Prosím o kontrolu logu
Napsal: 21 říj 2025 15:23
Prosím o kontrolu logu. Děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-10-2025
Ran by Karel (administrator) on LAPTOP-16MPJ5UM (Acer Aspire A317-51G) (21-10-2025 16:14:55)
Running from C:\Users\Karel\Desktop\FRST64.exe
Loaded Profiles: Karel
Platform: Microsoft Windows 11 Home Version 25H2 26200.6901 (X64) Language: Čeština (Česko)
Default browser: "C:\Users\Karel\AppData\Local\Programs\Opera\opera.exe" -noautoupdate -- "%1"
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ABBYY Software House -> ABBYY Software Ltd) C:\Program Files (x86)\ABBYY Screenshot Reader\ScreenshotReader.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eServiceHost.exe <2>
(C:\Users\Karel\AppData\Local\Programs\Opera\opera.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(C:\Users\Karel\AppData\Local\Programs\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Karel\AppData\Local\Programs\Opera\122.0.5643.142\opera_crashreporter.exe
(C:\Windows\SysWOW64\cmd.exe ->) (Lamantine Software a.s. -> Lamantine Software a.s.) C:\Program Files (x86)\Sticky Password\spNMHost.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_b578901fbed94a8e\igfxCUIService.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b578901fbed94a8e\igfxEM.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(explorer.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Karel\AppData\Local\Programs\Opera\opera.exe <28>
(services.exe ->) (ABBYY Software House -> ABBYY (BIT Software)) C:\Program Files (x86)\ABBYY Screenshot Reader\NetworkLicenseServer.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Huawei Technologies Co., Ltd. -> ) [File not signed] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_581d7e91d349facc\AS\IAS\IntelAudioService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b578901fbed94a8e\igfxCUIService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_3d18534d52d73f63\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_1405215c1cf67526\IntelCpHDCPSvc.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_1405215c1cf67526\IntelCpHeciSvc.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_ef0d14a478b232f4\RstMwService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvaci.inf_amd64_6fdef84a09009897\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Qualcomm Atheros, Inc. -> ) C:\Windows\System32\drivers\QcomWlanSrvx64.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(sihost.exe ->) (EAF76292-FADE-4EAB-A62C-FE5E78661D58 -> ) C:\Program Files\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3044.0_x64__48frkmn4z8aw4\DesktopApp\AcerRegistrationBackGroundTask.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teamsupdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\BackgroundTransferHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1138992 2020-08-05] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [285616 2025-09-10] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [271496 2017-11-02] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [Nero BackItUp] => C:\Program Files (x86)\Nero\Nero 2022\3-2-1 Backup\BackItUp.exe [1306696 2025-04-29] (Nero AG -> Nero AG)
HKLM-x32\...\Run: [ABBYY Screenshot Reader Retail] => C:\Program Files (x86)\ABBYY Screenshot Reader\ScreenShotReader.exe [959776 2008-12-08] (ABBYY Software House -> ABBYY Software Ltd)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-851827749-1828096854-3146880355-1001\...\Run: [ABBYY Screenshot Reader Retail] => [X]
HKU\S-1-5-21-851827749-1828096854-3146880355-1001\...\Run: [MicrosoftEdgeAutoLaunch_EADC2331AEA11A7C2115598A7830EF60] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4265032 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-851827749-1828096854-3146880355-1001\...\Run: [Opera Stable] => C:\Users\Karel\AppData\Local\Programs\Opera\opera.exe [1631704 2025-10-17] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-851827749-1828096854-3146880355-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [41579480 2025-09-29] (Adobe Inc. -> Adobe Systems Incorporated)
HKLM\...\Windows x64\Print Processors\Canon G3020 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDGL.DLL [525824 2021-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\Canon TS9500 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDER.DLL [529408 2020-06-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\x64\hpzpplhn.dll [109288 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS9500 series: C:\Windows\system32\CNMLMER.DLL [950272 2020-06-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\PCL hpz3llhn: C:\Windows\system32\hpz3llhn.dll [44288 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0E68AF70-2267-4C03-8E43-C6EF6B7863DA} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2971808 2021-12-30] (Acer Incorporated -> ) -> C:\Program Files (x86)\Acer\Care Center\-auto
Task: {BC5F1B6E-2B3A-46B0-96BB-9701DC00561C} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [41632 2021-12-30] (Acer Incorporated -> )
Task: {F276ABBB-9430-4579-8E4D-A5C0DFAF2A8A} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4836512 2021-12-30] (Acer Incorporated -> )
Task: {B52D9D75-2811-4E49-A4EB-E9F5AE27B0DE} - System32\Tasks\AcerCMUpdateTask2.5.22250 => C:\Program Files (x86)\Acer\Amundsen\2.5.22250\awc.exe [96904 2022-09-25] (Acer Incorporated -> )
Task: {EF25E847-9BBD-4203-B636-E0E5A62F1F74} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1581568 2025-08-24] (Adobe Inc. -> Adobe Inc.)
Task: {89239216-0F31-4CC5-BD21-FCCD4CA3AD49} - System32\Tasks\CareCenter\Opera Browser Assistant_Reg_HKCURun_S-1-5-21-851827749-1828096854-3146880355-1001 => C:\Users\Karel\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4712920 2025-09-11] (Opera Norway AS -> Opera Software)
Task: {C4FDBD60-27EC-4933-943F-74BBCECC4908} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem142.0.7416.0{2CAED75B-2F12-4E8E-A7A3-869D213403BA} => C:\Program Files (x86)\Google\GoogleUpdater\142.0.7416.0\updater.exe [6863512 2025-09-15] (Google LLC -> Google LLC)
Task: {753C8AB4-B158-47E8-91D7-97C43C60485F} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [10453888 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {FBBAD458-F63D-46EE-8883-8C36A550B5A5} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28583776 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {29209226-21D1-4E62-8500-09A3825AE53F} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE16\opushutil.exe [61328 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {B32C8B8F-DBC7-4EDF-AC62-EDCAA542B0B7} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28583776 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {0C64745F-052E-4331-AC8D-D1EE24DC2461} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {9662B921-1F00-4B9D-A70B-37B05B3CD829} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {6A9280CB-E1C2-48DE-B82F-8AEA7C6185B6} - System32\Tasks\Microsoft\Office\Office Startup Boost => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {EA3E03FA-35F0-4895-9912-985450E4C8A5} - System32\Tasks\Microsoft\Office\Office Startup Boost Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {B71926BC-213C-44A8-94DA-6D44A373FDCD} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {72B8C428-F7A8-496C-99FE-550000B681D7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {D83EBCAC-2D46-4D26-8302-86FE08B9FD36} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {B6915C0E-D113-4132-9566-A25599F39A04} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [693376 2025-10-03] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {449174A1-0056-466C-A9FC-A8EC030DB574} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-851827749-1828096854-3146880355-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [693376 2025-10-03] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {79CFD550-E527-4411-A1A8-4A74154513CB} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Nero\Nero Apps\NeroInfo\NeroInfo.exe [3950928 2025-04-29] (Nero AG -> Nero AG)
Task: {04E50C7F-9BD3-4827-8291-48D4FAA90F30} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [850928 2020-03-18] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {0BEED5FF-78F0-4551-8910-E57576DD0CBB} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [850928 2020-03-18] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {8A173901-A269-43BF-BE8A-84A4BB68D3EA} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3293168 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8C181E83-9296-43BD-8A9D-3301B9510B8F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {80FCB519-585E-42B2-B194-D75651CE7F2F} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0099A389-158E-4216-9305-9E92B0856D06} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4C9D14F3-0565-4307-BA28-306CDB9A3B52} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A2FC42C2-F33C-4800-999C-E3AE506D0534} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4201CAA6-2BDF-4805-9D99-91A4677FE4CD} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {28A6BA29-0993-439C-9422-B90A2A053629} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5B1B551F-CF06-4173-AB8F-97103AF77346} - System32\Tasks\Oem\AcerJumpstartTask => C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe [70792 2022-08-15] (Acer Incorporated -> )
Task: {C78AAC0B-2F5E-45EB-92EB-5174827493E3} - System32\Tasks\OneDrive Startup Task-S-1-5-21-851827749-1828096854-3146880355-1001 => C:\Users\Karel\AppData\Local\Microsoft\OneDrive\25.184.0921.0004\OneDriveLauncher.exe [725880 2025-10-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {77122E2D-67C5-488A-823C-21A5D8BB7DD5} - System32\Tasks\Opera scheduled assistant Autoupdate 1612535774 => C:\Users\Karel\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5063640 2025-10-09] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --installdir="C:\Users\Karel\AppData\Local\Programs\Opera\assistant" --producttype=assistant $(Arg0)
Task: {3782F025-9090-441A-B0E0-7DA81A519ACF} - System32\Tasks\Opera scheduled Autoupdate 1612535771 => C:\Users\Karel\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5063640 2025-10-09] (Opera Norway AS -> Opera Software)
Task: {304632A7-8AA6-4BF7-B96B-23DFB891136D} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-851827749-1828096854-3146880355-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [4717688 2025-10-18] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {A7C5FEF0-7E62-44A1-A8AD-26F28EA3BCEB} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6243960 2025-10-18] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {F4013630-4D41-4639-A0D8-3F7E27597F09} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [8971064 2025-10-14] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
Task: {056F7AAC-536A-4B03-8F52-6828561759BB} - System32\Tasks\Power Button => C:\Program Files\Acer\Quick Access Service\ePowerButton_NB.exe [2771616 2022-01-03] (Acer Incorporated -> Acer Incorporated)
Task: {DE25B126-F93F-4793-8FA9-F28377A0E058} - System32\Tasks\Quick Access => C:\Program Files\Acer\Quick Access Service\QALauncher.exe [446624 2022-01-03] (Acer Incorporated -> Acer Incorporated)
Task: {75F35CB5-EB91-4940-A5B9-5E251C0FD5CC} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [461472 2022-01-03] (Acer Incorporated -> Acer Incorporated)
Task: {78533241-59A4-4080-AFDC-80E5B123DC74} - System32\Tasks\StorPSCTL => C:\Program Files\Acer\StorPSCTL\StorPSCTL.exe [151080 2020-04-01] (Acer Incorporated -> Microsoft)
Task: {3E1AF38C-BE24-4655-94ED-063AD48D5BAA} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program Service\Framework\TriggerFramework.exe [268328 2020-04-15] (Acer Incorporated -> Acer Incorporated)
Task: {C12B31F5-1AA1-4677-89F7-0C929B7CAB94} - System32\Tasks\UEIPInvitation => C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UEIPOOBECheck.exe [2211368 2020-04-15] (Acer Incorporated -> Acer Incorporated)
Task: {6AD93734-2CA9-4314-924C-3CC3E8F4B062} - System32\Tasks\Zoner.Updater.S-1-5-21-851827749-1828096854-3146880355-1001 => C:\ProgramData\Zoner\Zoner.Installer.Core\updater.exe [1591632 2025-10-21] (ZONER a.s. -> ZONER a.s.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{a25a1f13-d718-44a2-8ecc-b026d0c969d2}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{d249dc18-5303-4a00-aad1-2de860c7029e}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Karel\AppData\Local\Microsoft\Edge\User Data\Default [2025-10-21]
Edge Extension: (Dokumenty Google offline) - C:\Users\Karel\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-09-22]
Edge Extension: (Edge relevant text changes) - C:\Users\Karel\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (ESET Browser Privacy & Security) - C:\Users\Karel\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nkapkmklnmidbbgjaipbgpcnbomnaakc [2025-06-20]
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]
FireFox:
========
FF DefaultProfile: u3kngsgi.default
FF ProfilePath: C:\Users\Karel\AppData\Roaming\Mozilla\Firefox\Profiles\u3kngsgi.default [2023-11-14]
FF ProfilePath: C:\Users\Karel\AppData\Roaming\Mozilla\Firefox\Profiles\pw0by2uf.default-release [2025-10-20]
FF Extension: (Graffiti – Balanced) - C:\Users\Karel\AppData\Roaming\Mozilla\Firefox\Profiles\pw0by2uf.default-release\Extensions\graffiti-balanced-colorway@mozilla.org.xpi [2023-03-17]
FF Extension: (FoE - Helper) - C:\Users\Karel\AppData\Roaming\Mozilla\Firefox\Profiles\pw0by2uf.default-release\Extensions\{0668a87f-e3bb-4ed3-a096-e145c1e9f1d2}.xpi [2024-09-03]
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-09-29] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-10-21]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ABBYY.Licensing.FineReader.ScreenshotReader.9.0; C:\Program Files (x86)\ABBYY Screenshot Reader\NetworkLicenseServer.exe [759072 2008-10-27] (ABBYY Software House -> ABBYY (BIT Software))
S4 ACCSvc; C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [259232 2021-12-30] (Acer Incorporated -> Acer Incorporated)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [28276344 2025-10-18] (Gen Digital Inc. -> Gen Digital Inc.)
S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13045112 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5538224 2025-09-10] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4662320 2025-09-10] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4662320 2025-09-10] (ESET, spol. s r.o. -> ESET)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [236864 2021-06-03] (Huawei Technologies Co., Ltd. -> ) [File not signed]
S4 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [445432 2021-04-19] (Canon Inc. -> )
R2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_581d7e91d349facc\AS\IAS\IntelAudioService.exe [412128 2022-10-27] (Intel Corporation -> Intel)
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 NeroBackItUpBackgroundServiceForVerbatim; C:\Program Files (x86)\Nero\Nero 2022\3-2-1 Backup\NBService.exe [319048 2025-04-29] (Nero AG -> Nero AG)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_6fdef84a09009897\Display.NvContainer\NVDisplay.Container.exe [1275608 2025-09-06] (NVIDIA Corporation -> NVIDIA Corporation)
S4 QALSvc; C:\Program Files\Acer\Quick Access Service\QALSvc.exe [466080 2022-01-03] (Acer Incorporated -> Acer Incorporated)
S4 QASvc; C:\Program Files\Acer\Quick Access Service\QASvc.exe [504480 2022-01-03] (Acer Incorporated -> Acer Incorporated)
R2 QcomWlanSrv; C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe [189808 2023-03-19] (Qualcomm Atheros, Inc. -> )
S4 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe [306728 2020-04-15] (Acer Incorporated -> Acer Incorporated)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AcerAirplaneModeController; C:\WINDOWS\System32\DriverStore\FileRepository\acerairplanemodecontroller.inf_amd64_36869d4d52526b5b\AcerAirplaneModeController.sys [36200 2024-06-03] (Acer Incorporated -> Acer Incorporated)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [573440 2025-05-01] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2025-05-01] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-05-01] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [232456 2025-08-14] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [139944 2025-08-14] (Microsoft Windows Hardware Compatibility Publisher -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2022-08-23] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [270136 2025-08-14] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [57352 2025-08-14] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [86792 2025-08-14] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [126024 2025-08-14] (ESET, spol. s r.o. -> ESET)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2021-06-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_25769e03e756857c\rt68cx21x64.sys [905216 2025-07-20] (Realtek Semiconductor Corp. -> Realtek)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [22104 2024-10-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [606624 2024-10-31] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105888 2024-10-31] (Microsoft Windows -> Microsoft Corporation)
S3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2025-05-01] (Microsoft Windows -> Microsoft Corporation)
S3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_a6dc64e436f22951\WSDScan.sys [61440 2025-09-02] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-10-21 16:14 - 2025-10-21 16:15 - 000031033 _____ C:\Users\Karel\Desktop\FRST.txt
2025-10-21 16:14 - 2025-10-21 16:15 - 000000000 ____D C:\FRST
2025-10-21 16:11 - 2025-10-21 16:11 - 002443264 _____ (Farbar) C:\Users\Karel\Desktop\FRST64.exe
2025-10-21 15:04 - 2025-10-21 15:04 - 000713018 _____ C:\WINDOWS\system32\perfh005.dat
2025-10-21 15:04 - 2025-10-21 15:04 - 000153196 _____ C:\WINDOWS\system32\perfc005.dat
2025-10-19 16:07 - 2025-10-19 16:07 - 000075078 _____ C:\Users\Karel\Downloads\Vypis_531533XXXXXX1517_20251014.pdf
2025-10-18 15:28 - 2025-10-21 15:08 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-10-10 10:57 - 2025-10-10 10:57 - 000000000 ____D C:\ProgramData\Whesvc
2025-10-08 11:50 - 2025-10-08 11:50 - 000000000 ____D C:\WINDOWS\Firmware
2025-10-06 17:12 - 2025-10-06 17:12 - 000002257 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk
2025-10-06 17:12 - 2025-10-06 17:12 - 000002245 _____ C:\Users\Public\Desktop\Google Earth Pro.lnk
2025-10-06 17:12 - 2025-10-06 17:12 - 000000000 ____D C:\Program Files\Google
2025-10-06 17:04 - 2025-10-06 17:04 - 000073028 _____ C:\Users\Karel\Downloads\Vypis_531533XXXXXX1517_20250912 (1).pdf
2025-10-06 15:53 - 2025-10-06 16:02 - 000002156 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 7.lnk
2025-10-06 15:53 - 2025-10-06 16:02 - 000002144 _____ C:\Users\Public\Desktop\CCleaner 7.lnk
2025-10-06 15:53 - 2025-10-06 15:53 - 000000000 ____D C:\WINDOWS\system32\Tasks\Piriform
2025-10-06 15:53 - 2025-10-06 15:53 - 000000000 ____D C:\Users\Karel\AppData\Roaming\CCleaner
2025-10-06 15:52 - 2025-10-06 15:52 - 000000000 ____D C:\Program Files\Piriform
2025-10-06 15:52 - 2025-10-06 15:52 - 000000000 ____D C:\Program Files\Common Files\Piriform
2025-10-06 15:52 - 2025-10-06 15:38 - 000055064 _____ (Gen Digital Inc.) C:\WINDOWS\system32\icarus_rvrt.exe
2025-09-30 21:15 - 2025-09-30 21:15 - 000035125 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-09-30 21:15 - 2025-09-30 21:15 - 000035125 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-10-21 16:14 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-10-21 16:08 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-10-21 16:00 - 2025-05-01 14:31 - 000003910 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1612535774
2025-10-21 16:00 - 2025-05-01 14:31 - 000003628 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1612535771
2025-10-21 16:00 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-10-21 16:00 - 2021-02-06 07:16 - 000000000 ____D C:\ProgramData\Packages
2025-10-21 16:00 - 2021-02-06 06:59 - 000000000 ____D C:\Users\Karel\AppData\Local\Packages
2025-10-21 15:07 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-10-21 15:07 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2025-10-21 15:04 - 2025-05-01 14:31 - 001692324 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-10-21 15:00 - 2020-12-16 11:09 - 000000000 ____D C:\ProgramData\NVIDIA
2025-10-21 14:58 - 2025-05-01 14:29 - 000005110 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-10-21 14:58 - 2021-02-06 06:59 - 000000000 __SHD C:\Users\Karel\IntelGraphicsProfiles
2025-10-21 14:57 - 2025-05-01 14:31 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-10-21 14:57 - 2025-05-01 14:26 - 000574168 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-10-21 14:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-10-21 14:57 - 2020-12-16 10:34 - 000012288 ___SH C:\DumpStack.log.tmp
2025-10-21 14:57 - 2020-12-16 10:34 - 000000000 ___HD C:\Intel
2025-10-21 14:56 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-10-21 14:56 - 2024-04-01 09:21 - 001310720 _____ C:\WINDOWS\system32\config\BBI
2025-10-21 14:28 - 2025-05-01 14:26 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-10-21 14:13 - 2025-05-01 14:30 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-10-21 13:57 - 2021-02-16 11:07 - 000000000 ____D C:\Users\Karel\AppData\Local\D3DSCache
2025-10-21 13:55 - 2021-03-09 07:54 - 000000000 ____D C:\ProgramData\Zoner
2025-10-21 13:51 - 2025-05-01 14:31 - 000003164 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-851827749-1828096854-3146880355-1001
2025-10-21 13:48 - 2022-02-09 16:56 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-10-21 08:00 - 2025-05-01 14:31 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-851827749-1828096854-3146880355-1001
2025-10-21 08:00 - 2025-05-01 14:31 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-851827749-1828096854-3146880355-1001
2025-10-21 08:00 - 2021-02-06 16:59 - 000002383 _____ C:\Users\Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-10-21 07:55 - 2023-01-16 08:57 - 000002278 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-10-21 07:55 - 2020-12-16 10:39 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-10-20 18:32 - 2021-02-10 21:50 - 000000000 ____D C:\Program Files (x86)\Steam
2025-10-18 15:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2025-10-18 15:47 - 2021-02-05 15:25 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-10-18 15:44 - 2021-02-05 15:25 - 214534944 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-10-17 20:52 - 2021-02-05 16:36 - 000001374 _____ C:\Users\Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2025-10-13 11:30 - 2025-07-22 16:25 - 000002658 _____ C:\Users\Karel\Desktop\Zoner Studio.lnk
2025-10-13 11:30 - 2023-02-17 17:48 - 000000000 ____D C:\Program Files\Pepa Chytrouš
2025-10-13 11:30 - 2021-02-05 16:36 - 000001537 _____ C:\Users\Karel\Desktop\Prohlížeč Opera.lnk
2025-10-13 10:46 - 2025-05-01 14:31 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-10-13 10:46 - 2025-05-01 14:31 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-10-10 16:59 - 2021-03-09 07:55 - 000000000 ____D C:\Users\Karel\AppData\Local\Zoner
2025-10-06 17:36 - 2021-02-08 17:39 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-10-06 17:35 - 2020-12-16 11:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2025-10-06 17:14 - 2022-10-13 09:18 - 000002077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2025-10-06 17:14 - 2022-10-13 09:18 - 000002065 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2025-10-06 17:12 - 2025-05-01 14:31 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-10-06 17:12 - 2025-01-24 00:59 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-10-06 17:12 - 2021-02-08 17:39 - 000001077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-10-06 17:11 - 2025-04-17 22:55 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2025-10-06 17:11 - 2021-02-10 18:46 - 000001059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk
2025-10-06 17:09 - 2021-02-05 16:46 - 000000000 ____D C:\Users\Karel\AppData\Local\CrashDumps
2025-10-06 15:52 - 2025-05-01 14:31 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-10-06 15:52 - 2022-10-09 11:53 - 000000000 ____D C:\ProgramData\Piriform
2025-10-06 15:52 - 2022-01-05 12:31 - 000000000 ____D C:\Program Files\CCleaner
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\USOPrivate
2025-10-03 11:27 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
==================== Files in the root of some directories ========
2025-09-15 22:22 - 2025-09-15 22:22 - 001097784 _____ (Microsoft Corporation) C:\Users\Karel\Jewels Magic Installer.exe
2025-09-14 20:55 - 2025-09-14 20:55 - 001097784 _____ (Microsoft Corporation) C:\Users\Karel\Jewels of the Wild West Installer.exe
2021-09-11 12:10 - 2021-09-11 12:10 - 000000017 _____ () C:\Users\Karel\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-10-2025
Ran by Karel (administrator) on LAPTOP-16MPJ5UM (Acer Aspire A317-51G) (21-10-2025 16:14:55)
Running from C:\Users\Karel\Desktop\FRST64.exe
Loaded Profiles: Karel
Platform: Microsoft Windows 11 Home Version 25H2 26200.6901 (X64) Language: Čeština (Česko)
Default browser: "C:\Users\Karel\AppData\Local\Programs\Opera\opera.exe" -noautoupdate -- "%1"
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ABBYY Software House -> ABBYY Software Ltd) C:\Program Files (x86)\ABBYY Screenshot Reader\ScreenshotReader.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eServiceHost.exe <2>
(C:\Users\Karel\AppData\Local\Programs\Opera\opera.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(C:\Users\Karel\AppData\Local\Programs\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Karel\AppData\Local\Programs\Opera\122.0.5643.142\opera_crashreporter.exe
(C:\Windows\SysWOW64\cmd.exe ->) (Lamantine Software a.s. -> Lamantine Software a.s.) C:\Program Files (x86)\Sticky Password\spNMHost.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_b578901fbed94a8e\igfxCUIService.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b578901fbed94a8e\igfxEM.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(explorer.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Karel\AppData\Local\Programs\Opera\opera.exe <28>
(services.exe ->) (ABBYY Software House -> ABBYY (BIT Software)) C:\Program Files (x86)\ABBYY Screenshot Reader\NetworkLicenseServer.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Huawei Technologies Co., Ltd. -> ) [File not signed] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_581d7e91d349facc\AS\IAS\IntelAudioService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b578901fbed94a8e\igfxCUIService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_3d18534d52d73f63\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_1405215c1cf67526\IntelCpHDCPSvc.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_1405215c1cf67526\IntelCpHeciSvc.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_ef0d14a478b232f4\RstMwService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvaci.inf_amd64_6fdef84a09009897\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Qualcomm Atheros, Inc. -> ) C:\Windows\System32\drivers\QcomWlanSrvx64.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(sihost.exe ->) (EAF76292-FADE-4EAB-A62C-FE5E78661D58 -> ) C:\Program Files\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3044.0_x64__48frkmn4z8aw4\DesktopApp\AcerRegistrationBackGroundTask.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teamsupdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\BackgroundTransferHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1138992 2020-08-05] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [285616 2025-09-10] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [271496 2017-11-02] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [Nero BackItUp] => C:\Program Files (x86)\Nero\Nero 2022\3-2-1 Backup\BackItUp.exe [1306696 2025-04-29] (Nero AG -> Nero AG)
HKLM-x32\...\Run: [ABBYY Screenshot Reader Retail] => C:\Program Files (x86)\ABBYY Screenshot Reader\ScreenShotReader.exe [959776 2008-12-08] (ABBYY Software House -> ABBYY Software Ltd)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-851827749-1828096854-3146880355-1001\...\Run: [ABBYY Screenshot Reader Retail] => [X]
HKU\S-1-5-21-851827749-1828096854-3146880355-1001\...\Run: [MicrosoftEdgeAutoLaunch_EADC2331AEA11A7C2115598A7830EF60] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4265032 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-851827749-1828096854-3146880355-1001\...\Run: [Opera Stable] => C:\Users\Karel\AppData\Local\Programs\Opera\opera.exe [1631704 2025-10-17] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-851827749-1828096854-3146880355-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [41579480 2025-09-29] (Adobe Inc. -> Adobe Systems Incorporated)
HKLM\...\Windows x64\Print Processors\Canon G3020 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDGL.DLL [525824 2021-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\Canon TS9500 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDER.DLL [529408 2020-06-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\x64\hpzpplhn.dll [109288 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS9500 series: C:\Windows\system32\CNMLMER.DLL [950272 2020-06-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\PCL hpz3llhn: C:\Windows\system32\hpz3llhn.dll [44288 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0E68AF70-2267-4C03-8E43-C6EF6B7863DA} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2971808 2021-12-30] (Acer Incorporated -> ) -> C:\Program Files (x86)\Acer\Care Center\-auto
Task: {BC5F1B6E-2B3A-46B0-96BB-9701DC00561C} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [41632 2021-12-30] (Acer Incorporated -> )
Task: {F276ABBB-9430-4579-8E4D-A5C0DFAF2A8A} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4836512 2021-12-30] (Acer Incorporated -> )
Task: {B52D9D75-2811-4E49-A4EB-E9F5AE27B0DE} - System32\Tasks\AcerCMUpdateTask2.5.22250 => C:\Program Files (x86)\Acer\Amundsen\2.5.22250\awc.exe [96904 2022-09-25] (Acer Incorporated -> )
Task: {EF25E847-9BBD-4203-B636-E0E5A62F1F74} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1581568 2025-08-24] (Adobe Inc. -> Adobe Inc.)
Task: {89239216-0F31-4CC5-BD21-FCCD4CA3AD49} - System32\Tasks\CareCenter\Opera Browser Assistant_Reg_HKCURun_S-1-5-21-851827749-1828096854-3146880355-1001 => C:\Users\Karel\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4712920 2025-09-11] (Opera Norway AS -> Opera Software)
Task: {C4FDBD60-27EC-4933-943F-74BBCECC4908} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem142.0.7416.0{2CAED75B-2F12-4E8E-A7A3-869D213403BA} => C:\Program Files (x86)\Google\GoogleUpdater\142.0.7416.0\updater.exe [6863512 2025-09-15] (Google LLC -> Google LLC)
Task: {753C8AB4-B158-47E8-91D7-97C43C60485F} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [10453888 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {FBBAD458-F63D-46EE-8883-8C36A550B5A5} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28583776 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {29209226-21D1-4E62-8500-09A3825AE53F} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE16\opushutil.exe [61328 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {B32C8B8F-DBC7-4EDF-AC62-EDCAA542B0B7} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28583776 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {0C64745F-052E-4331-AC8D-D1EE24DC2461} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {9662B921-1F00-4B9D-A70B-37B05B3CD829} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {6A9280CB-E1C2-48DE-B82F-8AEA7C6185B6} - System32\Tasks\Microsoft\Office\Office Startup Boost => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {EA3E03FA-35F0-4895-9912-985450E4C8A5} - System32\Tasks\Microsoft\Office\Office Startup Boost Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {B71926BC-213C-44A8-94DA-6D44A373FDCD} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {72B8C428-F7A8-496C-99FE-550000B681D7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {D83EBCAC-2D46-4D26-8302-86FE08B9FD36} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {B6915C0E-D113-4132-9566-A25599F39A04} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [693376 2025-10-03] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {449174A1-0056-466C-A9FC-A8EC030DB574} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-851827749-1828096854-3146880355-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [693376 2025-10-03] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {79CFD550-E527-4411-A1A8-4A74154513CB} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Nero\Nero Apps\NeroInfo\NeroInfo.exe [3950928 2025-04-29] (Nero AG -> Nero AG)
Task: {04E50C7F-9BD3-4827-8291-48D4FAA90F30} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [850928 2020-03-18] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {0BEED5FF-78F0-4551-8910-E57576DD0CBB} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [850928 2020-03-18] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {8A173901-A269-43BF-BE8A-84A4BB68D3EA} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3293168 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8C181E83-9296-43BD-8A9D-3301B9510B8F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {80FCB519-585E-42B2-B194-D75651CE7F2F} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0099A389-158E-4216-9305-9E92B0856D06} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4C9D14F3-0565-4307-BA28-306CDB9A3B52} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A2FC42C2-F33C-4800-999C-E3AE506D0534} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4201CAA6-2BDF-4805-9D99-91A4677FE4CD} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {28A6BA29-0993-439C-9422-B90A2A053629} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5B1B551F-CF06-4173-AB8F-97103AF77346} - System32\Tasks\Oem\AcerJumpstartTask => C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe [70792 2022-08-15] (Acer Incorporated -> )
Task: {C78AAC0B-2F5E-45EB-92EB-5174827493E3} - System32\Tasks\OneDrive Startup Task-S-1-5-21-851827749-1828096854-3146880355-1001 => C:\Users\Karel\AppData\Local\Microsoft\OneDrive\25.184.0921.0004\OneDriveLauncher.exe [725880 2025-10-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {77122E2D-67C5-488A-823C-21A5D8BB7DD5} - System32\Tasks\Opera scheduled assistant Autoupdate 1612535774 => C:\Users\Karel\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5063640 2025-10-09] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --installdir="C:\Users\Karel\AppData\Local\Programs\Opera\assistant" --producttype=assistant $(Arg0)
Task: {3782F025-9090-441A-B0E0-7DA81A519ACF} - System32\Tasks\Opera scheduled Autoupdate 1612535771 => C:\Users\Karel\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5063640 2025-10-09] (Opera Norway AS -> Opera Software)
Task: {304632A7-8AA6-4BF7-B96B-23DFB891136D} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-851827749-1828096854-3146880355-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [4717688 2025-10-18] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {A7C5FEF0-7E62-44A1-A8AD-26F28EA3BCEB} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6243960 2025-10-18] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {F4013630-4D41-4639-A0D8-3F7E27597F09} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [8971064 2025-10-14] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
Task: {056F7AAC-536A-4B03-8F52-6828561759BB} - System32\Tasks\Power Button => C:\Program Files\Acer\Quick Access Service\ePowerButton_NB.exe [2771616 2022-01-03] (Acer Incorporated -> Acer Incorporated)
Task: {DE25B126-F93F-4793-8FA9-F28377A0E058} - System32\Tasks\Quick Access => C:\Program Files\Acer\Quick Access Service\QALauncher.exe [446624 2022-01-03] (Acer Incorporated -> Acer Incorporated)
Task: {75F35CB5-EB91-4940-A5B9-5E251C0FD5CC} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [461472 2022-01-03] (Acer Incorporated -> Acer Incorporated)
Task: {78533241-59A4-4080-AFDC-80E5B123DC74} - System32\Tasks\StorPSCTL => C:\Program Files\Acer\StorPSCTL\StorPSCTL.exe [151080 2020-04-01] (Acer Incorporated -> Microsoft)
Task: {3E1AF38C-BE24-4655-94ED-063AD48D5BAA} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program Service\Framework\TriggerFramework.exe [268328 2020-04-15] (Acer Incorporated -> Acer Incorporated)
Task: {C12B31F5-1AA1-4677-89F7-0C929B7CAB94} - System32\Tasks\UEIPInvitation => C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UEIPOOBECheck.exe [2211368 2020-04-15] (Acer Incorporated -> Acer Incorporated)
Task: {6AD93734-2CA9-4314-924C-3CC3E8F4B062} - System32\Tasks\Zoner.Updater.S-1-5-21-851827749-1828096854-3146880355-1001 => C:\ProgramData\Zoner\Zoner.Installer.Core\updater.exe [1591632 2025-10-21] (ZONER a.s. -> ZONER a.s.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{a25a1f13-d718-44a2-8ecc-b026d0c969d2}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{d249dc18-5303-4a00-aad1-2de860c7029e}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Karel\AppData\Local\Microsoft\Edge\User Data\Default [2025-10-21]
Edge Extension: (Dokumenty Google offline) - C:\Users\Karel\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-09-22]
Edge Extension: (Edge relevant text changes) - C:\Users\Karel\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (ESET Browser Privacy & Security) - C:\Users\Karel\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nkapkmklnmidbbgjaipbgpcnbomnaakc [2025-06-20]
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]
FireFox:
========
FF DefaultProfile: u3kngsgi.default
FF ProfilePath: C:\Users\Karel\AppData\Roaming\Mozilla\Firefox\Profiles\u3kngsgi.default [2023-11-14]
FF ProfilePath: C:\Users\Karel\AppData\Roaming\Mozilla\Firefox\Profiles\pw0by2uf.default-release [2025-10-20]
FF Extension: (Graffiti – Balanced) - C:\Users\Karel\AppData\Roaming\Mozilla\Firefox\Profiles\pw0by2uf.default-release\Extensions\graffiti-balanced-colorway@mozilla.org.xpi [2023-03-17]
FF Extension: (FoE - Helper) - C:\Users\Karel\AppData\Roaming\Mozilla\Firefox\Profiles\pw0by2uf.default-release\Extensions\{0668a87f-e3bb-4ed3-a096-e145c1e9f1d2}.xpi [2024-09-03]
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-09-29] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-07-17] (Microsoft Corporation -> Microsoft Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-10-21]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ABBYY.Licensing.FineReader.ScreenshotReader.9.0; C:\Program Files (x86)\ABBYY Screenshot Reader\NetworkLicenseServer.exe [759072 2008-10-27] (ABBYY Software House -> ABBYY (BIT Software))
S4 ACCSvc; C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [259232 2021-12-30] (Acer Incorporated -> Acer Incorporated)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [28276344 2025-10-18] (Gen Digital Inc. -> Gen Digital Inc.)
S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13045112 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5538224 2025-09-10] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4662320 2025-09-10] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4662320 2025-09-10] (ESET, spol. s r.o. -> ESET)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [236864 2021-06-03] (Huawei Technologies Co., Ltd. -> ) [File not signed]
S4 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [445432 2021-04-19] (Canon Inc. -> )
R2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_581d7e91d349facc\AS\IAS\IntelAudioService.exe [412128 2022-10-27] (Intel Corporation -> Intel)
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 NeroBackItUpBackgroundServiceForVerbatim; C:\Program Files (x86)\Nero\Nero 2022\3-2-1 Backup\NBService.exe [319048 2025-04-29] (Nero AG -> Nero AG)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_6fdef84a09009897\Display.NvContainer\NVDisplay.Container.exe [1275608 2025-09-06] (NVIDIA Corporation -> NVIDIA Corporation)
S4 QALSvc; C:\Program Files\Acer\Quick Access Service\QALSvc.exe [466080 2022-01-03] (Acer Incorporated -> Acer Incorporated)
S4 QASvc; C:\Program Files\Acer\Quick Access Service\QASvc.exe [504480 2022-01-03] (Acer Incorporated -> Acer Incorporated)
R2 QcomWlanSrv; C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe [189808 2023-03-19] (Qualcomm Atheros, Inc. -> )
S4 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe [306728 2020-04-15] (Acer Incorporated -> Acer Incorporated)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AcerAirplaneModeController; C:\WINDOWS\System32\DriverStore\FileRepository\acerairplanemodecontroller.inf_amd64_36869d4d52526b5b\AcerAirplaneModeController.sys [36200 2024-06-03] (Acer Incorporated -> Acer Incorporated)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [573440 2025-05-01] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2025-05-01] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-05-01] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [232456 2025-08-14] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [139944 2025-08-14] (Microsoft Windows Hardware Compatibility Publisher -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2022-08-23] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [270136 2025-08-14] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [57352 2025-08-14] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [86792 2025-08-14] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [126024 2025-08-14] (ESET, spol. s r.o. -> ESET)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2021-06-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_25769e03e756857c\rt68cx21x64.sys [905216 2025-07-20] (Realtek Semiconductor Corp. -> Realtek)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [22104 2024-10-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [606624 2024-10-31] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105888 2024-10-31] (Microsoft Windows -> Microsoft Corporation)
S3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2025-05-01] (Microsoft Windows -> Microsoft Corporation)
S3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_a6dc64e436f22951\WSDScan.sys [61440 2025-09-02] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-10-21 16:14 - 2025-10-21 16:15 - 000031033 _____ C:\Users\Karel\Desktop\FRST.txt
2025-10-21 16:14 - 2025-10-21 16:15 - 000000000 ____D C:\FRST
2025-10-21 16:11 - 2025-10-21 16:11 - 002443264 _____ (Farbar) C:\Users\Karel\Desktop\FRST64.exe
2025-10-21 15:04 - 2025-10-21 15:04 - 000713018 _____ C:\WINDOWS\system32\perfh005.dat
2025-10-21 15:04 - 2025-10-21 15:04 - 000153196 _____ C:\WINDOWS\system32\perfc005.dat
2025-10-19 16:07 - 2025-10-19 16:07 - 000075078 _____ C:\Users\Karel\Downloads\Vypis_531533XXXXXX1517_20251014.pdf
2025-10-18 15:28 - 2025-10-21 15:08 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-10-10 10:57 - 2025-10-10 10:57 - 000000000 ____D C:\ProgramData\Whesvc
2025-10-08 11:50 - 2025-10-08 11:50 - 000000000 ____D C:\WINDOWS\Firmware
2025-10-06 17:12 - 2025-10-06 17:12 - 000002257 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk
2025-10-06 17:12 - 2025-10-06 17:12 - 000002245 _____ C:\Users\Public\Desktop\Google Earth Pro.lnk
2025-10-06 17:12 - 2025-10-06 17:12 - 000000000 ____D C:\Program Files\Google
2025-10-06 17:04 - 2025-10-06 17:04 - 000073028 _____ C:\Users\Karel\Downloads\Vypis_531533XXXXXX1517_20250912 (1).pdf
2025-10-06 15:53 - 2025-10-06 16:02 - 000002156 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 7.lnk
2025-10-06 15:53 - 2025-10-06 16:02 - 000002144 _____ C:\Users\Public\Desktop\CCleaner 7.lnk
2025-10-06 15:53 - 2025-10-06 15:53 - 000000000 ____D C:\WINDOWS\system32\Tasks\Piriform
2025-10-06 15:53 - 2025-10-06 15:53 - 000000000 ____D C:\Users\Karel\AppData\Roaming\CCleaner
2025-10-06 15:52 - 2025-10-06 15:52 - 000000000 ____D C:\Program Files\Piriform
2025-10-06 15:52 - 2025-10-06 15:52 - 000000000 ____D C:\Program Files\Common Files\Piriform
2025-10-06 15:52 - 2025-10-06 15:38 - 000055064 _____ (Gen Digital Inc.) C:\WINDOWS\system32\icarus_rvrt.exe
2025-09-30 21:15 - 2025-09-30 21:15 - 000035125 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-09-30 21:15 - 2025-09-30 21:15 - 000035125 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-10-21 16:14 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-10-21 16:08 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-10-21 16:00 - 2025-05-01 14:31 - 000003910 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1612535774
2025-10-21 16:00 - 2025-05-01 14:31 - 000003628 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1612535771
2025-10-21 16:00 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-10-21 16:00 - 2021-02-06 07:16 - 000000000 ____D C:\ProgramData\Packages
2025-10-21 16:00 - 2021-02-06 06:59 - 000000000 ____D C:\Users\Karel\AppData\Local\Packages
2025-10-21 15:07 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-10-21 15:07 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2025-10-21 15:04 - 2025-05-01 14:31 - 001692324 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-10-21 15:00 - 2020-12-16 11:09 - 000000000 ____D C:\ProgramData\NVIDIA
2025-10-21 14:58 - 2025-05-01 14:29 - 000005110 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-10-21 14:58 - 2021-02-06 06:59 - 000000000 __SHD C:\Users\Karel\IntelGraphicsProfiles
2025-10-21 14:57 - 2025-05-01 14:31 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-10-21 14:57 - 2025-05-01 14:26 - 000574168 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-10-21 14:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-10-21 14:57 - 2020-12-16 10:34 - 000012288 ___SH C:\DumpStack.log.tmp
2025-10-21 14:57 - 2020-12-16 10:34 - 000000000 ___HD C:\Intel
2025-10-21 14:56 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-10-21 14:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-10-21 14:56 - 2024-04-01 09:21 - 001310720 _____ C:\WINDOWS\system32\config\BBI
2025-10-21 14:28 - 2025-05-01 14:26 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-10-21 14:13 - 2025-05-01 14:30 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-10-21 13:57 - 2021-02-16 11:07 - 000000000 ____D C:\Users\Karel\AppData\Local\D3DSCache
2025-10-21 13:55 - 2021-03-09 07:54 - 000000000 ____D C:\ProgramData\Zoner
2025-10-21 13:51 - 2025-05-01 14:31 - 000003164 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-851827749-1828096854-3146880355-1001
2025-10-21 13:48 - 2022-02-09 16:56 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-10-21 08:00 - 2025-05-01 14:31 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-851827749-1828096854-3146880355-1001
2025-10-21 08:00 - 2025-05-01 14:31 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-851827749-1828096854-3146880355-1001
2025-10-21 08:00 - 2021-02-06 16:59 - 000002383 _____ C:\Users\Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-10-21 07:55 - 2023-01-16 08:57 - 000002278 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-10-21 07:55 - 2020-12-16 10:39 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-10-20 18:32 - 2021-02-10 21:50 - 000000000 ____D C:\Program Files (x86)\Steam
2025-10-18 15:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2025-10-18 15:47 - 2021-02-05 15:25 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-10-18 15:44 - 2021-02-05 15:25 - 214534944 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-10-17 20:52 - 2021-02-05 16:36 - 000001374 _____ C:\Users\Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2025-10-13 11:30 - 2025-07-22 16:25 - 000002658 _____ C:\Users\Karel\Desktop\Zoner Studio.lnk
2025-10-13 11:30 - 2023-02-17 17:48 - 000000000 ____D C:\Program Files\Pepa Chytrouš
2025-10-13 11:30 - 2021-02-05 16:36 - 000001537 _____ C:\Users\Karel\Desktop\Prohlížeč Opera.lnk
2025-10-13 10:46 - 2025-05-01 14:31 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-10-13 10:46 - 2025-05-01 14:31 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-10-10 16:59 - 2021-03-09 07:55 - 000000000 ____D C:\Users\Karel\AppData\Local\Zoner
2025-10-06 17:36 - 2021-02-08 17:39 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-10-06 17:35 - 2020-12-16 11:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2025-10-06 17:14 - 2022-10-13 09:18 - 000002077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2025-10-06 17:14 - 2022-10-13 09:18 - 000002065 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2025-10-06 17:12 - 2025-05-01 14:31 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-10-06 17:12 - 2025-01-24 00:59 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-10-06 17:12 - 2021-02-08 17:39 - 000001077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-10-06 17:11 - 2025-04-17 22:55 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2025-10-06 17:11 - 2021-02-10 18:46 - 000001059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk
2025-10-06 17:09 - 2021-02-05 16:46 - 000000000 ____D C:\Users\Karel\AppData\Local\CrashDumps
2025-10-06 15:52 - 2025-05-01 14:31 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-10-06 15:52 - 2022-10-09 11:53 - 000000000 ____D C:\ProgramData\Piriform
2025-10-06 15:52 - 2022-01-05 12:31 - 000000000 ____D C:\Program Files\CCleaner
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-10-03 11:27 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\USOPrivate
2025-10-03 11:27 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
==================== Files in the root of some directories ========
2025-09-15 22:22 - 2025-09-15 22:22 - 001097784 _____ (Microsoft Corporation) C:\Users\Karel\Jewels Magic Installer.exe
2025-09-14 20:55 - 2025-09-14 20:55 - 001097784 _____ (Microsoft Corporation) C:\Users\Karel\Jewels of the Wild West Installer.exe
2021-09-11 12:10 - 2021-09-11 12:10 - 000000017 _____ () C:\Users\Karel\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================