díky za kontrolu logu
Napsal: 31 srp 2025 21:02
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-08-2025
Ran by Michal (administrator) on DESKTOP-RV3QMI2 (Dell Inc. Precision 7520) (31-08-2025 21:58:42)
Running from D:\Stažené soubory\FRST64.exe
Loaded Profiles: Michal
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6218 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApntEx.exe
(Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.UserProcess.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\DCF\Dell.Update.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> ) C:\Program Files\Dell\DTP\DiagnosticsSubAgent\Dell.TechHub.Diagnostics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\MyDell\Manager\Dell.UCA.Manager.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\TechHub\Dell.CoreServices.Client.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\AnalyticsSubAgent\Dell.TechHub.Analytics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\DataManagerSubAgent\Dell.TechHub.DataManager.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3>
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApMsgFwd.exe
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\hidfind.exe
(DellTPad\Apoint.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\ApRemote.exe
(DellTPad\HidMonitorSvc.exe ->) (ALPS ALPINE CO.,LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\Apoint.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_cbb03399d84fb105\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cbb03399d84fb105\igfxEM.exe
(explorer.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <19>
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) ("STMicroelectronics Srl" -> ) C:\Windows\System32\drivers\DellFFDPWmiService.exe
(services.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\HidMonitorSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(services.exe ->) (Dell Technologies Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(services.exe ->) (Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(services.exe ->) (Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(services.exe ->) (Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(services.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\TechHub\Dell.TechHub.exe
(services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cbb03399d84fb105\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_c2c5b0e17a28a48f\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_8d952ce997b81e9f\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a86553666349ef35\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a86553666349ef35\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_7ed3bacbb0a8cc67\RstMwService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\UshUpgradeService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostControlService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostStorageService.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_55b4d7f477f8d6f2\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_55b4d7f477f8d6f2\NVWMI\nvWmi64.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
(svchost.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt\IGCC.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [798456 2025-07-29] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11235920 2020-04-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617568 2020-04-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => c:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1235160 2019-09-26] (Waves Inc -> Waves Audio Ltd.)
HKLM-x32\...\Run: [Reader_Sl] => C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\reader_sl.exe [4312128 2024-11-24] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1
HKLM\...\Policies\Explorer: [NoPublishingWizard] 1
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45988576 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Policies\Explorer: [NoInstrumentation] 1
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\139.0.7258.139\Installer\chrmstp.exe [2025-08-24] (Google LLC -> Google LLC)
Startup: C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ctfmon – zástupce.lnk [2022-07-28]
ShortcutTarget: ctfmon – zástupce.lnk -> C:\Windows\System32\ctfmon.exe (Microsoft Windows -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {237E5F36-4777-4E7D-B3BA-B8F5CE533A0C} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [8943920 2025-07-18] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {2E85C14A-0543-49B1-B5C5-D681D9D21430} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5490936 2025-07-29] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {32175321-8173-41D8-8B64-13A7E40F82E6} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2564904 2024-11-19] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {FAE1F9E4-7621-4AB3-8DD9-C64DEFF37427} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {84708A9C-1B6B-4C8E-ADC2-AEB3EA1E1F36} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6140640 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "0ddc36cd-4798-4351-8296-eeba40e894fb" --version "6.39.0.11548" --silent
Task: {D60A66E4-BE73-4231-A7F9-5B83B7590AB0} - System32\Tasks\CCleanerSkipUAC - Michal => C:\Program Files\CCleaner\CCleaner.exe [39822560 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {EC62AEE0-9F2E-41F3-92DF-996CA664650B} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\FrameworkAgents\SupportAssistInstaller.exe [1256104 2025-04-04] (Dell Technologies Inc. -> Dell Inc.) -> C:\Program Files\Dell\SupportAssistAgent\bin\AutoUpdate
Task: {E4723D72-7C9E-4ECB-B04F-5EB605D22D2C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem141.0.7340.0{35DFD24C-6125-4770-9E03-FCAA9508608A} => C:\Program Files (x86)\Google\GoogleUpdater\141.0.7340.0\updater.exe [6813336 2025-08-06] (Google LLC -> Google LLC)
Task: {CFF2E762-F829-4EA9-A227-34DDAF0194CB} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [79312 2025-05-17] (HP Inc. -> HP Inc.)
Task: {BB3F12EE-C66A-4D9F-996C-89392CD81661} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [79312 2025-05-17] (HP Inc. -> HP Inc.)
Task: {C991C521-3423-4F7D-A40B-38AA7585B716} - System32\Tasks\Intel\Intel® Management and Security Status => "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" -> "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" 60
Task: {C9EF5D5A-5C60-4A57-8FC1-C8A8BEB82A50} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {2B0D3F56-980D-4C39-A3C9-8A5368625132} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {46D79621-A058-47CF-899E-F9F77494B5D8} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {97759FC0-7AEC-4788-8EB9-D544E1A72D52} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [2302168 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalServiceStart
Task: {2705B1E1-5411-4231-8999-2568C964FD6D} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => c:\windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\start ThunderboltService
Task: {7A5C8C60-252C-4EBC-9CA8-FB67EA394DEA} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe /pushregistration (No File)
Task: {D1EFC07F-0DD4-4EDC-9CC4-F9BA65BE3FF6} - System32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2096064 2017-03-17] (NVIDIA Corporation -> ) -> C:\Program Files\NVIDIA Corporation\nview\/installquiet
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.247.135.116
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}: [DhcpNameServer] 10.247.135.116
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}\05251434841425E414F513: [DhcpNameServer] 192.168.0.2
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}\75C414E4D2432353838383: [DhcpNameServer] 192.168.8.1 192.168.8.1
Tcpip\..\Interfaces\{e6027231-4ade-49d5-be2b-66018e463bcc}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Profile: C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default [2025-08-31]
Edge Extension: (Dokumenty Google offline) - C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-07-14]
Edge Extension: (Edge relevant text changes) - C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default [2025-08-31]
CHR Notifications: Default -> hxxps://www.superzoo.cz
CHR StartupUrls: Default -> "hxxps://www.google.com/"
CHR Extension: (Konečný video downloader) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\elpdbicokgbedckgblmbhoamophfbchi [2025-06-09]
CHR Extension: (Dokumenty Google offline) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-08-30]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-08-30]
CHR Extension: (Picture-in-Picture Extension (by Google)) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkgfoiooedgoejojocmhlaklaeopbecg [2025-02-14]
CHR Extension: (Shazam: Find song names from your browser) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2025-02-11]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-28]
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\System Profile [2025-08-31]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ApHidMonitorService; C:\Windows\system32\DellTPad\HidMonitorSvc.exe [894848 2021-05-25] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7719672 2025-07-29] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1027320 2025-07-29] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1079544 2025-07-29] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-07-28] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8894752 2021-11-18] (BattlEye Innovations e.K. -> )
R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1080544 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [459456 2025-02-14] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [153792 2025-02-14] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [481984 2025-02-14] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [49888 2025-06-06] (Dell Technologies Inc. -> )
R2 DellFFDPWmiService; C:\Windows\System32\drivers\DellFFDPWmiService.exe [41136 2020-08-28] ("STMicroelectronics Srl" -> )
R2 DellTechHub; C:\Program Files\Dell\TechHub\Dell.TechHub.exe [153288 2025-05-30] (Dell Technologies Inc. -> Dell)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2514016 2025-07-28] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
R2 hostcontrolsvc; C:\Windows\System32\HostControlService.exe [815616 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
R2 hoststoragesvc; C:\Windows\System32\HostStorageService.exe [161280 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243664 2025-05-17] (HP Inc. -> HP Inc.)
S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [122792 2025-08-27] (The Document Foundation -> The Document Foundation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_55b4d7f477f8d6f2\Display.NvContainer\NVDisplay.Container.exe [1275536 2025-03-11] (NVIDIA Corporation -> NVIDIA Corporation)
R2 NVWMI; C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_55b4d7f477f8d6f2\NVWMI\nvWmi64.exe [4546728 2025-03-11] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [4537328 2024-10-06] (Rockstar Games, Inc. -> Rockstar Games)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [918456 2025-08-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [148648 2025-04-04] (Dell Technologies Inc. -> Dell Inc.)
R2 ushupgradesvc; C:\Windows\System32\UshUpgradeService.exe [265728 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ApHidfiltrService; C:\Windows\System32\drivers\ApHidfiltr.sys [371312 2021-05-25] (ALPS ALPINE CO.,LTD. -> ALPSALPINE Co., Ltd.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [21072 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [245304 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [391224 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [299600 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [85560 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [29144 2025-07-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [29752 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [281168 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [571984 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [92216 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [72272 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [886864 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [1278032 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\Windows\System32\drivers\aswStm.sys [202296 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [392248 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
R3 DellInstrumentation; C:\Windows\System32\drivers\DellInstrumentation.sys [35896 2025-02-13] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
R3 e1dexpress; C:\Windows\System32\DriverStore\FileRepository\e1d.inf_amd64_a9790eceb25abaff\e1d.sys [622160 2024-05-22] (Intel Corporation -> Intel Corporation)
R0 stdcfltn; C:\Windows\System32\DRIVERS\stdcfltn.sys [30352 2016-10-07] (STMICROELECTRONICS S.R.L. -> ST Microelectronics)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [163048 2022-07-24] (MEDIATEK INC. -> MBB)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz155; \??\C:\Users\Michal\AppData\Local\Temp\cpuz155\cpuz155_x64.sys [X] <==== ATTENTION
U4 HomeGroupProvider; no ImagePath
S3 massfilter; system32\drivers\massfilter.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-08-31 20:53 - 2025-08-31 20:53 - 000000000 _____ C:\Windows\invcol.tmp
2025-08-31 20:52 - 2025-08-31 21:57 - 000002788 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2025-08-31 20:52 - 2025-08-31 21:57 - 000000670 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2025-08-31 20:21 - 2025-08-31 20:21 - 000000000 ____D C:\Users\Michal\AppData\Roaming\NVIDIA
2025-08-31 20:21 - 2025-08-31 20:21 - 000000000 ____D C:\Users\Michal\AppData\Roaming\LibreOffice
2025-08-31 20:20 - 2025-08-31 20:20 - 000001181 _____ C:\Users\Public\Desktop\LibreOffice 25.8.lnk
2025-08-31 20:20 - 2025-08-31 20:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice
2025-08-31 20:20 - 2025-08-31 20:20 - 000000000 ____D C:\Program Files\LibreOffice
2025-08-31 14:59 - 2025-08-31 14:59 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Bibliography
2025-08-31 09:48 - 2025-08-31 09:48 - 000001163 _____ C:\Users\Public\Desktop\Foxit PDF Reader.lnk
2025-08-31 09:48 - 2025-08-31 09:48 - 000000000 ____D C:\Users\Michal\AppData\LocalLow\webviewdata
2025-08-31 09:48 - 2025-08-31 09:48 - 000000000 ____D C:\Users\Default\AppData\Roaming\Foxit Software
2025-08-31 09:48 - 2025-08-31 09:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PDF Reader
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-08-31 21:58 - 2025-04-25 22:09 - 000003296 _____ C:\Windows\system32\Tasks\Dell SupportAssistAgent AutoUpdate
2025-08-31 21:58 - 2023-05-21 22:12 - 000002618 _____ C:\Windows\system32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-08-31 21:58 - 2023-04-24 21:34 - 000000000 ____D C:\FRST
2025-08-31 21:58 - 2022-07-28 13:04 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-08-31 21:58 - 2022-07-28 13:04 - 000003342 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-08-31 21:58 - 2022-07-28 10:42 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2025-08-31 21:57 - 2024-07-02 19:06 - 000003194 _____ C:\Windows\system32\Tasks\CCleaner Update
2025-08-31 21:57 - 2022-07-31 15:00 - 000002254 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - Michal
2025-08-31 21:44 - 2022-07-28 10:34 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-08-31 21:06 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2025-08-31 21:00 - 2022-07-28 13:49 - 000000000 ____D C:\Users\Michal\AppData\Local\CrashDumps
2025-08-31 20:55 - 2022-07-28 11:45 - 000762592 _____ C:\Windows\system32\perfh019.dat
2025-08-31 20:55 - 2022-07-28 11:45 - 000152284 _____ C:\Windows\system32\perfc019.dat
2025-08-31 20:55 - 2022-07-28 10:43 - 002606902 _____ C:\Windows\system32\PerfStringBackup.INI
2025-08-31 20:55 - 2019-12-07 16:43 - 000719734 _____ C:\Windows\system32\perfh005.dat
2025-08-31 20:55 - 2019-12-07 16:43 - 000145860 _____ C:\Windows\system32\perfc005.dat
2025-08-31 20:55 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2025-08-31 20:52 - 2022-07-28 13:02 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Teams
2025-08-31 20:51 - 2023-05-21 22:12 - 000000000 ____D C:\ProgramData\NVIDIA
2025-08-31 20:51 - 2022-07-31 15:00 - 000000000 ____D C:\Program Files\CCleaner
2025-08-31 20:51 - 2022-07-28 11:51 - 000000000 __SHD C:\Users\Michal\IntelGraphicsProfiles
2025-08-31 20:50 - 2023-05-31 11:01 - 000008192 ___SH C:\DumpStack.log.tmp
2025-08-31 20:50 - 2023-05-15 20:01 - 000000000 ____D C:\Program Files\WinRAR
2025-08-31 20:50 - 2022-07-28 11:48 - 000000000 ____D C:\Windows\SystemTemp
2025-08-31 20:50 - 2022-07-28 11:19 - 000000000 ____D C:\Intel
2025-08-31 20:50 - 2022-07-28 10:52 - 000473693 _____ C:\Windows\system32\CVFirmwareUpgradeLog.txt
2025-08-31 20:50 - 2022-07-28 10:40 - 000000000 ____D C:\ProgramData\Avast Software
2025-08-31 20:50 - 2022-07-28 10:34 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-08-31 20:50 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2025-08-31 20:50 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-08-31 20:50 - 2019-12-07 11:03 - 000786432 _____ C:\Windows\system32\config\BBI
2025-08-31 20:30 - 2022-10-16 04:35 - 000000000 ____D C:\Program Files (x86)\Steam
2025-08-31 20:17 - 2022-07-28 10:38 - 000000000 ____D C:\Users\Michal\AppData\Local\Packages
2025-08-31 20:17 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2025-08-31 20:16 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2025-08-31 20:03 - 2023-07-29 07:31 - 000000000 ____D C:\Program Files\KMSpico
2025-08-31 20:03 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-08-31 16:27 - 2022-07-28 16:42 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Excel
2025-08-31 14:56 - 2022-07-28 10:37 - 000000000 ____D C:\Users\Michal
2025-08-31 09:48 - 2022-07-28 12:29 - 000000000 ____D C:\Users\Public\Foxit Software
2025-08-31 09:47 - 2022-08-29 21:32 - 000000000 ____D C:\ProgramData\Package Cache
2025-08-31 09:46 - 2024-02-29 20:36 - 000180510 _____ C:\Users\Michal\Desktop\Prachárna platby 08_2025.pdf
2025-08-30 09:39 - 2023-07-04 08:16 - 000000000 ____D C:\Users\Michal\AppData\Local\Spotify
2025-08-30 09:28 - 2023-07-04 08:15 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Spotify
2025-08-30 09:26 - 2024-10-01 19:20 - 000000415 _____ C:\Users\Michal\Desktop\Sofisa_Michal_07_08_25.txt
2025-08-30 08:59 - 2024-10-28 15:24 - 000000000 ____D C:\Users\Michal\AppData\Roaming\vlc
2025-08-27 06:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2025-08-27 06:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2025-08-26 18:38 - 2022-07-28 10:38 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2025-08-24 08:58 - 2022-07-28 10:48 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-08-24 08:58 - 2022-07-28 10:48 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-08-20 14:03 - 2025-01-07 21:26 - 000056128 _____ (Gen Digital Inc.) C:\Windows\system32\icarus_rvrt.exe
2025-08-15 14:16 - 2023-01-22 15:40 - 000000000 ____D C:\Program Files\Dell
2025-08-15 13:44 - 2022-09-07 22:05 - 000007597 _____ C:\Users\Michal\AppData\Local\Resmon.ResmonCfg
2025-08-15 09:21 - 2022-07-31 16:13 - 000000000 ____D C:\Users\Michal\AppData\Roaming\AIMP
2025-08-13 21:11 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-08-13 21:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2025-08-13 19:15 - 2022-07-28 11:13 - 000000000 ____D C:\Windows\system32\MRT
2025-08-13 19:13 - 2022-07-28 11:13 - 223939376 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-08-02 21:20 - 2022-07-28 10:38 - 000000000 ____D C:\ProgramData\Packages
==================== Files in the root of some directories ========
2022-09-07 22:05 - 2025-08-15 13:44 - 000007597 _____ () C:\Users\Michal\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Ran by Michal (administrator) on DESKTOP-RV3QMI2 (Dell Inc. Precision 7520) (31-08-2025 21:58:42)
Running from D:\Stažené soubory\FRST64.exe
Loaded Profiles: Michal
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6218 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApntEx.exe
(Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.UserProcess.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\DCF\Dell.Update.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> ) C:\Program Files\Dell\DTP\DiagnosticsSubAgent\Dell.TechHub.Diagnostics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\MyDell\Manager\Dell.UCA.Manager.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\TechHub\Dell.CoreServices.Client.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\AnalyticsSubAgent\Dell.TechHub.Analytics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\DataManagerSubAgent\Dell.TechHub.DataManager.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3>
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApMsgFwd.exe
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\hidfind.exe
(DellTPad\Apoint.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\ApRemote.exe
(DellTPad\HidMonitorSvc.exe ->) (ALPS ALPINE CO.,LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\Apoint.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_cbb03399d84fb105\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cbb03399d84fb105\igfxEM.exe
(explorer.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <19>
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) ("STMicroelectronics Srl" -> ) C:\Windows\System32\drivers\DellFFDPWmiService.exe
(services.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\HidMonitorSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(services.exe ->) (Dell Technologies Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(services.exe ->) (Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(services.exe ->) (Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(services.exe ->) (Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(services.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\TechHub\Dell.TechHub.exe
(services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cbb03399d84fb105\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_c2c5b0e17a28a48f\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_8d952ce997b81e9f\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a86553666349ef35\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a86553666349ef35\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_7ed3bacbb0a8cc67\RstMwService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\UshUpgradeService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostControlService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostStorageService.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_55b4d7f477f8d6f2\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_55b4d7f477f8d6f2\NVWMI\nvWmi64.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
(svchost.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt\IGCC.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [798456 2025-07-29] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11235920 2020-04-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617568 2020-04-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => c:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1235160 2019-09-26] (Waves Inc -> Waves Audio Ltd.)
HKLM-x32\...\Run: [Reader_Sl] => C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\reader_sl.exe [4312128 2024-11-24] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1
HKLM\...\Policies\Explorer: [NoPublishingWizard] 1
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45988576 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Policies\Explorer: [NoInstrumentation] 1
HKU\S-1-5-21-2238093209-2022152676-238686933-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\139.0.7258.139\Installer\chrmstp.exe [2025-08-24] (Google LLC -> Google LLC)
Startup: C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ctfmon – zástupce.lnk [2022-07-28]
ShortcutTarget: ctfmon – zástupce.lnk -> C:\Windows\System32\ctfmon.exe (Microsoft Windows -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {237E5F36-4777-4E7D-B3BA-B8F5CE533A0C} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [8943920 2025-07-18] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {2E85C14A-0543-49B1-B5C5-D681D9D21430} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5490936 2025-07-29] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {32175321-8173-41D8-8B64-13A7E40F82E6} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2564904 2024-11-19] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {FAE1F9E4-7621-4AB3-8DD9-C64DEFF37427} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {84708A9C-1B6B-4C8E-ADC2-AEB3EA1E1F36} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6140640 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "0ddc36cd-4798-4351-8296-eeba40e894fb" --version "6.39.0.11548" --silent
Task: {D60A66E4-BE73-4231-A7F9-5B83B7590AB0} - System32\Tasks\CCleanerSkipUAC - Michal => C:\Program Files\CCleaner\CCleaner.exe [39822560 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {EC62AEE0-9F2E-41F3-92DF-996CA664650B} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\FrameworkAgents\SupportAssistInstaller.exe [1256104 2025-04-04] (Dell Technologies Inc. -> Dell Inc.) -> C:\Program Files\Dell\SupportAssistAgent\bin\AutoUpdate
Task: {E4723D72-7C9E-4ECB-B04F-5EB605D22D2C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem141.0.7340.0{35DFD24C-6125-4770-9E03-FCAA9508608A} => C:\Program Files (x86)\Google\GoogleUpdater\141.0.7340.0\updater.exe [6813336 2025-08-06] (Google LLC -> Google LLC)
Task: {CFF2E762-F829-4EA9-A227-34DDAF0194CB} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [79312 2025-05-17] (HP Inc. -> HP Inc.)
Task: {BB3F12EE-C66A-4D9F-996C-89392CD81661} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [79312 2025-05-17] (HP Inc. -> HP Inc.)
Task: {C991C521-3423-4F7D-A40B-38AA7585B716} - System32\Tasks\Intel\Intel® Management and Security Status => "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" -> "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" 60
Task: {C9EF5D5A-5C60-4A57-8FC1-C8A8BEB82A50} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {2B0D3F56-980D-4C39-A3C9-8A5368625132} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {46D79621-A058-47CF-899E-F9F77494B5D8} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {97759FC0-7AEC-4788-8EB9-D544E1A72D52} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [2302168 2018-12-25] (Intel(R) Client Connectivity Division SW -> Intel Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalServiceStart
Task: {2705B1E1-5411-4231-8999-2568C964FD6D} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => c:\windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> C:\Program Files (x86)\Intel\Thunderbolt Software\\start ThunderboltService
Task: {7A5C8C60-252C-4EBC-9CA8-FB67EA394DEA} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe /pushregistration (No File)
Task: {D1EFC07F-0DD4-4EDC-9CC4-F9BA65BE3FF6} - System32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2096064 2017-03-17] (NVIDIA Corporation -> ) -> C:\Program Files\NVIDIA Corporation\nview\/installquiet
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.247.135.116
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}: [DhcpNameServer] 10.247.135.116
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}\05251434841425E414F513: [DhcpNameServer] 192.168.0.2
Tcpip\..\Interfaces\{2f698019-3819-4aca-a144-560a4eac2d09}\75C414E4D2432353838383: [DhcpNameServer] 192.168.8.1 192.168.8.1
Tcpip\..\Interfaces\{e6027231-4ade-49d5-be2b-66018e463bcc}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Profile: C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default [2025-08-31]
Edge Extension: (Dokumenty Google offline) - C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-07-14]
Edge Extension: (Edge relevant text changes) - C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default [2025-08-31]
CHR Notifications: Default -> hxxps://www.superzoo.cz
CHR StartupUrls: Default -> "hxxps://www.google.com/"
CHR Extension: (Konečný video downloader) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\elpdbicokgbedckgblmbhoamophfbchi [2025-06-09]
CHR Extension: (Dokumenty Google offline) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-08-30]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-08-30]
CHR Extension: (Picture-in-Picture Extension (by Google)) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkgfoiooedgoejojocmhlaklaeopbecg [2025-02-14]
CHR Extension: (Shazam: Find song names from your browser) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2025-02-11]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-28]
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\System Profile [2025-08-31]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ApHidMonitorService; C:\Windows\system32\DellTPad\HidMonitorSvc.exe [894848 2021-05-25] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7719672 2025-07-29] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1027320 2025-07-29] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1079544 2025-07-29] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-07-28] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8894752 2021-11-18] (BattlEye Innovations e.K. -> )
R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1080544 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [459456 2025-02-14] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [153792 2025-02-14] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [481984 2025-02-14] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [49888 2025-06-06] (Dell Technologies Inc. -> )
R2 DellFFDPWmiService; C:\Windows\System32\drivers\DellFFDPWmiService.exe [41136 2020-08-28] ("STMicroelectronics Srl" -> )
R2 DellTechHub; C:\Program Files\Dell\TechHub\Dell.TechHub.exe [153288 2025-05-30] (Dell Technologies Inc. -> Dell)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2514016 2025-07-28] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
R2 hostcontrolsvc; C:\Windows\System32\HostControlService.exe [815616 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
R2 hoststoragesvc; C:\Windows\System32\HostStorageService.exe [161280 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243664 2025-05-17] (HP Inc. -> HP Inc.)
S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [122792 2025-08-27] (The Document Foundation -> The Document Foundation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_55b4d7f477f8d6f2\Display.NvContainer\NVDisplay.Container.exe [1275536 2025-03-11] (NVIDIA Corporation -> NVIDIA Corporation)
R2 NVWMI; C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_55b4d7f477f8d6f2\NVWMI\nvWmi64.exe [4546728 2025-03-11] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [4537328 2024-10-06] (Rockstar Games, Inc. -> Rockstar Games)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [918456 2025-08-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [148648 2025-04-04] (Dell Technologies Inc. -> Dell Inc.)
R2 ushupgradesvc; C:\Windows\System32\UshUpgradeService.exe [265728 2019-12-20] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ApHidfiltrService; C:\Windows\System32\drivers\ApHidfiltr.sys [371312 2021-05-25] (ALPS ALPINE CO.,LTD. -> ALPSALPINE Co., Ltd.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [21072 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [245304 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [391224 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [299600 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [85560 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [29144 2025-07-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [29752 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [281168 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [571984 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [92216 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [72272 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [886864 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [1278032 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\Windows\System32\drivers\aswStm.sys [202296 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [392248 2025-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
R3 DellInstrumentation; C:\Windows\System32\drivers\DellInstrumentation.sys [35896 2025-02-13] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
R3 e1dexpress; C:\Windows\System32\DriverStore\FileRepository\e1d.inf_amd64_a9790eceb25abaff\e1d.sys [622160 2024-05-22] (Intel Corporation -> Intel Corporation)
R0 stdcfltn; C:\Windows\System32\DRIVERS\stdcfltn.sys [30352 2016-10-07] (STMICROELECTRONICS S.R.L. -> ST Microelectronics)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [163048 2022-07-24] (MEDIATEK INC. -> MBB)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz155; \??\C:\Users\Michal\AppData\Local\Temp\cpuz155\cpuz155_x64.sys [X] <==== ATTENTION
U4 HomeGroupProvider; no ImagePath
S3 massfilter; system32\drivers\massfilter.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-08-31 20:53 - 2025-08-31 20:53 - 000000000 _____ C:\Windows\invcol.tmp
2025-08-31 20:52 - 2025-08-31 21:57 - 000002788 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2025-08-31 20:52 - 2025-08-31 21:57 - 000000670 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2025-08-31 20:21 - 2025-08-31 20:21 - 000000000 ____D C:\Users\Michal\AppData\Roaming\NVIDIA
2025-08-31 20:21 - 2025-08-31 20:21 - 000000000 ____D C:\Users\Michal\AppData\Roaming\LibreOffice
2025-08-31 20:20 - 2025-08-31 20:20 - 000001181 _____ C:\Users\Public\Desktop\LibreOffice 25.8.lnk
2025-08-31 20:20 - 2025-08-31 20:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice
2025-08-31 20:20 - 2025-08-31 20:20 - 000000000 ____D C:\Program Files\LibreOffice
2025-08-31 14:59 - 2025-08-31 14:59 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Bibliography
2025-08-31 09:48 - 2025-08-31 09:48 - 000001163 _____ C:\Users\Public\Desktop\Foxit PDF Reader.lnk
2025-08-31 09:48 - 2025-08-31 09:48 - 000000000 ____D C:\Users\Michal\AppData\LocalLow\webviewdata
2025-08-31 09:48 - 2025-08-31 09:48 - 000000000 ____D C:\Users\Default\AppData\Roaming\Foxit Software
2025-08-31 09:48 - 2025-08-31 09:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PDF Reader
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-08-31 21:58 - 2025-04-25 22:09 - 000003296 _____ C:\Windows\system32\Tasks\Dell SupportAssistAgent AutoUpdate
2025-08-31 21:58 - 2023-05-21 22:12 - 000002618 _____ C:\Windows\system32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-08-31 21:58 - 2023-04-24 21:34 - 000000000 ____D C:\FRST
2025-08-31 21:58 - 2022-07-28 13:04 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-08-31 21:58 - 2022-07-28 13:04 - 000003342 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-08-31 21:58 - 2022-07-28 10:42 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2025-08-31 21:57 - 2024-07-02 19:06 - 000003194 _____ C:\Windows\system32\Tasks\CCleaner Update
2025-08-31 21:57 - 2022-07-31 15:00 - 000002254 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - Michal
2025-08-31 21:44 - 2022-07-28 10:34 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-08-31 21:06 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2025-08-31 21:00 - 2022-07-28 13:49 - 000000000 ____D C:\Users\Michal\AppData\Local\CrashDumps
2025-08-31 20:55 - 2022-07-28 11:45 - 000762592 _____ C:\Windows\system32\perfh019.dat
2025-08-31 20:55 - 2022-07-28 11:45 - 000152284 _____ C:\Windows\system32\perfc019.dat
2025-08-31 20:55 - 2022-07-28 10:43 - 002606902 _____ C:\Windows\system32\PerfStringBackup.INI
2025-08-31 20:55 - 2019-12-07 16:43 - 000719734 _____ C:\Windows\system32\perfh005.dat
2025-08-31 20:55 - 2019-12-07 16:43 - 000145860 _____ C:\Windows\system32\perfc005.dat
2025-08-31 20:55 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2025-08-31 20:52 - 2022-07-28 13:02 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Teams
2025-08-31 20:51 - 2023-05-21 22:12 - 000000000 ____D C:\ProgramData\NVIDIA
2025-08-31 20:51 - 2022-07-31 15:00 - 000000000 ____D C:\Program Files\CCleaner
2025-08-31 20:51 - 2022-07-28 11:51 - 000000000 __SHD C:\Users\Michal\IntelGraphicsProfiles
2025-08-31 20:50 - 2023-05-31 11:01 - 000008192 ___SH C:\DumpStack.log.tmp
2025-08-31 20:50 - 2023-05-15 20:01 - 000000000 ____D C:\Program Files\WinRAR
2025-08-31 20:50 - 2022-07-28 11:48 - 000000000 ____D C:\Windows\SystemTemp
2025-08-31 20:50 - 2022-07-28 11:19 - 000000000 ____D C:\Intel
2025-08-31 20:50 - 2022-07-28 10:52 - 000473693 _____ C:\Windows\system32\CVFirmwareUpgradeLog.txt
2025-08-31 20:50 - 2022-07-28 10:40 - 000000000 ____D C:\ProgramData\Avast Software
2025-08-31 20:50 - 2022-07-28 10:34 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-08-31 20:50 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2025-08-31 20:50 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-08-31 20:50 - 2019-12-07 11:03 - 000786432 _____ C:\Windows\system32\config\BBI
2025-08-31 20:30 - 2022-10-16 04:35 - 000000000 ____D C:\Program Files (x86)\Steam
2025-08-31 20:17 - 2022-07-28 10:38 - 000000000 ____D C:\Users\Michal\AppData\Local\Packages
2025-08-31 20:17 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2025-08-31 20:16 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2025-08-31 20:03 - 2023-07-29 07:31 - 000000000 ____D C:\Program Files\KMSpico
2025-08-31 20:03 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-08-31 16:27 - 2022-07-28 16:42 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Excel
2025-08-31 14:56 - 2022-07-28 10:37 - 000000000 ____D C:\Users\Michal
2025-08-31 09:48 - 2022-07-28 12:29 - 000000000 ____D C:\Users\Public\Foxit Software
2025-08-31 09:47 - 2022-08-29 21:32 - 000000000 ____D C:\ProgramData\Package Cache
2025-08-31 09:46 - 2024-02-29 20:36 - 000180510 _____ C:\Users\Michal\Desktop\Prachárna platby 08_2025.pdf
2025-08-30 09:39 - 2023-07-04 08:16 - 000000000 ____D C:\Users\Michal\AppData\Local\Spotify
2025-08-30 09:28 - 2023-07-04 08:15 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Spotify
2025-08-30 09:26 - 2024-10-01 19:20 - 000000415 _____ C:\Users\Michal\Desktop\Sofisa_Michal_07_08_25.txt
2025-08-30 08:59 - 2024-10-28 15:24 - 000000000 ____D C:\Users\Michal\AppData\Roaming\vlc
2025-08-27 06:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2025-08-27 06:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2025-08-26 18:38 - 2022-07-28 10:38 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2025-08-24 08:58 - 2022-07-28 10:48 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-08-24 08:58 - 2022-07-28 10:48 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-08-20 14:03 - 2025-01-07 21:26 - 000056128 _____ (Gen Digital Inc.) C:\Windows\system32\icarus_rvrt.exe
2025-08-15 14:16 - 2023-01-22 15:40 - 000000000 ____D C:\Program Files\Dell
2025-08-15 13:44 - 2022-09-07 22:05 - 000007597 _____ C:\Users\Michal\AppData\Local\Resmon.ResmonCfg
2025-08-15 09:21 - 2022-07-31 16:13 - 000000000 ____D C:\Users\Michal\AppData\Roaming\AIMP
2025-08-13 21:11 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-08-13 21:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2025-08-13 19:15 - 2022-07-28 11:13 - 000000000 ____D C:\Windows\system32\MRT
2025-08-13 19:13 - 2022-07-28 11:13 - 223939376 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-08-02 21:20 - 2022-07-28 10:38 - 000000000 ____D C:\ProgramData\Packages
==================== Files in the root of some directories ========
2022-09-07 22:05 - 2025-08-15 13:44 - 000007597 _____ () C:\Users\Michal\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================