Prosím o kontrolu a případně opravu. PC od Taťky
Napsal: 17 dub 2026 09:47
Po dlouhé době jsem dojel k otci a chtěl něco udělat na pc a je hrozně zpomalený nevím co s tím je a jestli tady nemá nějaké viry. Vím že PC je skoro dědeček, časem ho doplním a vylepším ale teď na něm nejde nic dělat. děkuji za pomoc
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-04-2026
Ran by Kuba (administrator) on KUBA-PC (17-04-2026 10:35:47)
Running from C:\Users\Kuba\Downloads\FRST64.exe
Loaded Profiles: Kuba
Platform: Microsoft Windows 10 Home Version 22H2 19045.2728 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\WINDOWS\System32\atieclxx.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
(C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{6E5BB5CD-E5CA-4890-A307-1F24B00901DB}\MicrosoftEdge_X64_146.0.3856.109.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{6E5BB5CD-E5CA-4890-A307-1F24B00901DB}\EDGEMITMP_9C1F1.tmp\setup.exe
(C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{6E5BB5CD-E5CA-4890-A307-1F24B00901DB}\MicrosoftEdge_X64_146.0.3856.109.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe <2>
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCopyAccelerator.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\146.0.3856.109\identity_helper.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(services.exe ->) (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(services.exe ->) (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\146.0.3856.109\elevation_service.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2>
(services.exe ->) (Microsoft Corporation) [File not signed] C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\WINDOWS\System32\atiesrxx.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\NisSrv.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe <3>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Kuba\AppData\Local\Microsoft\OneDrive\26.051.0316.0004_1\OneDriveLauncher.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\CompatTelRunner.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\smartscreen.exe
(wuauclt.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\WINDOWS\SoftwareDistribution\Download\Install\AM_Delta.exe
(wuauclt.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\WINDOWS\System32\MpSigStub.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NUSB3MON] => C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [97280 2012-04-11] (Advanced Micro Devices, Inc.) [File not signed]
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13671640 2014-04-10] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656 2016-04-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3146752 2022-02-07] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsInd00] => C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [1885184 2012-12-18] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-341024713-4101589263-3484562621-1000\...\Run: [MicrosoftEdgeAutoLaunch_00020AD6DFF5EB12C6A1648CAF1C02D4] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5003816 2026-04-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-341024713-4101589263-3484562621-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [39936 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\doPDF 7 Monitor: C:\WINDOWS\system32\dopdfmn7.dll [25920 2013-02-13] (Softland S.R.L. -> Softland)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {BCF423E7-82FA-42C8-964C-5C52D32E5858} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe Scan -ScheduleJob -RestrictPrivileges (No File)
Task: {9A6BAC20-02DC-4021-9BCD-0297C24BC61B} - System32\Tasks\Microsoft\Microsoft Antimalware\MpIdleTask => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe -IdleTask -TaskName MpIdleTask (No File)
Task: {8FC20C78-5ADD-45A7-9DDE-B8B0A824A543} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch (No File)
Task: {BE72ED0E-0B1B-41FC-9BAD-3FD77B01D2FB} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (No File)
Task: {46A9F528-27D7-4746-9442-DA9993FF4D4A} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (No File)
Task: {19F804BE-111F-419F-A172-B17EFA12BB83} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => %SystemRoot%\ehome\ehPrivJob.exe /DRMInit (No File)
Task: {2B8CCE4C-FB48-485F-BEDC-194975610D31} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (No File)
Task: {F9F93275-7A78-4127-8ABC-0A3F9C765296} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => %SystemRoot%\ehome\mcupdate $(Arg0) (No File)
Task: {3B99CCF7-11A2-4A08-BF51-5BA4DD5E4DB1} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask (No File)
Task: {49CE66A0-907A-442E-9267-ED2CE6AC89AF} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask (No File)
Task: {372C0873-1105-4E69-B4E2-9447E700687A} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate (No File)
Task: {3A2F6FB7-3236-4937-9B03-4A41C9DCC092} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (No File)
Task: {11549950-EE5A-4FA5-8CE8-21D063ED13A7} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery (No File)
Task: {2AF7B27F-604F-40B1-B8CA-41BD996A5882} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (No File)
Task: {9E53B2DA-E388-4603-A105-64DD276FB56A} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (No File)
Task: {DB198E41-CFB3-40CD-B705-9EDAEB435347} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => %windir%\ehome\MCUpdate.exe -pscn 0 (No File)
Task: {3321561E-C46A-4903-A169-46EF182CB306} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask (No File)
Task: {F745E098-E55E-4028-97A0-E7B2399E9D59} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => %SystemRoot%\ehome\mcupdate.exe -PvrSchedule (No File)
Task: {245917E5-8BAC-4AD3-AC9E-01BB54FA01CA} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => %SystemRoot%\ehome\ehrec /RestartRecording (No File)
Task: {3E37E8E1-5068-497F-A39C-B33F1925EABB} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (No File)
Task: {0F9FC612-AD62-4BA9-9D8E-334516DAB1B2} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot (No File)
Task: {B07D4BB6-FEB1-4D37-99B9-D6F2ADF42635} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask (No File)
Task: {CC663199-5221-44CB-8C01-792E1811830B} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (No File)
Task: {D3593AE2-D94A-4848-84AF-70B03E843C1B} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E}
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40b4-8963-D3C761B18371}
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47c2-B62A-B7C4CED925CB}
Task: {F120EADE-107D-4AED-9415-241D67B1BE05} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {B1141741-3DCA-49C6-A0DB-E5AC83A8F985} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61}
Task: {29B52017-2FC0-4D2B-A04B-E05F4B180A2A} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1}
Task: {9893E420-5455-4D42-9538-585DE770BA46} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {082A06E5-86AE-4C39-B37C-3A3A0FEFA452} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {256475AF-B4C6-420E-8036-814B5A2B7D9B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {78FEC13F-C8D0-4C4E-B276-F7F5EED93712} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B72FB285-828D-4D7B-BF6C-E5FCF47C553E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AF5AAA95-3AC4-4E09-840E-D6FA166D1692} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [33920 2026-04-12] (Mozilla Corporation -> Mozilla Foundation)
Task: {F1A8944E-D874-4A2F-B643-A91FE291219B} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-341024713-4101589263-3484562621-1000 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5500536 2026-04-13] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {D4CEBFD4-8CC8-46CB-841E-B1B070304051} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-341024713-4101589263-3484562621-1000 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5500536 2026-04-13] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {E69F6D7F-D6F6-481B-8416-0D52DC079D5F} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6579464 2026-04-13] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {8CE79D82-7057-4FC4-84FE-31EE5CA7F091} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-01-19] (Gen Digital Inc. -> Gen Digital Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{689E487F-5EE0-403F-94A9-121ABD1BD5CD}: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF TaskBarID: E7CF176E110C211B -> C:\Program Files (x86)\Mozilla Firefox
FF DefaultProfile: 23rsy3zx.default -> E7CF176E110C211B
FF ProfilePath: C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\23rsy3zx.default [2026-04-17]
FF DownloadDir: C:\Documents and Settings\Dusan\Dokumenty\Stažené soubory
FF Homepage: Mozilla\Firefox\Profiles\23rsy3zx.default -> hxxps://www.google.cz/
FF NetworkProxy: Mozilla\Firefox\Profiles\23rsy3zx.default -> type", 0
FF Extension: (uBlock Origin) - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\23rsy3zx.default\Extensions\uBlock0@raymondhill.net.xpi [2026-03-24]
FF Extension: (No Name) - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\23rsy3zx.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [not found]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-04-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Kuba\AppData\Local\Microsoft\Edge\User Data\Default [2026-04-17]
Edge Extension: (Dokumenty Google offline) - C:\Users\Kuba\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-04-13]
Edge Extension: (Edge relevant text changes) - C:\Users\Kuba\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-03-10]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128 2016-04-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [321536 2022-01-26] (Brother Industries, Ltd.) [File not signed]
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [29975672 2026-04-13] (Gen Digital Inc. -> Gen Digital Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe [2067464 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\NisSrv.exe [4435096 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe [290744 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R2 APXACC; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [228032 2014-08-07] (AppEx Networks Corporation -> AppEx Networks Corporation)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82352 2026-02-14] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-02-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [635272 2026-02-14] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102832 2026-02-14] (Microsoft Windows -> Microsoft Corporation)
U3 idsvc; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-04-17 10:35 - 2026-04-17 10:39 - 000020128 _____ C:\Users\Kuba\Downloads\FRST.txt
2026-04-17 10:34 - 2026-04-17 10:37 - 000000000 ____D C:\FRST
2026-04-17 10:33 - 2026-04-17 10:34 - 002446848 _____ (Farbar) C:\Users\Kuba\Downloads\FRST64.exe
2026-04-17 10:28 - 2026-04-17 10:28 - 000000000 ____D C:\Users\Kuba\Desktop\IObit Driver Booster Pro 13.0.0.143 CZ + SK (x64) portable
2026-04-17 10:28 - 2026-04-17 10:28 - 000000000 ____D C:\Users\Kuba\Desktop\CCleaner Professional 6.39.11548 CZ + SK (x32x64) portable
2026-04-13 14:28 - 2026-04-13 14:32 - 000000000 ___HD C:\$WINDOWS.~BT
2026-04-13 14:23 - 2026-04-13 14:23 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2026-04-12 15:44 - 2026-04-12 15:46 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-04-17 10:27 - 2016-06-08 20:24 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Microsoft\Šablony
2026-04-13 14:44 - 2023-01-30 18:57 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-04-13 14:44 - 2023-01-30 18:57 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-04-13 14:43 - 2020-03-01 15:54 - 000000000 ____D C:\Users\Kuba\Downloads\SV Porubská 1012, 1013_soubory
2026-04-13 14:36 - 2023-01-30 18:20 - 000000000 ___DC C:\WINDOWS\Panther
2026-04-13 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-04-13 14:23 - 2016-06-08 19:54 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-04-13 14:20 - 2023-01-30 19:07 - 000003714 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{412EBEDF-56AB-4C8C-9970-430F98FD7FAE}
2026-04-13 14:20 - 2023-01-30 19:07 - 000003588 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{25945DA5-2A5C-40F4-9413-5158F06D1E11}
2026-04-13 14:17 - 2023-01-30 19:00 - 001885020 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-04-13 14:17 - 2019-12-07 16:41 - 000779752 _____ C:\WINDOWS\system32\perfh005.dat
2026-04-13 14:17 - 2019-12-07 16:41 - 000177738 _____ C:\WINDOWS\system32\perfc005.dat
2026-04-13 14:17 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2026-04-13 14:11 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-04-13 14:09 - 2023-01-30 19:06 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-04-13 14:09 - 2022-09-08 05:11 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-04-12 16:00 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-04-12 15:59 - 2016-06-04 10:28 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2026-04-12 15:43 - 2025-02-15 17:36 - 000003572 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-341024713-4101589263-3484562621-1000
2026-04-12 15:43 - 2024-05-02 17:21 - 000002421 _____ C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-04-12 15:43 - 2023-01-30 19:16 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-341024713-4101589263-3484562621-1000
2026-04-12 15:43 - 2023-01-30 19:15 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-341024713-4101589263-3484562621-1000
2026-03-24 19:57 - 2023-01-30 18:55 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-04-2026
Ran by Kuba (administrator) on KUBA-PC (17-04-2026 10:35:47)
Running from C:\Users\Kuba\Downloads\FRST64.exe
Loaded Profiles: Kuba
Platform: Microsoft Windows 10 Home Version 22H2 19045.2728 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\WINDOWS\System32\atieclxx.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
(C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{6E5BB5CD-E5CA-4890-A307-1F24B00901DB}\MicrosoftEdge_X64_146.0.3856.109.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{6E5BB5CD-E5CA-4890-A307-1F24B00901DB}\EDGEMITMP_9C1F1.tmp\setup.exe
(C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{6E5BB5CD-E5CA-4890-A307-1F24B00901DB}\MicrosoftEdge_X64_146.0.3856.109.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe <2>
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCopyAccelerator.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\146.0.3856.109\identity_helper.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(services.exe ->) (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(services.exe ->) (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\146.0.3856.109\elevation_service.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2>
(services.exe ->) (Microsoft Corporation) [File not signed] C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\WINDOWS\System32\atiesrxx.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\NisSrv.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe <3>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Kuba\AppData\Local\Microsoft\OneDrive\26.051.0316.0004_1\OneDriveLauncher.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\CompatTelRunner.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\smartscreen.exe
(wuauclt.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\WINDOWS\SoftwareDistribution\Download\Install\AM_Delta.exe
(wuauclt.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\WINDOWS\System32\MpSigStub.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NUSB3MON] => C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [97280 2012-04-11] (Advanced Micro Devices, Inc.) [File not signed]
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13671640 2014-04-10] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656 2016-04-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3146752 2022-02-07] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsInd00] => C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [1885184 2012-12-18] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-341024713-4101589263-3484562621-1000\...\Run: [MicrosoftEdgeAutoLaunch_00020AD6DFF5EB12C6A1648CAF1C02D4] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5003816 2026-04-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-341024713-4101589263-3484562621-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [39936 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\doPDF 7 Monitor: C:\WINDOWS\system32\dopdfmn7.dll [25920 2013-02-13] (Softland S.R.L. -> Softland)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {BCF423E7-82FA-42C8-964C-5C52D32E5858} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe Scan -ScheduleJob -RestrictPrivileges (No File)
Task: {9A6BAC20-02DC-4021-9BCD-0297C24BC61B} - System32\Tasks\Microsoft\Microsoft Antimalware\MpIdleTask => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe -IdleTask -TaskName MpIdleTask (No File)
Task: {8FC20C78-5ADD-45A7-9DDE-B8B0A824A543} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch (No File)
Task: {BE72ED0E-0B1B-41FC-9BAD-3FD77B01D2FB} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (No File)
Task: {46A9F528-27D7-4746-9442-DA9993FF4D4A} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (No File)
Task: {19F804BE-111F-419F-A172-B17EFA12BB83} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => %SystemRoot%\ehome\ehPrivJob.exe /DRMInit (No File)
Task: {2B8CCE4C-FB48-485F-BEDC-194975610D31} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (No File)
Task: {F9F93275-7A78-4127-8ABC-0A3F9C765296} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => %SystemRoot%\ehome\mcupdate $(Arg0) (No File)
Task: {3B99CCF7-11A2-4A08-BF51-5BA4DD5E4DB1} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask (No File)
Task: {49CE66A0-907A-442E-9267-ED2CE6AC89AF} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask (No File)
Task: {372C0873-1105-4E69-B4E2-9447E700687A} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate (No File)
Task: {3A2F6FB7-3236-4937-9B03-4A41C9DCC092} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (No File)
Task: {11549950-EE5A-4FA5-8CE8-21D063ED13A7} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery (No File)
Task: {2AF7B27F-604F-40B1-B8CA-41BD996A5882} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (No File)
Task: {9E53B2DA-E388-4603-A105-64DD276FB56A} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (No File)
Task: {DB198E41-CFB3-40CD-B705-9EDAEB435347} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => %windir%\ehome\MCUpdate.exe -pscn 0 (No File)
Task: {3321561E-C46A-4903-A169-46EF182CB306} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask (No File)
Task: {F745E098-E55E-4028-97A0-E7B2399E9D59} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => %SystemRoot%\ehome\mcupdate.exe -PvrSchedule (No File)
Task: {245917E5-8BAC-4AD3-AC9E-01BB54FA01CA} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => %SystemRoot%\ehome\ehrec /RestartRecording (No File)
Task: {3E37E8E1-5068-497F-A39C-B33F1925EABB} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (No File)
Task: {0F9FC612-AD62-4BA9-9D8E-334516DAB1B2} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot (No File)
Task: {B07D4BB6-FEB1-4D37-99B9-D6F2ADF42635} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask (No File)
Task: {CC663199-5221-44CB-8C01-792E1811830B} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (No File)
Task: {D3593AE2-D94A-4848-84AF-70B03E843C1B} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E}
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40b4-8963-D3C761B18371}
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47c2-B62A-B7C4CED925CB}
Task: {F120EADE-107D-4AED-9415-241D67B1BE05} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {B1141741-3DCA-49C6-A0DB-E5AC83A8F985} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61}
Task: {29B52017-2FC0-4D2B-A04B-E05F4B180A2A} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1}
Task: {9893E420-5455-4D42-9538-585DE770BA46} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {082A06E5-86AE-4C39-B37C-3A3A0FEFA452} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {256475AF-B4C6-420E-8036-814B5A2B7D9B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {78FEC13F-C8D0-4C4E-B276-F7F5EED93712} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B72FB285-828D-4D7B-BF6C-E5FCF47C553E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AF5AAA95-3AC4-4E09-840E-D6FA166D1692} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [33920 2026-04-12] (Mozilla Corporation -> Mozilla Foundation)
Task: {F1A8944E-D874-4A2F-B643-A91FE291219B} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-341024713-4101589263-3484562621-1000 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5500536 2026-04-13] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {D4CEBFD4-8CC8-46CB-841E-B1B070304051} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-341024713-4101589263-3484562621-1000 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5500536 2026-04-13] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {E69F6D7F-D6F6-481B-8416-0D52DC079D5F} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6579464 2026-04-13] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {8CE79D82-7057-4FC4-84FE-31EE5CA7F091} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-01-19] (Gen Digital Inc. -> Gen Digital Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{689E487F-5EE0-403F-94A9-121ABD1BD5CD}: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF TaskBarID: E7CF176E110C211B -> C:\Program Files (x86)\Mozilla Firefox
FF DefaultProfile: 23rsy3zx.default -> E7CF176E110C211B
FF ProfilePath: C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\23rsy3zx.default [2026-04-17]
FF DownloadDir: C:\Documents and Settings\Dusan\Dokumenty\Stažené soubory
FF Homepage: Mozilla\Firefox\Profiles\23rsy3zx.default -> hxxps://www.google.cz/
FF NetworkProxy: Mozilla\Firefox\Profiles\23rsy3zx.default -> type", 0
FF Extension: (uBlock Origin) - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\23rsy3zx.default\Extensions\uBlock0@raymondhill.net.xpi [2026-03-24]
FF Extension: (No Name) - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\23rsy3zx.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [not found]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-04-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Kuba\AppData\Local\Microsoft\Edge\User Data\Default [2026-04-17]
Edge Extension: (Dokumenty Google offline) - C:\Users\Kuba\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-04-13]
Edge Extension: (Edge relevant text changes) - C:\Users\Kuba\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-03-10]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128 2016-04-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [321536 2022-01-26] (Brother Industries, Ltd.) [File not signed]
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [29975672 2026-04-13] (Gen Digital Inc. -> Gen Digital Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe [2067464 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\NisSrv.exe [4435096 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe [290744 2026-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R2 APXACC; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [228032 2014-08-07] (AppEx Networks Corporation -> AppEx Networks Corporation)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82352 2026-02-14] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-02-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [635272 2026-02-14] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102832 2026-02-14] (Microsoft Windows -> Microsoft Corporation)
U3 idsvc; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-04-17 10:35 - 2026-04-17 10:39 - 000020128 _____ C:\Users\Kuba\Downloads\FRST.txt
2026-04-17 10:34 - 2026-04-17 10:37 - 000000000 ____D C:\FRST
2026-04-17 10:33 - 2026-04-17 10:34 - 002446848 _____ (Farbar) C:\Users\Kuba\Downloads\FRST64.exe
2026-04-17 10:28 - 2026-04-17 10:28 - 000000000 ____D C:\Users\Kuba\Desktop\IObit Driver Booster Pro 13.0.0.143 CZ + SK (x64) portable
2026-04-17 10:28 - 2026-04-17 10:28 - 000000000 ____D C:\Users\Kuba\Desktop\CCleaner Professional 6.39.11548 CZ + SK (x32x64) portable
2026-04-13 14:28 - 2026-04-13 14:32 - 000000000 ___HD C:\$WINDOWS.~BT
2026-04-13 14:23 - 2026-04-13 14:23 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2026-04-12 15:44 - 2026-04-12 15:46 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-04-17 10:27 - 2016-06-08 20:24 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Microsoft\Šablony
2026-04-13 14:44 - 2023-01-30 18:57 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-04-13 14:44 - 2023-01-30 18:57 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-04-13 14:43 - 2020-03-01 15:54 - 000000000 ____D C:\Users\Kuba\Downloads\SV Porubská 1012, 1013_soubory
2026-04-13 14:36 - 2023-01-30 18:20 - 000000000 ___DC C:\WINDOWS\Panther
2026-04-13 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-04-13 14:23 - 2016-06-08 19:54 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-04-13 14:20 - 2023-01-30 19:07 - 000003714 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{412EBEDF-56AB-4C8C-9970-430F98FD7FAE}
2026-04-13 14:20 - 2023-01-30 19:07 - 000003588 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{25945DA5-2A5C-40F4-9413-5158F06D1E11}
2026-04-13 14:17 - 2023-01-30 19:00 - 001885020 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-04-13 14:17 - 2019-12-07 16:41 - 000779752 _____ C:\WINDOWS\system32\perfh005.dat
2026-04-13 14:17 - 2019-12-07 16:41 - 000177738 _____ C:\WINDOWS\system32\perfc005.dat
2026-04-13 14:17 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2026-04-13 14:11 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-04-13 14:09 - 2023-01-30 19:06 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-04-13 14:09 - 2022-09-08 05:11 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-04-12 16:00 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-04-12 15:59 - 2016-06-04 10:28 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2026-04-12 15:43 - 2025-02-15 17:36 - 000003572 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-341024713-4101589263-3484562621-1000
2026-04-12 15:43 - 2024-05-02 17:21 - 000002421 _____ C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-04-12 15:43 - 2023-01-30 19:16 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-341024713-4101589263-3484562621-1000
2026-04-12 15:43 - 2023-01-30 19:15 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-341024713-4101589263-3484562621-1000
2026-03-24 19:57 - 2023-01-30 18:55 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================