Využití disku 100 %
Napsal: 12 čer 2025 06:41
Dobrý den,
po zapnutí PC je využití disku 100 % po dobu cca 15 minut a PC je prakticky nepoužitelný. Prosím o kontrolu případně radu, jak problém vyřešit. Předem děkuji.
FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-06-2025
Ran by Vali (administrator) on DESKTOP-CPN8GN9 (HP HP Pavilion Gaming Desktop 690-00xx) (12-06-2025 07:31:44)
Running from C:\Users\Vali\Desktop\FRST64.exe
Loaded Profiles: Vali
Platform: Microsoft Windows 10 Home Version 22H2 19045.5965 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe
(C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\BridgeCommunication.exe
(C:\Program Files\TC UP\TCUP.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\Program Files\TC UP\TOTALCMD64.EXE
(cmd.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\BrowserPrivacyAndSecurity.exe
(explorer.exe ->) (Agilebits -> 1Password) C:\Users\Vali\AppData\Local\1Password\app\8\1Password.exe <4>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <18>
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(explorer.exe ->) (Open Source Developer, Robin Krom -> Greenshot) C:\Program Files\Greenshot\Greenshot.exe
(explorer.exe ->) (TC UP Team) [File not signed] C:\Program Files\TC UP\TCUP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.091.0512.0001\Microsoft.SharePoint.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(services.exe ->) (Autodesk, Inc -> Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Secure Data\dlpsrv.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (NAVIMATICS LLC -> Navimatics LLC) C:\Program Files (x86)\WinFsp\bin\launcher-x64.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvhdc.inf_amd64_099fefb828187fdc\Display.NvContainer\NVDisplay.Container.exe <2>
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2522.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Greenshot] => C:\Program Files\Greenshot\Greenshot.exe [527792 2017-08-09] (Open Source Developer, Robin Krom -> Greenshot)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [292064 2025-05-06] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2410968 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [9524616 2025-06-09] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [493960 2014-12-05] (Autodesk, Inc -> Autodesk Inc.)
HKLM-x32\...\Run: [TeamsMachineUninstallerLocalAppData] => C:\Users\Vali\AppData\Local\Microsoft\Teams\Update.exe [2589872 2023-10-12] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752216 2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-376349657-598784215-588274030-1001\...\Run: [1Password] => C:\Users\Vali\AppData\Local\1Password\app\8\1Password.exe [200709440 2025-06-10] (Agilebits -> 1Password)
HKU\S-1-5-21-376349657-598784215-588274030-1001\...\Run: [MicrosoftEdgeAutoLaunch_47E7A3D832D99C24E8E65EF6A7C4529C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [4141136 2025-06-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-376349657-598784215-588274030-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Vali\AppData\Local\Microsoft\Teams\Update.exe [2589872 2023-10-12] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-376349657-598784215-588274030-1001\...\Run: [Opera Stable] => C:\Users\Vali\AppData\Local\Programs\Opera\opera.exe [2070936 2025-06-09] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-376349657-598784215-588274030-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45715776 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-376349657-598784215-588274030-1002\...\Run: [MicrosoftEdgeAutoLaunch_2DD3D84B977F5AE3077F02BCAC515977] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4141136 2025-06-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-376349657-598784215-588274030-1002\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4967240 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-376349657-598784215-588274030-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45715776 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Windows x64\Print Processors\HP1006PrintProc: C:\Windows\System32\spool\prtprocs\x64\HP1006PP.dll [65024 2013-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\HP1006LM: C:\WINDOWS\system32\HP1006LM.DLL [198144 2013-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [196096 2023-09-28] (pdfforge GmbH) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\122.0.6261.112\Installer\chrmstp.exe [2024-03-11] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\Installer\chrmstp.exe [2025-06-12] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {B0965083-8D8E-4354-BF8A-1984DD0439E6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2025-03-21] (Adobe Inc. -> Adobe Inc.)
Task: {AEA6B72D-1B17-4F08-BD67-AB7897BE0DAF} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{90900E10-A706-458E-A4F8-CF0D46630A5B} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-10-27] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {4D63D19F-B337-4E30-908D-9B5F323456E3} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{41AF176A-5114-4DA4-882D-9BE3FF0C9310} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-10-27] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {572FC136-57AB-4DEC-9D64-D2A57C1E0F15} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {E33C196E-29E7-44F7-A0A6-55D64ACBB9EF} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6139704 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "e2c884f5-2ed1-4247-b511-26424619f5ee" --version "6.36.0.11508" --silent
Task: {A98F01E0-DDE1-4A9D-96CA-C41F58729C53} - System32\Tasks\CCleanerSkipUAC - Tami => C:\Program Files\CCleaner\CCleaner.exe [39558464 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {4ECA8461-974F-4EF3-A1CE-EF74EA1E83D9} - System32\Tasks\CCleanerSkipUAC - Vali => C:\Program Files\CCleaner\CCleaner.exe [39558464 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {02EE66C5-387E-4EEB-8072-EDBA88215ED6} - System32\Tasks\DropboxSystem\DropboxUpdater\DropboxUpdaterTaskSystem123.0.6299.109{E9433441-7253-41B4-8D6D-20E0A001A1D9} => C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.109\updater.exe [5895032 2025-03-21] (Dropbox, Inc -> Dropbox, Inc.)
Task: {02C19890-3B44-4BCB-9E26-3BE6484FFC1E} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem124.0.6342.2{D743130D-6C0E-403F-8A46-C91B7C89CA7A} => "C:\Program Files (x86)\Google\GoogleUpdater\124.0.6342.2\updater.exe" --wake --system --enable-logging --vmodule=*/components/winhttp/*=1,*/components/update_client/*=2,*/chrome/updater/*=2 (No File)
Task: {3636B910-03BA-457B-B39A-6139C928FB86} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [107024 2024-05-14] (HP Inc. -> HP Inc.)
Task: {03C97A5B-245F-47E7-AAEC-B6D44098761C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\HP\HP Support Framework\Modules\HPSSFUpdater.exe [175632 2024-05-14] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\Modules\\/f
Task: {06ADB1D3-BF17-46C9-86B7-E22AC338787A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21917368 2025-05-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {58D25E4C-0A86-4781-B4CC-216DB72F3E43} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21917368 2025-05-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {4C0F2E04-7032-4AB2-A9F0-48630D6ED06A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141544 2025-05-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {3EBFA430-F6CF-46D5-8B8E-13F1370F1332} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141544 2025-05-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {40CD4831-20D1-41F6-BADA-869AA9C2694E} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [675744 2024-11-03] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {6D08C24C-F3AE-4AFD-A490-AA1E7E4A692F} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-376349657-598784215-588274030-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [675744 2024-11-03] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {0F465D89-717D-41CD-B8A7-83EAF5965926} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33696 2024-11-03] (Mozilla Corporation -> Mozilla Foundation)
Task: {EA4F85B3-AC02-4D02-90D8-FA6FB7DD3A6F} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [815 2022-11-22] () [File not signed]
Task: {A5DE3148-AA5C-4BB8-9AD5-00B67AB1B14D} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223808 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {012D5A52-CEBC-4E6C-9C6B-4D1A6B6ED21C} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-376349657-598784215-588274030-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223808 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {575CA44C-CF16-497C-A7E8-A263DD3DC256} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-376349657-598784215-588274030-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223808 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {7E73DC95-5DB2-48A9-873C-98370781463F} - System32\Tasks\OneDrive Startup Task-S-1-5-21-376349657-598784215-588274030-1001 => C:\Program Files\Microsoft OneDrive\25.091.0512.0001\OneDriveLauncher.exe [684880 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {8B70F6D2-4889-4E97-9107-5BCB25A0FCEA} - System32\Tasks\OneDrive Startup Task-S-1-5-21-376349657-598784215-588274030-1002 => C:\Program Files\Microsoft OneDrive\25.091.0512.0001\OneDriveLauncher.exe [684880 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {47FB4078-1718-47CC-B843-7451F87B6EF8} - System32\Tasks\Opera scheduled Autoupdate 1699294200 => C:\Users\Vali\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [6071704 2025-06-04] (Opera Norway AS -> Opera Software)
Task: {D3C0F2E2-D9FD-4B72-982C-29FBE9D6ACF4} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11235928 2020-03-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: 127.0.0.1 cryptomator-vault
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{664952b0-fb39-4fe7-a5e8-d1d2d893d516}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{664952b0-fb39-4fe7-a5e8-d1d2d893d516}: [DhcpDomain] home
Tcpip\..\Interfaces\{664952b0-fb39-4fe7-a5e8-d1d2d893d516}\4553357796E676F45747: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{664952b0-fb39-4fe7-a5e8-d1d2d893d516}\4553357796E676F45747: [DhcpDomain] home
Edge:
=======
Edge Profile: C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default [2025-06-09]
Edge Extension: (Injector) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bfdonckegflhbiamlmidciapolfccmmb [2023-12-24]
Edge Extension: (Microsoft Edge Unminification Extension) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cgjgjfacjflmgphhhepmbhhbgjieaecn [2025-05-12]
Edge Extension: (Markdown Viewer) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ckkdlimhmcjmikdlpkmbgfkaikojcbjk [2024-05-02]
Edge Extension: (Adblock Ad Blocker Pro) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dgjbaljgolmlcmmklmmeafecikidmjpi [2025-05-19]
Edge Extension: (1Password – Password Manager) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dppgmdbiimibapkepcbdbmkaabgiofem [2025-06-02]
Edge Extension: (SingleFile) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\efnbkdcfmcmnhlkaijjjmhjjgladedno [2025-04-23]
Edge Extension: (Ghostery Tracker & Ad Blocker - Privacy AdBlock) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fclbdkbhjlgkbpfldjodgjncejkkjcme [2025-06-03]
Edge Extension: (Page load time) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fploionmjgeclbkemipmkogoaohcdbig [2024-10-06]
Edge Extension: (Google Docs Offline) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-05-12]
Edge Extension: (Tampermonkey) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2025-01-03]
Edge Extension: (FormApps Extension) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2024-05-02]
Edge Extension: (Disconnect) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jeoacafpbcihiomhlakheieifhpjdfeo [2025-01-12]
Edge Extension: (Edge relevant text changes) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-28]
Edge Extension: (Microsoft Edge DevTools Enhancements) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kfbdpdaobnofkbopebjglnaadopfikhh [2023-10-28]
Edge Extension: (ChroPath) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ljngjbnaijcbncmcnjfhigebomdlkcjo [2023-12-24]
Edge Extension: (Bookmark Sidebar) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lmjefbghkfeppnpofmbfmhgodpclipbl [2025-04-13]
Edge Extension: (Markdown Reader) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\medapdbncneneejhbgcjceippjlfkmkg [2025-05-12]
Edge Extension: (Privacy Badger) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mkejgcgkdlddbggjhhflekkondicpnop [2025-06-03]
Edge Extension: (AdBlock — block ads across the web) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2025-05-29]
Edge Extension: (Adblock for Youtube™) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nipggfgilmoiofmnkbeabghbcaohmjih [2024-08-29]
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]
FireFox:
========
FF DefaultProfile: byjw55jj.default
FF ProfilePath: C:\Users\Vali\AppData\Roaming\Mozilla\Firefox\Profiles\byjw55jj.default [2024-10-07]
FF ProfilePath: C:\Users\Vali\AppData\Roaming\Mozilla\Firefox\Profiles\kaudyvx3.default-release [2025-06-09]
FF Plugin: @java.com/DTPlugin,version=11.431.2 -> C:\Program Files\Java\jre1.8.0_431\bin\dtplugin\npDeployJava1.dll [2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.431.2 -> C:\Program Files\Java\jre1.8.0_431\bin\plugin2\npjp2.dll [2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-10-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-04-24] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-10-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-06-12]
Chrome:
=======
CHR Profile: C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default [2025-06-12]
CHR Extension: (lock) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\aeblfdkhhhdcdjpifhhbdiojplfjncoa [2025-06-02]
CHR Extension: (Injector) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfdonckegflhbiamlmidciapolfccmmb [2023-09-28]
CHR Extension: (Markdown Viewer) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckkdlimhmcjmikdlpkmbgfkaikojcbjk [2024-05-02]
CHR Extension: (Adblock na Youtube™) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2025-06-09]
CHR Extension: (Adblock Ad Blocker Pro) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgjbaljgolmlcmmklmmeafecikidmjpi [2025-06-12]
CHR Extension: (Tampermonkey) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2024-12-10]
CHR Extension: (Page load time) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\fploionmjgeclbkemipmkogoaohcdbig [2024-09-10]
CHR Extension: (Dokumenty Google offline) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-05-29]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-04-10]
CHR Extension: (Tmavý režim - tmavá čtečka pro Сhrome) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjbmfigjpgnehjioicaalopaikcnheo [2025-01-29]
CHR Extension: (FormApps Extension) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2024-04-15]
CHR Extension: (Boční lišta záložek) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdbnofccmhefkmjbkkdkfiicjkgofkdh [2024-08-08]
CHR Extension: (Disconnect) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeoacafpbcihiomhlakheieifhpjdfeo [2025-01-16]
CHR Extension: (Tmavý režim - tmavá čtečka pro Сhrome) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhhjdfldilccfllhlbjdlhknlfbhpgeg [2024-08-05]
CHR Extension: (ChroPath) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljngjbnaijcbncmcnjfhigebomdlkcjo [2023-09-28]
CHR Extension: (Markdown Reader) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\medapdbncneneejhbgcjceippjlfkmkg [2025-06-09]
CHR Extension: (Ghostery Tracker & Ad Blocker - Privacy AdBlock) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2025-06-09]
CHR Extension: (SingleFile) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpiodijhokgodhhofbcjdecpffjipkle [2025-04-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-09-28]
CHR Extension: (ESET Browser Privacy & Security) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\oombnmpbbhbakfpfgdflaajkhicgfaam [2025-06-12]
CHR Extension: (Privacy Badger) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkehgijcmpdhfbdbbnkijodmdjhbjlgp [2025-06-03]
CHR HKU\S-1-5-21-376349657-598784215-588274030-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKU\S-1-5-21-376349657-598784215-588274030-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [oombnmpbbhbakfpfgdflaajkhicgfaam]
Opera:
=======
OPR DefaultProfile: Default
Brave:
=======
BRA Profile: C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-06-09]
BRA Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-06-09]
BRA Extension: (ESET Browser Privacy & Security) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\oombnmpbbhbakfpfgdflaajkhicgfaam [2025-06-09]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-06-09]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-06-09]
BRA Extension: (Brave NTP background images) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-06-09]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-06-09]
BRA Extension: (Wallet Data Files Updater) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2024-01-22]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-06-09]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2025-06-09]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-06-09]
BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2023-10-27]
BRA Extension: (Brave Ads Resources) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2025-06-09]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-06-09]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-06-09]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2025-06-09]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-10-27]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [599944 2014-12-05] (Autodesk, Inc -> Autodesk Inc.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.)
S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.)
S2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [31160 2015-02-05] (Autodesk, Inc -> Autodesk, Inc.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-10-27] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\elevation_service.exe [3205712 2025-06-11] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-10-27] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1079608 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9203944 2025-05-02] (Microsoft Corporation -> Microsoft Corporation)
R2 DbxSvc; C:\WINDOWS\System32\DbxSvc.exe [58984 2025-04-29] (Dropbox, Inc -> Dropbox, Inc.)
R2 dlpsrv; C:\Program Files\ESET\ESET Secure Data\dlpsrv.exe [770528 2025-02-12] (ESET, spol. s r.o. -> ESET)
S3 DropboxElevationService; C:\Program Files (x86)\Dropbox\Client\226.4.5094\DropboxElevationService.exe [1659280 2025-06-09] (Dropbox, Inc -> Dropbox, Inc.)
S2 DropboxUpdaterInternalService123.0.6299.109; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.109\updater.exe [5895032 2025-03-21] (Dropbox, Inc -> Dropbox, Inc.)
S2 DropboxUpdaterService123.0.6299.109; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.109\updater.exe [5895032 2025-03-21] (Dropbox, Inc -> Dropbox, Inc.)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5559152 2025-05-06] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4582480 2025-05-06] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4582480 2025-05-06] (ESET, spol. s r.o. -> ESET)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.091.0512.0001\FileSyncHelper.exe [3622208 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
R2 HPAppHelperCap; C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe [928192 2024-06-12] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\Program Files\HP\HP Enabling Services\DiagsCap.exe [926760 2024-06-12] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\Program Files\HP\HP Enabling Services\NetworkCap.exe [922560 2024-06-12] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe [927680 2024-06-12] (HP Inc. -> HP Inc.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvhdc.inf_amd64_099fefb828187fdc\Display.NvContainer\NVDisplay.Container.exe [1275560 2025-03-10] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.091.0512.0001\OneDriveUpdaterService.exe [3873608 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
R2 PSI_SVC_2_x64; C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
S3 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [22442808 2024-09-03] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 VSInstallerElevationService; C:\Program Files (x86)\Microsoft Visual Studio\Installer\VSInstallerElevationService.exe [41928 2023-10-26] (Microsoft Corporation -> Microsoft)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinFsp.Launcher; C:\Program Files (x86)\WinFsp\bin\launcher-x64.exe [34592 2022-12-05] (NAVIMATICS LLC -> Navimatics LLC)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [84864 2024-11-04] (Microsoft Windows Hardware Compatibility Publisher -> wch.cn)
R0 DLMFENC; C:\WINDOWS\System32\DRIVERS\DLMFENC.sys [193912 2025-02-28] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
R0 DLPCRYPT; C:\WINDOWS\System32\DRIVERS\dlpcrypt.sys [121728 2022-08-24] (DESlock Limited -> DESlock Ltd.)
R0 dlpvdisk; C:\WINDOWS\System32\DRIVERS\dlpvdisk.sys [127320 2025-02-28] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [227224 2025-05-06] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [121816 2025-05-06] (Microsoft Windows Hardware Compatibility Publisher -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2024-03-21] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [266944 2025-05-06] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [57304 2025-05-06] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [86200 2025-05-06] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [128512 2025-05-06] (ESET, spol. s r.o. -> ESET)
R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [69984 2024-01-18] (WDKTestCert Nmap,133147429230506937 -> Insecure.Com LLC.)
R3 rtump64x64; C:\WINDOWS\System32\drivers\rtump64x64.sys [1418184 2024-04-21] (Realtek Semiconductor Corp. -> Realtek Corporation)
R0 VDLPToken2; C:\WINDOWS\System32\DRIVERS\vdlptkn2.sys [157256 2025-02-12] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WinFsp; C:\Program Files (x86)\WinFsp\bin\winfsp-x64.sys [165936 2022-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Navimatics LLC)
U4 npcap_wifi; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-06-12 07:31 - 2025-06-12 07:32 - 000037118 _____ C:\Users\Vali\Desktop\FRST.txt
2025-06-12 07:27 - 2025-06-12 07:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2025-06-12 07:23 - 2025-06-12 07:24 - 002406912 _____ (Farbar) C:\Users\Vali\Desktop\FRST64.exe
2025-06-10 20:13 - 2025-06-10 20:13 - 000000000 ___HD C:\$WinREAgent
2025-06-05 21:07 - 2025-06-05 21:07 - 000489704 _____ C:\Users\Vali\Downloads\manual_bsc3_cs.pdf
2025-06-04 19:45 - 2025-06-12 07:28 - 000003326 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2025-05-19 12:44 - 2025-05-19 12:54 - 000000000 ____D C:\Users\Vali\AppData\Roaming\FileZilla
2025-05-19 12:44 - 2025-05-19 12:53 - 000000000 ____D C:\Users\Vali\AppData\Local\FileZilla
2025-05-19 12:44 - 2025-05-19 12:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2025-05-19 12:44 - 2025-05-19 12:44 - 000000000 ____D C:\Program Files\FileZilla FTP Client
2025-05-19 12:43 - 2025-05-19 12:43 - 012858904 _____ (Tim Kosse) C:\Users\Vali\Downloads\FileZilla_3.69.1_win64_sponsored2-setup.exe
2025-05-17 20:35 - 2025-05-17 20:35 - 000022680 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-05-17 20:31 - 2025-05-17 20:31 - 000022680 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-05-13 21:28 - 2025-05-13 21:28 - 000000000 ____D C:\Users\Vali\Downloads\OSX10201-GGR1
2025-05-13 20:58 - 2025-06-10 19:29 - 000001347 _____ C:\Users\Vali\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1Password.lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-06-12 07:32 - 2023-10-21 21:41 - 000000000 ____D C:\Users\Vali\.platformio
2025-06-12 07:32 - 2023-10-21 21:40 - 000000000 ____D C:\Users\Vali\AppData\Roaming\Code
2025-06-12 07:32 - 2020-06-27 14:20 - 000000000 ____D C:\FRST
2025-06-12 07:31 - 2023-10-27 18:34 - 000002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-06-12 07:31 - 2023-09-28 05:15 - 000000000 ____D C:\Users\Vali\AppData\Local\Packages
2025-06-12 07:31 - 2023-05-05 14:27 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-06-12 07:31 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-06-12 07:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-06-12 07:28 - 2024-02-13 22:10 - 000000670 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2025-06-12 07:27 - 2023-10-02 06:09 - 000000000 ____D C:\Users\Vali\AppData\Local\Dropbox
2025-06-12 07:27 - 2023-10-02 06:08 - 000000000 ____D C:\Program Files (x86)\Dropbox
2025-06-12 07:26 - 2023-09-27 22:52 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-06-12 07:26 - 2019-12-07 16:41 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2025-06-12 07:26 - 2019-12-07 16:41 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2025-06-12 07:26 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-06-12 07:21 - 2023-09-28 06:45 - 000000000 ____D C:\Users\Vali\AppData\Roaming\1Password
2025-06-12 07:20 - 2023-09-28 05:14 - 000000000 ____D C:\Users\Vali
2025-06-12 07:20 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-06-12 07:19 - 2023-09-28 06:37 - 000000000 ____D C:\ProgramData\NVIDIA
2025-06-12 07:19 - 2023-09-27 22:38 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-06-12 07:19 - 2020-07-19 20:31 - 000008192 ___SH C:\DumpStack.log.tmp
2025-06-12 07:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2025-06-10 21:21 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2025-06-10 21:20 - 2023-09-27 22:35 - 000987536 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-06-10 21:18 - 2024-02-13 22:10 - 000000000 ____D C:\Program Files\CCleaner
2025-06-10 21:18 - 2023-12-04 22:33 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2025-06-10 21:17 - 2024-07-10 16:54 - 000000000 ____D C:\WINDOWS\system32\compatrel
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2025-06-10 20:44 - 2023-09-27 22:35 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-06-10 20:39 - 2023-10-01 16:04 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-06-10 20:35 - 2023-10-01 16:04 - 216824056 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-06-10 20:35 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-06-10 20:28 - 2023-09-27 22:40 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-06-10 19:29 - 2023-09-28 06:44 - 000000000 ____D C:\Users\Vali\AppData\Local\1Password
2025-06-09 21:51 - 2024-02-13 22:16 - 000000000 ____D C:\Users\Vali\Documents\registry_zaloha
2025-06-09 21:51 - 2023-10-08 21:05 - 000000000 ____D C:\Users\Vali\AppData\Local\RealVNC
2025-06-09 21:48 - 2023-11-06 20:12 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-06-09 21:48 - 2023-10-26 17:17 - 000000000 ____D C:\Users\Vali\AppData\Local\CrashDumps
2025-06-09 20:29 - 2025-03-18 10:10 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-06-09 20:29 - 2025-02-05 22:16 - 000003534 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-376349657-598784215-588274030-1002
2025-06-09 20:29 - 2025-02-05 22:16 - 000003534 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-376349657-598784215-588274030-1001
2025-06-09 20:29 - 2023-12-01 22:43 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-376349657-598784215-588274030-1001
2025-06-09 20:29 - 2023-12-01 22:43 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2025-06-09 20:29 - 2023-10-01 17:47 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-376349657-598784215-588274030-1002
2025-06-09 20:28 - 2024-02-13 22:10 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2025-06-09 20:28 - 2023-11-06 20:10 - 000004258 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1699294200
2025-06-09 20:28 - 2023-11-06 20:10 - 000001379 _____ C:\Users\Vali\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2025-06-09 20:23 - 2023-09-27 22:38 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-06-04 19:46 - 2023-10-21 21:23 - 000000000 ____D C:\Users\Vali\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
2025-06-02 21:41 - 2024-03-06 22:16 - 000000000 ____D C:\Users\Vali\AppData\Roaming\gsak
2025-06-02 20:36 - 2023-10-01 21:44 - 000000033 _____ C:\Users\Vali\AppData\Roaming\AdobeWLCMCache.dat
2025-05-30 10:08 - 2023-09-28 07:35 - 000000000 ____D C:\Users\Vali\AppData\Roaming\Microsoft\Excel
2025-05-20 06:32 - 2024-04-02 13:21 - 000000000 ____D C:\Users\Tami\AppData\LocalLow\NVIDIA
2025-05-20 06:32 - 2023-10-01 17:45 - 000000000 ____D C:\Users\Tami\AppData\Local\Packages
2025-05-19 07:41 - 2023-09-27 22:38 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-05-19 07:41 - 2023-09-27 22:38 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-05-18 14:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-05-18 14:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2025-05-18 14:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2025-05-18 14:09 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2025-05-16 20:20 - 2024-10-13 21:42 - 000000000 ____D C:\Program Files\Microsoft Office
==================== Files in the root of some directories ========
2023-10-01 21:44 - 2025-06-02 20:36 - 000000033 _____ () C:\Users\Vali\AppData\Roaming\AdobeWLCMCache.dat
2023-10-15 19:16 - 2024-02-27 17:08 - 000000615 _____ () C:\Users\Vali\AppData\Local\oobelibMkey.log
2024-01-15 11:56 - 2025-02-08 21:44 - 000000128 _____ () C:\Users\Vali\AppData\Local\PUTTY.RND
2024-10-06 20:27 - 2025-02-27 08:29 - 000007601 _____ () C:\Users\Vali\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
po zapnutí PC je využití disku 100 % po dobu cca 15 minut a PC je prakticky nepoužitelný. Prosím o kontrolu případně radu, jak problém vyřešit. Předem děkuji.
FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-06-2025
Ran by Vali (administrator) on DESKTOP-CPN8GN9 (HP HP Pavilion Gaming Desktop 690-00xx) (12-06-2025 07:31:44)
Running from C:\Users\Vali\Desktop\FRST64.exe
Loaded Profiles: Vali
Platform: Microsoft Windows 10 Home Version 22H2 19045.5965 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe
(C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\BridgeCommunication.exe
(C:\Program Files\TC UP\TCUP.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\Program Files\TC UP\TOTALCMD64.EXE
(cmd.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\BrowserPrivacyAndSecurity.exe
(explorer.exe ->) (Agilebits -> 1Password) C:\Users\Vali\AppData\Local\1Password\app\8\1Password.exe <4>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <18>
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(explorer.exe ->) (Open Source Developer, Robin Krom -> Greenshot) C:\Program Files\Greenshot\Greenshot.exe
(explorer.exe ->) (TC UP Team) [File not signed] C:\Program Files\TC UP\TCUP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.091.0512.0001\Microsoft.SharePoint.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(services.exe ->) (Autodesk, Inc -> Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Secure Data\dlpsrv.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (NAVIMATICS LLC -> Navimatics LLC) C:\Program Files (x86)\WinFsp\bin\launcher-x64.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvhdc.inf_amd64_099fefb828187fdc\Display.NvContainer\NVDisplay.Container.exe <2>
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2522.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Greenshot] => C:\Program Files\Greenshot\Greenshot.exe [527792 2017-08-09] (Open Source Developer, Robin Krom -> Greenshot)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [292064 2025-05-06] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2410968 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [9524616 2025-06-09] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [493960 2014-12-05] (Autodesk, Inc -> Autodesk Inc.)
HKLM-x32\...\Run: [TeamsMachineUninstallerLocalAppData] => C:\Users\Vali\AppData\Local\Microsoft\Teams\Update.exe [2589872 2023-10-12] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752216 2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-376349657-598784215-588274030-1001\...\Run: [1Password] => C:\Users\Vali\AppData\Local\1Password\app\8\1Password.exe [200709440 2025-06-10] (Agilebits -> 1Password)
HKU\S-1-5-21-376349657-598784215-588274030-1001\...\Run: [MicrosoftEdgeAutoLaunch_47E7A3D832D99C24E8E65EF6A7C4529C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [4141136 2025-06-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-376349657-598784215-588274030-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Vali\AppData\Local\Microsoft\Teams\Update.exe [2589872 2023-10-12] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-376349657-598784215-588274030-1001\...\Run: [Opera Stable] => C:\Users\Vali\AppData\Local\Programs\Opera\opera.exe [2070936 2025-06-09] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-376349657-598784215-588274030-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45715776 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-376349657-598784215-588274030-1002\...\Run: [MicrosoftEdgeAutoLaunch_2DD3D84B977F5AE3077F02BCAC515977] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4141136 2025-06-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-376349657-598784215-588274030-1002\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4967240 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-376349657-598784215-588274030-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45715776 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Windows x64\Print Processors\HP1006PrintProc: C:\Windows\System32\spool\prtprocs\x64\HP1006PP.dll [65024 2013-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\HP1006LM: C:\WINDOWS\system32\HP1006LM.DLL [198144 2013-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [196096 2023-09-28] (pdfforge GmbH) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\122.0.6261.112\Installer\chrmstp.exe [2024-03-11] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\Installer\chrmstp.exe [2025-06-12] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {B0965083-8D8E-4354-BF8A-1984DD0439E6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2025-03-21] (Adobe Inc. -> Adobe Inc.)
Task: {AEA6B72D-1B17-4F08-BD67-AB7897BE0DAF} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{90900E10-A706-458E-A4F8-CF0D46630A5B} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-10-27] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {4D63D19F-B337-4E30-908D-9B5F323456E3} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{41AF176A-5114-4DA4-882D-9BE3FF0C9310} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-10-27] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {572FC136-57AB-4DEC-9D64-D2A57C1E0F15} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {E33C196E-29E7-44F7-A0A6-55D64ACBB9EF} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6139704 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "e2c884f5-2ed1-4247-b511-26424619f5ee" --version "6.36.0.11508" --silent
Task: {A98F01E0-DDE1-4A9D-96CA-C41F58729C53} - System32\Tasks\CCleanerSkipUAC - Tami => C:\Program Files\CCleaner\CCleaner.exe [39558464 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {4ECA8461-974F-4EF3-A1CE-EF74EA1E83D9} - System32\Tasks\CCleanerSkipUAC - Vali => C:\Program Files\CCleaner\CCleaner.exe [39558464 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {02EE66C5-387E-4EEB-8072-EDBA88215ED6} - System32\Tasks\DropboxSystem\DropboxUpdater\DropboxUpdaterTaskSystem123.0.6299.109{E9433441-7253-41B4-8D6D-20E0A001A1D9} => C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.109\updater.exe [5895032 2025-03-21] (Dropbox, Inc -> Dropbox, Inc.)
Task: {02C19890-3B44-4BCB-9E26-3BE6484FFC1E} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem124.0.6342.2{D743130D-6C0E-403F-8A46-C91B7C89CA7A} => "C:\Program Files (x86)\Google\GoogleUpdater\124.0.6342.2\updater.exe" --wake --system --enable-logging --vmodule=*/components/winhttp/*=1,*/components/update_client/*=2,*/chrome/updater/*=2 (No File)
Task: {3636B910-03BA-457B-B39A-6139C928FB86} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [107024 2024-05-14] (HP Inc. -> HP Inc.)
Task: {03C97A5B-245F-47E7-AAEC-B6D44098761C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\HP\HP Support Framework\Modules\HPSSFUpdater.exe [175632 2024-05-14] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\Modules\\/f
Task: {06ADB1D3-BF17-46C9-86B7-E22AC338787A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21917368 2025-05-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {58D25E4C-0A86-4781-B4CC-216DB72F3E43} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21917368 2025-05-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {4C0F2E04-7032-4AB2-A9F0-48630D6ED06A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141544 2025-05-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {3EBFA430-F6CF-46D5-8B8E-13F1370F1332} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141544 2025-05-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {40CD4831-20D1-41F6-BADA-869AA9C2694E} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [675744 2024-11-03] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {6D08C24C-F3AE-4AFD-A490-AA1E7E4A692F} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-376349657-598784215-588274030-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [675744 2024-11-03] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {0F465D89-717D-41CD-B8A7-83EAF5965926} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33696 2024-11-03] (Mozilla Corporation -> Mozilla Foundation)
Task: {EA4F85B3-AC02-4D02-90D8-FA6FB7DD3A6F} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [815 2022-11-22] () [File not signed]
Task: {A5DE3148-AA5C-4BB8-9AD5-00B67AB1B14D} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223808 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {012D5A52-CEBC-4E6C-9C6B-4D1A6B6ED21C} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-376349657-598784215-588274030-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223808 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {575CA44C-CF16-497C-A7E8-A263DD3DC256} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-376349657-598784215-588274030-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223808 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {7E73DC95-5DB2-48A9-873C-98370781463F} - System32\Tasks\OneDrive Startup Task-S-1-5-21-376349657-598784215-588274030-1001 => C:\Program Files\Microsoft OneDrive\25.091.0512.0001\OneDriveLauncher.exe [684880 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {8B70F6D2-4889-4E97-9107-5BCB25A0FCEA} - System32\Tasks\OneDrive Startup Task-S-1-5-21-376349657-598784215-588274030-1002 => C:\Program Files\Microsoft OneDrive\25.091.0512.0001\OneDriveLauncher.exe [684880 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {47FB4078-1718-47CC-B843-7451F87B6EF8} - System32\Tasks\Opera scheduled Autoupdate 1699294200 => C:\Users\Vali\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [6071704 2025-06-04] (Opera Norway AS -> Opera Software)
Task: {D3C0F2E2-D9FD-4B72-982C-29FBE9D6ACF4} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11235928 2020-03-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: 127.0.0.1 cryptomator-vault
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{664952b0-fb39-4fe7-a5e8-d1d2d893d516}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{664952b0-fb39-4fe7-a5e8-d1d2d893d516}: [DhcpDomain] home
Tcpip\..\Interfaces\{664952b0-fb39-4fe7-a5e8-d1d2d893d516}\4553357796E676F45747: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{664952b0-fb39-4fe7-a5e8-d1d2d893d516}\4553357796E676F45747: [DhcpDomain] home
Edge:
=======
Edge Profile: C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default [2025-06-09]
Edge Extension: (Injector) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bfdonckegflhbiamlmidciapolfccmmb [2023-12-24]
Edge Extension: (Microsoft Edge Unminification Extension) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cgjgjfacjflmgphhhepmbhhbgjieaecn [2025-05-12]
Edge Extension: (Markdown Viewer) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ckkdlimhmcjmikdlpkmbgfkaikojcbjk [2024-05-02]
Edge Extension: (Adblock Ad Blocker Pro) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dgjbaljgolmlcmmklmmeafecikidmjpi [2025-05-19]
Edge Extension: (1Password – Password Manager) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dppgmdbiimibapkepcbdbmkaabgiofem [2025-06-02]
Edge Extension: (SingleFile) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\efnbkdcfmcmnhlkaijjjmhjjgladedno [2025-04-23]
Edge Extension: (Ghostery Tracker & Ad Blocker - Privacy AdBlock) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fclbdkbhjlgkbpfldjodgjncejkkjcme [2025-06-03]
Edge Extension: (Page load time) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fploionmjgeclbkemipmkogoaohcdbig [2024-10-06]
Edge Extension: (Google Docs Offline) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-05-12]
Edge Extension: (Tampermonkey) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2025-01-03]
Edge Extension: (FormApps Extension) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2024-05-02]
Edge Extension: (Disconnect) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jeoacafpbcihiomhlakheieifhpjdfeo [2025-01-12]
Edge Extension: (Edge relevant text changes) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-28]
Edge Extension: (Microsoft Edge DevTools Enhancements) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kfbdpdaobnofkbopebjglnaadopfikhh [2023-10-28]
Edge Extension: (ChroPath) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ljngjbnaijcbncmcnjfhigebomdlkcjo [2023-12-24]
Edge Extension: (Bookmark Sidebar) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lmjefbghkfeppnpofmbfmhgodpclipbl [2025-04-13]
Edge Extension: (Markdown Reader) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\medapdbncneneejhbgcjceippjlfkmkg [2025-05-12]
Edge Extension: (Privacy Badger) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mkejgcgkdlddbggjhhflekkondicpnop [2025-06-03]
Edge Extension: (AdBlock — block ads across the web) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2025-05-29]
Edge Extension: (Adblock for Youtube™) - C:\Users\Vali\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nipggfgilmoiofmnkbeabghbcaohmjih [2024-08-29]
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]
FireFox:
========
FF DefaultProfile: byjw55jj.default
FF ProfilePath: C:\Users\Vali\AppData\Roaming\Mozilla\Firefox\Profiles\byjw55jj.default [2024-10-07]
FF ProfilePath: C:\Users\Vali\AppData\Roaming\Mozilla\Firefox\Profiles\kaudyvx3.default-release [2025-06-09]
FF Plugin: @java.com/DTPlugin,version=11.431.2 -> C:\Program Files\Java\jre1.8.0_431\bin\dtplugin\npDeployJava1.dll [2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.431.2 -> C:\Program Files\Java\jre1.8.0_431\bin\plugin2\npjp2.dll [2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-10-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-04-24] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-10-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-06-12]
Chrome:
=======
CHR Profile: C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default [2025-06-12]
CHR Extension: (lock) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\aeblfdkhhhdcdjpifhhbdiojplfjncoa [2025-06-02]
CHR Extension: (Injector) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfdonckegflhbiamlmidciapolfccmmb [2023-09-28]
CHR Extension: (Markdown Viewer) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckkdlimhmcjmikdlpkmbgfkaikojcbjk [2024-05-02]
CHR Extension: (Adblock na Youtube™) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2025-06-09]
CHR Extension: (Adblock Ad Blocker Pro) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgjbaljgolmlcmmklmmeafecikidmjpi [2025-06-12]
CHR Extension: (Tampermonkey) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2024-12-10]
CHR Extension: (Page load time) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\fploionmjgeclbkemipmkogoaohcdbig [2024-09-10]
CHR Extension: (Dokumenty Google offline) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-05-29]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-04-10]
CHR Extension: (Tmavý režim - tmavá čtečka pro Сhrome) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjbmfigjpgnehjioicaalopaikcnheo [2025-01-29]
CHR Extension: (FormApps Extension) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2024-04-15]
CHR Extension: (Boční lišta záložek) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdbnofccmhefkmjbkkdkfiicjkgofkdh [2024-08-08]
CHR Extension: (Disconnect) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeoacafpbcihiomhlakheieifhpjdfeo [2025-01-16]
CHR Extension: (Tmavý režim - tmavá čtečka pro Сhrome) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhhjdfldilccfllhlbjdlhknlfbhpgeg [2024-08-05]
CHR Extension: (ChroPath) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljngjbnaijcbncmcnjfhigebomdlkcjo [2023-09-28]
CHR Extension: (Markdown Reader) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\medapdbncneneejhbgcjceippjlfkmkg [2025-06-09]
CHR Extension: (Ghostery Tracker & Ad Blocker - Privacy AdBlock) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2025-06-09]
CHR Extension: (SingleFile) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpiodijhokgodhhofbcjdecpffjipkle [2025-04-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-09-28]
CHR Extension: (ESET Browser Privacy & Security) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\oombnmpbbhbakfpfgdflaajkhicgfaam [2025-06-12]
CHR Extension: (Privacy Badger) - C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkehgijcmpdhfbdbbnkijodmdjhbjlgp [2025-06-03]
CHR HKU\S-1-5-21-376349657-598784215-588274030-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKU\S-1-5-21-376349657-598784215-588274030-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [oombnmpbbhbakfpfgdflaajkhicgfaam]
Opera:
=======
OPR DefaultProfile: Default
Brave:
=======
BRA Profile: C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-06-09]
BRA Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-06-09]
BRA Extension: (ESET Browser Privacy & Security) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\oombnmpbbhbakfpfgdflaajkhicgfaam [2025-06-09]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-06-09]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-06-09]
BRA Extension: (Brave NTP background images) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-06-09]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-06-09]
BRA Extension: (Wallet Data Files Updater) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2024-01-22]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-06-09]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2025-06-09]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-06-09]
BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2023-10-27]
BRA Extension: (Brave Ads Resources) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2025-06-09]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-06-09]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-06-09]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2025-06-09]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Vali\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-10-27]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [599944 2014-12-05] (Autodesk, Inc -> Autodesk Inc.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.)
S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.)
S2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [31160 2015-02-05] (Autodesk, Inc -> Autodesk, Inc.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-10-27] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\elevation_service.exe [3205712 2025-06-11] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-10-27] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1079608 2025-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9203944 2025-05-02] (Microsoft Corporation -> Microsoft Corporation)
R2 DbxSvc; C:\WINDOWS\System32\DbxSvc.exe [58984 2025-04-29] (Dropbox, Inc -> Dropbox, Inc.)
R2 dlpsrv; C:\Program Files\ESET\ESET Secure Data\dlpsrv.exe [770528 2025-02-12] (ESET, spol. s r.o. -> ESET)
S3 DropboxElevationService; C:\Program Files (x86)\Dropbox\Client\226.4.5094\DropboxElevationService.exe [1659280 2025-06-09] (Dropbox, Inc -> Dropbox, Inc.)
S2 DropboxUpdaterInternalService123.0.6299.109; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.109\updater.exe [5895032 2025-03-21] (Dropbox, Inc -> Dropbox, Inc.)
S2 DropboxUpdaterService123.0.6299.109; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.109\updater.exe [5895032 2025-03-21] (Dropbox, Inc -> Dropbox, Inc.)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5559152 2025-05-06] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4582480 2025-05-06] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4582480 2025-05-06] (ESET, spol. s r.o. -> ESET)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.091.0512.0001\FileSyncHelper.exe [3622208 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
R2 HPAppHelperCap; C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe [928192 2024-06-12] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\Program Files\HP\HP Enabling Services\DiagsCap.exe [926760 2024-06-12] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\Program Files\HP\HP Enabling Services\NetworkCap.exe [922560 2024-06-12] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe [927680 2024-06-12] (HP Inc. -> HP Inc.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvhdc.inf_amd64_099fefb828187fdc\Display.NvContainer\NVDisplay.Container.exe [1275560 2025-03-10] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.091.0512.0001\OneDriveUpdaterService.exe [3873608 2025-06-09] (Microsoft Corporation -> Microsoft Corporation)
R2 PSI_SVC_2_x64; C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
S3 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [22442808 2024-09-03] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 VSInstallerElevationService; C:\Program Files (x86)\Microsoft Visual Studio\Installer\VSInstallerElevationService.exe [41928 2023-10-26] (Microsoft Corporation -> Microsoft)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinFsp.Launcher; C:\Program Files (x86)\WinFsp\bin\launcher-x64.exe [34592 2022-12-05] (NAVIMATICS LLC -> Navimatics LLC)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [84864 2024-11-04] (Microsoft Windows Hardware Compatibility Publisher -> wch.cn)
R0 DLMFENC; C:\WINDOWS\System32\DRIVERS\DLMFENC.sys [193912 2025-02-28] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
R0 DLPCRYPT; C:\WINDOWS\System32\DRIVERS\dlpcrypt.sys [121728 2022-08-24] (DESlock Limited -> DESlock Ltd.)
R0 dlpvdisk; C:\WINDOWS\System32\DRIVERS\dlpvdisk.sys [127320 2025-02-28] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [227224 2025-05-06] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [121816 2025-05-06] (Microsoft Windows Hardware Compatibility Publisher -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2024-03-21] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [266944 2025-05-06] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [57304 2025-05-06] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [86200 2025-05-06] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [128512 2025-05-06] (ESET, spol. s r.o. -> ESET)
R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [69984 2024-01-18] (WDKTestCert Nmap,133147429230506937 -> Insecure.Com LLC.)
R3 rtump64x64; C:\WINDOWS\System32\drivers\rtump64x64.sys [1418184 2024-04-21] (Realtek Semiconductor Corp. -> Realtek Corporation)
R0 VDLPToken2; C:\WINDOWS\System32\DRIVERS\vdlptkn2.sys [157256 2025-02-12] (ESET, spol. s r.o. -> ESET, spol. s r.o.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WinFsp; C:\Program Files (x86)\WinFsp\bin\winfsp-x64.sys [165936 2022-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Navimatics LLC)
U4 npcap_wifi; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-06-12 07:31 - 2025-06-12 07:32 - 000037118 _____ C:\Users\Vali\Desktop\FRST.txt
2025-06-12 07:27 - 2025-06-12 07:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2025-06-12 07:23 - 2025-06-12 07:24 - 002406912 _____ (Farbar) C:\Users\Vali\Desktop\FRST64.exe
2025-06-10 20:13 - 2025-06-10 20:13 - 000000000 ___HD C:\$WinREAgent
2025-06-05 21:07 - 2025-06-05 21:07 - 000489704 _____ C:\Users\Vali\Downloads\manual_bsc3_cs.pdf
2025-06-04 19:45 - 2025-06-12 07:28 - 000003326 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2025-05-19 12:44 - 2025-05-19 12:54 - 000000000 ____D C:\Users\Vali\AppData\Roaming\FileZilla
2025-05-19 12:44 - 2025-05-19 12:53 - 000000000 ____D C:\Users\Vali\AppData\Local\FileZilla
2025-05-19 12:44 - 2025-05-19 12:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2025-05-19 12:44 - 2025-05-19 12:44 - 000000000 ____D C:\Program Files\FileZilla FTP Client
2025-05-19 12:43 - 2025-05-19 12:43 - 012858904 _____ (Tim Kosse) C:\Users\Vali\Downloads\FileZilla_3.69.1_win64_sponsored2-setup.exe
2025-05-17 20:35 - 2025-05-17 20:35 - 000022680 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-05-17 20:31 - 2025-05-17 20:31 - 000022680 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-05-13 21:28 - 2025-05-13 21:28 - 000000000 ____D C:\Users\Vali\Downloads\OSX10201-GGR1
2025-05-13 20:58 - 2025-06-10 19:29 - 000001347 _____ C:\Users\Vali\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1Password.lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-06-12 07:32 - 2023-10-21 21:41 - 000000000 ____D C:\Users\Vali\.platformio
2025-06-12 07:32 - 2023-10-21 21:40 - 000000000 ____D C:\Users\Vali\AppData\Roaming\Code
2025-06-12 07:32 - 2020-06-27 14:20 - 000000000 ____D C:\FRST
2025-06-12 07:31 - 2023-10-27 18:34 - 000002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-06-12 07:31 - 2023-09-28 05:15 - 000000000 ____D C:\Users\Vali\AppData\Local\Packages
2025-06-12 07:31 - 2023-05-05 14:27 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-06-12 07:31 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-06-12 07:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-06-12 07:28 - 2024-02-13 22:10 - 000000670 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2025-06-12 07:27 - 2023-10-02 06:09 - 000000000 ____D C:\Users\Vali\AppData\Local\Dropbox
2025-06-12 07:27 - 2023-10-02 06:08 - 000000000 ____D C:\Program Files (x86)\Dropbox
2025-06-12 07:26 - 2023-09-27 22:52 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-06-12 07:26 - 2019-12-07 16:41 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2025-06-12 07:26 - 2019-12-07 16:41 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2025-06-12 07:26 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-06-12 07:21 - 2023-09-28 06:45 - 000000000 ____D C:\Users\Vali\AppData\Roaming\1Password
2025-06-12 07:20 - 2023-09-28 05:14 - 000000000 ____D C:\Users\Vali
2025-06-12 07:20 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-06-12 07:19 - 2023-09-28 06:37 - 000000000 ____D C:\ProgramData\NVIDIA
2025-06-12 07:19 - 2023-09-27 22:38 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-06-12 07:19 - 2020-07-19 20:31 - 000008192 ___SH C:\DumpStack.log.tmp
2025-06-12 07:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2025-06-10 21:21 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2025-06-10 21:20 - 2023-09-27 22:35 - 000987536 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-06-10 21:18 - 2024-02-13 22:10 - 000000000 ____D C:\Program Files\CCleaner
2025-06-10 21:18 - 2023-12-04 22:33 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2025-06-10 21:17 - 2024-07-10 16:54 - 000000000 ____D C:\WINDOWS\system32\compatrel
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-06-10 21:17 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2025-06-10 20:44 - 2023-09-27 22:35 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-06-10 20:39 - 2023-10-01 16:04 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-06-10 20:35 - 2023-10-01 16:04 - 216824056 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-06-10 20:35 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-06-10 20:28 - 2023-09-27 22:40 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-06-10 19:29 - 2023-09-28 06:44 - 000000000 ____D C:\Users\Vali\AppData\Local\1Password
2025-06-09 21:51 - 2024-02-13 22:16 - 000000000 ____D C:\Users\Vali\Documents\registry_zaloha
2025-06-09 21:51 - 2023-10-08 21:05 - 000000000 ____D C:\Users\Vali\AppData\Local\RealVNC
2025-06-09 21:48 - 2023-11-06 20:12 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-06-09 21:48 - 2023-10-26 17:17 - 000000000 ____D C:\Users\Vali\AppData\Local\CrashDumps
2025-06-09 20:29 - 2025-03-18 10:10 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-06-09 20:29 - 2025-02-05 22:16 - 000003534 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-376349657-598784215-588274030-1002
2025-06-09 20:29 - 2025-02-05 22:16 - 000003534 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-376349657-598784215-588274030-1001
2025-06-09 20:29 - 2023-12-01 22:43 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-376349657-598784215-588274030-1001
2025-06-09 20:29 - 2023-12-01 22:43 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2025-06-09 20:29 - 2023-10-01 17:47 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-376349657-598784215-588274030-1002
2025-06-09 20:28 - 2024-02-13 22:10 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2025-06-09 20:28 - 2023-11-06 20:10 - 000004258 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1699294200
2025-06-09 20:28 - 2023-11-06 20:10 - 000001379 _____ C:\Users\Vali\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2025-06-09 20:23 - 2023-09-27 22:38 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-06-04 19:46 - 2023-10-21 21:23 - 000000000 ____D C:\Users\Vali\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
2025-06-02 21:41 - 2024-03-06 22:16 - 000000000 ____D C:\Users\Vali\AppData\Roaming\gsak
2025-06-02 20:36 - 2023-10-01 21:44 - 000000033 _____ C:\Users\Vali\AppData\Roaming\AdobeWLCMCache.dat
2025-05-30 10:08 - 2023-09-28 07:35 - 000000000 ____D C:\Users\Vali\AppData\Roaming\Microsoft\Excel
2025-05-20 06:32 - 2024-04-02 13:21 - 000000000 ____D C:\Users\Tami\AppData\LocalLow\NVIDIA
2025-05-20 06:32 - 2023-10-01 17:45 - 000000000 ____D C:\Users\Tami\AppData\Local\Packages
2025-05-19 07:41 - 2023-09-27 22:38 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-05-19 07:41 - 2023-09-27 22:38 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-05-18 14:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-05-18 14:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2025-05-18 14:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2025-05-18 14:09 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2025-05-16 20:20 - 2024-10-13 21:42 - 000000000 ____D C:\Program Files\Microsoft Office
==================== Files in the root of some directories ========
2023-10-01 21:44 - 2025-06-02 20:36 - 000000033 _____ () C:\Users\Vali\AppData\Roaming\AdobeWLCMCache.dat
2023-10-15 19:16 - 2024-02-27 17:08 - 000000615 _____ () C:\Users\Vali\AppData\Local\oobelibMkey.log
2024-01-15 11:56 - 2025-02-08 21:44 - 000000128 _____ () C:\Users\Vali\AppData\Local\PUTTY.RND
2024-10-06 20:27 - 2025-02-27 08:29 - 000007601 _____ () C:\Users\Vali\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================