HKLM-x32\...\{489527CD-23E4-4F60-82CB-F85DF758049F}) (Version: 36.0.102.68541 - HP)
HP Notifications (HKLM-x32\...\{84937F28-9CB4-49E7-A2CF-E32D97E6DAE6}) (Version: 1.1.28.1 - HP)
HP OneDrive Plugin (HKLM-x32\...\{904BE479-2821-419D-B44F-C963042CB6FD}) (Version: 36.0.0.0 - HP)
HP Security Update Service (HKLM\...\{6CC3B2F8-3BC4-49B5-BDD4-8D587132D14E}) (Version: 4.3.20.873 - HP Inc.)
HP SharePoint Plugin (HKLM-x32\...\{86B04693-5E1B-4A2A-8715-6E1E1B5AE8C2}) (Version: 43.0.0.0 - HP)
HP Sure Recover (HKLM\...\{B309731D-243E-42BA-83F3-F86E91FE8CDE}) (Version: 10.1.11.20 - HP Inc.)
HP Sure Run Module (HKLM\...\{94E1E2FD-BF08-4CF8-BA52-F99F51964949}) (Version: 5.0.3.18 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{B95E117F-2411-41AD-A9A5-77511F3040E4}) (Version: 1.4.16.5 - HP Inc.) Hidden
HP System Default Settings (HKLM-x32\...\{E281B5EA-560B-4CAC-A6E9-E299C5A8A982}) (Version: 1.4.16.1 - HP Inc.) Hidden
HP Wolf Security - Console (HKLM\...\{0C64ED5A-DD21-44C9-BA9D-CF2BE681DABE}) (Version: 11.0.16.42 - HP Inc.)
HP Wolf Security (HKLM\...\{AE1E39EE-133E-11ED-A25C-10604B96B11E}) (Version: 4.3.20.873 - HP Inc.)
HP Wolf Security Application Support for Chrome 104.0.5112.114 (HKLM\...\{AB39CF9E-C2D2-4618-864C-878FEBB226F2}) (Version: 4.3.12.7 - HP Inc.) Hidden
HP Wolf Security Application Support for Sure Sense (HKLM\...\{7D3F430E-EE63-4508-90B4-0C92E924A789}) (Version: 4.3.20.873 - HP Inc.) Hidden
HP Wolf Security Application Support for Windows (HKLM\...\{5621D48E-25BD-4A4A-B336-5C6D63ECC922}) (Version: 4.3.2.1711 - HP Inc.) Hidden
HP Wolf Security Application Support for Windows (HKLM\...\{76FD5CC3-3B06-4C18-9103-FBDB3C4C7F15}) (Version: 4.3.1.220 - HP Inc.) Hidden
I.R.I.S OCR (HKLM-x32\...\{39508F29-1E81-40FC-85DA-3182CB04614E}) (Version: 15.2.10.1114 - HP Inc.)
ICS (HKLM-x32\...\{9881592F-ADE0-430D-8E1E-31F363C1BA28}) (Version: 3.0.16.0 - HP Inc.)
Kontrola stavu osobního počítače s Windows (HKLM\...\{88EC8D4A-54AB-4A7F-BDE9-4AD906D9D11F}) (Version: 3.2.2110.14001 - Microsoft Corporation)
LM129 (HKLM-x32\...\{A2D25501-6F44-4CE2-9EFA-C9E5A0658FA9}) (Version: 0.00.0005 - HP)
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.15601.20148 - Microsoft Corporation)
Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.15601.20148 - Microsoft Corporation)
Microsoft 365 - sk-sk (HKLM\...\O365HomePremRetail - sk-sk) (Version: 16.0.15601.20148 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 105.0.1343.42 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 105.0.1343.33 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1060365114-4241724774-1866028218-1001\...\OneDriveSetup.exe) (Version: 22.176.0821.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{6A2A8076-135F-4F55-BB02-DED67C8C6934}) (Version: 4.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.26.28720 (HKLM-x32\...\{7d607fb4-7e28-4c7a-a92f-3fcdaf555faf}) (Version: 14.26.28720.3 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27027 (HKLM-x32\...\{39e28474-b67b-4209-af1b-e9ad0a83d8ca}) (Version: 14.16.27027.1 - Microsoft Corporation)
Microsoft Visual C++ 2017 X86 Additional Runtime - 14.16.27024 (HKLM-x32\...\{7258184A-EC44-4B1A-A7D3-68D85A35BFD0}) (Version: 14.16.27024 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2017 X86 Minimum Runtime - 14.16.27024 (HKLM-x32\...\{5EEFCEFB-E5F7-4C82-99A5-813F04AA4FBD}) (Version: 14.16.27024 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.26.28720 (HKLM\...\{CB4A0FDE-1126-4AE2-97C6-A243692C3D95}) (Version: 14.26.28720 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.26.28720 (HKLM\...\{DD1EC0FD-3F0A-4740-A05E-1DCD14A6B0D1}) (Version: 14.26.28720 - Microsoft Corporation) Hidden
NVIDIA Ovladače grafiky 472.98 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 472.98 - NVIDIA Corporation)
NVIDIA Quadro View 200.93 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 200.93 - NVIDIA Corporation)
NVIDIA WMI 2.35.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI) (Version: 2.35.0 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.15601.20064 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.15601.20148 - Microsoft Corporation) Hidden
Realtek USB Audio (HKLM-x32\...\{0A46A65D-89AC-464C-8026-3CD44960BD04}) (Version: 6.3.9600.250 - Realtek Semiconductor Corp.)
Studie vylepšování produktu HP LaserJet MFP M129-M134 (HKLM\...\{6319D85A-6C39-46CB-819B-5F39EDCF3C4C}) (Version: 44.3.2667.18234 - HP Inc.)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 10.00 - Ghisler Software GmbH)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.16 - VideoLAN)
Windows Driver Package - HP Inc bemk_4_3_20_873 ActivityMonitor (08/03/2022 4.3.20.873) (HKLM\...\A860DA88F48409D3E51FF0984F930FCD71447B04) (Version: 08/03/2022 4.3.20.873 - HP Inc) Hidden
Windows Driver Package - HP Inc. BrCow_4_3_20_873 ActivityMonitor (08/03/2022 4.3.20.873) (HKLM\...\31D92F2DB933E63AE12DBA928A1E33EAB2D0D1F5) (Version: 08/03/2022 4.3.20.873 - HP Inc.) Hidden
Windows Driver Package - HP Inc. BrFilter_4_3_20_873 ActivityMonitor (08/03/2022 4.3.20.873) (HKLM\...\94B38AA31003D81A3F8F2D2FA533E85149B9831E) (Version: 08/03/2022 4.3.20.873 - HP Inc.) Hidden
WinRAR 6.02 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.02.0 - win.rar GmbH)
Základní software zařízení HP LaserJet MFP M129-M134 (HKLM\...\{3A7EC3EF-57A8-4F84-AD06-FA71DF75C7BE}) (Version: 44.3.2667.18234 - HP Inc.)
Zoom (HKU\S-1-5-21-1060365114-4241724774-1866028218-1001\...\ZoomUMX) (Version: 5.8.3 (1581) - Zoom Video Communications, Inc.)

Packages:
=========
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-11-17] (Microsoft Corporation)
ESET Context Menu -> C:\Program Files\ESET\ESET Security [2022-09-16] (0)
HP Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.HPAudioControl_2.34.263.0_x64__dt26b99r8h8gj [2022-05-04] (Realtek Semiconductor Corp)
HP Easy Clean -> C:\Program Files\WindowsApps\AD2F1837.HPEasyClean_2.2.0.0_x64__v10z8vjag6ke6 [2021-09-26] (HP Inc.)
HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_1.8.0.0_x64__v10z8vjag6ke6 [2021-10-15] (HP Inc.)
HP Power Manager -> C:\Program Files\WindowsApps\AD2F1837.HPPowerManager_2.1.24.0_x64__v10z8vjag6ke6 [2021-10-08] (HP Inc.)
HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.0.42.0_x64__v10z8vjag6ke6 [2021-09-26] (HP Inc.)
HP Programmable Key -> C:\Program Files\WindowsApps\AD2F1837.HPProgrammableKey_1.0.17.0_x64__v10z8vjag6ke6 [2021-09-26] (HP Inc.)
HP QuickDrop -> C:\Program Files\WindowsApps\AD2F1837.HPQuickDrop_2.5.9180.0_x64__v10z8vjag6ke6 [2022-03-03] (HP Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_138.2.414.0_x64__v10z8vjag6ke6 [2022-09-16] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.20.22.0_x64__v10z8vjag6ke6 [2022-08-24] (HP Inc.)
HP System Information -> C:\Program Files\WindowsApps\AD2F1837.HPSystemInformation_7.0.18.0_x64__v10z8vjag6ke6 [2021-09-26] (HP Inc.)
HP WorkWell -> C:\Program Files\WindowsApps\AD2F1837.HPWorkWell_1.2.0.0_x86__v10z8vjag6ke6 [2021-10-15] (HP Inc.) [Startup Task]
Intel(R) Management and Security Status -> C:\Program Files\WindowsApps\AppUp.IntelManagementandSecurityStatus_2116.0.159.0_x64__8j3eq9eme6ctt [2021-09-26] (INTEL CORP) [Startup Task]
Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1026.0_x64__8j3eq9eme6ctt [2022-04-01] (INTEL CORP)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.14.9020.0_x64__8wekyb3d8bbwe [2022-09-16] (Microsoft Studios) [MS Ad]
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_52.10801.429.0_x64__8wekyb3d8bbwe [2022-08-16] (Microsoft Corporation)
myHP -> C:\Program Files\WindowsApps\AD2F1837.myHP_6.52219.341.0_x64__v10z8vjag6ke6 [2022-07-30] (HP Inc.) [Startup Task]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.962.0_x64__56jybvy8sckqj [2022-01-29] (NVIDIA Corp.)
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3407.0_x64__8j3eq9eme6ctt [2022-01-31] (INTEL CORP) [Startup Task]
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.42152.0_x64__8wekyb3d8bbwe [2021-09-26] (Microsoft Corporation)
Synaptics PointStick Settings Manager – Commercial -> C:\Program Files\WindowsApps\SynapticsIncorporated.SynHPCommercialStykDApp_19006.1005.0.0_x64__807d65c4rvak2 [2021-09-26] (Synaptics Incorporated)
Thunderbolt™ Control Center -> C:\Program Files\WindowsApps\AppUp.ThunderboltControlCenter_1.0.34.0_x64__8j3eq9eme6ctt [2021-09-26] (INTEL CORP)
Tile -> C:\Program Files\WindowsApps\Tile.TileWindowsApplication_3.3.14.0_x64__91frwjk5eeyew [2022-03-30] (Tile) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ BromiumOverlay_4_3_20_873] -> {6CDCC3E8-D8FF-46EF-B8BE-63A05E327848} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ShellIconOverlayIdentifiers: [ OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\WINDOWS\System32\DriverStore\FileRepository\iastorpinningcomponent.inf_amd64_651bb78e61d538aa\OptaneShellExt.dll [2021-08-26] (Intel Corporation -> )
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-08-30] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ BromiumOverlay_4_3_20_873] -> {6CDCC3E8-D8FF-46EF-B8BE-63A05E327848} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-08-30] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-08-30] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-08-12] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Bromium TrustDrive Context Menu_4_3_20_873] -> {5F4F5529-DD35-4B9F-812F-A5B0B4F15294} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-08-12] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-08-30] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\WINDOWS\System32\DriverStore\FileRepository\iastorpinningcomponent.inf_amd64_651bb78e61d538aa\OptaneShellExt.dll [2021-08-26] (Intel Corporation -> )
ContextMenuHandlers3: [vSentry_TrustFile_4_3_20_873] -> {833378FE-1986-46BA-9B4E-F8F1DEBC9B06} => C:\Program Files\HP\Sure Click\4.3.20.873\servers\HostShellExtension.dll [2022-08-03] (Bromium, Inc. -> HP)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvbl.inf_amd64_55dbf2fda9335868\nvshext.dll [2022-03-25] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [NvQuadroView] -> {1E9B04FB-F9E5-4718-997B-B8DA88302A48} => C:\Program Files\NVIDIA Corporation\nview\nvshell.dll [2020-12-15] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-08-30] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-08-12] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Trials.lnk -> C:\Program Files (x86)\Online Services\Adobe\WizLink.exe () -> hxxp://js.redirect.hp.com/jumpstation?type=303&RedeemCode=DrAKzhEwfsjOzrWJCXVwTM5egBsUK2sE1CH2UDPySwpglOJDtl7xY1GPIjAhcHdmV0czfNBTFp44iBrirshC22uesM2d5EH5BzRX%2bFpYxD1sEAmXGQWQC%2fmSRPqwoUZs7Y3Q20DqLdQIkuDgZm9ynzXxPHb0K2oL9l%2f6vd4EttM%3d

==================== Loaded Modules (Whitelisted) =============

2022-04-12 20:20 - 2022-04-12 20:20 - 000182784 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\_cffi_backend.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000012288 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\_win32sysloader.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000031232 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\bcrypt\_bcrypt.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000116224 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\kiwisolver.pyd
2022-04-12 20:44 - 2022-04-12 20:44 - 034413408 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\libopenblas.GK7GX5KEQ4F6UYO3P26ULGBQYHGQO7J4.gfortran-win_amd64.dll
2022-04-12 20:20 - 2022-04-12 20:20 - 000012288 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\matplotlib\_c_internal_utils.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000189952 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\matplotlib\_image.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000159744 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\matplotlib\_path.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000231424 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\matplotlib\backends\_backend_agg.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000012800 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\matplotlib\backends\_tkagg.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000605696 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\matplotlib\ft2font.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000110592 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\core\_multiarray_tests.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 002818048 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\core\_multiarray_umath.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000112640 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\fft\_pocketfft_internal.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000155648 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\linalg\_umath_linalg.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000022016 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\linalg\lapack_lite.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000239616 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\random\_bounded_integers.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000181760 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\random\_common.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000666112 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\random\_generator.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000079360 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\random\_mt19937.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000065536 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\random\_pcg64.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000072704 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\random\_philox.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000053248 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\random\_sfc64.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000152576 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\random\bit_generator.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000564224 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\numpy\random\mtrand.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 002672128 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\PIL\_imaging.pyd
2022-04-12 20:45 - 2022-04-12 20:45 - 000140800 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\pywintypes39.dll
2022-04-12 20:20 - 2022-04-12 20:20 - 000155648 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\win32file.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000026624 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\win32pipe.pyd
2022-04-12 20:20 - 2022-04-12 20:20 - 000141312 _____ () [File not signed] C:\Program Files (x86)\HP\HP ICS\win32security.pyd

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: HP Sure Click Plugin_4_3_20_873 -> {26B469ED-0C6C-4BC2-8F30-D1836BBD070C} -> C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin64.dll [2022-08-03] (Bromium, Inc. -> HP)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2022-08-17] (HP Inc. -> HP Inc.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: HP Sure Click Plugin_4_3_20_873 -> {26B469ED-0C6C-4BC2-8F30-D1836BBD070C} -> C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin32.dll [2022-08-03] (Bromium, Inc. -> HP)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-08-10] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2022-08-17] (HP Inc. -> HP Inc.)
Handler: bromium - {EFF88B17-05AA-4736-BBCA-6A03400B39CA} - C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin64.dll [2022-08-03] (Bromium, Inc. -> HP)
Handler-x32: bromium - {EFF88B17-05AA-4736-BBCA-6A03400B39CA} - C:\Program Files\HP\Sure Click\4.3.20.873\servers\BromiumPlugin32.dll [2022-08-03] (Bromium, Inc. -> HP)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1060365114-4241724774-1866028218-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\andre\OneDrive\Pictures\Camera Roll\rok 2021\IMG_8934.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E75EC85A-CBB0-4934-B89D-E8056AF4A688}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{EC6C54B9-EFAD-44B4-B5EE-C951D2D79EE8}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{DA5902E9-92E4-46CD-9330-88D97CB8BD86}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5F6581DA-078D-4288-80A8-206F9C6349B5}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{57888394-803D-4748-9CB5-19886BAE363E}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{3C1D79D0-BCE0-4F6B-840B-6C4EC812C821}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{D24C4049-6F16-4465-9523-212DEC779C33}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{095999D7-B5E4-4125-80C5-98C94CA85B52}] => (Allow) C:\Users\andre\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{32056E03-04A6-4296-85E8-851BE0C0099C}] => (Allow) C:\Users\andre\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{79E113F1-CA16-4792-9DE8-443968ABBBCD}] => (Allow) C:\Users\andre\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{1ED500EF-B325-4EEA-8F9E-922F59EBE3BE}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{CF0FEA52-9202-476C-A1F6-B107221EFB99}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{3FCFB752-97E4-4AAA-8036-41DDDBD6FBD0}] => (Allow) C:\Users\andre\AppData\Local\Temp\7zS1741\HP.EasyStart.exe => No File
FirewallRules: [{CB415297-D6C3-49A6-801B-84049ABB1DA3}] => (Allow) C:\Program Files\HP\HP LaserJet MFP M129-M134\bin\FaxPrinterUtility.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{8F86F318-10C9-4BEA-ACD7-57C8F2F23565}] => (Allow) C:\Program Files\HP\HP LaserJet MFP M129-M134\bin\DigitalWizards.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{7D61E895-F55A-4D25-83D4-AE28064F527D}] => (Allow) C:\Program Files\HP\HP LaserJet MFP M129-M134\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{32A583C4-5EDA-4364-B5CC-44C8E8E32240}] => (Allow) LPort=5357
FirewallRules: [{BDAA6CBF-D3F6-435B-9F1A-37D783616FEC}] => (Allow) C:\Program Files\HP\HP LaserJet MFP M129-M134\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{FF2529F7-BE20-4575-A59F-B442F0C05801}] => (Allow) C:\Program Files\HP\HP LaserJet MFP M129-M134\bin\EWSProxy.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{B980139D-0987-405B-8CE9-A12A32F136F9}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{B3970C15-3EA0-426C-9AED-EAD63C96DA44}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E19C2A69-6B9A-43D1-913D-878DA2EF5A18}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{4311B1D9-17F1-41C6-BAFF-44DFE580FBEE}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{FFE12E07-15F3-4801-B14A-D21821E58743}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{488B9A73-AB8F-44F4-BA12-6FCFABB39EDE}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{EEAE0B84-E4AB-40CB-8F15-9863B3B8FAFE}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{F0C93BDD-024F-46BA-AAED-0C2ABD9C8189}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{8777B1D9-2990-4ACA-A089-58051F1F8B7D}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{A2BFE530-3B54-49F6-9753-45277BEEA313}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{85C84C3D-CDC7-42BA-BEC4-4AD319F3BE1B}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{34465EC0-81A0-4D26-86FA-6F51ED3F74B8}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{DC9A712A-503A-428E-A90A-BB1FDE33148B}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{FD6616C6-A10D-44D5-AF59-29D376CE7F8B}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{7241B105-23BD-4990-BC10-C50AC9CD36E8}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{A82F480D-D933-434E-B899-F4EC3520F729}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{07246CF6-A590-4104-85AD-0FEBFCC42E30}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{43FF2266-AD3F-4DBA-B64F-78B44EB7A49A}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{B28F61DB-5DF1-4442-87BC-794580FDB836}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{3048C123-C594-4117-8A20-759B7FCB917C}] => (Allow) C:\Program Files\HP\Sure Click\4.3.20.873\servers\manifests\chrome\brchromium\102.0.5005.148\BrChrome.exe (Bromium, Inc. -> HP)
FirewallRules: [{C8A54B15-107C-48A9-BF18-E2F0C480F9D2}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{78882B8F-9650-4EE4-81F6-DC856C706452}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5323E65D-B282-4387-91A0-8C15DDF28646}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22243.200.1539.2680_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{233D233E-FA9A-4226-BE4D-60C78F18B07D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22243.200.1539.2680_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B4919061-2E90-4EFF-84C0-C8B475D3934F}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.3.12.7\brchromium\104.0.5112.114\BrChrome.exe (Bromium, Inc. -> HP)
FirewallRules: [{479A620A-83CB-45A9-B62A-B807ADEAFDFB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{374239E9-7E27-4CE9-A822-96C0CA5932D7}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{57C8DB9E-5D8B-43FE-A9B5-C4891AD79F3B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{DFCF210C-A3C3-4C52-8D6F-6A5A227DF262}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{254C544B-FF1B-4290-9F10-B5ADF7A8261F}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\105.0.1343.33\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

16-09-2022 16:55:26 Grab_MSIExecute
16-09-2022 16:59:59 Instalační služba modulů systému Windows
16-09-2022 17:22:18 Instalační služba modulů systému Windows
16-09-2022 17:23:04 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (09/16/2022 07:21:00 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\Avast Software\Avast\aswToolsSvc.exe, identifikátor PID: 3872, identifikátor PID ProfSvc: 1900.

Error: (09/16/2022 05:33:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: SECOMN64.exe, verze: 2.0.10.51, časové razítko: 0x61e10076
Název chybujícího modulu: SECOMN64.dll, verze: 2.0.10.51, časové razítko: 0x61e1006f
Kód výjimky: 0xc0000409
Posun chyby: 0x00000000000dbfb1
ID chybujícího procesu: 0x1be4
Čas spuštění chybující aplikace: 0x01d8c9e1b8c04be0
Cesta k chybující aplikaci: C:\WINDOWS\System32\SECOMN64.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\SECOMN64.dll
ID zprávy: 12f23f13-7e0a-4aff-a09b-0cfe8e16894b
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (09/16/2022 05:32:08 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (09/16/2022 05:32:08 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (09/16/2022 05:32:08 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (09/16/2022 05:32:08 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (09/16/2022 05:32:08 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (09/16/2022 05:32:08 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]


System errors:
=============
Error: (09/16/2022 07:21:48 PM) (Source: Server) (EventID: 2505) (User: )
Description: Server nemohl vytvořit vazbu na přenos \Device\NetBT_Tcpip_{DD652A6E-5241-4E53-8FED-222072E18DE4}, protože jiný počítač v síti má stejný název. Server nelze spustit.

Error: (09/16/2022 07:20:59 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: )
Description: Na miniportu Microsoft Wi-Fi Direct Virtual Adapter #4, {7b4d59e5-7375-467b-a24a-3d6ea35bb890}, došlo k události 74.

Error: (09/16/2022 05:35:09 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby HotKeyServiceUWP bylo dosaženo časového limitu (30000 ms).

Error: (09/16/2022 05:34:00 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba SECOMNService byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (09/16/2022 05:24:29 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-1IG75RK)
Description: Server {F9717507-6651-4EDB-BFF7-AE615179BCCF} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/16/2022 05:24:29 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-1IG75RK)
Description: Server {F9717507-6651-4EDB-BFF7-AE615179BCCF} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/16/2022 05:24:29 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-1IG75RK)
Description: Server {F9717507-6651-4EDB-BFF7-AE615179BCCF} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/16/2022 05:24:29 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-1IG75RK)
Description: Server {F9717507-6651-4EDB-BFF7-AE615179BCCF} se v daném časovém limitu neregistroval u služby DCOM.


CodeIntegrity:
===============
Date: 2022-09-16 19:30:41
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Windows\apppatch\AppPatch64\BrShim_4_3_20_873.dll that did not meet the Microsoft signing level requirements.

Date: 2022-09-16 19:28:12
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Avast Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: HP T76 Ver. 01.10.00 07/15/2022
Motherboard: HP 8846
Processor: 11th Gen Intel(R) Core(TM) i5-1135G7 @ 2.40GHz
Percentage of memory in use: 87%
Total physical RAM: 7872.21 MB
Available physical RAM: 990.41 MB
Total Virtual: 12480.21 MB
Available Virtual: 3037.29 MB

==================== Drives ================================

Drive c: (Windows ) (Fixed) (Total:237.38 GB) (Free:155.91 GB) (Model: MTFDHBA256TDV-1AY1AABHA) NTFS

\\?\Volume{ec5d6efc-78c9-4698-a150-b1b092da100c}\ (Windows RE Tools) (Fixed) (Total:0.82 GB) (Free:0.13 GB) NTFS
\\?\Volume{5a8dfb89-5bd0-4f35-bd92-dc169ff46077}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.15 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 1E1F4777)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15213
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Prosím o preventivní prohlídku

#2 Příspěvek od JaRon »

ahoj,
1. citat:
Tvorba fixlistu pro FRST
•Spustte poznamkovy blok (Start-spustit-notepad)
•Zkopirujte skript >>

Kód: Vybrat vše

Start
CreateRestorePoint:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
GroupPolicy: Restriction - Chrome <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
S3 ax_pvi; \??\C:\Program Files\HP\Sure Click\bin\ax_pvi.sys [X]
S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]
FirewallRules: [{095999D7-B5E4-4125-80C5-98C94CA85B52}] => (Allow) C:\Users\andre\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{32056E03-04A6-4296-85E8-851BE0C0099C}] => (Allow) C:\Users\andre\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{3FCFB752-97E4-4AAA-8036-41DDDBD6FBD0}] => (Allow) C:\Users\andre\AppData\Local\Temp\7zS1741\HP.EasyStart.exe => No File


EmptyTemp:
Reboot:
End
•Ulozte vytvoreny TXT jako fixlist.txt
•Presunte vytvoreny fixlist vedle FRST

:arrow: Spustte znovu FRST.exe
•Kliknete na Fix
•Probehne oprava a vytvori log Fixlog.txt

:arrow: Restart PC a dejte mi sem fixlog.txt

2. odinstaluj jeden z dvojice - Avast-Eset - nerobi to dobrotu :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět