Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

plíživě se zpomalující PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
mraz233
Návštěvník
Návštěvník
Příspěvky: 83
Registrován: 18 črc 2012 17:29

plíživě se zpomalující PC

#1 Příspěvek od mraz233 »

Dobrý den,
prosím o kontrolu logu: poznenáhlu, ale vytrvale (v řádu týdnů) se zpomaluje PC. Načítání stránek internetu via Firefox, někdy je potřeba na ikonu zástupce programu na ploše poklepat opakovaně, po restartu se neaktivuje monitor a je nutné jej probudit vysunutím a zasunutím HDMI.
Bud rád, když mi budete moci pomoci.
Děkuji, I_M



Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-02-2025
Ran by Jana a Ivo (administrator) on DESKTOP-P1SMD4A (LENOVO 90DA00AJCK) (16-02-2025 16:07:34)
Running from C:\Users\Jana a Ivo\Desktop\FRST64.exe
Loaded Profiles: Jana a Ivo
Platform: Microsoft Windows 10 Home Version 22H2 19045.5487 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(C:\CGMSERVER\bin\pgsql\bin\pg_ctl.exe ->) (CompuGROUP Medical Česká republika s.r.o. -> PostgreSQL Global Development Group) [File not signed] C:\CGMSERVER\bin\pgsql\bin\postgres.exe <25>
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\BrowserPrivacyAndSecurity.exe
(explorer.exe ->) (Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP OfficeJet Pro 8710\Bin\ScanToPCActivationApp.exe
(explorer.exe ->) (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <16>
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.) [File not signed] C:\CGMSERVER\bin\etrzby-1\cgm.etrzby-1.exe
(services.exe ->) (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.) C:\CGMSERVER\bin\ecommunication-1\cgm.ecommunication-1.exe
(services.exe ->) (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.) C:\CGMSERVER\bin\erepository-1\cgm.erepository-1.exe
(services.exe ->) (CompuGroup Medical Česká republika s.r.o. -> Microsoft) C:\CGMSERVER\bin\core\cgm.servercore.exe
(services.exe ->) (CompuGroup Medical Česká republika s.r.o. -> Microsoft) C:\CGMSERVER\bin\ebooking-1\cgm.ebooking-1.exe
(services.exe ->) (CompuGroup Medical Česká republika s.r.o. -> PostgreSQL Global Development Group) [File not signed] C:\CGMSERVER\bin\pgsql\bin\pg_ctl.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (HCS GmbH) [File not signed] C:\CGMSERVER\bin\medical-net\MedConnect.ServiceManager\HCS.MedConnect.ServiceManager.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvle.inf_amd64_c4410ab03e8e99d7\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (The Apache Software Foundation -> Apache Software Foundation) C:\CGMSERVER\cgm.jetty.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19572528 2021-09-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1803848 2016-08-31] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [196520 2024-10-30] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [ICAMaintenance_ICAPKIService_RegKeysRefresh] => -mode loader -op refreshICAPKIServiceRegistryKeys (No File)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [739448 2023-03-17] (Oracle America, Inc. -> Oracle Corporation)
HKLM\...\Policies\Explorer: [NoRecentDocsNetHood] 0
HKLM\...\Policies\Explorer: [NoChangeStartMenu] 0
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\Software\Policies\...\system: [DisableAcrylicBackgroundOnLogon] 1
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\Run: [HP OfficeJet Pro 8710 (NET)] => C:\Program Files\HP\HP OfficeJet Pro 8710\Bin\ScanToPCActivationApp.exe [3770504 2018-04-06] (Hewlett Packard -> HP Inc.)
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\Policies\system: [NoDispAppearancePage] 0
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\Policies\Explorer: [NoPreviewPane] 0
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\Policies\Explorer: [NoTrayContextMenu] 0
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\Policies\Explorer: [NoSetTaskbar] 0
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\Policies\Explorer: [NoViewContextMenu] 0
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\Policies\Explorer: [HideClock] 0
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\Policies\Explorer: [HideSCANetwork] 0
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\Policies\Explorer: [HideSCAVolume] 0
HKLM\...\Windows x64\Print Processors\hpcpp255: C:\Windows\System32\spool\prtprocs\x64\hpcpp255.dll [848384 2021-03-03] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
HKLM\...\Windows x64\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\x64\hpzpplhn.dll [109080 2018-12-06] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\HP Universal Print Monitor: C:\WINDOWS\system32\HPMPW082.DLL [120320 2021-03-03] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
HKLM\...\Print\Monitors\HPMLM225: C:\WINDOWS\system32\hpmlm225.dll [308224 2018-11-14] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
HKLM\...\Print\Monitors\PrinterPlusPlus: C:\WINDOWS\system32\mfilemon.dll [972000 2019-10-17] (Open Source Developer, Lorenzo Monti -> Monti Lorenzo)
HKLM\...\Print\Monitors\Software602 XPS port monitor: C:\WINDOWS\system32\602localmon.dll [47896 2021-09-23] (Software602 a.s. -> Windows (R) Win 7 DDK provider)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2017-07-26]
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation -> Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {BBC01F9A-4538-43EB-BBF3-5B8FDC2625DF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2024-12-18] (Adobe Inc. -> Adobe Inc.)
Task: {02E11687-A8FD-46BA-94BF-179A7A41E01B} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [30992 2024-11-06] (Garmin International, Inc. -> )
Task: {3B011604-C654-4191-A9CA-4F706AEE4FDD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136304 2021-03-30] (HP Inc. -> HP Inc.)
Task: {F6982815-A712-4205-B89C-E73C6177F326} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [930960 2022-05-11] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\/f
Task: {DE3E78BF-9B31-4F82-B716-7F20DF467F6B} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [78288 2025-01-15] (HP Inc. -> HP Inc.)
Task: {683B5106-93EF-4E4B-85D3-439280CBF545} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [78288 2025-01-15] (HP Inc. -> HP Inc.)
Task: {9E2BBCB8-F2F7-4582-999B-86C50C57DE33} - System32\Tasks\HPCustPartic.exe_{E0222514-8E27-4CB3-ABB0-BA7D455CDC5A} => C:\Program Files\HP\HP OfficeJet Pro 8710\Bin\HPCustPartic.exe [6439048 2018-04-06] (Hewlett Packard -> HP Inc.)
Task: {F45335DB-063F-4762-B9E0-42A531D1E8C0} - System32\Tasks\HPCustParticipation HP OfficeJet Pro 8710 => C:\Program Files\HP\HP OfficeJet Pro 8710\Bin\HPCustPartic.exe [6439048 2018-04-06] (Hewlett Packard -> HP Inc.)
Task: {332A9754-54DD-4C88-8C67-408A29845B0F} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28707056 2025-01-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {F354DD95-1DC8-4282-B920-EDB73908C59A} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28707056 2025-01-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {C77A0EA2-07A9-4A1B-8DC8-8EBF808F2929} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [222840 2025-01-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {474ED744-D838-4BAD-89F4-E88FA9F392F0} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [222840 2025-01-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {076D7BA0-B9DB-4559-BE3A-FB60AA498C05} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [683072 2025-02-05] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {C2517E51-D50E-4DAA-AAC2-8A2A82CFA64E} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3178504301-1335594183-2692845351-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [683072 2025-02-05] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {D301FA5F-F07F-49E3-8687-ECD959776895} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880 2025-02-05] (Mozilla Corporation -> Mozilla Foundation)
Task: {D6ABE6FE-789E-4125-AF0C-B7B4371D1C17} - System32\Tasks\Mozilla\Firefox Default Browser Agent 9DED23DF4360B491 => C:\Program Files\mozilla firefox\default-browser-agent.exe [34880 2025-02-05] (Mozilla Corporation -> Mozilla Foundation)
Task: {6734419A-5A3B-4100-AD98-A8348EBC699D} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3178504301-1335594183-2692845351-1001 => C:\Users\Jana a Ivo\AppData\Local\Microsoft\OneDrive\25.005.0112.0003\OneDriveLauncher.exe [447032 2025-02-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {3BAC8E77-9340-49A0-B809-2FF65A15C837} - System32\Tasks\Zoner.Updater.S-1-5-21-3178504301-1335594183-2692845351-1001 => C:\ProgramData\Zoner\Zoner.Installer.Core\updater.exe [1617728 2024-10-22] (ZONER a.s. -> ZONER a.s.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{c88b0fbf-08b9-4c32-b1a0-42a591513cc3}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{c88b0fbf-08b9-4c32-b1a0-42a591513cc3}: [DhcpDomain] Home

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Jana a Ivo\AppData\Local\Microsoft\Edge\User Data\Default [2025-02-15]
Edge Notifications: Default -> hxxps://fastshare.cz
Edge Extension: (Dokumenty Google offline) - C:\Users\Jana a Ivo\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-02-15]
Edge Extension: (Edge relevant text changes) - C:\Users\Jana a Ivo\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (ESET Browser Privacy & Security) - C:\Users\Jana a Ivo\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nkapkmklnmidbbgjaipbgpcnbomnaakc [2025-01-17]
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]

FireFox:
========
FF DefaultProfile: rcwkdnwj.default
FF ProfilePath: C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\z127unu2.default-release-1 [2025-02-16]
FF Homepage: Mozilla\Firefox\Profiles\z127unu2.default-release-1 -> hxxps://www.seznam.cz/
FF Session Restore: Mozilla\Firefox\Profiles\z127unu2.default-release-1 -> is enabled.
FF Notifications: Mozilla\Firefox\Profiles\z127unu2.default-release-1 -> hxxps://www.euni.cz; hxxps://shop.nesnezeno.eco
FF Extension: (Podepisovací komponenta Signer) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\z127unu2.default-release-1\Extensions\ace.nmsigner@asseco.cz.xpi [2024-04-26]
FF Extension: (AdBlocker Ultimate) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\z127unu2.default-release-1\Extensions\adblockultimate@adblockultimate.net.xpi [2025-02-15]
FF Extension: (ESET Browser Privacy & Security) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\z127unu2.default-release-1\Extensions\browserextension@eset.com.xpi [2024-12-20]
FF Extension: (Komponenta I.CA PKI Service) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\z127unu2.default-release-1\Extensions\icapkiservice@ica.cz.xpi [2024-12-07]
FF Extension: (Google Translator for Firefox) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\z127unu2.default-release-1\Extensions\translator@zoli.bod.xpi [2024-04-26]
FF Extension: (Gesturefy) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\z127unu2.default-release-1\Extensions\{506e023c-7f2b-40a3-8066-bc5deb40aebe}.xpi [2024-08-05]
FF Extension: (FormApps Extension) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\z127unu2.default-release-1\Extensions\{69F080C9-A1D8-42F8-BD83-3D54D4BC81B3}.xpi [2022-03-09]
FF Extension: (Video DownloadHelper) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\z127unu2.default-release-1\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2025-01-31]
FF Extension: (No Name) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\z127unu2.default-release-1\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2025-01-30]
FF Extension: (YouTube Video and Audio Downloader (Dev Edt.)) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\z127unu2.default-release-1\Extensions\{f73df109-8fb4-453e-8373-f59e61ca4da3}.xpi [2023-12-23]
FF ProfilePath: C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\rcwkdnwj.default [2023-05-23]
FF Homepage: Mozilla\Firefox\Profiles\rcwkdnwj.default -> hxxp://www.seznam.cz/
FF Extension: (Podepisovací komponenta Signer) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\rcwkdnwj.default\Extensions\ace.nmsigner@asseco.cz.xpi [2018-07-18]
FF Extension: (AdBlocker Ultimate) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\rcwkdnwj.default\Extensions\adblockultimate@adblockultimate.net.xpi [2021-04-04]
FF Extension: (Komponenta I.CA PKI Service) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\rcwkdnwj.default\Extensions\icapkiservice@ica.cz.xpi [2018-06-28] [UpdateUrl:hxxps://s.ica.cz/ica_pkiservice/firefox_extension/ICAPKIServiceExtension_ICA_Firefox_update_manifest.json]
FF Extension: (Google Translator for Firefox) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\rcwkdnwj.default\Extensions\translator@zoli.bod.xpi [2018-12-02]
FF Extension: (Gesturefy) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\rcwkdnwj.default\Extensions\{506e023c-7f2b-40a3-8066-bc5deb40aebe}.xpi [2021-04-02]
FF Extension: (FormApps Extension) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\rcwkdnwj.default\Extensions\{69F080C9-A1D8-42F8-BD83-3D54D4BC81B3}.xpi [2017-10-03]
FF Extension: (Video DownloadHelper) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\rcwkdnwj.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2020-12-16]
FF Extension: (No Name) - C:\Users\Jana a Ivo\AppData\Roaming\Mozilla\Firefox\Profiles\rcwkdnwj.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-05-20]
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-01-29] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.371.2 -> C:\Program Files (x86)\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-03-17] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.371.2 -> C:\Program Files (x86)\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-03-17] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-12-18] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-12-18] (Microsoft Corporation -> Microsoft Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-02-16]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2021-06-04]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2024-12-18] (Adobe Inc. -> Adobe Inc.)
R2 cgm.ebooking-1; C:\CGMSERVER\bin\ebooking-1\cgm.ebooking-1.exe [35680 2019-06-21] (CompuGroup Medical Česká republika s.r.o. -> Microsoft)
R2 cgm.ecommunication-1; C:\CGMSERVER\bin\ecommunication-1\cgm.ecommunication-1.exe [95488 2025-01-07] (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.)
R2 cgm.erepository-1; C:\CGMSERVER\bin\erepository-1\cgm.erepository-1.exe [27904 2024-07-30] (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.)
R2 cgm.etrzby-1; C:\CGMSERVER\bin\etrzby-1\cgm.etrzby-1.exe [22112 2017-05-19] (CompuGroup Medical Česká republika s.r.o. -> CompuGroup Medical Česká republika s.r.o.) [File not signed]
R2 cgm.jetty; C:\CGMSERVER\cgm.jetty.exe [110080 2020-01-22] (The Apache Software Foundation -> Apache Software Foundation)
R2 cgm.servercore; C:\CGMSERVER\bin\core\cgm.servercore.exe [29952 2024-11-13] (CompuGroup Medical Česká republika s.r.o. -> Microsoft)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13572312 2025-01-03] (Microsoft Corporation -> Microsoft Corporation)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5563760 2024-10-30] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4240120 2024-10-30] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4240120 2024-10-30] (ESET, spol. s r.o. -> ESET)
S3 HCS.MedConnect.Service; C:\CGMSERVER\bin\medical-net\MedConnect\HCS.MedConnect.Service.exe [46080 2016-11-03] (HCS GmbH) [File not signed]
R2 HCS.MEDCONNECT.SERVICEMANAGER; C:\CGMSERVER\bin\medical-net\MedConnect.ServiceManager\HCS.MedConnect.ServiceManager.exe [91648 2016-11-03] (HCS GmbH) [File not signed]
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243664 2025-01-15] (HP Inc. -> HP Inc.)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [379736 2020-08-20] (HP Inc. -> HP Inc.)
S3 I.CA Maintenance Service2; C:\Program Files (x86)\I.CA\I.CA Maintenance2\ICAMaintenance.exe [299336 2021-02-08] (Prvni certifikacni autorita, a.s. -> I.CA, a.s.)
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.24080.9-0\MpDefenderCoreService.exe [1431160 2024-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2019-02-01] (HP Inc.) [File not signed]
S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2019-02-01] (HP Inc.) [File not signed]
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.24080.9-0\NisSrv.exe [3199656 2024-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.24080.9-0\MsMpEng.exe [133704 2024-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 cgm.postgres; C:/CGMSERVER/bin/pgsql/bin/pg_ctl.exe runservice -N "cgm.postgres" -D "C:/CGMSERVER/data/pgsql" [X]
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvle.inf_amd64_c4410ab03e8e99d7\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvle.inf_amd64_c4410ab03e8e99d7\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dot4; C:\WINDOWS\system32\DRIVERS\Dot4.sys [146856 2015-03-10] (BoiseTest -> Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\WINDOWS\System32\drivers\Dot4Prt.sys [21928 2015-03-10] (BoiseTest -> Windows (R) Win 7 DDK provider)
S3 Dot4Scan; C:\WINDOWS\system32\DRIVERS\Dot4Scan.sys [14760 2015-03-10] (BoiseTest -> Microsoft Corporation)
S3 dot4usb; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [43944 2015-03-10] (BoiseTest -> Microsoft Corporation)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [220520 2024-10-11] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [121864 2024-10-11] (Microsoft Windows Hardware Compatibility Publisher -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2024-10-03] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [268568 2024-10-11] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [57872 2024-10-11] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [87784 2024-10-11] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [128552 2024-10-11] (ESET, spol. s r.o. -> ESET)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24064 2023-11-15] (Microsoft Corporation) [File not signed]
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [22080 2024-10-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [602392 2024-10-23] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105864 2024-10-23] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

Error Reading file: "C:\ProgramData\Desktop\Prosba o vzdálenou pomoc.lnk"
Error Reading file: "C:\ProgramData\Desktop\PC DOKTOR.lnk"
Error Reading file: "C:\ProgramData\Desktop\IDOS - výběr jízdních řádů.lnk"
Error Reading file: "C:\ProgramData\Desktop\HP Print and Scan Doctor.lnk"
Error Reading file: "C:\ProgramData\Desktop\HP OfficeJet Pro 8710.lnk"
Error Reading file: "C:\ProgramData\Desktop\Garmin Express.lnk"
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\Autobusy.lnk"
Error Reading file: "C:\ProgramData\Desktop\ALFIS 2G 2019 JÚ.lnk"
Error Reading file: "C:\ProgramData\Desktop\Alfa CD.lnk"
Error Reading file: "C:\ProgramData\Desktop\Adobe Acrobat.lnk"
2025-02-16 16:07 - 2025-02-16 16:08 - 000026824 _____ C:\Users\Jana a Ivo\Desktop\FRST.txt
2025-02-16 16:07 - 2025-02-16 16:08 - 000000000 ____D C:\FRST
2025-02-16 16:06 - 2025-02-16 16:06 - 002403840 _____ (Farbar) C:\Users\Jana a Ivo\Desktop\FRST64.exe
2025-02-15 18:45 - 2025-02-15 18:45 - 000000130 _____ C:\Users\Jana a Ivo\Desktop\forum.viry.url
2025-02-14 10:23 - 2025-02-14 10:23 - 000183580 _____ C:\Users\Jana a Ivo\Downloads\Zásady_bezpečné_manipulace_se_zbraní_v_objektu.pdf
2025-02-14 10:07 - 2025-02-14 10:07 - 004042339 _____ C:\Users\Jana a Ivo\Downloads\PID-1.ZIP
2025-02-12 15:18 - 2025-02-12 15:18 - 000000000 ___HD C:\$WinREAgent
2025-02-12 14:48 - 2025-02-12 14:49 - 000000255 _____ C:\Users\Jana a Ivo\Desktop\MMH 04.url
2025-02-12 14:25 - 2025-02-12 14:25 - 000001963 _____ C:\Users\Public\Desktop\Garmin Express.lnk
2025-02-10 15:22 - 2025-02-11 10:47 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2025-02-09 16:00 - 2025-02-09 16:00 - 000452872 _____ C:\Users\Jana a Ivo\Downloads\Zpravodaj_Nezadouci_ucinky_leciv_03_24.pdf
2025-02-07 14:21 - 2025-02-07 14:21 - 000471812 _____ C:\Users\Jana a Ivo\Downloads\Oznámení o změně výše dávky 247453_25_AB.pdf
2025-02-07 09:17 - 2025-02-07 09:17 - 000003586 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3178504301-1335594183-2692845351-1001
2025-01-28 16:11 - 2025-01-28 16:11 - 000484078 _____ C:\Users\Jana a Ivo\Downloads\cz_oftalmologie_01_05_2019.pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-06-30 13:36 - 2019-09-04 17:07 - 000000000 ____D C:\ProgramData\Zoner
2025-02-16 16:04 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-02-16 16:03 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-02-16 15:57 - 2018-06-18 17:45 - 000000000 ____D C:\Users\Jana a Ivo\AppData\Local\D3DSCache
2025-02-16 15:55 - 2018-07-23 13:34 - 000000000 ____D C:\stažené soubory
2025-02-16 15:48 - 2022-02-10 10:39 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-02-16 15:47 - 2017-07-25 13:41 - 000000000 ____D C:\Users\Jana a Ivo\AppData\Local\ClassicShell
2025-02-16 14:48 - 2017-08-31 16:45 - 000000000 ____D C:\ProgramData\NVIDIA
2025-02-16 14:47 - 2020-06-12 15:42 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-02-15 16:08 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-02-15 15:55 - 2018-02-20 17:31 - 000000000 ____D C:\Users\Jana a Ivo\Documents\recepty
2025-02-15 15:16 - 2021-06-20 16:21 - 000000000 ____D C:\Users\Jana a Ivo\AppData\Roaming\vlc
2025-02-15 14:51 - 2021-06-17 08:42 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-02-13 09:25 - 2021-12-17 17:10 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-02-13 09:22 - 2022-05-11 14:49 - 000713246 _____ C:\WINDOWS\system32\perfh005.dat
2025-02-13 09:22 - 2022-05-11 14:49 - 000143964 _____ C:\WINDOWS\system32\perfc005.dat
2025-02-13 09:22 - 2020-06-12 15:55 - 001683940 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-02-13 09:22 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2025-02-13 09:16 - 2022-05-06 22:22 - 000441640 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-02-13 09:16 - 2020-06-12 16:03 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-02-13 09:16 - 2020-06-12 15:42 - 000008192 ___SH C:\DumpStack.log.tmp
2025-02-12 20:14 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-02-12 20:13 - 2024-07-10 16:00 - 000000000 ____D C:\WINDOWS\system32\compatrel
2025-02-12 20:13 - 2023-12-15 14:51 - 000000000 ____D C:\WINDOWS\InboxApps
2025-02-12 20:13 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-02-12 20:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-02-12 20:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2025-02-12 20:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2025-02-12 20:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-02-12 20:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-02-12 20:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-02-12 20:13 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate
2025-02-12 20:13 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2025-02-12 15:40 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-02-12 15:35 - 2020-06-12 15:47 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-02-12 15:17 - 2017-07-26 16:03 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-02-12 15:15 - 2017-07-26 16:03 - 209365816 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-02-12 14:25 - 2020-06-12 16:03 - 000003624 _____ C:\WINDOWS\system32\Tasks\GarminUpdaterTask
2025-02-12 14:25 - 2017-07-25 19:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
2025-02-12 14:25 - 2017-07-25 19:39 - 000000000 ____D C:\ProgramData\Garmin
2025-02-12 14:25 - 2017-07-25 19:39 - 000000000 ____D C:\Program Files (x86)\Garmin
2025-02-12 14:25 - 2017-07-25 13:15 - 000000000 ____D C:\ProgramData\Package Cache
2025-02-12 14:20 - 2017-07-25 14:45 - 000000000 ____D C:\Program Files (x86)\Dialog MIS
2025-02-12 10:03 - 2020-06-03 15:33 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-02-11 13:59 - 2017-07-25 13:33 - 000000000 ____D C:\Users\Jana a Ivo\AppData\Roaming\Microsoft\Word
2025-02-11 10:55 - 2020-06-12 15:15 - 000000000 ____D C:\Users\Jana a Ivo
2025-02-11 10:47 - 2025-01-14 21:52 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-02-11 10:47 - 2017-07-25 16:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-02-10 15:22 - 2017-07-31 17:15 - 000001282 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk
2025-02-07 09:17 - 2021-12-13 15:35 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3178504301-1335594183-2692845351-1001
2025-02-07 09:17 - 2020-06-12 16:03 - 000003390 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3178504301-1335594183-2692845351-1001
2025-02-07 09:17 - 2020-06-12 15:15 - 000002441 _____ C:\Users\Jana a Ivo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-02-05 15:29 - 2021-06-04 22:59 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-02-02 19:21 - 2022-10-14 08:43 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2025-02-02 19:21 - 2022-10-14 08:43 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2025-02-02 19:21 - 2020-06-12 16:03 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-02-01 15:53 - 2017-07-25 16:08 - 000000000 ____D C:\Users\Jana a Ivo\AppData\Roaming\Microsoft\Excel
2025-01-31 09:59 - 2022-12-16 12:08 - 000145589 _____ C:\Users\Jana a Ivo\Desktop\tabulka spotreby energii.xlsx
2025-01-30 14:46 - 2020-06-22 17:36 - 000000000 ____D C:\Users\Jana a Ivo\AppData\Local\Deployment
2025-01-30 14:27 - 2021-02-19 15:30 - 000001969 _____ C:\Users\Public\Desktop\Prosba o vzdálenou pomoc.lnk
2025-01-30 14:27 - 2017-07-25 14:46 - 000001944 _____ C:\Users\Public\Desktop\PC DOKTOR.lnk
2025-01-30 14:27 - 2017-07-25 14:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CompuGroup Medical
2025-01-24 15:06 - 2024-04-03 15:22 - 000000000 ____D C:\Users\Jana a Ivo\Desktop\Vakuovačka
2025-01-21 16:40 - 2017-07-30 18:33 - 000000000 ____D C:\Users\Jana a Ivo\AppData\Local\CrashDumps
2025-01-19 18:12 - 2017-07-25 13:21 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2025-01-19 17:00 - 2017-11-23 16:14 - 000000000 ____D C:\Users\Jana a Ivo\AppData\Local\Packages
2025-01-17 15:41 - 2017-07-25 16:54 - 000000000 ____D C:\Users\Jana a Ivo\Documents\ADSL

==================== Files in the root of some directories ========

2018-03-22 15:23 - 2018-03-22 15:23 - 000000600 _____ () C:\Users\Jana a Ivo\AppData\Roaming\winscp.rnd
2023-09-18 07:51 - 2023-09-18 07:51 - 000000017 _____ () C:\Users\Jana a Ivo\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-02-2025
Ran by Jana a Ivo (16-02-2025 16:09:00)
Running from C:\Users\Jana a Ivo\Desktop
Microsoft Windows 10 Home Version 22H2 19045.5487 (X64) (2020-06-12 15:03:54)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3178504301-1335594183-2692845351-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3178504301-1335594183-2692845351-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-3178504301-1335594183-2692845351-1000 - Limited - Disabled)
Guest (S-1-5-21-3178504301-1335594183-2692845351-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3178504301-1335594183-2692845351-1005 - Limited - Enabled)
Jana a Ivo (S-1-5-21-3178504301-1335594183-2692845351-1001 - Administrator - Enabled) => C:\Users\Jana a Ivo
WDAGUtilityAccount (S-1-5-21-3178504301-1335594183-2692845351-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Security (Enabled - Up to date) {DF8BEACB-94C9-218A-73AD-A78362A8C516}
AV: ESET Security (Enabled - Up to date) {89B55CC4-3881-78B2-11E2-479AE0371896}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
AV: ESET Security (Enabled - Up to date) {26E0861C-6FB9-CEF9-E4F0-531986211ACE}
AV: ESET Security (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Security (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Firewall (Enabled) {B066057A-E576-007C-D591-56C163D3B33B}
FW: ESET Firewall (Enabled) {E7B06BEE-DEA6-20D2-58F2-0EB69C7B826D}
FW: ESET Firewall (Enabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B}
FW: ESET Firewall (Enabled) {B18EDDE1-72EE-79EA-3ABD-EEAF1EE45FED}
FW: ESET Firewall (Enabled) {1EDB0739-25D6-CFA1-CFAF-FA2C78F25DB5}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

64 Bit HP CIO Components Installer (HKLM\...\{50229C72-539F-4E65-BEB5-F0491C5074B7}) (Version: 22.2.1 - HP Inc.) Hidden
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 24.005.20399 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601108}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Aktualizace NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
Alfa CD (HKLM-x32\...\{6ADC89F1-39B9-4CFF-A2E3-DFF8DFD0D86D}) (Version: 17.01.0000 - Soft Books, s.r.o.)
ALFIS 2G 2019.5 Jednoduché účetnictví (HKLM-x32\...\{28B47887-329C-4E01-ABB1-8F26ED808624}) (Version: 19.05.0000 - Fuksa Ladislav Ing.)
ANT Drivers Installer x64 (HKLM\...\{FD1A4C7D-D35E-4742-BCEB-1E1104D103C4}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (HKLM\...\98157A226B40B173301B0F53C8E98C47805D5152) (Version: 04/19/2012 2.3.1.0 - Garmin)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Classic Shell (HKLM\...\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}) (Version: 4.3.1 - IvoSoft)
CompuGroup Medical - (PC DOKTOR / PC DENT) (HKLM-x32\...\{81F07A4F-A47E-4E0F-A75D-D24BD09BB2D8}) (Version: 3.12.1.13635 - CompuGroup Medical Česká republika s.r.o.)
CompuGroup Medical - Brevíř (HKLM-x32\...\{2ED5E236-8C33-44A9-8A5E-64780464A80E}) (Version: 1.0.42.231 - CGM)
CompuGroup Medical - CGM SERVER (HKLM-x32\...\{8FE2C676-72E8-4024-9066-710FE32112E8}) (Version: 1.2.524.1382 - CompuGroup Medical Česká republika s.r.o.)
CompuGroup Medical - Ecommunication (HKLM-x32\...\{3850A53F-8A0E-45E1-9F11-D801237D3694}) (Version: 1.5.243.342 - CompuGroup Medical Česká republika s.r.o.)
CompuGroup Medical - eREPOSITORY (HKLM-x32\...\{76196C32-385C-411E-ACFA-2ECBD7E80760}) (Version: 1.1.20.51 - CompuGroup Medical Česká republika s.r.o.)
CompuGroup Medical - eTržby (HKLM-x32\...\{078BC37F-7DBE-49D6-BF20-1516FEEFBDAD}) (Version: 1.1.60.65 - CompuGroup Medical Česká republika s.r.o.)
CompuGroup Medical - Kniha objednávek (HKLM-x32\...\{CF314AF7-682B-4C77-B164-6FB0080D2726}) (Version: 1.1.1558.1246 - CompuGroup Medical Česká republika s.r.o.)
CompuGroup Medical - MEDICAL NET (HKLM-x32\...\{0726B7A2-A8F4-4BE1-A086-A93E9A5BA5BC}) (Version: 4.8.0.358 - CompuGroup Medical Česká republika s.r.o.)
CompuGroup Medical - pacientská komunikace (HKLM-x32\...\{191C8985-B77C-4E68-9BEE-78EC80C27536}) (Version: 1.0.0.22 - CompuGroup Medical Česká republika s.r.o.)
Dot4 (HKLM\...\{3EEDA265-C6F3-4EC1-A317-1C9315DEDDDE}) (Version: 1.0.0.0 - HP)
DownloadHelper CoApp (HKLM-x32\...\DownloadHelper CoApp) (Version: 2.0.19.0 - ACLAP)
Easy Audio Extractor v. 1.0 (HKLM-x32\...\Easy Audio Extractor_is1) (Version: - Video-Easy.com)
Elevated Installer (HKLM-x32\...\{164C7EA9-EFD3-4DCE-A297-FFB72D12E457}) (Version: 7.24.0.0 - Garmin Ltd or its subsidiaries) Hidden
ESET Security (HKLM\...\{6274C5F0-A338-4DBE-AAFA-7A26EE801401}) (Version: 18.0.12.0 - ESET, spol. s r.o.)
eZprava (HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\028825de0397af10) (Version: 4.0.0.180 - eZprava)
FormApps Signing Extension (HKLM-x32\...\{2ADAFEB7-56C5-497F-8960-67DA46A81838}) (Version: 2.27.0.46 - Software602 a.s.)
Garmin Express (HKLM-x32\...\{206c32b6-b534-4c0c-a074-df1ca53e6e3e}) (Version: 7.24.0.0 - Garmin Ltd or its subsidiaries)
Garmin Express (HKLM-x32\...\{50EE2113-6BB9-466F-A71B-FE40DB3139A4}) (Version: 7.24.0.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin POI Loader (HKLM-x32\...\{3213ED5E-7BBE-4613-BE69-8B1E4FE520DD}) (Version: 2.7.3 - Garmin Ltd or its subsidiaries)
Garmin USB Drivers (HKLM-x32\...\{3D5D6CFC-3097-425A-8D8F-7EAF5D57641D}) (Version: 2.3.1.0 - Garmin Ltd or its subsidiaries)
HP Dropbox Plugin (HKLM-x32\...\{0078F518-B5B5-4857-8939-199E752A4190}) (Version: 36.0.41.58587 - HP)
HP Google Drive Plugin (HKLM-x32\...\{F260117F-45E4-483E-B10F-C80224558C4D}) (Version: 36.0.41.58587 - HP)
HP OfficeJet Pro 8710 Nápověda (HKLM-x32\...\{3181BC27-9533-4B13-A498-9BA7D4857C47}) (Version: 38.0.0 - HP)
HP Support Solutions Framework (HKLM-x32\...\{CB239E79-564D-4204-923F-CB192A484B51}) (Version: 12.18.34.21 - HP Inc.)
I.CA Maintenance2 (HKLM-x32\...\{81948A32-5091-42DF-A340-F9730335EBF2}) (Version: 2.0.1032.0 - První certifikační autorita, a.s.) Hidden
I.CA Maintenance2 (HKLM-x32\...\I.CA Maintenance2 2.0.1032.0) (Version: 2.0.1032.0 - První certifikační autorita, a.s.)
I.CA PKIServiceHost (HKLM\...\{68E03B0A-5D69-43F3-B41A-F264039E3A02}) (Version: 2.1.6.0 - První certifikační autorita, a.s.) Hidden
I.CA PKIServiceHost (HKLM-x32\...\I.CA PKIServiceHost 2.1.6.0) (Version: 2.1.6.0 - První certifikační autorita, a.s.)
I.R.I.S. OCR (HKLM-x32\...\{08AE1F44-18C4-4079-B8FF-8A9E6F1E4892}) (Version: 12.3.7.0 - HP)
IDOS Komplet 2025 (HKLM-x32\...\{7F071BBB-DED3-4C43-A2B2-C4817AD1BF3C}_is1) (Version: - CHAPS spol. s r.o.)
Java 8 Update 371 (HKLM-x32\...\{71124AE4-039E-4CA4-87B4-2F32180371F0}) (Version: 8.0.3710.11 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 133.0.3065.59 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 133.0.3065.69 - Microsoft Corporation) Hidden
Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64) (HKLM\...\{B0169E83-757B-EF66-E2F0-391944D785BC}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProPlusRetail - cs-cz) (Version: 16.0.18324.20194 - Microsoft Corporation)
Microsoft Office XP Professional (HKLM-x32\...\{91110405-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.2627.11 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\OneDriveSetup.exe) (Version: 25.005.0112.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.23.27820 (HKLM-x32\...\{86BE78D9-65A1-4E69-86F8-C1F5281F8553}) (Version: 14.23.27820 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.23.27820 (HKLM-x32\...\{00AC3934-26B4-406E-807C-1692AC7329EC}) (Version: 14.23.27820 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 135.0 (x64 cs)) (Version: 135.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 89.0 - Mozilla)
Mozilla Thunderbird (x64 cs) (HKLM\...\Mozilla Thunderbird 128.7.0 (x64 cs)) (Version: 128.7.0 - Mozilla)
NVIDIA Ovladače grafiky 512.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 512.15 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.18324.20194 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.18324.20194 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.18324.20168 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Portál ZP (HKLM-x32\...\{704C9907-E450-4394-982D-3DB802D1868A}) (Version: 1.00.0000 - Asseco)
Rajče verze 2.6.2 sestavení 292 (HKLM-x32\...\Rajče.net_is1) (Version: - rajče.net)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31225 - Realtek Semiconduct Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.25.119.2018 - Realtek)
Signer for browser 1.0 (HKLM-x32\...\{FA2B17BD-D866-4793-B1DC-56B2EE0A4851}_is1) (Version: - Asseco Central Europe, a.s.)
Studie vylepšování produktu HP OfficeJet Pro 8710 (HKLM\...\{C846C07A-8895-4070-BA9F-A17DBCC86980}) (Version: 40.12.1161.1896 - HP Inc.)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{DA80A019-4C3B-4DAA-ACA1-6937D7CAAF9E}) (Version: 8.94.0.0 - Microsoft Corporation)
Upgrade ALFIS 2G 2019.527 Jednoduché účetnictví (HKLM-x32\...\{91349B44-A213-4E9F-9B70-8E9FE46D8B99}) (Version: 19.07.0000 - Fuksa Ladislav Ing.)
VdhCoApp 1.2.4 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.20 - VideoLAN)
VLC media player 3.0.14 (64-bit) (HKLM\...\{E23B6852-A99C-4869-8777-3FC057D5A431}) (Version: 3.0.14.0 - VideoLAN)
WinRAR 6.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH)
Youtube Downloader HD v. 5.9.4 (HKLM-x32\...\Youtube Downloader HD_is1) (Version: - YoutubeDownloaderHD.com)
Základní software zařízení HP OfficeJet Pro 8710 (HKLM\...\{1873CB56-A5CB-4F32-ABAF-D1EED21BB5DF}) (Version: 40.12.1161.1896 - HP Inc.)
Zoner Photo Studio X CS (HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\ZPS X) (Version: 19.2409.2.582 - ZONER a.s.)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-12-10] ()
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-06-04] (Microsoft Corporation)
Doplněk pro Fotky -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2023-06-26] (Microsoft Corporation)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_157.1.1186.0_x64__v10z8vjag6ke6 [2025-01-15] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-06-04] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-06-04] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.967.0_x64__56jybvy8sckqj [2024-12-26] (NVIDIA Corp.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001_Classes\CLSID\{815D8EF4-9121-46B4-BBA1-85A7A67E9755}\InprocServer32 -> C:\Program Files (x86)\Mozilla Thunderbird\notificationserver.dll (Mozilla Corporation -> Mozilla Foundation)
CustomCLSID: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001_Classes\CLSID\{ac5c4801-12dd-4913-8c16-313ccabb0dae}\InprocServer32 -> C:\Program Files (x86)\Mozilla Thunderbird\notificationserver.dll (Mozilla Corporation -> Mozilla Foundation)
CustomCLSID: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001_Classes\CLSID\{DF1F7848-595D-4570-8E7C-35F77861C552}\InprocServer32 -> C:\Users\Jana a Ivo\AppData\Local\Programs\Zoner\ZPS X\binary\Program64\ZpsThumbnailHandler.dll (ZONER a.s. -> )
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2024-10-30] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2024-10-30] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvle.inf_amd64_c4410ab03e8e99d7\nvshext.dll [2021-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2024-10-30] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\System32\StartMenuHelper64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2013-01-25 00:56 - 2013-01-25 00:56 - 000605049 _____ () [File not signed] C:\CGMSERVER\bin\core\sqlite3.DLL
2011-12-02 01:31 - 2011-12-02 01:31 - 000167936 _____ () [File not signed] C:\CGMSERVER\bin\pgsql\bin\LIBPQ.dll
2011-12-02 02:31 - 2011-12-02 02:31 - 000987136 _____ () [File not signed] C:\CGMSERVER\bin\pgsql\bin\libxml2.dll
2011-12-02 01:31 - 2011-12-02 01:31 - 000100352 _____ () [File not signed] C:\CGMSERVER\bin\pgsql\bin\zlib1.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 000046592 _____ () [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\CalendarCntlTypes\acfe9fcf9e361149d1546f71ed83fdbf\CalendarCntlTypes.ni.dll
2024-12-23 16:10 - 2024-12-23 16:10 - 000014848 _____ () [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\cgm.serverc28164cce#\c08cfcd0384e2038bb8ea42fb87a127d\cgm.servercorecontract.ni.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 000439296 _____ () [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\cgm.servermanager\0ce85e1c46a4a1ea785521343b4cd6fc\cgm.servermanager.ni.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 000492032 _____ () [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\cgm.servermanager\6172cfbf25fb1c7e99d34c0a48377700\cgm.servermanager.ni.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 000922112 _____ () [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\EbookingContract\64a14c03105ed7bcce51dbd6154f63e8\EbookingContract.ni.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 000493056 _____ (CompuGroup Medical s.r.o.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\cgm.servercorelib\ab93624f41c80e385223ff799838614f\cgm.servercorelib.ni.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 000714752 _____ (CompuGroup Medical s.r.o.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\CGM.Tools\29eb320a81488d1a1b88fbd5de87b72b\CGM.Tools.ni.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 001369088 _____ (CompuGroup Medical s.r.o.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\CGM.Tools\c294c9995d950dada1ed972c9de69c93\CGM.Tools.ni.dll
2011-12-02 01:31 - 2011-12-02 01:31 - 000888832 _____ (Free Software Foundation) [File not signed] C:\CGMSERVER\bin\pgsql\bin\iconv.dll
2011-12-02 01:31 - 2011-12-02 01:31 - 000968886 _____ (Free Software Foundation) [File not signed] C:\CGMSERVER\bin\pgsql\bin\libiconv-2.dll
2011-12-02 01:31 - 2011-12-02 01:31 - 000083906 _____ (Free Software Foundation) [File not signed] C:\CGMSERVER\bin\pgsql\bin\libintl-8.dll
2018-07-15 12:15 - 2018-07-15 12:15 - 003664696 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
2025-02-13 09:17 - 2025-02-13 09:17 - 000207872 ____N (Java(TM) Native Access (JNA)) [File not signed] C:\CGMSERVER\temp\jetty\jna-1182040479\jna7413353106191290973.dll
2020-04-19 12:09 - 2020-04-19 12:09 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems32.dll] C:\Program Files (x86)\Microsoft Office\Root\Office16\AppVIsvSubsystems32.dll
2020-04-19 12:09 - 2020-04-19 12:09 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R32.dll] C:\Program Files (x86)\Microsoft Office\Root\Office16\c2r32.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 000113664 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\cgm.lib\7c8bbe92b8e3f699b1b3f573a153bcb0\cgm.lib.ni.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 000065536 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\cgm.lib\cc2628593bad841d09baebf229eb8114\cgm.lib.ni.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 000154624 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\cgm.serverupdatelib\d93ceb587a9f6d454f01b899efc58024\cgm.serverupdatelib.ni.dll
2024-12-23 16:10 - 2024-12-23 16:10 - 000013312 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\cgmserverlib\6c1c53fa9c251130f0c9808dfbae79ce\cgmserverlib.ni.dll
2024-12-23 16:10 - 2024-12-23 16:10 - 000013824 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\cgmserverlib\dbbadd8cb7404e20800b7915e1c8698e\cgmserverlib.ni.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 003631616 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\EBookingServer\bac610bee1a62e23b351b00f5af5097e\EBookingServer.ni.dll
2024-12-23 16:10 - 2024-12-23 16:10 - 000885248 _____ (MONO development team) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Mono.Security\bd5643bb1560f95a22c0dc09bab79f61\Mono.Security.ni.dll
2025-01-30 15:48 - 2025-01-30 15:48 - 001489920 _____ (Npgsql Development Team) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Npgsql\64104ad77f870b12477685fd465b1136\Npgsql.ni.dll
2011-12-02 01:31 - 2011-12-02 01:31 - 001099776 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\CGMSERVER\bin\pgsql\bin\LIBEAY32.dll
2011-12-02 01:31 - 2011-12-02 01:31 - 000237056 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\CGMSERVER\bin\pgsql\bin\SSLEAY32.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2024-12-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2024-12-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre-1.8\bin\ssv.dll [2023-03-17] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre-1.8\bin\jp2ssv.dll [2023-03-17] (Oracle America, Inc. -> Oracle Corporation)
Handler-x32: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files (x86)\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL [2001-01-22] (Microsoft Corporation) [File not signed]
Handler-x32: http - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: http - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: https - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: https - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: msdaipp - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: msdaipp - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-09] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-09] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-09] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-09] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.capgemini.com -> hxxp://*.capgemini.com
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.capgemini.com -> hxxps://*.capgemini.com
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.cnb.cz -> hxxp://*.cnb.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.cnb.cz -> hxxps://*.cnb.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.csob.cz -> hxxps://*.csob.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.csob.sk -> hxxps://*.csob.sk
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.erasvet.cz -> hxxps://*.erasvet.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.fnplzen.cz -> hxxp://*.fnplzen.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.fnplzen.cz -> hxxps://*.fnplzen.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.ica.cz -> hxxp://*.ica.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.ica.cz -> hxxps://*.ica.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.postovnisporitelna.cz -> hxxps://*.postovnisporitelna.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.proebiz.com -> hxxp://*.proebiz.com
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.proebiz.com -> hxxps://*.proebiz.com
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.sbcz.cz -> hxxp://*.sbcz.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.sbcz.cz -> hxxps://*.sbcz.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.sberbank.cz -> hxxp://*.sberbank.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.sberbank.cz -> hxxps://*.sberbank.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.trysbcz.cz -> hxxp://*.trysbcz.cz
IE trusted site: HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\*.trysbcz.cz -> hxxps://*.trysbcz.cz

There are 8 more sites.


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 12:47 - 2016-07-16 12:45 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jana a Ivo\AppData\Local\Microsoft\Windows\Themes\motiv pře\DesktopBackground\img0.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Realtek PCIe GbE Family Controller -> rt640x64.sys

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\StartupFolder: => "Microsoft Office.lnk"
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\StartupApproved\Run: => "GarminExpress"
HKU\S-1-5-21-3178504301-1335594183-2692845351-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{4B3C16B5-6F82-4964-B500-20030AAEA246}] => (Allow) LPort=12381
FirewallRules: [{1702860A-F22A-47ED-A6C2-F34ADD1D73D8}] => (Allow) LPort=12343
FirewallRules: [{E9E2E988-35D5-475E-8361-4B395147359C}] => (Allow) LPort=12381
FirewallRules: [{9CB837F1-3945-4194-B7DB-0B9C8ED16531}] => (Allow) LPort=12343
FirewallRules: [{4E423681-ECC9-43D6-BB36-74F626E7D413}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 8710\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{A14E6017-DA64-4F09-9573-03C11FAC62E2}] => (Allow) LPort=5357
FirewallRules: [{0BD85AA7-80B0-4077-B730-F49C680B34C1}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 8710\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{8A637697-6A65-4D1B-8229-FFECA78774EA}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 8710\bin\FaxPrinterUtility.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{9DCC5705-2DA2-456B-97FC-9AFB5D1036B2}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 8710\bin\SendAFax.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{4036D4BA-CC7D-4ABF-AD98-D1A492EE70B8}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 8710\bin\DigitalWizards.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{297897EF-B96F-485E-B943-2FB138975C98}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 8710\bin\FaxApplications.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{9476F6F9-C49C-475A-A2DA-CAC24B2ACEE2}] => (Allow) LPort=12381
FirewallRules: [{55CD7846-80DC-4602-A17B-45D379A11E70}] => (Allow) LPort=12343
FirewallRules: [{9595033E-5BD4-4D9E-BACE-EB702717D54C}] => (Allow) LPort=12381
FirewallRules: [{FAE01FC3-1D47-423C-AD48-CA80DD7CB2FD}] => (Allow) LPort=12343
FirewallRules: [{FF22422F-3769-4B4A-9352-2BC7FBA17ACB}] => (Allow) LPort=12381
FirewallRules: [{DAA2F737-C370-42AE-AB56-7A362C6235E9}] => (Allow) LPort=12343
FirewallRules: [{790B835A-6644-4186-9815-2D11E5EB3B04}] => (Allow) LPort=12343
FirewallRules: [{FB0ABAB4-9175-424F-99B5-AB252058776C}] => (Allow) LPort=12381
FirewallRules: [{7C41FED5-B82A-4C13-86AE-5CDC505ACB2A}] => (Allow) LPort=12343
FirewallRules: [{FD37B81E-FA9D-46F1-98E4-BDA87E1F106F}] => (Allow) LPort=12381
FirewallRules: [{C1B4DC43-A135-4F2B-B67E-ED6BB7B3E6CE}] => (Allow) LPort=12343
FirewallRules: [{36C7D9E5-BCE4-4CF4-ACCC-78463167DC2C}] => (Allow) LPort=12381
FirewallRules: [{EE323594-1B52-404E-9A0A-D51415860DC2}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BF0513C0-3A02-4201-B6D5-FF0010862511}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{036A8C61-FCCE-4565-81D7-5D39BC8FFF94}] => (Allow) LPort=12343
FirewallRules: [{96D99B26-3049-4DA7-A8D7-8FC6E232976D}] => (Allow) LPort=12381
FirewallRules: [{3998261D-39A4-4680-843C-9588F3D157E7}] => (Allow) LPort=12343
FirewallRules: [{1EA2830B-3EA6-49F1-8F41-8034750BAF7D}] => (Allow) LPort=12381
FirewallRules: [{BCEAF9F4-7540-4096-96A5-2297CE5E3E5E}] => (Allow) LPort=12343
FirewallRules: [{47E54DAD-D452-4C21-9886-2015B1D3642A}] => (Allow) LPort=12381
FirewallRules: [{1863C0BC-4B0A-4DBA-9B55-87E1FEB77E37}] => (Allow) LPort=12343
FirewallRules: [{7C341A6B-73A1-4AF2-9478-F02F2C79B21B}] => (Allow) LPort=12381
FirewallRules: [{AAB44D09-2845-4F0B-8964-4D9899E3E3F5}] => (Allow) LPort=12343
FirewallRules: [{A1F3214E-F752-4C92-B924-701B5F4841E5}] => (Allow) LPort=12381
FirewallRules: [{BD2B74B8-70C5-4BBB-9B86-74AFE26E1BE3}] => (Allow) LPort=12343
FirewallRules: [{7E061AB0-038E-4B17-911F-1009A4048629}] => (Allow) LPort=12381
FirewallRules: [{E4A3C01E-9F44-4E37-A032-C20368825697}] => (Allow) LPort=12343
FirewallRules: [{96C24D99-91F5-4B2A-A0ED-28DEF67BBAEF}] => (Allow) LPort=12381
FirewallRules: [{F8E864F2-08C9-4FC0-9DFB-B7C33E2A9175}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FB3309C9-E8DF-496F-9221-F1AA1216D6B5}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{B588B82A-117B-49B0-8032-D08CED14EAC3}] => (Allow) LPort=12343
FirewallRules: [{AB11B1DA-14A7-436F-B9E9-B374CB89652C}] => (Allow) LPort=12381
FirewallRules: [{0A65AC0D-FD42-4B5A-88F7-B7C808AB6BF6}] => (Allow) LPort=12343
FirewallRules: [{8EB6CFB9-1B55-4647-BD97-060960653C9C}] => (Allow) LPort=12381
FirewallRules: [{B2990184-F153-4754-8974-D4C5DE8090CF}] => (Allow) LPort=12343
FirewallRules: [{14F7F89A-B90B-4D9E-B7A1-5B67747C7E75}] => (Allow) LPort=12381
FirewallRules: [{EFB86D8B-5568-4AA4-910C-F67FB0F03A63}] => (Allow) LPort=12343
FirewallRules: [{A951EBC5-7010-41C9-9778-0A58D552BCA5}] => (Allow) LPort=12381
FirewallRules: [{A16E540B-9141-493C-8300-325A78838A3C}] => (Allow) LPort=12343
FirewallRules: [{3EC587E1-3F88-4446-8970-462E33A458E4}] => (Allow) LPort=12381
FirewallRules: [{6A215F5E-D00E-4F90-9804-BFD526A6B2C0}] => (Allow) LPort=12343
FirewallRules: [{69190AEC-91F0-44D0-990E-59FA0CFA7F74}] => (Allow) LPort=12381
FirewallRules: [{2228829C-43D1-4709-924B-5DED1F7B2BEF}] => (Allow) LPort=12343
FirewallRules: [{BE95B96D-6801-4D4E-AB12-3FC023AFEA87}] => (Allow) LPort=12381
FirewallRules: [{274B549F-49B9-41F9-A02B-1F4011E3C091}] => (Allow) LPort=12343
FirewallRules: [{9DE135B7-291D-4C33-94F1-75DA706EAE99}] => (Allow) LPort=12381
FirewallRules: [{7EBAF507-C7A7-4265-B37C-DE21BEFAA6B5}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{B3B8057A-E15E-453D-A102-F466F5C61322}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{07B31EA5-0E7A-4593-BA87-5BB42325A818}] => (Allow) LPort=12343
FirewallRules: [{F80FE932-EA42-404D-87C7-D196E8D1FF12}] => (Allow) LPort=12381
FirewallRules: [{4C8444E9-4D59-4D46-9410-EB771CEB5AFF}] => (Allow) LPort=12343
FirewallRules: [{18A531B5-3901-4527-9ABE-2626B8F84C9A}] => (Allow) LPort=12381
FirewallRules: [{2455C810-1D1E-4CEA-B90C-442264EF89E4}] => (Allow) LPort=12343
FirewallRules: [{42B47396-047B-4152-9505-F455B5D3ACFF}] => (Allow) LPort=12381
FirewallRules: [{0258130F-5129-481F-A4FD-BCD35F3298D5}] => (Allow) LPort=12343
FirewallRules: [{0CAE1117-8B8C-4390-AD76-7D46F5D0D97F}] => (Allow) LPort=12381
FirewallRules: [{08AB20C8-2F3D-4F46-8ECE-41C471AFEB83}] => (Allow) LPort=12381
FirewallRules: [{55CC988A-4659-4B3E-968D-365B11463862}] => (Allow) LPort=12381
FirewallRules: [{C6C7536B-1922-44C5-AB72-8C0CEE660AAF}] => (Allow) LPort=12381
FirewallRules: [{AED2F11E-BA8E-4D62-BC9F-807812A17832}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{45F1DC17-BE5B-423B-B52B-06E1FD4C7A0D}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{82B18D19-DC6D-437A-B0C7-1610A193CF12}] => (Allow) LPort=12381
FirewallRules: [{A943716A-B83B-47D9-BCCE-AF6C06F6EF29}] => (Allow) C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{86B7D7D1-A85C-4C34-BB76-864D5286F37C}] => (Allow) C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{6F2EB478-BE68-42A1-868A-D5B7680BE48B}] => (Allow) LPort=12381
FirewallRules: [{5AD959B4-775C-4713-84E0-ACB273161FE8}] => (Allow) LPort=12381
FirewallRules: [{BBC79B81-EED5-411A-9F25-7F4DF435B8A3}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{745F8A58-87F3-4A5C-94D6-5853912CFE49}] => (Allow) LPort=12381
FirewallRules: [{047627D3-B68F-49FB-8954-B463D6F323C0}] => (Allow) LPort=12381
FirewallRules: [{265FA4F9-1133-47E9-8EF4-B39658CB6AAB}] => (Allow) LPort=12381
FirewallRules: [{02B0384E-4A1C-43BB-96BB-78DF435FA527}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\133.0.3065.69\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Java\jre1.8.0_281\bin\javaw.exe] => Enabled:Java(TM) Platform SE binary

==================== Restore Points =========================

09-02-2025 15:07:29 Naplánovaný kontrolní bod
12-02-2025 14:24:21 Garmin Express
12-02-2025 14:24:39 Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820
12-02-2025 15:17:47 Instalační služba modulů systému Windows
12-02-2025 15:21:22 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (02/10/2025 10:06:47 AM) (Source: Windows Backup) (EventID: 4103) (User: )
Description: Zálohování se nedokončilo z důvodu chyby zápisu do umístění zálohy D:\. Chyba: Umístění zálohy se nepovedlo najít nebo není platné. Zkontrolujte nastavení zálohování a umístění zálohy. (0x81000006).

Error: (02/07/2025 02:10:20 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na do lázní (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (02/07/2025 01:57:31 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na do lázní (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (02/05/2025 03:29:09 PM) (Source: Firefox Default Browser Agent) (EventID: 1140) (User: )
Description: Event-ID 1140

Error: (02/05/2025 03:29:09 PM) (Source: Firefox Default Browser Agent) (EventID: 1140) (User: )
Description: Event-ID 1140

Error: (02/02/2025 07:16:08 PM) (Source: Windows Backup) (EventID: 4103) (User: )
Description: Zálohování se nedokončilo z důvodu chyby zápisu do umístění zálohy D:\. Chyba: Umístění zálohy se nepovedlo najít nebo není platné. Zkontrolujte nastavení zálohování a umístění zálohy. (0x81000006).

Error: (01/30/2025 05:34:11 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Generování kontextu aktivace pro C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest se nezdařilo. Chyba v souboru manifestu nebo zásady C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL na řádku 1.
Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definice je UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (01/30/2025 02:41:48 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Generování kontextu aktivace pro C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest se nezdařilo. Chyba v souboru manifestu nebo zásady C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL na řádku 1.
Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definice je UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.


System errors:
=============
Error: (02/16/2025 03:45:16 PM) (Source: TPM) (EventID: 15) (User: )
Description: V hardwaru čipu TPM (Trusted Platform Module) došlo k neobnovitelné chybě ovladače zařízení, která brání používání služeb TPM (například šifrování dat). Budete-li potřebovat další pomoc, obraťte se na výrobce počítače.

Error: (02/16/2025 01:19:11 PM) (Source: TPM) (EventID: 15) (User: )
Description: V hardwaru čipu TPM (Trusted Platform Module) došlo k neobnovitelné chybě ovladače zařízení, která brání používání služeb TPM (například šifrování dat). Budete-li potřebovat další pomoc, obraťte se na výrobce počítače.

Error: (02/15/2025 06:38:47 PM) (Source: TPM) (EventID: 15) (User: )
Description: V hardwaru čipu TPM (Trusted Platform Module) došlo k neobnovitelné chybě ovladače zařízení, která brání používání služeb TPM (například šifrování dat). Budete-li potřebovat další pomoc, obraťte se na výrobce počítače.

Error: (02/15/2025 02:48:00 PM) (Source: TPM) (EventID: 15) (User: )
Description: V hardwaru čipu TPM (Trusted Platform Module) došlo k neobnovitelné chybě ovladače zařízení, která brání používání služeb TPM (například šifrování dat). Budete-li potřebovat další pomoc, obraťte se na výrobce počítače.

Error: (02/15/2025 09:24:14 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-P1SMD4A)
Description: Server {D0904ECD-CC91-11E4-BAB1-D4BED9D4D463} se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/15/2025 09:24:14 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-P1SMD4A)
Description: Server {D0904ECE-CC91-11E4-B4BB-D4BED9D4D463} se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/15/2025 09:05:31 AM) (Source: TPM) (EventID: 15) (User: )
Description: V hardwaru čipu TPM (Trusted Platform Module) došlo k neobnovitelné chybě ovladače zařízení, která brání používání služeb TPM (například šifrování dat). Budete-li potřebovat další pomoc, obraťte se na výrobce počítače.

Error: (02/14/2025 04:12:44 PM) (Source: TPM) (EventID: 15) (User: )
Description: V hardwaru čipu TPM (Trusted Platform Module) došlo k neobnovitelné chybě ovladače zařízení, která brání používání služeb TPM (například šifrování dat). Budete-li potřebovat další pomoc, obraťte se na výrobce počítače.


Windows Defender:
================Event[0]:

Date: 2020-12-02 10:07:52
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.277.1212.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.17600.5
Kód chyby: 0x80240022
Popis chyby: V daném programu nelze zkontrolovat aktualizace definic.

CodeIntegrity:
===============
Date: 2025-02-16 15:47:06
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.

Date: 2025-02-16 15:45:53
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO FYKT60A 07/21/2016
Motherboard: LENOVO 30C7
Processor: Intel(R) Core(TM) i5-6400 CPU @ 2.70GHz
Percentage of memory in use: 70%
Total physical RAM: 8140.94 MB
Available physical RAM: 2374.91 MB
Total Virtual: 9420.94 MB
Available Virtual: 2132.11 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.2 GB) (Free:575.96 GB) (Model: WD Green 2.5 1000GB) NTFS
Drive d: (do lázní) (Removable) (Total:29.91 GB) (Free:2.95 GB) NTFS

\\?\Volume{f63bf209-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.46 GB) NTFS
\\?\Volume{f63bf209-0000-0000-0030-3eace8000000}\ () (Fixed) (Total:0.82 GB) (Free:0.22 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: F63BF209)
Partition 1: (Active) - (Size=501 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=930.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=842 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 29.9 GB) (Disk ID: D5C22C56)
Partition 1: (Active) - (Size=29.9 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119314
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: plíživě se zpomalující PC

#2 Příspěvek od Rudy »

Zdravím!
Zkusíme vyčistit.

Otevřte poznámkový blok a zkopírujte do něj
Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [739448 2023-03-17] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [ICAMaintenance_ICAPKIService_RegKeysRefresh] => -mode loader -op refreshICAPKIServiceRegistryKeys (No File)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

mraz233
Návštěvník
Návštěvník
Příspěvky: 83
Registrován: 18 črc 2012 17:29

Re: plíživě se zpomalující PC

#3 Příspěvek od mraz233 »

Dobrý den,
zde je požadovaný log. Až na to, že po restartu jsem opět opakovaně připojoval monitor. Budu pozorovat, zda se něco změnilo. Na to, jak dlouiho jsem čekal na smazání temporary souborů, to musí přinést výsledek.


Fix result of Farbar Recovery Scan Tool (x64) Version: 15-02-2025
Ran by Jana a Ivo (16-02-2025 17:58:11) Run:1
Running from C:\Users\Jana a Ivo\Desktop
Loaded Profiles: Jana a Ivo
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [739448 2023-03-17] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [ICAMaintenance_ICAPKIService_RegKeysRefresh] => -mode loader -op refreshICAPKIServiceRegistryKeys (No File)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched" => removed successfully
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ICAMaintenance_ICAPKIService_RegKeysRefresh" => removed successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 10586264 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 41840678 B
Edge => 0 B
Firefox => 1201805276 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 175 B
systemprofile32 => 175 B
LocalService => 3799413 B
NetworkService => 3805451 B
Jana a Ivo => 10919907711 B

RecycleBin => 84156 B
EmptyTemp: => 11.3 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 18:11:19 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119314
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: plíživě se zpomalující PC

#4 Příspěvek od Rudy »

Na to, že bylo smazáno přes 11GB temporary souborů by to mělo být lepší. Ozvěte se.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

mraz233
Návštěvník
Návštěvník
Příspěvky: 83
Registrován: 18 črc 2012 17:29

Re: plíživě se zpomalující PC

#5 Příspěvek od mraz233 »

Dobrý den,
moc děkuji za Vaši pomoc (kéž bych si takto uměl pomoci i sám)
Přeji klidný zbytek dne a zdravím, I_M_

mraz233
Návštěvník
Návštěvník
Příspěvky: 83
Registrován: 18 črc 2012 17:29

Re: plíživě se zpomalující PC

#6 Příspěvek od mraz233 »

P.S. ještě mi, prosím, poraďte, jak program FRST odinstaluji?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119314
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: plíživě se zpomalující PC

#7 Příspěvek od Rudy »

Běžným smazáním a smažte též všechny soubory, které vytvořil. Jsou ve stejném adresáři. Pro to, ab\ste FRST mohl požívat samostatně, musíte vědět, co smazat. :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět