Stránka 1 z 2

kontrola logu

Napsal: 26 úno 2023 17:59
od hakub
prosím o kontrolu logu zpomaluje se NTB

Re: kontrola logu

Napsal: 26 úno 2023 17:59
od hakub
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-02-2023
Ran by vlastimil (26-02-2023 17:41:02)
Running from C:\Users\vkubi_000\Desktop
Microsoft Windows 10 Home Version 22H2 19045.2604 (X64) (2021-01-18 18:25:14)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2756002567-295290169-1842266776-500 - Administrator - Enabled) => C:\Users\Administrator
DefaultAccount (S-1-5-21-2756002567-295290169-1842266776-503 - Limited - Disabled)
Guest (S-1-5-21-2756002567-295290169-1842266776-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2756002567-295290169-1842266776-1003 - Limited - Enabled)
vlastimil (S-1-5-21-2756002567-295290169-1842266776-1001 - Administrator - Enabled) => C:\Users\vkubi_000
WDAGUtilityAccount (S-1-5-21-2756002567-295290169-1842266776-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
8GadgetPack (HKLM-x32\...\{2C6DC07C-5D68-4E32-B6C6-EF5F24DA9FDF}) (Version: 33.0.0 - 8GadgetPack.net)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 22.003.20314 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601032}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Apple Mobile Device Support (HKLM\...\{C788AE25-3D4E-4D18-811B-3219F778487E}) (Version: 13.5.1.2 - Apple Inc.)
Avast Cleanup Premium (HKLM\...\Avast Cleanup) (Version: 22.3.12404.8972 - Avast Software)
Avast Premium Security (HKLM\...\Avast Antivirus) (Version: 23.1.6049 - Avast Software)
Avast SecureLine VPN (HKLM\...\Avast SecureLine) (Version: 5.23.7370.6602 - Avast Software)
CCleaner (HKLM\...\CCleaner) (Version: 6.07 - Piriform)
CCleaner Update Helper (HKLM-x32\...\{E4EAC0E2-A80B-479F-BA45-DCDA595C9A93}) (Version: 1.8.1208.2 - Piriform Software) Hidden
Expert Lotto 5 (HKLM\...\nbi-expertlotto-1.0.0.0.0) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 110.0.5481.177 - Google LLC)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP)
Java 8 Update 281 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180281F0}) (Version: 8.0.2810.9 - Oracle Corporation)
Java 8 Update 341 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180341F0}) (Version: 8.0.3410.10 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Microsoft 365 Apps pro velké organizace - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.15629.20208 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 110.0.1587.56 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 110.0.1587.50 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\OneDriveSetup.exe) (Version: 23.007.0109.0004 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\OneDriveSetup.exe) (Version: 21.002.0104.0005 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\Teams) (Version: 1.3.00.28779 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\Teams) (Version: 1.3.00.28779 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 (HKLM\...\{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 (HKLM\...\{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
MP3Studio YouTube Downloader (HKLM-x32\...\{2B96C253-7C3F-40AF-9B9C-C9F4E772C018}) (Version: 2.0.8.2 - MP3Studio/) Hidden
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.15629.20118 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.15629.20118 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.15629.20156 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{11C4575B-4B32-44D2-A097-D59A00BA60DE}) (Version: 8.5 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{D39B163A-9E12-442C-95E9-33FA5746AB21}) (Version: 8.5 - Apple Inc.)
TapinRadio 2.04.2 (x32) (HKLM-x32\...\TapinRadio_is1) (Version: - Raimersoft)
Teams Machine-Wide Installer (HKLM-x32\...\{39AF0813-FA7B-4860-ADBE-93B9B214B914}) (Version: 1.3.0.28779 - Microsoft Corporation)
Windows 7 Games for Windows 10 and 8 (HKLM\...\Win7Games) (Version: 2.0 - hxxp://winaero.com)
Windows 7 Games for Windows 8 and 10 (HKLM-x32\...\MicrosoftGamesForWin8) (Version: 1.1.0.10 - )
WinRAR 6.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH)

Packages:
=========
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_53.10126.517.0_x64__8wekyb3d8bbwe [2023-02-26] (Microsoft Corporation)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.15.12020.0_x64__8wekyb3d8bbwe [2023-01-09] (Microsoft Studios) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2756002567-295290169-1842266776-1001_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\vkubi_000\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler) [File not signed]
CustomCLSID: HKU\S-1-5-21-2756002567-295290169-1842266776-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\vkubi_000\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler) [File not signed]
CustomCLSID: HKU\S-1-5-21-2756002567-295290169-1842266776-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\vkubi_000\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2756002567-295290169-1842266776-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation)
CustomCLSID: HKU\S-1-5-21-2756002567-295290169-1842266776-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\vkubi_000\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2756002567-295290169-1842266776-500_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\Administrator\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2756002567-295290169-1842266776-500_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\Administrator\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-12-21] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-12-21] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2015-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\vkubi_000\Desktop\YouTube Music.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 1" --app-id=cinhimbnkkaeohfgghhklpknlkffjgod
ShortcutWithArgument: C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Office.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 1" --app-id=ocdlmjhbenodhlknglojajgokahchlkk
ShortcutWithArgument: C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\YouTube Music.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 1" --app-id=cinhimbnkkaeohfgghhklpknlkffjgod
ShortcutWithArgument: C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\YouTube.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 1" --app-id=agimnkijcaahngcdmfeangaknmldooml
ShortcutWithArgument: C:\Users\vkubi_000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\YouTube.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 1" --app-id=agimnkijcaahngcdmfeangaknmldooml
ShortcutWithArgument: C:\Users\vkubi_000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Vl (Osoba 2) - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"

==================== Loaded Modules (Whitelisted) =============

2021-01-21 16:34 - 2016-11-09 11:36 - 000029784 _____ ((: JOBnik! :) [Arthur Aminov, ISRAEL]) [File not signed] C:\Program Files (x86)\TapinRadio\BASS_FX.dll
2023-02-26 16:26 - 2023-02-26 16:26 - 000104448 _____ () [File not signed] C:\Program Files (x86)\Median\WwwAccessConnector\AudioMarkerWin.dll
2023-02-26 16:26 - 2023-02-26 16:26 - 002391615 _____ () [File not signed] C:\Program Files (x86)\Median\WwwAccessConnector\libfftw3f-3.dll
2021-01-21 16:34 - 2016-12-29 13:19 - 000138752 _____ () [File not signed] C:\Program Files (x86)\TapinRadio\brexit.dll
2011-08-18 00:29 - 2011-08-18 00:29 - 001039360 _____ (Hewlett-Packard Co.) [File not signed] c:\program files (x86)\hp\digital imaging\bin\hpslpsvc64.dll
2021-01-21 16:34 - 2016-11-09 11:36 - 000150904 _____ (MaresWEB) [File not signed] C:\Program Files (x86)\TapinRadio\bass_aac.dll
2020-09-21 09:39 - 2020-09-21 09:39 - 001035264 _____ (Robert Simpson, et al.) [File not signed] [File is in use] C:\Program Files (x86)\Median\WwwAccessConnector\System.Data.SQLite.dll
2021-01-21 16:34 - 2016-11-09 11:49 - 000567296 _____ (Stefan Toengi) [File not signed] C:\Program Files (x86)\TapinRadio\AudioGenie3.DLL
2021-01-21 16:34 - 2016-11-09 11:49 - 001177088 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\TapinRadio\LIBEAY32.dll
2021-01-21 16:34 - 2016-11-09 11:49 - 000270336 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\TapinRadio\ssleay32.dll
2021-01-21 16:34 - 2016-12-01 04:48 - 000024576 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\TapinRadio\imageformats\qgif.dll
2021-01-21 16:34 - 2016-12-01 04:48 - 000024576 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\TapinRadio\imageformats\qico.dll
2021-01-21 16:34 - 2016-12-01 04:48 - 000243200 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\TapinRadio\imageformats\qjpeg.dll
2021-01-21 16:34 - 2016-12-01 07:37 - 000313344 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\TapinRadio\imageformats\qtiff.dll
2021-01-21 16:34 - 2016-12-01 04:49 - 001063936 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\TapinRadio\platforms\qwindows.dll
2021-01-21 16:34 - 2016-12-16 09:33 - 004681728 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\TapinRadio\Qt5Core.dll
2021-01-21 16:34 - 2016-12-01 04:42 - 004878848 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\TapinRadio\Qt5Gui.dll
2021-01-21 16:34 - 2016-12-01 04:40 - 000848896 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\TapinRadio\Qt5Network.dll
2021-01-21 16:34 - 2016-12-01 04:46 - 004495360 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\TapinRadio\Qt5Widgets.dll
2021-01-21 16:34 - 2016-12-01 10:11 - 000229888 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\TapinRadio\Qt5WinExtras.dll
2021-01-21 16:34 - 2016-12-01 04:38 - 000152576 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\TapinRadio\Qt5Xml.dll
2021-01-21 16:34 - 2016-11-09 11:36 - 000110207 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\TapinRadio\BASS.dll
2021-01-21 16:34 - 2016-11-09 11:36 - 000010808 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\TapinRadio\BASSENC.dll
2021-01-21 16:34 - 2016-11-09 11:36 - 000025152 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\TapinRadio\BASSFLAC.dll
2021-01-21 16:34 - 2016-10-18 14:45 - 000008928 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\TapinRadio\basshls.dll
2021-01-21 16:34 - 2016-11-09 11:36 - 000067340 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\TapinRadio\BASSOPUS.dll
2021-01-21 16:34 - 2016-11-09 11:36 - 000017472 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\TapinRadio\BASSWMA.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_341\bin\ssv.dll [2022-10-16] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_341\bin\jp2ssv.dll [2022-10-16] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-10-14] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 10:14 - 2019-12-07 10:12 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

2021-01-27 08:14 - 2021-01-27 08:19 - 000000438 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\Control Panel\Desktop\\Wallpaper -> c:\users\vkubi_000\appdata\local\microsoft\windows\themes\roamedthemefiles\desktopbackground\img1.jpg
HKU\S-1-5-21-2756002567-295290169-1842266776-500\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AtherosSvc => 2
MSCONFIG\Services: avast => 2
MSCONFIG\Services: avast! Tools => 2
MSCONFIG\Services: avastm => 3
MSCONFIG\Services: AvastSecureBrowserElevationService => 3
MSCONFIG\Services: avg => 2
MSCONFIG\Services: AVG Tools => 2
MSCONFIG\Services: avgm => 3
MSCONFIG\Services: AVGSecureBrowserElevationService => 3
MSCONFIG\Services: CCleanerPerformanceOptimizerService => 3
MSCONFIG\Services: CleanupPSvc => 2
MSCONFIG\Services: cphs => 3
MSCONFIG\Services: ETDService => 2
MSCONFIG\Services: GoogleChromeElevationService => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: igfxCUIService1.0.0.0 => 2
MSCONFIG\Services: ImControllerService => 2
MSCONFIG\Services: Intel(R) Capability Licensing Service TCP IP Interface => 3
MSCONFIG\Services: Intel(R) TPM Provisioning Service => 2
MSCONFIG\Services: jhi_service => 2
MSCONFIG\Services: LMS => 2
MSCONFIG\Services: RtkAudioService => 2
MSCONFIG\Services: SecureLine => 2
MSCONFIG\Services: valWBFPolicyService => 2
MSCONFIG\Services: valWbioSyncSvc => 2
HKLM\...\StartupApproved\StartupFolder: => "Avast SecureLine VPN.lnk"
HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk"
HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "RtHDVCpl"
HKLM\...\StartupApproved\Run: => "RtHDVBg_LENOVO_DOLBYDRAGON"
HKLM\...\StartupApproved\Run: => "RtHDVBg_Dolby"
HKLM\...\StartupApproved\Run: => "TuneupUI.exe"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "TeamsMachineInstaller"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\StartupFolder: => "Sidebar803.lnk"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\StartupFolder: => "Sidebar989.lnk"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\StartupFolder: => "Sidebar755.lnk"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\StartupFolder: => "Sidebar672.lnk"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\StartupFolder: => "Url Monitor.lnk"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\StartupFolder: => "Sidebar309.lnk"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\StartupFolder: => "Sidebar733.lnk"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\Run: => "Opera Browser Assistant"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\Run: => "MP3Studio YouTube Downloader"
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_6E236D41DB9779B1B99DA375447F9C68"
HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\StartupApproved\StartupFolder: => "Sidebar947.lnk"
HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\StartupApproved\StartupFolder: => "Sidebar853.lnk"
HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"
HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\...\StartupApproved\Run: => "OneDriveSetup"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{D2A67C2D-2564-431A-B250-2728F7A65136}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AF535F32-318B-42E6-80BC-5B420929BFB6}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{62D3F8D5-2F15-42BE-BA6D-76C0586E3988}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.151.380.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{02D8F56B-9A1A-4E38-8FBC-D1DA9777B1C1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.151.380.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{463D118F-985D-4F67-AB28-4E4A248075ED}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.151.380.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9C831AB9-0B6C-41AA-9F56-16FAB9061F6E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.151.380.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{EAB757BB-1BA8-4844-90FB-E3C2F019900C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.151.380.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8FD077D8-38A9-4122-87FC-4FF33824AF58}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.151.380.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4C100107-DDB1-4A7C-993D-4B94D91ABBB4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.151.380.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{EE609E94-93FB-4E2F-AEB5-F9F8C9E151A5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.151.380.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D9CDE018-8524-487A-B0CB-B150299C16B0}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{53414C1D-B38F-4403-8500-8DCE4320A3AF}] => (Allow) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{92C84504-9A7C-40C1-98B1-EB1F92C52502}] => (Allow) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{2C39BEC8-7F15-491B-BB2A-07E5159D3A5A}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{C16BA713-7A0D-4793-8AAB-C0EF63ABCAA7}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{53BFD7F7-313A-4271-9F5B-38542B2D46BF}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{9C4B956B-CB2C-4E29-8568-8F3892BA3158}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{AB4AC34E-5D2E-429D-B1AA-E46452810A99}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{04D9DFC5-C39C-4752-8A23-7BEBF2C9FCED}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{03B1DA6A-9754-4B62-9D9B-BD2B840A791C}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{DB7555DD-0B46-41A9-BFCA-AAD5FF6E039F}] => (Allow) C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{64D7E2E9-7370-40FD-9A44-9912A4CD9834}] => (Allow) C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{F2299DF7-E885-4D97-98FF-B969C9AF4AA6}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.50\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A9200B61-EA0A-426A-8648-A721C1500C09}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{3C9871A4-C8E5-41F5-A2D6-377A7FE2144E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3426.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{DC6407A5-AA41-4937-A3AC-11494122F6CF}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3426.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CAC184A4-14B0-4DF1-BED8-BF831970CFB6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3426.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{737F9204-F570-4480-8FC9-7AC5027DEA19}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3426.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)

==================== Restore Points =========================

15-01-2023 09:21:03 Instalační služba modulů systému Windows
03-02-2023 18:47:18 Naplánovaný kontrolní bod
15-02-2023 13:53:12 Naplánovaný kontrolní bod
18-02-2023 16:42:25 Instalační služba modulů systému Windows
18-02-2023 16:53:35 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (02/26/2023 05:43:44 PM) (Source: ESENT) (EventID: 623) (User: )
Description: SearchIndexer (8416,D,23) Windows: Úložiště verzí pro tuto instanci (0) dosáhlo maximální velikosti 128 MB. Pravděpodobně došlo k tomu, že dlouhotrvající transakce zabraňuje vyčištění úložiště verzí a způsobuje jeho narůstání. Aktualizace se budou odmítat, dokud se dlouhotrvající transakce kompletně nepotvrdí nebo nevrátí zpět.

Možná dlouhotrvající transakce:

SessionId: 0x00000280929510C0:0xee094

Kontext relace: 0x00000000

ThreadId kontextu relace: 0x0000000000001284

Vyčištění: 1

Trasování relace:

45861@17:43:43
57573@17:42:17

Error: (02/26/2023 04:40:24 PM) (Source: ESENT) (EventID: 623) (User: )
Description: SearchIndexer (8416,D,23) Windows: Úložiště verzí pro tuto instanci (0) dosáhlo maximální velikosti 128 MB. Pravděpodobně došlo k tomu, že dlouhotrvající transakce zabraňuje vyčištění úložiště verzí a způsobuje jeho narůstání. Aktualizace se budou odmítat, dokud se dlouhotrvající transakce kompletně nepotvrdí nebo nevrátí zpět.

Možná dlouhotrvající transakce:

SessionId: 0x00000280929510C0:0xdd3a4

Kontext relace: 0x00000000

ThreadId kontextu relace: 0x00000000000024F4

Vyčištění: 1

Trasování relace:

45861@16:40:24
57573@16:39:20

Error: (02/26/2023 04:21:40 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Windows\System32\svchost.exe, identifikátor PID: 4416, identifikátor PID ProfSvc: 1852.

Error: (02/26/2023 04:21:40 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Windows\System32\svchost.exe, identifikátor PID: 2508, identifikátor PID ProfSvc: 1852.

Error: (02/26/2023 04:21:40 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\AVAST Software\Avast\AvastSvc.exe, identifikátor PID: 3576, identifikátor PID ProfSvc: 1852.

Error: (02/26/2023 04:21:40 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\AVAST Software\Avast\AvastSvc.exe, identifikátor PID: 3576, identifikátor PID ProfSvc: 1852.

Error: (02/26/2023 04:21:40 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\AVAST Software\Cleanup\TuneupSvc.exe, identifikátor PID: 4448, identifikátor PID ProfSvc: 1852.

Error: (02/26/2023 04:21:40 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\AVAST Software\Cleanup\TuneupSvc.exe, identifikátor PID: 4448, identifikátor PID ProfSvc: 1852.


System errors:
=============
Error: (02/24/2023 07:59:34 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Windows Update Medic byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (02/22/2023 08:56:51 AM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC)
Description: Server {3EEF301F-B596-4C0B-BD92-013BEAFCE793} se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/19/2023 06:19:21 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC)
Description: Server {283EDD52-69B2-473D-BEB6-2C0B4C01FD73} se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/19/2023 06:14:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Windows Update Medic byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (02/18/2023 06:58:08 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC)
Description: Server Microsoft.Windows.Search_1.14.8.19041_neutral_neutral_cw5n1h2txyewy!CortanaUI se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/18/2023 06:45:08 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Optimalizace doručení přestala během spouštění reagovat.

Error: (02/18/2023 06:37:28 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Služba Avast Antivirus se po přijetí pokynu pro vypnutí neukončila správně.

Error: (02/18/2023 06:37:12 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Služba aswbIDSAgent se po přijetí pokynu pro vypnutí neukončila správně.


Windows Defender:
================Event[0]:

Date: 2022-11-08 08:00:12
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.379.25.0
Předchozí verze bezpečnostních informací: 1.329.2627.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.19800.4
Předchozí verze modulu: 1.1.17700.4
Kód chyby: 0x80509004
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.

Date: 2022-11-08 08:00:12
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.379.25.0
Předchozí verze bezpečnostních informací: 1.329.2627.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.19800.4
Předchozí verze modulu: 1.1.17700.4
Kód chyby: 0x80509004
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.

Date: 2022-11-08 08:00:12
Description:
Program Antivirová ochrana v programu Microsoft Defender zjistil chybu při pokusu o aktualizaci modulu
Nová verze modulu: 1.1.19800.4
Předchozí verze modulu: 1.1.17700.4
Uživatel: NT AUTHORITY\SYSTEM
Kód chyby: 0x80509004
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.

Date: 2021-09-10 14:42:09
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.329.2627.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.17700.4
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

Date: 2021-09-10 14:42:09
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.329.2627.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.17700.4
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

CodeIntegrity:
===============
Date: 2023-02-24 20:09:37
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

Date: 2023-02-19 19:10:11
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\AVAST Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume5\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-02-19 18:34:07
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2023-02-19 18:11:13
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO 9CCN30WW(V2.08) 11/26/2014
Motherboard: LENOVO Lenovo B50-30
Processor: Intel(R) Celeron(R) CPU N2940 @ 1.83GHz
Percentage of memory in use: 92%
Total physical RAM: 3978.19 MB
Available physical RAM: 281.48 MB
Total Virtual: 6346.75 MB
Available Virtual: 812.74 MB

==================== Drives ================================

Drive c: (Windows8_OS) (Fixed) (Total:423.1 GB) (Free:206.73 GB) (Model: ST500LT012-1DG142) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:13.33 GB) (Model: ST500LT012-1DG142) NTFS

\\?\Volume{c487d510-5913-47bc-998b-e89f03103264}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.66 GB) NTFS
\\?\Volume{8ff18cbd-f313-48ce-b03f-40033e7eec1a}\ () (Fixed) (Total:0.84 GB) (Free:0.38 GB) NTFS
\\?\Volume{3e91e73a-2cbd-4472-bcb4-10cdff330a34}\ () (Fixed) (Total:0.49 GB) (Free:0.05 GB) NTFS
\\?\Volume{e8427acf-6140-4386-8702-87f78dceefe3}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{27a78a8f-e282-42b7-857b-1eb57ffcf149}\ (PBR_DRV) (Fixed) (Total:13.49 GB) (Free:2.96 GB) NTFS
\\?\Volume{1bda7093-b1d7-4fb9-b45c-657eb6026153}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 3ACB66DE)

Partition: GPT.

==================== End of Addition.txt =======================

Re: kontrola logu

Napsal: 26 úno 2023 18:07
od Rudy
Zdravím!
Přidejte ještě log FRST, abych nohl PC kompletně vyčistit. Je v souboru frst.tst na ploše. Děkuji.

Re: kontrola logu

Napsal: 26 úno 2023 18:13
od hakub
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-02-2023
Ran by vlastimil (administrator) on LENOVO-PC (LENOVO 20382) (26-02-2023 17:34:11)
Running from C:\Users\vkubi_000\Desktop
Loaded Profiles: vlastimil & Administrator & DefaultAppPool
Platform: Microsoft Windows 10 Home Version 22H2 19045.2604 (X64) Language: Angličtina (Spojené státy) -> Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\TapinRadio\TapinRadio.exe ->) (Raimersoft) [File not signed] C:\Program Files (x86)\TapinRadio\VolumeMan.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <10>
(C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <24>
(explorer.exe ->) (MEDIAN s.r.o.) [File not signed] C:\Program Files (x86)\Median\WwwAccessConnector\AudioHUB.Processing.WwwAccessConnectorUrlMonitor.exe
(explorer.exe ->) (Raimersoft) [File not signed] C:\Program Files (x86)\TapinRadio\TapinRadio.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.2300_none_7e14edbc7c88b7d5\TiWorker.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Cleanup\TuneupSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe <2>
(winlogon.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(winlogon.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlrmdr.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18384352 2017-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1493984 2017-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1493984 2017-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [215960 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [4332440 2023-01-11] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711328 2022-06-16] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\vkubi_000\AppData\Local\Microsoft\Teams\Update.exe [2452664 2021-01-18] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38916432 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\Run: [MicrosoftEdgeAutoLaunch_6E236D41DB9779B1B99DA375447F9C68] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4243360 2023-02-23] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\MountPoints2: {183e3aa8-d4cd-11eb-87ba-ace01034b304} - "E:\startme.exe"
HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Administrator\AppData\Local\Microsoft\Teams\Update.exe [2452664 2021-01-18] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38916432 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKLM\...\Windows x64\Print Processors\Canon MP250 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9W.DLL [28672 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpzppwn7: C:\Windows\System32\spool\prtprocs\x64\hpzppwn7.dll [101376 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP250 series: C:\WINDOWS\system32\CNMLM9W.DLL [336896 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Epson Inbox Language Monitor01: C:\WINDOWS\system32\EP0SLM01.DLL [77824 2011-08-30] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\LIDIL hpzllwn7: C:\WINDOWS\system32\hpzllwn7.dll [51712 2009-07-14] (Microsoft Windows -> Hewlett-Packard Company)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\110.0.5481.177\Installer\chrmstp.exe [2023-02-24] (Google LLC -> Google LLC)
Startup: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar853.lnk [2021-01-19]
ShortcutTarget: Sidebar853.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2023-02-15]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2021-05-19]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
Startup: C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar733.lnk [2022-10-14]
ShortcutTarget: Sidebar733.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) [File not signed]
Startup: C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Url Monitor.lnk [2022-03-06]
ShortcutTarget: Url Monitor.lnk -> C:\Program Files (x86)\Median\WwwAccessConnector\AudioHUB.Processing.WwwAccessConnectorUrlMonitor.exe (MEDIAN s.r.o.) [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {04804061-7A4F-4A13-9478-47CB386E1B27} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [6788312 2023-01-04] (Avast Software s.r.o. -> Avast Software)
Task: {0B606F34-74C0-4EAF-A8B8-29E74B851B22} - System32\Tasks\AudioHUB => C:\Program Files (x86)\Median\WwwAccessConnector\AudioHUB.Processing.WwwAccessConnectorUrlMonitor.exe [279040 2021-04-09] (MEDIAN s.r.o.) [File not signed]
Task: {0C7D16AE-A254-4868-B6E0-FD019A0D3D2A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.)
Task: {132E1944-2B32-469A-BE54-B159FDFFCE06} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4664216 2023-01-11] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 364e44c3-3c21-46be-98bb-cfad57580c53
Task: {1C5EBDB4-049D-4649-A70E-6846D47E179A} - System32\Tasks\CCleanerSkipUAC - vlastimil => C:\Program Files\CCleaner\CCleaner.exe [32602448 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {223F1287-6740-475A-9EA0-F958EA5BE51F} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1217944 2023-02-14] (Avast Software s.r.o. -> AVAST Software)
Task: {24E790A5-62BD-45B8-80ED-F28F6F347F58} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4669264 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "f9838222-7e57-4787-8c36-4b24aa4f7fa2" --version "6.07.10191" --silent
Task: {2B0E3F1B-7BE3-4732-AA9E-F2786CC3FE0B} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {344A0C40-6D8F-4F7F-8D44-1C249973AFA0} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [3857536 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {3A4BF2B2-4F6C-4BAE-990D-C29118E51217} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2295192 2023-01-30] (Avast Software s.r.o. -> Avast Software)
Task: {3E249E0E-8B83-494E-BF7A-E8E09BC6EA50} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4867992 2023-02-19] (Avast Software s.r.o. -> AVAST Software)
Task: {4D65397A-DCDA-4E37-8C2C-00CA4B7E14AB} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [74952 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {5169D0C9-9B6E-4073-A77D-9E23E63848E4} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe [149280 2022-09-23] (Lenovo -> Lenovo Group Ltd.)
Task: {5AF39C05-9777-4FA6-B940-67CE7BC60317} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\7b730f53-1a0b-433f-9b41-2b22d2d9c45c => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {6AD4368D-77F2-4B35-BDAB-770E2083EC6A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-18] (Google LLC -> Google LLC)
Task: {81A401E5-9E24-4636-9002-B9B1EC78E5AC} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26165176 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {922CE9AE-A87F-428F-9061-B61184ACF723} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [6694224 2023-01-26] (Avast Software s.r.o. -> Avast Software)
Task: {9605C689-5255-4264-AE67-411143E6C6B0} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26165176 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C10B511-72BD-4D8F-84E4-95EC50C179C6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6624232 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {9E156082-A6DD-49A7-9962-5E2F36644134} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4698008 2023-02-14] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\SecureLine VPN\log" --guid 83dfacd4-f4f9-4634-b93d-fd873b0d2464
Task: {A3838ED1-77BA-4FEF-8D65-BC9B16C6C7DF} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9abe443c-5e0a-4c00-a869-6a9390d49b02 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {A9415DE7-6501-4AB5-BF3F-68B71212B6BC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-12-09] (Piriform Software Ltd -> Piriform)
Task: {AEDB0472-191E-41C5-8221-F4C90BFAC1B5} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\da57fdc9-6a64-4128-926a-465e680bc2f8 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {B8D70B6C-9DB4-4E43-B0B7-E64DF887E118} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\2911fe53-0f57-40b1-9aa3-9084d57a9f20 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {CD0969CC-FFB9-4973-8BEB-099D37E266B0} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {E005D7D2-71D7-4DE7-B24D-5B567AE12532} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {E6A485E6-30F5-4F94-AD6A-A8B4AFBD50A7} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116112 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {EBDBBA38-6F34-4D38-8524-C75570D020BF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6624232 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {FBA13549-89C6-47E2-AEB3-CB8877F917F4} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116112 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {FFB24436-067A-4748-8490-34359D6D336D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-18] (Google LLC -> Google LLC)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{90c8f2f9-2ff8-4676-9d83-58122497fbe3}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{b56fcf72-7566-42e6-9fcb-377c33d97d9c}: [DhcpNameServer] 10.0.0.138

Edge:
=======
DownloadDir: C:\Users\vkubi_000\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-2756002567-295290169-1842266776-1001 -> hxxp://seznam.cz/
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default [2023-02-15]
Edge DownloadDir: Default -> C:\Users\vkubi_000\Desktop
Edge Extension: (Google Translate) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-05-06]
Edge Extension: (LastPass: Free Password Manager) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bbcinlkgjjkejfdpemiealijmmooekmp [2023-01-30]
Edge Extension: (Avast Passwords) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2022-05-06]
Edge Extension: (Convertio) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\eppjkefeiehhflmgkhdooajgbkkegpcl [2022-05-06]
Edge Extension: (Avast Online Security & Privacy) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2022-11-26]
Edge Extension: (Save to Google Drive) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2022-05-06]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2023-01-16]
Edge Extension: (Lightshot) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jipbcefmkoccpgdbmenjpaefoldhphbl [2022-08-08]
Edge Extension: (Netpanel study) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kbidbgoheiddfilfipcobicemncfogno [2023-01-30]
Edge Extension: (Speed Dial 2 New tab) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ohpagamjnemfmmgildfkjgbnabhojcdj [2023-01-16]
Edge Extension: (Avast AntiTrack Premium) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2022-05-06]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.341.2 -> C:\Program Files\Java\jre1.8.0_341\bin\dtplugin\npDeployJava1.dll [2022-10-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.341.2 -> C:\Program Files\Java\jre1.8.0_341\bin\plugin2\npjp2.dll [2022-10-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-01-20] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-04-10] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-10-14] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default [2023-02-15]
CHR HomePage: Default -> hxxps://www.seznam.cz/
CHR Extension: (Prezentace) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-01-18]
CHR Extension: (Dokumenty) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-01-18]
CHR Extension: (Disk Google) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-01-18]
CHR Extension: (Volání přes Skype) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2021-01-18]
CHR Extension: (YouTube) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-01-18]
CHR Extension: (Hangouts Notifications) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbpmaadfebbedknhmeeijeicldjlegee [2021-01-18]
CHR Extension: (Tabulky) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-01-18]
CHR Extension: (Dokumenty Google offline) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-12-15]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2021-12-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-12-15]
CHR Extension: (Gmail) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-01-18]
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-02-15]
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-02-26]
CHR DownloadDir: C:\Users\vkubi_000\Desktop
CHR Notifications: Profile 1 -> hxxps://bruntalsky.denik.cz; hxxps://captcha-test.top; hxxps://domovy.trovit.cz; hxxps://fastshare.cz; hxxps://fera24.cz; hxxps://moje.uniqa.cz; hxxps://online.rb.cz; hxxps://sport.synottip.cz; hxxps://talkonlinepanel.com; hxxps://twitter.com; hxxps://www.drevostavitel.cz; hxxps://www.facebook.com; hxxps://www.ifortuna.cz; hxxps://www.instagram.com; hxxps://www.lordhair.com; hxxps://www.megaknihy.cz; hxxps://www.penize.cz; hxxps://www.prostaxin.cz; hxxps://www.tipsport.cz; hxxps://www.wish.com; hxxps://www.youtube.com; hxxps://xshare.cz
CHR NewTab: Profile 1 -> Not-active:"chrome-extension://jpfpebmajhhopeonhlcgidhclcccjcik/override.html"
CHR Extension: (Překladač Google) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-03-11]
CHR Extension: (Avast Passwords) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2021-01-20]
CHR Extension: (Convertio) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eppjkefeiehhflmgkhdooajgbkkegpcl [2021-01-20]
CHR Extension: (Word Online) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fiombgjlkfpdpkbhfioofeeinbehmajg [2021-01-20]
CHR Extension: (Full Screen Weather) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2021-01-20]
CHR Extension: (YouTube Flash Video Player) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fldkdmkgnlbehfgeifjpjabmandnchpe [2021-01-20]
CHR Extension: (Pass Strength Meter) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gahnebecgllcaakcojhgndipnamdlghe [2021-01-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-02-19]
CHR Extension: (Uložit na Disk Google) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2021-09-16]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2023-02-26]
CHR Extension: (Speed Dial 2 New tab) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik [2023-02-02]
CHR Extension: (Netpanel) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kbidbgoheiddfilfipcobicemncfogno [2023-02-11]
CHR Extension: (Webcam Toy) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lfbgimoladefibpklnfmkpknadbklade [2021-01-20]
CHR Extension: (Lightshot (Nástroje snímků)) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mbniclmhobmnbdlbpiphghaielnnpgdp [2021-01-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\System Profile [2023-02-15]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.)
S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-05-20] (Apple Inc. -> Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8553880 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [597400 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2038168 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [597400 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-06-01] (Avast Software s.r.o. -> AVAST Software)
S4 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1003344 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [15615384 2023-01-11] (Avast Software s.r.o. -> AVAST Software)
S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12477344 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [21312 2021-01-19] (Microsoft Windows -> Microsoft Corporation)
S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [9639320 2023-02-14] (Avast Software s.r.o. -> AVAST Software)
S4 valWBFPolicyService; C:\WINDOWS\system32\valWBFPolicyService.exe [77792 2018-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
S4 valWbioSyncSvc; C:\WINDOWS\system32\valWbioSyncSvc.exe [48608 2018-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2021-01-22] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2021-01-22] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [231800 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [391264 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [297848 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [95928 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [25576 2022-10-14] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [39600 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [268448 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [556080 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [105216 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [80392 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [852016 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [696016 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [212632 2022-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [319016 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [72584 2023-02-14] (Avast Software s.r.o. -> Avast Software)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 HWHandSet; C:\WINDOWS\System32\drivers\hw_quusbmdm.sys [226560 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusb_cdcacm; C:\WINDOWS\System32\drivers\hw_cdcacm.sys [127360 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hw_usbdev; C:\WINDOWS\System32\drivers\hw_usbdev.sys [116864 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R1 netfilter2; C:\WINDOWS\System32\drivers\netfilter2.sys [86632 2020-10-06] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R3 RSP2STOR; C:\WINDOWS\System32\drivers\RtsP2Stor.sys [338880 2018-07-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S3 scsiscan; C:\WINDOWS\System32\drivers\scsiscan.sys [21504 2022-07-19] (Microsoft Windows -> Microsoft Corporation)
R1 SMIDriverGen; C:\WINDOWS\system32\DRIVERS\smi.sys [31440 2018-04-25] (Synaptics Inc. -> Synaptics Incorporated)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2021-01-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [429296 2021-01-22] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\System32\drivers\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2021-01-22] (Microsoft Windows -> Microsoft Corporation)
U1 aswbdisk; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-26 17:33 - 2023-02-26 17:34 - 002378752 _____ (Farbar) C:\Users\vkubi_000\Desktop\FRST64 (1).exe
2023-02-26 17:31 - 2023-02-26 17:31 - 000001537 _____ C:\Users\vkubi_000\Desktop\Addition.txt
2023-02-26 17:13 - 2023-02-26 17:37 - 000034093 _____ C:\Users\vkubi_000\Desktop\FRST.txt
2023-02-26 17:11 - 2023-02-26 17:36 - 000000000 ____D C:\FRST
2023-02-26 17:10 - 2023-02-26 17:10 - 002378752 _____ (Farbar) C:\Users\vkubi_000\Desktop\FRST64.exe
2023-02-26 15:59 - 2023-02-26 15:59 - 000000000 ____D C:\Program Files\chrome_BITS_3948_1068566948
2023-02-22 07:04 - 2023-02-22 07:07 - 000000000 ____D C:\Program Files\chrome_url_fetcher_13092_1475174794
2023-02-19 18:33 - 2023-02-19 18:32 - 000288664 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2023-02-18 18:39 - 2023-02-18 18:40 - 000438944 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-02-18 16:52 - 2023-02-18 16:52 - 000000000 ___HD C:\$WinREAgent
2023-02-17 11:23 - 2023-02-17 11:25 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginPatching13180_1020859218
2023-02-17 11:22 - 2023-02-17 11:26 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginUnzipping13180_202893673
2023-02-17 11:20 - 2023-02-17 11:22 - 000000000 ____D C:\Program Files\chrome_url_fetcher_13180_1621084270
2023-02-14 16:36 - 2023-02-14 16:36 - 000072584 _____ (Avast Software) C:\WINDOWS\system32\Drivers\aswVpnRdr.sys
2023-02-12 19:46 - 2023-02-12 19:46 - 000000000 ____D C:\Users\Administrator\AppData\Local\Lenovo
2023-01-30 19:17 - 2023-01-30 19:17 - 000002044 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-01-30 19:17 - 2023-01-30 19:17 - 000002032 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-01-30 18:12 - 2023-01-30 18:12 - 000000000 ____D C:\Users\vkubi_000\AppData\Roaming\com.adobe.dunamis
2023-01-30 12:01 - 2023-01-30 12:03 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginUnzipping13800_1466589952
2023-01-30 12:01 - 2023-01-30 12:02 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginPatching13800_1554398190
2023-01-30 12:01 - 2023-01-30 12:01 - 000000000 ____D C:\Program Files\chrome_url_fetcher_13800_479228021

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-26 17:34 - 2021-01-18 20:01 - 000000000 ____D C:\Program Files (x86)\Google
2023-02-26 17:28 - 2021-10-27 15:29 - 000000000 ____D C:\AAA
2023-02-26 16:22 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-02-26 16:22 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-02-26 16:21 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-02-26 15:42 - 2023-01-20 09:15 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-02-26 15:42 - 2021-01-26 08:46 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-02-26 15:36 - 2022-11-08 07:43 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2023-02-26 15:36 - 2021-01-18 22:23 - 000000000 ____D C:\Program Files\CCleaner
2023-02-24 20:32 - 2022-07-17 08:10 - 000002177 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-02-24 20:32 - 2021-01-18 20:03 - 000002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-02-22 19:12 - 2019-08-26 08:29 - 000000000 ____D C:\Trefik15
2023-02-22 08:15 - 2021-01-18 17:48 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-02-19 18:33 - 2021-01-22 10:33 - 000319016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2023-02-19 18:33 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2023-02-19 18:32 - 2021-01-22 11:00 - 000556080 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000696016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000297848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000268448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000105216 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000095928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000080392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000039600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2023-02-19 18:31 - 2021-01-22 10:33 - 000852016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2023-02-19 18:31 - 2021-01-22 10:33 - 000391264 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2023-02-19 18:31 - 2021-01-22 10:33 - 000231800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2023-02-18 18:46 - 2021-01-19 01:28 - 000788632 _____ C:\WINDOWS\system32\perfh005.dat
2023-02-18 18:46 - 2021-01-19 01:28 - 000175478 _____ C:\WINDOWS\system32\perfc005.dat
2023-02-18 18:46 - 2021-01-18 18:51 - 001890118 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-02-18 18:46 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2023-02-18 18:41 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2023-02-18 18:40 - 2021-01-20 18:40 - 000000000 ____D C:\ProgramData\AVAST Software
2023-02-18 18:39 - 2021-04-06 06:11 - 000000000 ____D C:\ProgramData\Synaptics
2023-02-18 18:39 - 2021-02-05 17:08 - 000004028 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update
2023-02-18 18:39 - 2021-01-18 18:06 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-02-18 18:39 - 2020-07-28 13:15 - 000008192 ___SH C:\DumpStack.log.tmp
2023-02-18 18:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2023-02-18 18:38 - 2019-12-07 10:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2023-02-18 18:36 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2023-02-18 18:34 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-02-18 18:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-02-18 18:04 - 2021-01-18 18:09 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-02-18 16:03 - 2021-01-21 08:20 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-02-18 16:02 - 2021-01-21 08:19 - 149955784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-02-08 09:41 - 2019-02-16 15:00 - 000000000 ____D C:\Users\vkubi_000\TapinRadio
2023-02-08 08:29 - 2021-01-26 08:44 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-02-08 08:29 - 2021-01-26 08:44 - 000003516 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-02-02 09:13 - 2022-07-07 12:39 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2756002567-295290169-1842266776-1001
2023-02-02 09:13 - 2021-01-18 21:39 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2756002567-295290169-1842266776-1001
2023-02-02 09:13 - 2021-01-18 18:28 - 000002400 _____ C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-02-02 09:00 - 2021-01-22 10:33 - 000695504 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw2bce7d8642121681.tmp
2023-02-02 08:51 - 2022-11-13 17:25 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2023-01-30 19:23 - 2021-09-07 08:59 - 000003542 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2023-01-30 18:17 - 2022-12-22 08:58 - 000003046 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2023-01-30 18:17 - 2021-09-01 07:22 - 000002260 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - vlastimil
2023-01-30 18:17 - 2021-03-31 07:43 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2023-01-30 18:17 - 2021-03-31 07:43 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2023-01-30 18:17 - 2021-01-18 22:23 - 000003194 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2023-01-30 18:17 - 2021-01-18 19:26 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2023-01-30 10:54 - 2021-01-18 21:36 - 000000000 ____D C:\Users\Administrator\AppData\Local\SquirrelTemp
2023-01-30 10:10 - 2021-01-18 19:26 - 000000000 ____D C:\Users\vkubi_000\AppData\Local\Packages
2023-01-30 08:57 - 2021-01-22 14:01 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools

==================== Files in the root of some directories ========

2021-02-14 19:53 - 2021-02-14 19:53 - 000000092 _____ () C:\Users\vkubi_000\AppData\Roaming\Control System_Settings.ini

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: kontrola logu

Napsal: 26 úno 2023 19:07
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711328 2022-06-16] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\MountPoints2: {183e3aa8-d4cd-11eb-87ba-ace01034b304} - "E:\startme.exe"
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {6AD4368D-77F2-4B35-BDAB-770E2083EC6A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-18] (Google LLC -> Google LLC)
Task: {FFB24436-067A-4748-8490-34359D6D336D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-18] (Google LLC -> Google LLC)
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
U1 aswbdisk; no ImagePath
C:\DumpStack.log.tmp
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => -> No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: kontrola logu

Napsal: 26 úno 2023 19:59
od hakub
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-02-2023
Ran by vlastimil (administrator) on LENOVO-PC (LENOVO 20382) (26-02-2023 17:34:11)
Running from C:\Users\vkubi_000\Desktop
Loaded Profiles: vlastimil & Administrator & DefaultAppPool
Platform: Microsoft Windows 10 Home Version 22H2 19045.2604 (X64) Language: Angličtina (Spojené státy) -> Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\TapinRadio\TapinRadio.exe ->) (Raimersoft) [File not signed] C:\Program Files (x86)\TapinRadio\VolumeMan.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <10>
(C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <24>
(explorer.exe ->) (MEDIAN s.r.o.) [File not signed] C:\Program Files (x86)\Median\WwwAccessConnector\AudioHUB.Processing.WwwAccessConnectorUrlMonitor.exe
(explorer.exe ->) (Raimersoft) [File not signed] C:\Program Files (x86)\TapinRadio\TapinRadio.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.2300_none_7e14edbc7c88b7d5\TiWorker.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Cleanup\TuneupSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe <2>
(winlogon.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(winlogon.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlrmdr.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18384352 2017-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1493984 2017-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1493984 2017-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [215960 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [4332440 2023-01-11] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711328 2022-06-16] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\vkubi_000\AppData\Local\Microsoft\Teams\Update.exe [2452664 2021-01-18] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38916432 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\Run: [MicrosoftEdgeAutoLaunch_6E236D41DB9779B1B99DA375447F9C68] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4243360 2023-02-23] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\MountPoints2: {183e3aa8-d4cd-11eb-87ba-ace01034b304} - "E:\startme.exe"
HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Administrator\AppData\Local\Microsoft\Teams\Update.exe [2452664 2021-01-18] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38916432 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKLM\...\Windows x64\Print Processors\Canon MP250 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9W.DLL [28672 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpzppwn7: C:\Windows\System32\spool\prtprocs\x64\hpzppwn7.dll [101376 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP250 series: C:\WINDOWS\system32\CNMLM9W.DLL [336896 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Epson Inbox Language Monitor01: C:\WINDOWS\system32\EP0SLM01.DLL [77824 2011-08-30] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\LIDIL hpzllwn7: C:\WINDOWS\system32\hpzllwn7.dll [51712 2009-07-14] (Microsoft Windows -> Hewlett-Packard Company)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\110.0.5481.177\Installer\chrmstp.exe [2023-02-24] (Google LLC -> Google LLC)
Startup: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar853.lnk [2021-01-19]
ShortcutTarget: Sidebar853.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2023-02-15]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2021-05-19]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
Startup: C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar733.lnk [2022-10-14]
ShortcutTarget: Sidebar733.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) [File not signed]
Startup: C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Url Monitor.lnk [2022-03-06]
ShortcutTarget: Url Monitor.lnk -> C:\Program Files (x86)\Median\WwwAccessConnector\AudioHUB.Processing.WwwAccessConnectorUrlMonitor.exe (MEDIAN s.r.o.) [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {04804061-7A4F-4A13-9478-47CB386E1B27} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [6788312 2023-01-04] (Avast Software s.r.o. -> Avast Software)
Task: {0B606F34-74C0-4EAF-A8B8-29E74B851B22} - System32\Tasks\AudioHUB => C:\Program Files (x86)\Median\WwwAccessConnector\AudioHUB.Processing.WwwAccessConnectorUrlMonitor.exe [279040 2021-04-09] (MEDIAN s.r.o.) [File not signed]
Task: {0C7D16AE-A254-4868-B6E0-FD019A0D3D2A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.)
Task: {132E1944-2B32-469A-BE54-B159FDFFCE06} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4664216 2023-01-11] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 364e44c3-3c21-46be-98bb-cfad57580c53
Task: {1C5EBDB4-049D-4649-A70E-6846D47E179A} - System32\Tasks\CCleanerSkipUAC - vlastimil => C:\Program Files\CCleaner\CCleaner.exe [32602448 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {223F1287-6740-475A-9EA0-F958EA5BE51F} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1217944 2023-02-14] (Avast Software s.r.o. -> AVAST Software)
Task: {24E790A5-62BD-45B8-80ED-F28F6F347F58} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4669264 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "f9838222-7e57-4787-8c36-4b24aa4f7fa2" --version "6.07.10191" --silent
Task: {2B0E3F1B-7BE3-4732-AA9E-F2786CC3FE0B} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {344A0C40-6D8F-4F7F-8D44-1C249973AFA0} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [3857536 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {3A4BF2B2-4F6C-4BAE-990D-C29118E51217} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2295192 2023-01-30] (Avast Software s.r.o. -> Avast Software)
Task: {3E249E0E-8B83-494E-BF7A-E8E09BC6EA50} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4867992 2023-02-19] (Avast Software s.r.o. -> AVAST Software)
Task: {4D65397A-DCDA-4E37-8C2C-00CA4B7E14AB} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [74952 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {5169D0C9-9B6E-4073-A77D-9E23E63848E4} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe [149280 2022-09-23] (Lenovo -> Lenovo Group Ltd.)
Task: {5AF39C05-9777-4FA6-B940-67CE7BC60317} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\7b730f53-1a0b-433f-9b41-2b22d2d9c45c => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {6AD4368D-77F2-4B35-BDAB-770E2083EC6A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-18] (Google LLC -> Google LLC)
Task: {81A401E5-9E24-4636-9002-B9B1EC78E5AC} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26165176 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {922CE9AE-A87F-428F-9061-B61184ACF723} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [6694224 2023-01-26] (Avast Software s.r.o. -> Avast Software)
Task: {9605C689-5255-4264-AE67-411143E6C6B0} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26165176 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C10B511-72BD-4D8F-84E4-95EC50C179C6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6624232 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {9E156082-A6DD-49A7-9962-5E2F36644134} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4698008 2023-02-14] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\SecureLine VPN\log" --guid 83dfacd4-f4f9-4634-b93d-fd873b0d2464
Task: {A3838ED1-77BA-4FEF-8D65-BC9B16C6C7DF} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9abe443c-5e0a-4c00-a869-6a9390d49b02 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {A9415DE7-6501-4AB5-BF3F-68B71212B6BC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-12-09] (Piriform Software Ltd -> Piriform)
Task: {AEDB0472-191E-41C5-8221-F4C90BFAC1B5} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\da57fdc9-6a64-4128-926a-465e680bc2f8 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {B8D70B6C-9DB4-4E43-B0B7-E64DF887E118} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\2911fe53-0f57-40b1-9aa3-9084d57a9f20 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {CD0969CC-FFB9-4973-8BEB-099D37E266B0} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {E005D7D2-71D7-4DE7-B24D-5B567AE12532} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {E6A485E6-30F5-4F94-AD6A-A8B4AFBD50A7} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116112 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {EBDBBA38-6F34-4D38-8524-C75570D020BF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6624232 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {FBA13549-89C6-47E2-AEB3-CB8877F917F4} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116112 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {FFB24436-067A-4748-8490-34359D6D336D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-18] (Google LLC -> Google LLC)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{90c8f2f9-2ff8-4676-9d83-58122497fbe3}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{b56fcf72-7566-42e6-9fcb-377c33d97d9c}: [DhcpNameServer] 10.0.0.138

Edge:
=======
DownloadDir: C:\Users\vkubi_000\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-2756002567-295290169-1842266776-1001 -> hxxp://seznam.cz/
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default [2023-02-15]
Edge DownloadDir: Default -> C:\Users\vkubi_000\Desktop
Edge Extension: (Google Translate) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-05-06]
Edge Extension: (LastPass: Free Password Manager) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bbcinlkgjjkejfdpemiealijmmooekmp [2023-01-30]
Edge Extension: (Avast Passwords) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2022-05-06]
Edge Extension: (Convertio) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\eppjkefeiehhflmgkhdooajgbkkegpcl [2022-05-06]
Edge Extension: (Avast Online Security & Privacy) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2022-11-26]
Edge Extension: (Save to Google Drive) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2022-05-06]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2023-01-16]
Edge Extension: (Lightshot) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jipbcefmkoccpgdbmenjpaefoldhphbl [2022-08-08]
Edge Extension: (Netpanel study) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kbidbgoheiddfilfipcobicemncfogno [2023-01-30]
Edge Extension: (Speed Dial 2 New tab) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ohpagamjnemfmmgildfkjgbnabhojcdj [2023-01-16]
Edge Extension: (Avast AntiTrack Premium) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2022-05-06]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.341.2 -> C:\Program Files\Java\jre1.8.0_341\bin\dtplugin\npDeployJava1.dll [2022-10-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.341.2 -> C:\Program Files\Java\jre1.8.0_341\bin\plugin2\npjp2.dll [2022-10-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-01-20] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-04-10] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-10-14] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default [2023-02-15]
CHR HomePage: Default -> hxxps://www.seznam.cz/
CHR Extension: (Prezentace) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-01-18]
CHR Extension: (Dokumenty) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-01-18]
CHR Extension: (Disk Google) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-01-18]
CHR Extension: (Volání přes Skype) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2021-01-18]
CHR Extension: (YouTube) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-01-18]
CHR Extension: (Hangouts Notifications) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbpmaadfebbedknhmeeijeicldjlegee [2021-01-18]
CHR Extension: (Tabulky) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-01-18]
CHR Extension: (Dokumenty Google offline) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-12-15]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2021-12-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-12-15]
CHR Extension: (Gmail) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-01-18]
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-02-15]
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-02-26]
CHR DownloadDir: C:\Users\vkubi_000\Desktop
CHR Notifications: Profile 1 -> hxxps://bruntalsky.denik.cz; hxxps://captcha-test.top; hxxps://domovy.trovit.cz; hxxps://fastshare.cz; hxxps://fera24.cz; hxxps://moje.uniqa.cz; hxxps://online.rb.cz; hxxps://sport.synottip.cz; hxxps://talkonlinepanel.com; hxxps://twitter.com; hxxps://www.drevostavitel.cz; hxxps://www.facebook.com; hxxps://www.ifortuna.cz; hxxps://www.instagram.com; hxxps://www.lordhair.com; hxxps://www.megaknihy.cz; hxxps://www.penize.cz; hxxps://www.prostaxin.cz; hxxps://www.tipsport.cz; hxxps://www.wish.com; hxxps://www.youtube.com; hxxps://xshare.cz
CHR NewTab: Profile 1 -> Not-active:"chrome-extension://jpfpebmajhhopeonhlcgidhclcccjcik/override.html"
CHR Extension: (Překladač Google) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-03-11]
CHR Extension: (Avast Passwords) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2021-01-20]
CHR Extension: (Convertio) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eppjkefeiehhflmgkhdooajgbkkegpcl [2021-01-20]
CHR Extension: (Word Online) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fiombgjlkfpdpkbhfioofeeinbehmajg [2021-01-20]
CHR Extension: (Full Screen Weather) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2021-01-20]
CHR Extension: (YouTube Flash Video Player) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fldkdmkgnlbehfgeifjpjabmandnchpe [2021-01-20]
CHR Extension: (Pass Strength Meter) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gahnebecgllcaakcojhgndipnamdlghe [2021-01-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-02-19]
CHR Extension: (Uložit na Disk Google) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2021-09-16]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2023-02-26]
CHR Extension: (Speed Dial 2 New tab) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik [2023-02-02]
CHR Extension: (Netpanel) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kbidbgoheiddfilfipcobicemncfogno [2023-02-11]
CHR Extension: (Webcam Toy) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lfbgimoladefibpklnfmkpknadbklade [2021-01-20]
CHR Extension: (Lightshot (Nástroje snímků)) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mbniclmhobmnbdlbpiphghaielnnpgdp [2021-01-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\System Profile [2023-02-15]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.)
S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-05-20] (Apple Inc. -> Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8553880 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [597400 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2038168 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [597400 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-06-01] (Avast Software s.r.o. -> AVAST Software)
S4 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1003344 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [15615384 2023-01-11] (Avast Software s.r.o. -> AVAST Software)
S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12477344 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [21312 2021-01-19] (Microsoft Windows -> Microsoft Corporation)
S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [9639320 2023-02-14] (Avast Software s.r.o. -> AVAST Software)
S4 valWBFPolicyService; C:\WINDOWS\system32\valWBFPolicyService.exe [77792 2018-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
S4 valWbioSyncSvc; C:\WINDOWS\system32\valWbioSyncSvc.exe [48608 2018-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2021-01-22] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2021-01-22] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [231800 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [391264 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [297848 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [95928 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [25576 2022-10-14] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [39600 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [268448 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [556080 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [105216 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [80392 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [852016 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [696016 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [212632 2022-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [319016 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [72584 2023-02-14] (Avast Software s.r.o. -> Avast Software)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 HWHandSet; C:\WINDOWS\System32\drivers\hw_quusbmdm.sys [226560 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusb_cdcacm; C:\WINDOWS\System32\drivers\hw_cdcacm.sys [127360 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hw_usbdev; C:\WINDOWS\System32\drivers\hw_usbdev.sys [116864 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R1 netfilter2; C:\WINDOWS\System32\drivers\netfilter2.sys [86632 2020-10-06] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R3 RSP2STOR; C:\WINDOWS\System32\drivers\RtsP2Stor.sys [338880 2018-07-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S3 scsiscan; C:\WINDOWS\System32\drivers\scsiscan.sys [21504 2022-07-19] (Microsoft Windows -> Microsoft Corporation)
R1 SMIDriverGen; C:\WINDOWS\system32\DRIVERS\smi.sys [31440 2018-04-25] (Synaptics Inc. -> Synaptics Incorporated)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2021-01-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [429296 2021-01-22] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\System32\drivers\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2021-01-22] (Microsoft Windows -> Microsoft Corporation)
U1 aswbdisk; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-26 17:33 - 2023-02-26 17:34 - 002378752 _____ (Farbar) C:\Users\vkubi_000\Desktop\FRST64 (1).exe
2023-02-26 17:31 - 2023-02-26 17:31 - 000001537 _____ C:\Users\vkubi_000\Desktop\Addition.txt
2023-02-26 17:13 - 2023-02-26 17:37 - 000034093 _____ C:\Users\vkubi_000\Desktop\FRST.txt
2023-02-26 17:11 - 2023-02-26 17:36 - 000000000 ____D C:\FRST
2023-02-26 17:10 - 2023-02-26 17:10 - 002378752 _____ (Farbar) C:\Users\vkubi_000\Desktop\FRST64.exe
2023-02-26 15:59 - 2023-02-26 15:59 - 000000000 ____D C:\Program Files\chrome_BITS_3948_1068566948
2023-02-22 07:04 - 2023-02-22 07:07 - 000000000 ____D C:\Program Files\chrome_url_fetcher_13092_1475174794
2023-02-19 18:33 - 2023-02-19 18:32 - 000288664 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2023-02-18 18:39 - 2023-02-18 18:40 - 000438944 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-02-18 16:52 - 2023-02-18 16:52 - 000000000 ___HD C:\$WinREAgent
2023-02-17 11:23 - 2023-02-17 11:25 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginPatching13180_1020859218
2023-02-17 11:22 - 2023-02-17 11:26 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginUnzipping13180_202893673
2023-02-17 11:20 - 2023-02-17 11:22 - 000000000 ____D C:\Program Files\chrome_url_fetcher_13180_1621084270
2023-02-14 16:36 - 2023-02-14 16:36 - 000072584 _____ (Avast Software) C:\WINDOWS\system32\Drivers\aswVpnRdr.sys
2023-02-12 19:46 - 2023-02-12 19:46 - 000000000 ____D C:\Users\Administrator\AppData\Local\Lenovo
2023-01-30 19:17 - 2023-01-30 19:17 - 000002044 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-01-30 19:17 - 2023-01-30 19:17 - 000002032 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-01-30 18:12 - 2023-01-30 18:12 - 000000000 ____D C:\Users\vkubi_000\AppData\Roaming\com.adobe.dunamis
2023-01-30 12:01 - 2023-01-30 12:03 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginUnzipping13800_1466589952
2023-01-30 12:01 - 2023-01-30 12:02 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginPatching13800_1554398190
2023-01-30 12:01 - 2023-01-30 12:01 - 000000000 ____D C:\Program Files\chrome_url_fetcher_13800_479228021

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-26 17:34 - 2021-01-18 20:01 - 000000000 ____D C:\Program Files (x86)\Google
2023-02-26 17:28 - 2021-10-27 15:29 - 000000000 ____D C:\AAA
2023-02-26 16:22 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-02-26 16:22 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-02-26 16:21 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-02-26 15:42 - 2023-01-20 09:15 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-02-26 15:42 - 2021-01-26 08:46 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-02-26 15:36 - 2022-11-08 07:43 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2023-02-26 15:36 - 2021-01-18 22:23 - 000000000 ____D C:\Program Files\CCleaner
2023-02-24 20:32 - 2022-07-17 08:10 - 000002177 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-02-24 20:32 - 2021-01-18 20:03 - 000002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-02-22 19:12 - 2019-08-26 08:29 - 000000000 ____D C:\Trefik15
2023-02-22 08:15 - 2021-01-18 17:48 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-02-19 18:33 - 2021-01-22 10:33 - 000319016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2023-02-19 18:33 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2023-02-19 18:32 - 2021-01-22 11:00 - 000556080 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000696016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000297848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000268448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000105216 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000095928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000080392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000039600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2023-02-19 18:31 - 2021-01-22 10:33 - 000852016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2023-02-19 18:31 - 2021-01-22 10:33 - 000391264 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2023-02-19 18:31 - 2021-01-22 10:33 - 000231800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2023-02-18 18:46 - 2021-01-19 01:28 - 000788632 _____ C:\WINDOWS\system32\perfh005.dat
2023-02-18 18:46 - 2021-01-19 01:28 - 000175478 _____ C:\WINDOWS\system32\perfc005.dat
2023-02-18 18:46 - 2021-01-18 18:51 - 001890118 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-02-18 18:46 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2023-02-18 18:41 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2023-02-18 18:40 - 2021-01-20 18:40 - 000000000 ____D C:\ProgramData\AVAST Software
2023-02-18 18:39 - 2021-04-06 06:11 - 000000000 ____D C:\ProgramData\Synaptics
2023-02-18 18:39 - 2021-02-05 17:08 - 000004028 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update
2023-02-18 18:39 - 2021-01-18 18:06 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-02-18 18:39 - 2020-07-28 13:15 - 000008192 ___SH C:\DumpStack.log.tmp
2023-02-18 18:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2023-02-18 18:38 - 2019-12-07 10:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2023-02-18 18:36 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2023-02-18 18:34 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-02-18 18:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-02-18 18:04 - 2021-01-18 18:09 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-02-18 16:03 - 2021-01-21 08:20 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-02-18 16:02 - 2021-01-21 08:19 - 149955784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-02-08 09:41 - 2019-02-16 15:00 - 000000000 ____D C:\Users\vkubi_000\TapinRadio
2023-02-08 08:29 - 2021-01-26 08:44 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-02-08 08:29 - 2021-01-26 08:44 - 000003516 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-02-02 09:13 - 2022-07-07 12:39 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2756002567-295290169-1842266776-1001
2023-02-02 09:13 - 2021-01-18 21:39 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2756002567-295290169-1842266776-1001
2023-02-02 09:13 - 2021-01-18 18:28 - 000002400 _____ C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-02-02 09:00 - 2021-01-22 10:33 - 000695504 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw2bce7d8642121681.tmp
2023-02-02 08:51 - 2022-11-13 17:25 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2023-01-30 19:23 - 2021-09-07 08:59 - 000003542 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2023-01-30 18:17 - 2022-12-22 08:58 - 000003046 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2023-01-30 18:17 - 2021-09-01 07:22 - 000002260 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - vlastimil
2023-01-30 18:17 - 2021-03-31 07:43 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2023-01-30 18:17 - 2021-03-31 07:43 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2023-01-30 18:17 - 2021-01-18 22:23 - 000003194 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2023-01-30 18:17 - 2021-01-18 19:26 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2023-01-30 10:54 - 2021-01-18 21:36 - 000000000 ____D C:\Users\Administrator\AppData\Local\SquirrelTemp
2023-01-30 10:10 - 2021-01-18 19:26 - 000000000 ____D C:\Users\vkubi_000\AppData\Local\Packages
2023-01-30 08:57 - 2021-01-22 14:01 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools

==================== Files in the root of some directories ========

2021-02-14 19:53 - 2021-02-14 19:53 - 000000092 _____ () C:\Users\vkubi_000\AppData\Roaming\Control System_Settings.ini

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: kontrola logu

Napsal: 26 úno 2023 20:10
od hakub
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-02-2023
Ran by vlastimil (administrator) on LENOVO-PC (LENOVO 20382) (26-02-2023 17:34:11)
Running from C:\Users\vkubi_000\Desktop
Loaded Profiles: vlastimil & Administrator & DefaultAppPool
Platform: Microsoft Windows 10 Home Version 22H2 19045.2604 (X64) Language: Angličtina (Spojené státy) -> Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\TapinRadio\TapinRadio.exe ->) (Raimersoft) [File not signed] C:\Program Files (x86)\TapinRadio\VolumeMan.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <10>
(C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <24>
(explorer.exe ->) (MEDIAN s.r.o.) [File not signed] C:\Program Files (x86)\Median\WwwAccessConnector\AudioHUB.Processing.WwwAccessConnectorUrlMonitor.exe
(explorer.exe ->) (Raimersoft) [File not signed] C:\Program Files (x86)\TapinRadio\TapinRadio.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.2300_none_7e14edbc7c88b7d5\TiWorker.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Cleanup\TuneupSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe <2>
(winlogon.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(winlogon.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlrmdr.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18384352 2017-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1493984 2017-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1493984 2017-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [215960 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [4332440 2023-01-11] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711328 2022-06-16] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\vkubi_000\AppData\Local\Microsoft\Teams\Update.exe [2452664 2021-01-18] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38916432 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\Run: [MicrosoftEdgeAutoLaunch_6E236D41DB9779B1B99DA375447F9C68] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4243360 2023-02-23] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\MountPoints2: {183e3aa8-d4cd-11eb-87ba-ace01034b304} - "E:\startme.exe"
HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Administrator\AppData\Local\Microsoft\Teams\Update.exe [2452664 2021-01-18] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-2756002567-295290169-1842266776-500\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38916432 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKLM\...\Windows x64\Print Processors\Canon MP250 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9W.DLL [28672 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpzppwn7: C:\Windows\System32\spool\prtprocs\x64\hpzppwn7.dll [101376 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP250 series: C:\WINDOWS\system32\CNMLM9W.DLL [336896 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Epson Inbox Language Monitor01: C:\WINDOWS\system32\EP0SLM01.DLL [77824 2011-08-30] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\LIDIL hpzllwn7: C:\WINDOWS\system32\hpzllwn7.dll [51712 2009-07-14] (Microsoft Windows -> Hewlett-Packard Company)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\110.0.5481.177\Installer\chrmstp.exe [2023-02-24] (Google LLC -> Google LLC)
Startup: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar853.lnk [2021-01-19]
ShortcutTarget: Sidebar853.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2023-02-15]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2021-05-19]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
Startup: C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar733.lnk [2022-10-14]
ShortcutTarget: Sidebar733.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) [File not signed]
Startup: C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Url Monitor.lnk [2022-03-06]
ShortcutTarget: Url Monitor.lnk -> C:\Program Files (x86)\Median\WwwAccessConnector\AudioHUB.Processing.WwwAccessConnectorUrlMonitor.exe (MEDIAN s.r.o.) [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {04804061-7A4F-4A13-9478-47CB386E1B27} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [6788312 2023-01-04] (Avast Software s.r.o. -> Avast Software)
Task: {0B606F34-74C0-4EAF-A8B8-29E74B851B22} - System32\Tasks\AudioHUB => C:\Program Files (x86)\Median\WwwAccessConnector\AudioHUB.Processing.WwwAccessConnectorUrlMonitor.exe [279040 2021-04-09] (MEDIAN s.r.o.) [File not signed]
Task: {0C7D16AE-A254-4868-B6E0-FD019A0D3D2A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.)
Task: {132E1944-2B32-469A-BE54-B159FDFFCE06} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4664216 2023-01-11] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 364e44c3-3c21-46be-98bb-cfad57580c53
Task: {1C5EBDB4-049D-4649-A70E-6846D47E179A} - System32\Tasks\CCleanerSkipUAC - vlastimil => C:\Program Files\CCleaner\CCleaner.exe [32602448 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {223F1287-6740-475A-9EA0-F958EA5BE51F} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1217944 2023-02-14] (Avast Software s.r.o. -> AVAST Software)
Task: {24E790A5-62BD-45B8-80ED-F28F6F347F58} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4669264 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "f9838222-7e57-4787-8c36-4b24aa4f7fa2" --version "6.07.10191" --silent
Task: {2B0E3F1B-7BE3-4732-AA9E-F2786CC3FE0B} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {344A0C40-6D8F-4F7F-8D44-1C249973AFA0} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [3857536 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {3A4BF2B2-4F6C-4BAE-990D-C29118E51217} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2295192 2023-01-30] (Avast Software s.r.o. -> Avast Software)
Task: {3E249E0E-8B83-494E-BF7A-E8E09BC6EA50} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4867992 2023-02-19] (Avast Software s.r.o. -> AVAST Software)
Task: {4D65397A-DCDA-4E37-8C2C-00CA4B7E14AB} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [74952 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {5169D0C9-9B6E-4073-A77D-9E23E63848E4} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe [149280 2022-09-23] (Lenovo -> Lenovo Group Ltd.)
Task: {5AF39C05-9777-4FA6-B940-67CE7BC60317} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\7b730f53-1a0b-433f-9b41-2b22d2d9c45c => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {6AD4368D-77F2-4B35-BDAB-770E2083EC6A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-18] (Google LLC -> Google LLC)
Task: {81A401E5-9E24-4636-9002-B9B1EC78E5AC} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26165176 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {922CE9AE-A87F-428F-9061-B61184ACF723} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [6694224 2023-01-26] (Avast Software s.r.o. -> Avast Software)
Task: {9605C689-5255-4264-AE67-411143E6C6B0} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26165176 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C10B511-72BD-4D8F-84E4-95EC50C179C6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6624232 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {9E156082-A6DD-49A7-9962-5E2F36644134} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4698008 2023-02-14] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\SecureLine VPN\log" --guid 83dfacd4-f4f9-4634-b93d-fd873b0d2464
Task: {A3838ED1-77BA-4FEF-8D65-BC9B16C6C7DF} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9abe443c-5e0a-4c00-a869-6a9390d49b02 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {A9415DE7-6501-4AB5-BF3F-68B71212B6BC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-12-09] (Piriform Software Ltd -> Piriform)
Task: {AEDB0472-191E-41C5-8221-F4C90BFAC1B5} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\da57fdc9-6a64-4128-926a-465e680bc2f8 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {B8D70B6C-9DB4-4E43-B0B7-E64DF887E118} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\2911fe53-0f57-40b1-9aa3-9084d57a9f20 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
Task: {CD0969CC-FFB9-4973-8BEB-099D37E266B0} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {E005D7D2-71D7-4DE7-B24D-5B567AE12532} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {E6A485E6-30F5-4F94-AD6A-A8B4AFBD50A7} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116112 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {EBDBBA38-6F34-4D38-8524-C75570D020BF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6624232 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {FBA13549-89C6-47E2-AEB3-CB8877F917F4} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116112 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {FFB24436-067A-4748-8490-34359D6D336D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-18] (Google LLC -> Google LLC)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{90c8f2f9-2ff8-4676-9d83-58122497fbe3}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{b56fcf72-7566-42e6-9fcb-377c33d97d9c}: [DhcpNameServer] 10.0.0.138

Edge:
=======
DownloadDir: C:\Users\vkubi_000\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-2756002567-295290169-1842266776-1001 -> hxxp://seznam.cz/
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default [2023-02-15]
Edge DownloadDir: Default -> C:\Users\vkubi_000\Desktop
Edge Extension: (Google Translate) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-05-06]
Edge Extension: (LastPass: Free Password Manager) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bbcinlkgjjkejfdpemiealijmmooekmp [2023-01-30]
Edge Extension: (Avast Passwords) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2022-05-06]
Edge Extension: (Convertio) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\eppjkefeiehhflmgkhdooajgbkkegpcl [2022-05-06]
Edge Extension: (Avast Online Security & Privacy) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2022-11-26]
Edge Extension: (Save to Google Drive) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2022-05-06]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2023-01-16]
Edge Extension: (Lightshot) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jipbcefmkoccpgdbmenjpaefoldhphbl [2022-08-08]
Edge Extension: (Netpanel study) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kbidbgoheiddfilfipcobicemncfogno [2023-01-30]
Edge Extension: (Speed Dial 2 New tab) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ohpagamjnemfmmgildfkjgbnabhojcdj [2023-01-16]
Edge Extension: (Avast AntiTrack Premium) - C:\Users\vkubi_000\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2022-05-06]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.341.2 -> C:\Program Files\Java\jre1.8.0_341\bin\dtplugin\npDeployJava1.dll [2022-10-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.341.2 -> C:\Program Files\Java\jre1.8.0_341\bin\plugin2\npjp2.dll [2022-10-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-01-20] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-04-10] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-10-14] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default [2023-02-15]
CHR HomePage: Default -> hxxps://www.seznam.cz/
CHR Extension: (Prezentace) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-01-18]
CHR Extension: (Dokumenty) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-01-18]
CHR Extension: (Disk Google) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-01-18]
CHR Extension: (Volání přes Skype) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2021-01-18]
CHR Extension: (YouTube) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-01-18]
CHR Extension: (Hangouts Notifications) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbpmaadfebbedknhmeeijeicldjlegee [2021-01-18]
CHR Extension: (Tabulky) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-01-18]
CHR Extension: (Dokumenty Google offline) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-12-15]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2021-12-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-12-15]
CHR Extension: (Gmail) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-01-18]
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-02-15]
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-02-26]
CHR DownloadDir: C:\Users\vkubi_000\Desktop
CHR Notifications: Profile 1 -> hxxps://bruntalsky.denik.cz; hxxps://captcha-test.top; hxxps://domovy.trovit.cz; hxxps://fastshare.cz; hxxps://fera24.cz; hxxps://moje.uniqa.cz; hxxps://online.rb.cz; hxxps://sport.synottip.cz; hxxps://talkonlinepanel.com; hxxps://twitter.com; hxxps://www.drevostavitel.cz; hxxps://www.facebook.com; hxxps://www.ifortuna.cz; hxxps://www.instagram.com; hxxps://www.lordhair.com; hxxps://www.megaknihy.cz; hxxps://www.penize.cz; hxxps://www.prostaxin.cz; hxxps://www.tipsport.cz; hxxps://www.wish.com; hxxps://www.youtube.com; hxxps://xshare.cz
CHR NewTab: Profile 1 -> Not-active:"chrome-extension://jpfpebmajhhopeonhlcgidhclcccjcik/override.html"
CHR Extension: (Překladač Google) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-03-11]
CHR Extension: (Avast Passwords) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2021-01-20]
CHR Extension: (Convertio) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eppjkefeiehhflmgkhdooajgbkkegpcl [2021-01-20]
CHR Extension: (Word Online) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fiombgjlkfpdpkbhfioofeeinbehmajg [2021-01-20]
CHR Extension: (Full Screen Weather) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2021-01-20]
CHR Extension: (YouTube Flash Video Player) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fldkdmkgnlbehfgeifjpjabmandnchpe [2021-01-20]
CHR Extension: (Pass Strength Meter) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gahnebecgllcaakcojhgndipnamdlghe [2021-01-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-02-19]
CHR Extension: (Uložit na Disk Google) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2021-09-16]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2023-02-26]
CHR Extension: (Speed Dial 2 New tab) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik [2023-02-02]
CHR Extension: (Netpanel) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kbidbgoheiddfilfipcobicemncfogno [2023-02-11]
CHR Extension: (Webcam Toy) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lfbgimoladefibpklnfmkpknadbklade [2021-01-20]
CHR Extension: (Lightshot (Nástroje snímků)) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mbniclmhobmnbdlbpiphghaielnnpgdp [2021-01-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\vkubi_000\AppData\Local\Google\Chrome\User Data\System Profile [2023-02-15]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.)
S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-05-20] (Apple Inc. -> Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8553880 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [597400 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2038168 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [597400 2022-12-21] (Avast Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-06-01] (Avast Software s.r.o. -> AVAST Software)
S4 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1003344 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [15615384 2023-01-11] (Avast Software s.r.o. -> AVAST Software)
S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12477344 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.)
S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [21312 2021-01-19] (Microsoft Windows -> Microsoft Corporation)
S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [9639320 2023-02-14] (Avast Software s.r.o. -> AVAST Software)
S4 valWBFPolicyService; C:\WINDOWS\system32\valWBFPolicyService.exe [77792 2018-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
S4 valWbioSyncSvc; C:\WINDOWS\system32\valWbioSyncSvc.exe [48608 2018-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2021-01-22] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2021-01-22] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [231800 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [391264 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [297848 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [95928 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [25576 2022-10-14] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [39600 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [268448 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [556080 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [105216 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [80392 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [852016 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [696016 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [212632 2022-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [319016 2023-02-19] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [72584 2023-02-14] (Avast Software s.r.o. -> Avast Software)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 HWHandSet; C:\WINDOWS\System32\drivers\hw_quusbmdm.sys [226560 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusb_cdcacm; C:\WINDOWS\System32\drivers\hw_cdcacm.sys [127360 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hw_usbdev; C:\WINDOWS\System32\drivers\hw_usbdev.sys [116864 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R1 netfilter2; C:\WINDOWS\System32\drivers\netfilter2.sys [86632 2020-10-06] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R3 RSP2STOR; C:\WINDOWS\System32\drivers\RtsP2Stor.sys [338880 2018-07-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S3 scsiscan; C:\WINDOWS\System32\drivers\scsiscan.sys [21504 2022-07-19] (Microsoft Windows -> Microsoft Corporation)
R1 SMIDriverGen; C:\WINDOWS\system32\DRIVERS\smi.sys [31440 2018-04-25] (Synaptics Inc. -> Synaptics Incorporated)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2021-01-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [429296 2021-01-22] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\System32\drivers\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2021-01-22] (Microsoft Windows -> Microsoft Corporation)
U1 aswbdisk; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-26 17:33 - 2023-02-26 17:34 - 002378752 _____ (Farbar) C:\Users\vkubi_000\Desktop\FRST64 (1).exe
2023-02-26 17:31 - 2023-02-26 17:31 - 000001537 _____ C:\Users\vkubi_000\Desktop\Addition.txt
2023-02-26 17:13 - 2023-02-26 17:37 - 000034093 _____ C:\Users\vkubi_000\Desktop\FRST.txt
2023-02-26 17:11 - 2023-02-26 17:36 - 000000000 ____D C:\FRST
2023-02-26 17:10 - 2023-02-26 17:10 - 002378752 _____ (Farbar) C:\Users\vkubi_000\Desktop\FRST64.exe
2023-02-26 15:59 - 2023-02-26 15:59 - 000000000 ____D C:\Program Files\chrome_BITS_3948_1068566948
2023-02-22 07:04 - 2023-02-22 07:07 - 000000000 ____D C:\Program Files\chrome_url_fetcher_13092_1475174794
2023-02-19 18:33 - 2023-02-19 18:32 - 000288664 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2023-02-18 18:39 - 2023-02-18 18:40 - 000438944 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-02-18 16:52 - 2023-02-18 16:52 - 000000000 ___HD C:\$WinREAgent
2023-02-17 11:23 - 2023-02-17 11:25 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginPatching13180_1020859218
2023-02-17 11:22 - 2023-02-17 11:26 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginUnzipping13180_202893673
2023-02-17 11:20 - 2023-02-17 11:22 - 000000000 ____D C:\Program Files\chrome_url_fetcher_13180_1621084270
2023-02-14 16:36 - 2023-02-14 16:36 - 000072584 _____ (Avast Software) C:\WINDOWS\system32\Drivers\aswVpnRdr.sys
2023-02-12 19:46 - 2023-02-12 19:46 - 000000000 ____D C:\Users\Administrator\AppData\Local\Lenovo
2023-01-30 19:17 - 2023-01-30 19:17 - 000002044 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-01-30 19:17 - 2023-01-30 19:17 - 000002032 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-01-30 18:12 - 2023-01-30 18:12 - 000000000 ____D C:\Users\vkubi_000\AppData\Roaming\com.adobe.dunamis
2023-01-30 12:01 - 2023-01-30 12:03 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginUnzipping13800_1466589952
2023-01-30 12:01 - 2023-01-30 12:02 - 000000000 ____D C:\Program Files\chrome_ComponentUnpacker_BeginPatching13800_1554398190
2023-01-30 12:01 - 2023-01-30 12:01 - 000000000 ____D C:\Program Files\chrome_url_fetcher_13800_479228021

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-26 17:34 - 2021-01-18 20:01 - 000000000 ____D C:\Program Files (x86)\Google
2023-02-26 17:28 - 2021-10-27 15:29 - 000000000 ____D C:\AAA
2023-02-26 16:22 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-02-26 16:22 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-02-26 16:21 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-02-26 15:42 - 2023-01-20 09:15 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-02-26 15:42 - 2021-01-26 08:46 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-02-26 15:36 - 2022-11-08 07:43 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2023-02-26 15:36 - 2021-01-18 22:23 - 000000000 ____D C:\Program Files\CCleaner
2023-02-24 20:32 - 2022-07-17 08:10 - 000002177 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-02-24 20:32 - 2021-01-18 20:03 - 000002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-02-22 19:12 - 2019-08-26 08:29 - 000000000 ____D C:\Trefik15
2023-02-22 08:15 - 2021-01-18 17:48 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-02-19 18:33 - 2021-01-22 10:33 - 000319016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2023-02-19 18:33 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2023-02-19 18:32 - 2021-01-22 11:00 - 000556080 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000696016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000297848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000268448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000105216 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000095928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000080392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2023-02-19 18:32 - 2021-01-22 10:33 - 000039600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2023-02-19 18:31 - 2021-01-22 10:33 - 000852016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2023-02-19 18:31 - 2021-01-22 10:33 - 000391264 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2023-02-19 18:31 - 2021-01-22 10:33 - 000231800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2023-02-18 18:46 - 2021-01-19 01:28 - 000788632 _____ C:\WINDOWS\system32\perfh005.dat
2023-02-18 18:46 - 2021-01-19 01:28 - 000175478 _____ C:\WINDOWS\system32\perfc005.dat
2023-02-18 18:46 - 2021-01-18 18:51 - 001890118 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-02-18 18:46 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2023-02-18 18:41 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2023-02-18 18:40 - 2021-01-20 18:40 - 000000000 ____D C:\ProgramData\AVAST Software
2023-02-18 18:39 - 2021-04-06 06:11 - 000000000 ____D C:\ProgramData\Synaptics
2023-02-18 18:39 - 2021-02-05 17:08 - 000004028 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update
2023-02-18 18:39 - 2021-01-18 18:06 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-02-18 18:39 - 2020-07-28 13:15 - 000008192 ___SH C:\DumpStack.log.tmp
2023-02-18 18:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2023-02-18 18:38 - 2019-12-07 10:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2023-02-18 18:36 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-02-18 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2023-02-18 18:34 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-02-18 18:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-02-18 18:04 - 2021-01-18 18:09 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-02-18 16:03 - 2021-01-21 08:20 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-02-18 16:02 - 2021-01-21 08:19 - 149955784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-02-08 09:41 - 2019-02-16 15:00 - 000000000 ____D C:\Users\vkubi_000\TapinRadio
2023-02-08 08:29 - 2021-01-26 08:44 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-02-08 08:29 - 2021-01-26 08:44 - 000003516 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-02-02 09:13 - 2022-07-07 12:39 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2756002567-295290169-1842266776-1001
2023-02-02 09:13 - 2021-01-18 21:39 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2756002567-295290169-1842266776-1001
2023-02-02 09:13 - 2021-01-18 18:28 - 000002400 _____ C:\Users\vkubi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-02-02 09:00 - 2021-01-22 10:33 - 000695504 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw2bce7d8642121681.tmp
2023-02-02 08:51 - 2022-11-13 17:25 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2023-01-30 19:23 - 2021-09-07 08:59 - 000003542 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2023-01-30 18:17 - 2022-12-22 08:58 - 000003046 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2023-01-30 18:17 - 2021-09-01 07:22 - 000002260 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - vlastimil
2023-01-30 18:17 - 2021-03-31 07:43 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2023-01-30 18:17 - 2021-03-31 07:43 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2023-01-30 18:17 - 2021-01-18 22:23 - 000003194 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2023-01-30 18:17 - 2021-01-18 19:26 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2023-01-30 10:54 - 2021-01-18 21:36 - 000000000 ____D C:\Users\Administrator\AppData\Local\SquirrelTemp
2023-01-30 10:10 - 2021-01-18 19:26 - 000000000 ____D C:\Users\vkubi_000\AppData\Local\Packages
2023-01-30 08:57 - 2021-01-22 14:01 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools

==================== Files in the root of some directories ========

2021-02-14 19:53 - 2021-02-14 19:53 - 000000092 _____ () C:\Users\vkubi_000\AppData\Roaming\Control System_Settings.ini

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: kontrola logu

Napsal: 26 úno 2023 20:11
od Rudy
Zajímá mne obsah souboru fixlog.txt. Máte ho na ploše.

Re: kontrola logu

Napsal: 26 úno 2023 20:50
od hakub
nějak se nedaří zobrazí se mi toto

Re: kontrola logu

Napsal: 26 úno 2023 21:02
od Rudy
Soubor fixlog.txt máte na ploše. Rozklikněte ho a obsah sem zkopírujte. Toť vše.

Re: kontrola logu

Napsal: 26 úno 2023 21:52
od hakub
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 26-02-2023 21:47:41)

C:\DumpStack.log.tmp => Could not move

Result of scheduled keys to remove after reboot:

HKLM\System\CurrentControlSet\Services\aswbdisk => could not remove, key could be protected

==== End of Fixlog 21:47:41 ====

Re: kontrola logu

Napsal: 26 úno 2023 21:58
od Rudy
Nějaký divný obsah. Fixlog vypadá asi takto: https://forum.viry.cz/viewtopic.php?p=1549899#p1549899 . Nicméně zrychlil se chod PC?

Re: kontrola logu

Napsal: 26 úno 2023 22:22
od hakub
PC se mi zdá stejně pomalé
zkusil jsem znovu FIX je to stejné(fixlog stejný)

Re: kontrola logu

Napsal: 27 úno 2023 10:00
od hakub
tak toto by mělo být lepší

Fix result of Farbar Recovery Scan Tool (x64) Version: 25-02-2023
Ran by vlastimil (27-02-2023 09:50:39) Run:3
Running from C:\Users\vkubi_000\Desktop
Loaded Profiles: vlastimil & Administrator
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711328 2022-06-16] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\...\MountPoints2: {183e3aa8-d4cd-11eb-87ba-ace01034b304} - "E:\startme.exe"
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {6AD4368D-77F2-4B35-BDAB-770E2083EC6A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-18] (Google LLC -> Google LLC)
Task: {FFB24436-067A-4748-8490-34359D6D336D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-18] (Google LLC -> Google LLC)
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
U1 aswbdisk; no ImagePath
C:\DumpStack.log.tmp
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => -> No File

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched" => not found
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate => not found
HKU\S-1-5-21-2756002567-295290169-1842266776-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{183e3aa8-d4cd-11eb-87ba-ace01034b304} => not found
"C:\WINDOWS\system32\GroupPolicy\Machine" => not found
"C:\ProgramData\NTUSER.pol" => not found
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AD4368D-77F2-4B35-BDAB-770E2083EC6A}" => not found
"C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FFB24436-067A-4748-8490-34359D6D336D}" => not found
"C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => not found
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => not found
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => not found
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => not found
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => not found
HKLM\System\CurrentControlSet\Services\aswbdisk => could not remove, key could be protected
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore" => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PDFCreator.ShellContextMenu => not found

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 786432 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 7430301 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 73040 B
Edge => 0 B
Chrome => 8154061 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 4672 B
NetworkService => 4672 B
vkubi_000 => 251213 B
Administrator => 10445364 B
DefaultAppPool => 10445364 B

RecycleBin => 85827 B
EmptyTemp: => 35.9 MB temporary data Removed.

================================

Re: kontrola logu

Napsal: 27 úno 2023 10:19
od Rudy
Ještě zkuste defragmentovat disk.