pomalý a nejde wifi
Napsal: 13 dub 2026 19:56
Dobrý den,
starý počítač, nechtěl naběhnout, nefunguje bezdrátová síť. Nyní po obnovení
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-04-2026 01
Ran by Kuba (administrator) on KUBA-PC (LENOVO 20236) (13-04-2026 20:10:32)
Running from C:\Users\Kuba\Downloads\FRST64.exe
Loaded Profiles: Kuba
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X64) Language: Čeština (Česká republika)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(Dolby Laboratories, Inc. -> Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
(explorer.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(explorer.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(explorer.exe ->) (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(explorer.exe ->) (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(explorer.exe ->) (Qualcomm Atheros -> Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(explorer.exe ->) (Qualcomm Atheros -> Atheros Communications) [File not signed] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <12>
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(services.exe ->) (Dassault Systemes) [File not signed] C:\Program Files (x86)\Dassault Systemes\B20\intel_a\code\bin\CATSysDemon.exe
(services.exe ->) (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(services.exe ->) (Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(services.exe ->) (Qualcomm Atheros -> Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(services.exe ->) (Qualcomm Atheros -> Atheros) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(svchost.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxsrvc.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17080376 2013-11-14] (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191544 2013-11-14] (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286192 2013-01-31] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [899680 2013-02-04] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2013-03-05] (Conexant Systems, Inc.) [File not signed]
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\btvstack.exe [1023104 2012-10-15] (Qualcomm Atheros -> Atheros Communications) [File not signed]
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\athbttray.exe [801920 2012-10-15] (Qualcomm Atheros -> Atheros Commnucations) [File not signed]
HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [6339656 2013-04-24] (Realtek Semiconductor Corp -> Realtek semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2876816 2013-03-05] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291280 2012-12-21] (Intel Corporation -> Intel Corporation)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [508144 2012-08-31] (Dolby Laboratories, Inc. -> Dolby Laboratories Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706344 2021-09-27] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SYSTEM\...\Terminal Server: [fDenyTSConnections] = 0 <==== ATTENTION
HKU\S-1-5-21-1359287071-3214649671-2729244724-1001\...\MountPoints2: {beedcf60-8e87-11e3-94c1-208984f1cde9} - F:\setup.exe
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2012-10-15] (Qualcomm Atheros -> Atheros Commnucations) [File not signed]
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2012-10-15] (Qualcomm Atheros -> Atheros Commnucations) [File not signed]
GroupPolicy: Restriction - Chrome <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {7D4FA405-D33D-4333-9F69-481C8A08087D} - System32\Tasks\{21DBBCB8-5B2C-40F3-BBC6-BC5BA485A5EA} => C:\Windows\System32\pcalua.exe [9728 2009-07-14] (Microsoft Windows -> Microsoft Corporation) -> -a E:\Extant\jxpiinstall.exe -d E:\Extant
Task: {2E5C2B8D-9F61-4D73-BF52-F0E55E93D6F9} - System32\Tasks\{4443BFE0-0E8E-4FE6-AA06-878BEDD48A81} => C:\Windows\System32\pcalua.exe [9728 2009-07-14] (Microsoft Windows -> Microsoft Corporation) -> -a C:\Users\Kuba\AppData\Local\TNT2\2.0.0.2030\TNT2User.exe -c /UNINSTALL PARTNER=11467
Task: {E0388C7D-9F92-4131-96B1-6962DAACA91B} - System32\Tasks\{90F93476-D6E2-4F97-B0A6-62451D29A1AA} => C:\Windows\System32\pcalua.exe [9728 2009-07-14] (Microsoft Windows -> Microsoft Corporation) -> -a C:\Users\Kuba\Downloads\CH340\CH341SER.EXE -d C:\Users\Kuba\Downloads\CH340
Task: {44DAEC50-7546-442E-B81A-0B5D6117CDAF} - System32\Tasks\{BD37D276-3FBC-4437-AA40-7C3EA69C04B9} => C:\Windows\System32\pcalua.exe [9728 2009-07-14] (Microsoft Windows -> Microsoft Corporation) -> -a "D:\G400&G500&G490 Driver CD V1.2 Win8 32&64\Win8\MEI\8.1.0.1263\setup.exe" -d "D:\G400&G500&G490 Driver CD V1.2 Win8 32&64\Win8\MEI\8.1.0.1263"
Task: {B32A18D4-A3E5-4A27-BAB9-A17E04512E65} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {19434677-465D-4F01-8AA4-A575E0B6FCCD} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe -> C:\Program Files\Common Files\AV\avast! Antivirus\/backup /iavs
Task: {2F55CBB2-E40E-48DE-8B16-0746B496A17F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2025-10-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {9753DC8D-1CAE-4B71-B372-E5BFA53135E3} - System32\Tasks\Chromium cofid => C:\Windows\System32\wscript.exe [168960 2013-10-12] (Microsoft Windows -> Microsoft Corporation) -> "C:\ProgramData\{45FF809C-CFBD-0A5A-497B-9418D3391FD6}\lora.txt" "68747470733a2f2f64326234366537617832617466692e636c6f756466726f6e742e6e6574" "//B" "//E:jscript" "--IsErIk"
Task: {6F469EE7-2AE2-43F5-925D-E6EFBA47CFF9} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => "%ProgramFiles%\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe" (No File)
Task: {CEC2EDC5-75D1-4761-8B7D-2F144B1CDF2F} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [16832 2015-07-01] (LENOVO -> Lenovo)
Task: {7DD9EBD5-F201-4295-B2A7-DB00A5938A7D} - System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe [611456 2026-04-13] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {AEA94B17-C7A3-466B-BE8E-C35A51BCEF50} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1586560 2016-09-10] (LENOVO -> )
Task: {B30C10D6-32AA-4291-AF98-EC819B25D9CD} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1586560 2016-09-10] (LENOVO -> )
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Chromium cofid.job => C:\Windows\system32\wscript.ex C:\ProgramData\{45FF809C-CFBD-0A5A-497B-9418D3391FD6}\lora.txt <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{7C00D4FF-A635-4B65-AF63-6BEA2CABE9B0}: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{CB60B146-FD61-41FF-B4C2-0CFAE6D36CD5}: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{CB60B146-FD61-41FF-B4C2-0CFAE6D36CD5}\14E64627F696461405: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{CB60B146-FD61-41FF-B4C2-0CFAE6D36CD5}\14E64627F69646140543035316: [DhcpNameServer] 192.168.153.144
Tcpip\..\Interfaces\{CB60B146-FD61-41FF-B4C2-0CFAE6D36CD5}\7484D2B4F6E67627563723: [DhcpNameServer] 194.228.41.65 194.228.41.65
Tcpip\..\Interfaces\{CB60B146-FD61-41FF-B4C2-0CFAE6D36CD5}\B4F4C4942414F564255454: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{EB585556-7E2B-431F-AD5A-792A4744B737}: [DhcpNameServer] 192.168.141.179
FireFox:
========
FF TaskBarID: E7CF176E110C211B -> C:\Program Files (x86)\Mozilla Firefox
FF DefaultProfile: 4y22hc0k.default-1504386732479-1723410231620 -> E7CF176E110C211B
FF ProfilePath: C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\4y22hc0k.default-1504386732479-1723410231620 [2026-04-13]
FF Session Restore: Mozilla\Firefox\Profiles\4y22hc0k.default-1504386732479-1723410231620 -> is enabled.
FF Notifications: Mozilla\Firefox\Profiles\4y22hc0k.default-1504386732479-1723410231620 -> hxxps://www.oneplay.cz; hxxps://teams.live.com
FF ProfilePath: C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\1re7qmwk.default [2021-12-14]
FF Homepage: Mozilla\Firefox\Profiles\1re7qmwk.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\1re7qmwk.default ->
FF Extension: (Browser Privacy) - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\1re7qmwk.default\Extensions\info@browser-privacy.com.xpi [2018-07-12]
FF Extension: (Skype Click to Call) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-10-08] [Legacy]
FF HKU\S-1-5-21-1359287071-3214649671-2729244724-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi => not found
FF Plugin: @java.com/DTPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\dtplugin\npDeployJava1.dll [2021-12-13] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\plugin2\npjp2.dll [2021-12-13] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2026-04-09] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default [2026-04-08]
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}&sourceid=62744&thru=quicksearch
CHR DefaultSearchKeyword: Default -> seznam
CHR DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-12-07]
CHR Extension: (Avira Browser Safety) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2026-04-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-07-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-10]
CHR Extension: (Seznam.cz) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2025-03-17]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKU\S-1-5-21-1359287071-3214649671-2729244724-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKU\S-1-5-21-1359287071-3214649671-2729244724-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
CHR HKU\S-1-5-21-1359287071-3214649671-2729244724-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-1359287071-3214649671-2729244724-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [219776 2012-10-15] (Qualcomm Atheros -> Atheros Commnucations) [File not signed]
R2 BBDemon; C:\Program Files (x86)\Dassault Systemes\B20\intel_a\code\bin\CATSysDemon.exe [36864 2009-09-26] (Dassault Systemes) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-07-14] (Microsoft Windows -> Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [327296 2012-10-15] (Qualcomm Atheros -> Atheros) [File not signed]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AthBTPort; C:\Windows\System32\DRIVERS\btath_flt.sys [36480 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 BTATH_A2DP; C:\Windows\System32\drivers\btath_a2dp.sys [341120 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 btath_avdt; C:\Windows\System32\drivers\btath_avdt.sys [111232 2012-10-15] (Qualcomm Atheros -> Atheros)
R3 BTATH_BUS; C:\Windows\System32\DRIVERS\btath_bus.sys [30848 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 BTATH_HCRP; C:\Windows\System32\DRIVERS\btath_hcrp.sys [168064 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [68736 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 BTATH_RCP; C:\Windows\System32\DRIVERS\btath_rcp.sys [281728 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 BtFilter; C:\Windows\System32\DRIVERS\btfilter.sys [551040 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 cpuz152; C:\Windows\temp\cpuz152\cpuz152_x64.sys [34928 2024-07-24] (CPUID S.A.R.L.U. -> CPUID) <==== ATTENTION
R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [128200 2013-04-03] (Qualcomm Atheros -> Qualcomm Atheros Co., Ltd.)
R1 LUMDriver; C:\Windows\system32\drivers\LUMDriver.sys [24848 2008-01-02] (IBM Polska Sp. z o.o. -> IBM)
R1 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [121824 2016-07-12] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [195424 2016-07-12] (Oracle Corporation -> Oracle Corporation)
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\CPUID HWMonitor.lnk"
2026-04-13 20:10 - 2026-04-13 20:13 - 000020267 _____ C:\Users\Kuba\Downloads\FRST.txt
2026-04-13 20:09 - 2026-04-13 20:13 - 000000000 ____D C:\FRST
2026-04-13 20:08 - 2026-04-13 20:08 - 002446848 _____ (Farbar) C:\Users\Kuba\Downloads\FRST64.exe
2026-04-13 18:58 - 2026-04-13 18:58 - 000000000 ____D C:\Program Files (x86)\Skype
2026-04-08 17:09 - 2026-04-08 17:09 - 000000000 ____D C:\ProgramData\Piriform
2026-04-08 17:07 - 2026-04-08 17:07 - 001748928 _____ (Gen Digital Inc.) C:\Users\Kuba\Downloads\ccsetup_online_setup.exe
2026-04-05 09:44 - 2026-04-13 18:54 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2026-04-04 23:14 - 2026-04-04 23:15 - 122796984 _____ (Discord Inc.) C:\Users\Kuba\Downloads\DiscordSetup.exe
2026-04-04 23:11 - 2026-04-04 23:11 - 000001878 _____ C:\Users\Kuba\Desktop\Zoom.lnk
2026-04-04 23:09 - 2026-04-04 23:09 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-04-13 20:05 - 2022-02-13 06:29 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2026-04-13 19:49 - 2016-06-25 01:07 - 000000000 ____D C:\Users\test
2026-04-13 19:49 - 2013-11-14 22:29 - 000000000 ____D C:\Users\Markét
2026-04-13 19:49 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\registration
2026-04-13 19:49 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\AppCompat
2026-04-13 19:38 - 2018-04-16 14:38 - 000000562 _____ C:\Windows\Tasks\Chromium cofid.job
2026-04-13 19:08 - 2022-10-12 14:29 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2026-04-13 19:03 - 2009-07-14 05:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2026-04-13 19:01 - 2016-01-30 00:19 - 000000000 ____D C:\ProgramData\Package Cache
2026-04-13 18:59 - 2009-07-14 06:45 - 000026768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2026-04-13 18:59 - 2009-07-14 06:45 - 000026768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2026-04-13 18:56 - 2013-11-16 21:49 - 000000000 ____D C:\Program Files (x86)\DsNET Corp
2026-04-13 18:55 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2026-04-13 18:54 - 2021-03-06 15:35 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-04-13 18:51 - 2013-11-14 18:34 - 000000000 ____D C:\Users\Kuba
2026-04-13 18:51 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2026-04-08 17:10 - 2016-07-03 23:36 - 000000000 ____D C:\Program Files (x86)\Google
2026-04-08 17:02 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2026-04-06 20:14 - 2024-09-12 20:23 - 000000043 _____ C:\Users\Kuba\Desktop\password.txt
2026-04-05 07:57 - 2013-11-16 16:08 - 000690374 _____ C:\Windows\system32\perfh007.dat
2026-04-05 07:57 - 2013-11-16 16:08 - 000149844 _____ C:\Windows\system32\perfc007.dat
2026-04-05 07:57 - 2010-11-21 11:27 - 000670154 _____ C:\Windows\system32\perfh005.dat
2026-04-05 07:57 - 2010-11-21 11:27 - 000142280 _____ C:\Windows\system32\perfc005.dat
2026-04-05 07:57 - 2009-07-14 07:13 - 002427724 _____ C:\Windows\system32\PerfStringBackup.INI
2026-04-04 23:09 - 2024-05-13 19:00 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Zoom
2026-04-03 19:09 - 2016-03-31 23:32 - 000000000 ____D C:\Users\Kuba\AppData\Local\ElevatedDiagnostics
==================== Files in the root of some directories ========
2017-07-27 22:07 - 2020-07-10 17:12 - 000004608 _____ () C:\Users\Kuba\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-09-04 22:29 - 2017-09-04 22:29 - 000001499 _____ () C:\Users\Kuba\AppData\Local\recently-used.xbel
2013-11-15 23:57 - 2013-11-15 23:57 - 000000017 _____ () C:\Users\Kuba\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2026-04-06 00:48
==================== End of FRST.txt ========================
starý počítač, nechtěl naběhnout, nefunguje bezdrátová síť. Nyní po obnovení
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-04-2026 01
Ran by Kuba (administrator) on KUBA-PC (LENOVO 20236) (13-04-2026 20:10:32)
Running from C:\Users\Kuba\Downloads\FRST64.exe
Loaded Profiles: Kuba
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X64) Language: Čeština (Česká republika)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(Dolby Laboratories, Inc. -> Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
(explorer.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(explorer.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(explorer.exe ->) (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(explorer.exe ->) (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(explorer.exe ->) (Qualcomm Atheros -> Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(explorer.exe ->) (Qualcomm Atheros -> Atheros Communications) [File not signed] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <12>
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(services.exe ->) (Dassault Systemes) [File not signed] C:\Program Files (x86)\Dassault Systemes\B20\intel_a\code\bin\CATSysDemon.exe
(services.exe ->) (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(services.exe ->) (Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(services.exe ->) (Qualcomm Atheros -> Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(services.exe ->) (Qualcomm Atheros -> Atheros) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(svchost.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxsrvc.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17080376 2013-11-14] (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191544 2013-11-14] (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286192 2013-01-31] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [899680 2013-02-04] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2013-03-05] (Conexant Systems, Inc.) [File not signed]
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\btvstack.exe [1023104 2012-10-15] (Qualcomm Atheros -> Atheros Communications) [File not signed]
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\athbttray.exe [801920 2012-10-15] (Qualcomm Atheros -> Atheros Commnucations) [File not signed]
HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [6339656 2013-04-24] (Realtek Semiconductor Corp -> Realtek semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2876816 2013-03-05] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291280 2012-12-21] (Intel Corporation -> Intel Corporation)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [508144 2012-08-31] (Dolby Laboratories, Inc. -> Dolby Laboratories Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706344 2021-09-27] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SYSTEM\...\Terminal Server: [fDenyTSConnections] = 0 <==== ATTENTION
HKU\S-1-5-21-1359287071-3214649671-2729244724-1001\...\MountPoints2: {beedcf60-8e87-11e3-94c1-208984f1cde9} - F:\setup.exe
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2012-10-15] (Qualcomm Atheros -> Atheros Commnucations) [File not signed]
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2012-10-15] (Qualcomm Atheros -> Atheros Commnucations) [File not signed]
GroupPolicy: Restriction - Chrome <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {7D4FA405-D33D-4333-9F69-481C8A08087D} - System32\Tasks\{21DBBCB8-5B2C-40F3-BBC6-BC5BA485A5EA} => C:\Windows\System32\pcalua.exe [9728 2009-07-14] (Microsoft Windows -> Microsoft Corporation) -> -a E:\Extant\jxpiinstall.exe -d E:\Extant
Task: {2E5C2B8D-9F61-4D73-BF52-F0E55E93D6F9} - System32\Tasks\{4443BFE0-0E8E-4FE6-AA06-878BEDD48A81} => C:\Windows\System32\pcalua.exe [9728 2009-07-14] (Microsoft Windows -> Microsoft Corporation) -> -a C:\Users\Kuba\AppData\Local\TNT2\2.0.0.2030\TNT2User.exe -c /UNINSTALL PARTNER=11467
Task: {E0388C7D-9F92-4131-96B1-6962DAACA91B} - System32\Tasks\{90F93476-D6E2-4F97-B0A6-62451D29A1AA} => C:\Windows\System32\pcalua.exe [9728 2009-07-14] (Microsoft Windows -> Microsoft Corporation) -> -a C:\Users\Kuba\Downloads\CH340\CH341SER.EXE -d C:\Users\Kuba\Downloads\CH340
Task: {44DAEC50-7546-442E-B81A-0B5D6117CDAF} - System32\Tasks\{BD37D276-3FBC-4437-AA40-7C3EA69C04B9} => C:\Windows\System32\pcalua.exe [9728 2009-07-14] (Microsoft Windows -> Microsoft Corporation) -> -a "D:\G400&G500&G490 Driver CD V1.2 Win8 32&64\Win8\MEI\8.1.0.1263\setup.exe" -d "D:\G400&G500&G490 Driver CD V1.2 Win8 32&64\Win8\MEI\8.1.0.1263"
Task: {B32A18D4-A3E5-4A27-BAB9-A17E04512E65} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {19434677-465D-4F01-8AA4-A575E0B6FCCD} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe -> C:\Program Files\Common Files\AV\avast! Antivirus\/backup /iavs
Task: {2F55CBB2-E40E-48DE-8B16-0746B496A17F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2025-10-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {9753DC8D-1CAE-4B71-B372-E5BFA53135E3} - System32\Tasks\Chromium cofid => C:\Windows\System32\wscript.exe [168960 2013-10-12] (Microsoft Windows -> Microsoft Corporation) -> "C:\ProgramData\{45FF809C-CFBD-0A5A-497B-9418D3391FD6}\lora.txt" "68747470733a2f2f64326234366537617832617466692e636c6f756466726f6e742e6e6574" "//B" "//E:jscript" "--IsErIk"
Task: {6F469EE7-2AE2-43F5-925D-E6EFBA47CFF9} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => "%ProgramFiles%\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe" (No File)
Task: {CEC2EDC5-75D1-4761-8B7D-2F144B1CDF2F} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [16832 2015-07-01] (LENOVO -> Lenovo)
Task: {7DD9EBD5-F201-4295-B2A7-DB00A5938A7D} - System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe [611456 2026-04-13] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {AEA94B17-C7A3-466B-BE8E-C35A51BCEF50} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1586560 2016-09-10] (LENOVO -> )
Task: {B30C10D6-32AA-4291-AF98-EC819B25D9CD} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1586560 2016-09-10] (LENOVO -> )
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Chromium cofid.job => C:\Windows\system32\wscript.ex C:\ProgramData\{45FF809C-CFBD-0A5A-497B-9418D3391FD6}\lora.txt <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{7C00D4FF-A635-4B65-AF63-6BEA2CABE9B0}: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{CB60B146-FD61-41FF-B4C2-0CFAE6D36CD5}: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{CB60B146-FD61-41FF-B4C2-0CFAE6D36CD5}\14E64627F696461405: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{CB60B146-FD61-41FF-B4C2-0CFAE6D36CD5}\14E64627F69646140543035316: [DhcpNameServer] 192.168.153.144
Tcpip\..\Interfaces\{CB60B146-FD61-41FF-B4C2-0CFAE6D36CD5}\7484D2B4F6E67627563723: [DhcpNameServer] 194.228.41.65 194.228.41.65
Tcpip\..\Interfaces\{CB60B146-FD61-41FF-B4C2-0CFAE6D36CD5}\B4F4C4942414F564255454: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{EB585556-7E2B-431F-AD5A-792A4744B737}: [DhcpNameServer] 192.168.141.179
FireFox:
========
FF TaskBarID: E7CF176E110C211B -> C:\Program Files (x86)\Mozilla Firefox
FF DefaultProfile: 4y22hc0k.default-1504386732479-1723410231620 -> E7CF176E110C211B
FF ProfilePath: C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\4y22hc0k.default-1504386732479-1723410231620 [2026-04-13]
FF Session Restore: Mozilla\Firefox\Profiles\4y22hc0k.default-1504386732479-1723410231620 -> is enabled.
FF Notifications: Mozilla\Firefox\Profiles\4y22hc0k.default-1504386732479-1723410231620 -> hxxps://www.oneplay.cz; hxxps://teams.live.com
FF ProfilePath: C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\1re7qmwk.default [2021-12-14]
FF Homepage: Mozilla\Firefox\Profiles\1re7qmwk.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\1re7qmwk.default ->
FF Extension: (Browser Privacy) - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\1re7qmwk.default\Extensions\info@browser-privacy.com.xpi [2018-07-12]
FF Extension: (Skype Click to Call) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-10-08] [Legacy]
FF HKU\S-1-5-21-1359287071-3214649671-2729244724-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi => not found
FF Plugin: @java.com/DTPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\dtplugin\npDeployJava1.dll [2021-12-13] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\plugin2\npjp2.dll [2021-12-13] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2026-04-09] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default [2026-04-08]
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}&sourceid=62744&thru=quicksearch
CHR DefaultSearchKeyword: Default -> seznam
CHR DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-12-07]
CHR Extension: (Avira Browser Safety) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2026-04-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-07-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-10]
CHR Extension: (Seznam.cz) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2025-03-17]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKU\S-1-5-21-1359287071-3214649671-2729244724-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKU\S-1-5-21-1359287071-3214649671-2729244724-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
CHR HKU\S-1-5-21-1359287071-3214649671-2729244724-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-1359287071-3214649671-2729244724-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [219776 2012-10-15] (Qualcomm Atheros -> Atheros Commnucations) [File not signed]
R2 BBDemon; C:\Program Files (x86)\Dassault Systemes\B20\intel_a\code\bin\CATSysDemon.exe [36864 2009-09-26] (Dassault Systemes) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-07-14] (Microsoft Windows -> Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [327296 2012-10-15] (Qualcomm Atheros -> Atheros) [File not signed]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AthBTPort; C:\Windows\System32\DRIVERS\btath_flt.sys [36480 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 BTATH_A2DP; C:\Windows\System32\drivers\btath_a2dp.sys [341120 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 btath_avdt; C:\Windows\System32\drivers\btath_avdt.sys [111232 2012-10-15] (Qualcomm Atheros -> Atheros)
R3 BTATH_BUS; C:\Windows\System32\DRIVERS\btath_bus.sys [30848 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 BTATH_HCRP; C:\Windows\System32\DRIVERS\btath_hcrp.sys [168064 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [68736 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 BTATH_RCP; C:\Windows\System32\DRIVERS\btath_rcp.sys [281728 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 BtFilter; C:\Windows\System32\DRIVERS\btfilter.sys [551040 2012-10-15] (Qualcomm Atheros -> Atheros)
S3 cpuz152; C:\Windows\temp\cpuz152\cpuz152_x64.sys [34928 2024-07-24] (CPUID S.A.R.L.U. -> CPUID) <==== ATTENTION
R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [128200 2013-04-03] (Qualcomm Atheros -> Qualcomm Atheros Co., Ltd.)
R1 LUMDriver; C:\Windows\system32\drivers\LUMDriver.sys [24848 2008-01-02] (IBM Polska Sp. z o.o. -> IBM)
R1 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [121824 2016-07-12] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [195424 2016-07-12] (Oracle Corporation -> Oracle Corporation)
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\CPUID HWMonitor.lnk"
2026-04-13 20:10 - 2026-04-13 20:13 - 000020267 _____ C:\Users\Kuba\Downloads\FRST.txt
2026-04-13 20:09 - 2026-04-13 20:13 - 000000000 ____D C:\FRST
2026-04-13 20:08 - 2026-04-13 20:08 - 002446848 _____ (Farbar) C:\Users\Kuba\Downloads\FRST64.exe
2026-04-13 18:58 - 2026-04-13 18:58 - 000000000 ____D C:\Program Files (x86)\Skype
2026-04-08 17:09 - 2026-04-08 17:09 - 000000000 ____D C:\ProgramData\Piriform
2026-04-08 17:07 - 2026-04-08 17:07 - 001748928 _____ (Gen Digital Inc.) C:\Users\Kuba\Downloads\ccsetup_online_setup.exe
2026-04-05 09:44 - 2026-04-13 18:54 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2026-04-04 23:14 - 2026-04-04 23:15 - 122796984 _____ (Discord Inc.) C:\Users\Kuba\Downloads\DiscordSetup.exe
2026-04-04 23:11 - 2026-04-04 23:11 - 000001878 _____ C:\Users\Kuba\Desktop\Zoom.lnk
2026-04-04 23:09 - 2026-04-04 23:09 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-04-13 20:05 - 2022-02-13 06:29 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2026-04-13 19:49 - 2016-06-25 01:07 - 000000000 ____D C:\Users\test
2026-04-13 19:49 - 2013-11-14 22:29 - 000000000 ____D C:\Users\Markét
2026-04-13 19:49 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\registration
2026-04-13 19:49 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\AppCompat
2026-04-13 19:38 - 2018-04-16 14:38 - 000000562 _____ C:\Windows\Tasks\Chromium cofid.job
2026-04-13 19:08 - 2022-10-12 14:29 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2026-04-13 19:03 - 2009-07-14 05:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2026-04-13 19:01 - 2016-01-30 00:19 - 000000000 ____D C:\ProgramData\Package Cache
2026-04-13 18:59 - 2009-07-14 06:45 - 000026768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2026-04-13 18:59 - 2009-07-14 06:45 - 000026768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2026-04-13 18:56 - 2013-11-16 21:49 - 000000000 ____D C:\Program Files (x86)\DsNET Corp
2026-04-13 18:55 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2026-04-13 18:54 - 2021-03-06 15:35 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-04-13 18:51 - 2013-11-14 18:34 - 000000000 ____D C:\Users\Kuba
2026-04-13 18:51 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2026-04-08 17:10 - 2016-07-03 23:36 - 000000000 ____D C:\Program Files (x86)\Google
2026-04-08 17:02 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2026-04-06 20:14 - 2024-09-12 20:23 - 000000043 _____ C:\Users\Kuba\Desktop\password.txt
2026-04-05 07:57 - 2013-11-16 16:08 - 000690374 _____ C:\Windows\system32\perfh007.dat
2026-04-05 07:57 - 2013-11-16 16:08 - 000149844 _____ C:\Windows\system32\perfc007.dat
2026-04-05 07:57 - 2010-11-21 11:27 - 000670154 _____ C:\Windows\system32\perfh005.dat
2026-04-05 07:57 - 2010-11-21 11:27 - 000142280 _____ C:\Windows\system32\perfc005.dat
2026-04-05 07:57 - 2009-07-14 07:13 - 002427724 _____ C:\Windows\system32\PerfStringBackup.INI
2026-04-04 23:09 - 2024-05-13 19:00 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Zoom
2026-04-03 19:09 - 2016-03-31 23:32 - 000000000 ____D C:\Users\Kuba\AppData\Local\ElevatedDiagnostics
==================== Files in the root of some directories ========
2017-07-27 22:07 - 2020-07-10 17:12 - 000004608 _____ () C:\Users\Kuba\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-09-04 22:29 - 2017-09-04 22:29 - 000001499 _____ () C:\Users\Kuba\AppData\Local\recently-used.xbel
2013-11-15 23:57 - 2013-11-15 23:57 - 000000017 _____ () C:\Users\Kuba\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2026-04-06 00:48
==================== End of FRST.txt ========================