Prosím om preventivku, avast furt něco hlásí
Odeslal: 05 Zář 2026 09:15
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-08-2026
Ran by WinCan (administrator) on OCHMAŇÁCI (05-09-2026 09:51:01)
Running from C:\Users\WinCan\Desktop\FRST64.exe
Loaded Profiles: WinCan
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe ->) () [File not signed] C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK_0\tor.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxEM.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <5>
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <15>
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (DTS, Inc. -> ) C:\Windows\System32\DTS\PC\APO3x\DTSAPO3Service.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_5b51a286c5d2f192\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_65ac4d73bb85cb27\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_65ac4d73bb85cb27\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Memeo) [File not signed] C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(services.exe ->) (SafeNet, Inc. -> SafeNet Inc.) C:\Windows\System32\hasplms.exe
(services.exe ->) (WDC) [File not signed] C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2606.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (Google LLC) [File not signed] C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [838432 2019-03-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [1072056 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [750680 2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 <==== ATTENTION
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Microsoft Edge Update] => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.265.7\MicrosoftEdgeUpdateCore.exe [344400 2026-09-01] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31349528 2024-03-20] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [46787544 2026-08-10] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1008336 2026-06-19] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [MicrosoftEdgeAutoLaunch_CCCDB6D5B6877A23EE2B9C7196BB003D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5365576 2026-09-02] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\MountPoints2: {d88fbe70-226d-11eb-bd8a-0492265a3e51} - "E:\WD SmartWare.exe" autoplay=true
HKLM\...\Windows x64\Print Processors\Canon MG3000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDG.DLL [30720 2023-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\Canon MX920 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBL.DLL [30208 2012-09-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX920 series: C:\Windows\system32\CNCALBL.DLL [303104 2012-09-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3000 series: C:\Windows\system32\CNMLMDG.DLL [485376 2023-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MX920 series: C:\Windows\system32\CNMLMBL.DLL [390656 2012-09-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\EPSON L6190 Series 64MonitorBE: C:\Windows\system32\E_YLMBSPE.DLL [184832 2017-07-14] (Seiko Epson Corporation) [File not signed]
HKLM\Software\...\AppCompatFlags\Custom\H3Blade.exe: [{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb] -> HoMM III Compatibility Database
HKLM\Software\...\AppCompatFlags\InstalledSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb [2023-10-18]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> "C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe" --first-run (No File)
Startup: C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DYYHXHYNDOFXWVHK.lnk [2026-07-01]
ShortcutTarget: DYYHXHYNDOFXWVHK.lnk -> (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDDMStatus.lnk [2020-11-09]
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (Western Digital Technologies Inc. -> WDC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDSmartWare.lnk [2020-11-09]
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital Technologies Inc. -> Western Digital)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {D512437F-0D0B-458D-81FF-8F8C57907AB9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {DFCEF145-8CC7-4C07-AA29-FAE91264630D} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9795576 2026-07-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {DAC51482-A7D8-40C3-B165-8DC974D7E2BD} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5805496 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {29F3202B-48E4-4BD9-A215-B29D3476F643} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2025-10-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {F8087465-D84E-4D39-8275-6B05B1DF0F33} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (No File)
Task: {9358FD62-420A-4437-B963-DBDE25460E9C} - System32\Tasks\DYYHXHYNDOFXWVHK_run => C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe [2785432 2026-07-04] (Google LLC) [File not signed]
Task: {5DE18494-A1E1-471F-9D91-8B78D1C36B2D} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [31000 2024-03-20] (Garmin International, Inc. -> )
Task: {FBA14432-5F90-4239-8EC7-8A2CAE20D3FC} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
Task: {FF0D34D1-109F-47C1-97A1-C7477A1CDB17} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2113024 2023-05-12] () [File not signed]
Task: {70B399D4-1026-494B-BCD6-1CE1488E4962} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24257912 2018-12-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {17BF3C50-985F-422C-B74F-8B43EF4F904B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24257912 2018-12-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {3677C24E-C532-4B61-9A7C-77F82BF3AA1C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\sdxhelper.exe [123168 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {1DDEF508-8FAF-45E1-8484-18A0F0D7AE62} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\sdxhelper.exe [123168 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {02E1ABC8-FBB4-4880-B73A-FA668694E9C5} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2139424 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {85D3EA01-14AC-4D72-811B-307B20393BAD} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2139424 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {D20EBBB1-55CD-47A9-9962-E16B57D92CA0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [3398344 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {3ADB4836-F7CC-465F-8863-98C4B816405B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [3398344 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {82FE661D-EBEA-4C7D-AD42-95C213A01623} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001Core => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {BEB3D2DC-FFC2-482C-A3A3-DFE361843847} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001UA => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {10B09F56-3773-4DFE-A2FD-505198512A1E} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [1326720 2026-08-30] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {F6D84E5D-440B-4244-850B-F1943E28B187} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3710502255-1612003614-3486849990-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [1326720 2026-08-30] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {70D390B7-7A11-498C-BA7B-40681A2156DE} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33920 2026-08-30] (Mozilla Corporation -> Mozilla Foundation)
Task: {D869AFD7-DCEA-411A-AD52-CA8076FA560C} - System32\Tasks\PCAppStoreAutoUpdater => "C:\Users\WinCan\PCAppStore\AutoUpdater.exe" /i (No File)
Task: {DD6FA345-2D89-48E4-9ADF-163F924E2CF6} - System32\Tasks\PinnacleStudio24Notifier => C:\Program Files\Pinnacle\Studio 24\programs\PinnacleNotifierWrapper.exe [18016 2020-08-09] (Corel Corporation -> Pinnacle)
Task: {8B0A5DAB-758B-42C2-9DF7-79C89F64A39E} - System32\Tasks\Teamviewer-QS-updater-4ddf6hs => C:\Users\WinCan\AppData\Local\TeamViewer\CustomConfigs\4ddf6hs\TeamViewer.exe [36779288 2021-02-18] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
Task: {979BAF55-3D9F-40E0-9FF9-5748880F8FEF} - System32\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {0458FF29-A5E5-45CB-9F27-EB03127CFB4F} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Teamviewer-QS-updater-4ddf6hs.job => C:\Users\WinCan\AppData\Local\TeamViewer\CustomConfigs\4ddf6hs\TeamViewer.exe
Task: C:\WINDOWS\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 94.142.233.120 94.142.233.140 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{ffdec9c8-ae1c-4630-8bde-449ed677045f}: [DhcpNameServer] 94.142.233.120 94.142.233.140 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{ffdec9c8-ae1c-4630-8bde-449ed677045f}: [DhcpDomain] NetisRouter_64eeb71803bf
FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF DefaultProfile: lcrq4t87.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\ul0pjuxr.default [2023-07-23]
FF NewTab: Mozilla\Firefox\Profiles\ul0pjuxr.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
FF Extension: (No Name) - C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK_0 [2026-07-29] [not signed]
FF ProfilePath: C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release [2026-09-05]
FF Homepage: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://www.seznam.cz/
FF NewTab: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
FF Notifications: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://www.tipli.cz; hxxps://www.muziker.cz; hxxps://www.luxor.cz; hxxps://www.facebook.com; hxxps://www.bezvasport.cz
FF Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2026-09-05]
FF Extension: (SponsorBlock pro YouTube – Přeskoč sponzory) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\sponsorBlocker@ajay.app.xpi [2026-07-13]
FF Extension: (TinEye Reverse Image Search) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\tineye@ideeinc.com.xpi [2025-05-31]
FF Extension: (Audio Equalizer) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\{63d150c4-394c-4275-bc32-c464e76a891c}.xpi [2026-07-04]
FF Extension: (Flash Player 2021) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\{6cc0a66e-ae3d-4cd8-9a03-5cd93b392903}.xpi [2022-01-02]
FF Plugin: @java.com/DTPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-08-10] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [File not signed]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @photodex.com/PhotodexPresenter -> C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll [2023-05-25] () [File not signed]
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default [2026-06-14]
Edge DownloadDir: C:\Users\WinCan\Downloads
Edge HomePage: Default -> hxxps://www.google.cz/
Edge StartupUrls: Default -> "hxxps://www.google.cz/"
Edge Extension: (Dokumenty Google offline) - C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-14]
Edge Extension: (Edge relevant text changes) - C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-27]
Edge DownloadDir: Default -> C:\Users\WinCan\Downloads
Chrome:
=======
CHR Profile: C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default [2026-07-06]
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR Extension: (Dokumenty Google offline) - C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-07-06]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-03]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8039352 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1044920 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2755512 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1097656 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-06-06] (Avast Software s.r.o. -> AVAST Software)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3642064 2026-06-23] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9619824 2018-12-26] (Microsoft Corporation -> Microsoft Corporation)
R2 DTSAPO3Service; C:\WINDOWS\System32\DTS\PC\APO3x\DTSAPO3Service.exe [206720 2018-09-05] (DTS, Inc. -> )
R2 hasplms; C:\Windows\system32\hasplms.exe [4665168 2015-09-24] (SafeNet, Inc. -> SafeNet Inc.)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [443344 2020-05-25] (Canon Inc. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [130048 2010-01-21] (WDC) [File not signed]
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\NisSrv.exe [2372048 2020-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WDSmartWareBackgroundService; C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MsMpEng.exe [128376 2020-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc (No File)
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc (No File)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aksdf; \??\C:\Windows\system32\drivers\aksdf.sys [109200 2015-09-24] (SafeNet, Inc. -> )
R2 aksfridge; \??\C:\Windows\system32\drivers\aksfridge.sys [205528 2015-09-24] (SafeNet, Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [21088 2026-04-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [245856 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [393824 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [317024 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [80992 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswDrvBrg; C:\WINDOWS\System32\drivers\aswDrvBrg.sys [86112 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [29144 2025-06-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [34912 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [299616 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [637024 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [100960 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [71776 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [857696 2026-09-05] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1299040 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [250976 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [473184 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 DSoftAPRtlWlanu; C:\WINDOWS\System32\drivers\DSoftAPrtwlanu.sys [5608960 2016-11-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 e1dexpress; C:\WINDOWS\System32\DriverStore\FileRepository\e1d.inf_amd64_e64afe811c7e4662\e1d.sys [607400 2022-02-22] (Intel Corporation -> Intel Corporation)
R1 ElbyCDIO; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [42616 2017-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG)
R2 hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [350552 2015-09-24] (SafeNet, Inc. -> )
S4 IObitUnlocker; \??\C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [41536 2022-08-17] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2020-11-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [428264 2020-11-02] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [69864 2020-11-02] (Microsoft Windows -> Microsoft Corporation)
S3 R0OverwolfBrowser; \??\C:\Program Files (x86)\Overwolf\0.304.0.11\OverwolfBrowser.sys (No File)
==================== SvcHost (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-09-05 09:51 - 2026-09-05 09:51 - 000029877 _____ C:\Users\WinCan\Desktop\FRST.txt
2026-09-05 09:38 - 2026-09-05 09:38 - 002450944 _____ (Farbar) C:\Users\WinCan\Desktop\FRST64.exe
2026-08-30 21:37 - 2026-08-30 21:37 - 000012155 _____ C:\Users\WinCan\Downloads\[SkT]Neuteces___It_Follows_(2014)(CZ)[WebRip]_=_CSFD_60_.torrent
2026-08-30 21:34 - 2026-08-30 21:34 - 000088310 _____ C:\Users\WinCan\Downloads\[SkT]Stáhni_mě_do_pekla___Drag_Me_to_Hell_(2009)(CZ_EN)[2160p][HDR10_DV][HEVC]_=_CSFD_67_.torrent
2026-08-30 21:21 - 2026-08-30 21:21 - 000021656 _____ C:\Users\WinCan\Downloads\[SkT]Spider-Man__Zbrusu_nový_den___Spider-Man__Brand_New_Day_(2026)(CZ)[1080p][CAM]_=_CSFD_83_.torrent
2026-08-30 21:09 - 2026-08-30 21:09 - 000019419 _____ C:\Users\WinCan\Downloads\[SkT]Interstellar_(2014)(CZ_EN)[2160p][HDR_DV][HEVC]_=_CSFD_85_.torrent
2026-08-30 21:06 - 2026-08-30 21:06 - 000019984 _____ C:\Users\WinCan\Downloads\[SkT]Sirat___Sirāt_(2025)(CZ_ES)[WEB-DL][1080p]_=_CSFD_74_.torrent
2026-08-30 21:03 - 2026-09-01 20:34 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-08-30 21:03 - 2026-08-30 21:03 - 000097068 _____ C:\Users\WinCan\Downloads\[SkT]Interstellar_(2014)_BDRip.CZ.EN.1080p_=_CSFD_85_.torrent
2026-08-24 16:22 - 2026-08-24 16:22 - 000024967 _____ C:\Users\WinCan\Downloads\[SkT]Posedlost___Obsession_(2026)(CZ_EN)[1080p]_=_CSFD_82_.torrent
2026-08-24 16:22 - 2026-08-24 16:22 - 000021136 _____ C:\Users\WinCan\Downloads\[SkT]Toy_Story_5__Příběh_hraček_(2026)(CZ_SK_EN)[1080p]_=_CSFD_81_.torrent
2026-08-24 16:20 - 2026-08-24 16:20 - 000022245 _____ C:\Users\WinCan\Downloads\[SkT]Den_odhalení___Disclosure_Day_(2026)(CZ_EN)[1080p]_=_CSFD_61_.torrent
2026-08-24 15:31 - 2026-08-30 21:17 - 000002148 _____ C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-08-07 21:28 - 2026-08-07 21:28 - 000017068 _____ C:\Users\WinCan\Downloads\[SkT]Supergirl_(2026)(CZ)[1080p]_=_CSFD_57_.torrent
2026-08-07 21:17 - 2026-08-07 21:19 - 000349486 _____ C:\Users\WinCan\Downloads\Přihláška - Jana Ochmanová.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-09-05 09:52 - 2019-09-18 10:33 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\Microsoft\Word
2026-09-05 09:51 - 2023-07-18 18:13 - 000000000 ____D C:\FRST
2026-09-05 09:36 - 2023-01-17 16:59 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-09-05 09:36 - 2020-06-18 11:09 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-09-05 09:36 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-09-05 09:32 - 2021-06-06 12:13 - 000000000 ____D C:\Users\WinCan\AppData\Local\Avast Software
2026-09-05 09:32 - 2020-11-16 11:43 - 002575330 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-09-05 09:32 - 2020-11-16 11:01 - 000732278 _____ C:\WINDOWS\system32\perfh007.dat
2026-09-05 09:32 - 2020-11-16 11:01 - 000149678 _____ C:\WINDOWS\system32\perfc007.dat
2026-09-05 09:32 - 2019-12-07 16:43 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2026-09-05 09:32 - 2019-12-07 16:43 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2026-09-05 09:32 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2026-09-05 09:31 - 2021-12-16 17:54 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-09-05 09:30 - 2020-11-16 11:43 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-09-05 09:30 - 2020-11-16 11:43 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-09-05 09:30 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-09-05 09:28 - 2020-11-02 20:18 - 000857696 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2026-09-05 09:27 - 2020-11-02 20:17 - 000000000 ____D C:\ProgramData\Avast Software
2026-09-05 09:27 - 2019-07-26 08:35 - 000000000 __SHD C:\Users\WinCan\IntelGraphicsProfiles
2026-09-05 09:26 - 2020-11-16 11:43 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-09-05 09:26 - 2020-11-16 11:38 - 000008192 ___SH C:\DumpStack.log.tmp
2026-09-05 09:26 - 2019-07-26 08:35 - 000000000 ____D C:\Intel
2026-09-01 20:55 - 2023-07-23 11:21 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\qBittorrent
2026-09-01 20:55 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-09-01 20:38 - 2022-07-07 16:16 - 000003904 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001UA
2026-09-01 20:38 - 2022-07-07 16:16 - 000003840 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001Core
2026-09-01 20:37 - 2025-02-17 06:54 - 000003578 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-01 20:37 - 2023-07-15 12:33 - 000002397 _____ C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-09-01 20:37 - 2021-12-12 20:55 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-01 20:37 - 2020-11-16 11:43 - 000003370 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-01 20:34 - 2019-07-26 10:50 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-08-30 21:26 - 2019-07-26 10:57 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\vlc
2026-08-30 21:17 - 2021-10-09 16:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2026-08-30 21:17 - 2019-07-26 10:50 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-08-30 21:06 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2026-08-20 09:10 - 2020-11-16 11:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-08-20 09:07 - 2019-09-06 12:37 - 000000000 ____D C:\Users\WinCan\AppData\Local\D3DSCache
2026-08-20 09:06 - 2019-07-26 08:38 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-08-20 09:03 - 2019-07-26 08:38 - 228836432 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-08-20 08:56 - 2022-10-12 15:15 - 000002157 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-08-20 08:56 - 2022-10-12 15:15 - 000002072 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2026-08-07 20:06 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
==================== Files in the root of some directories ========
2019-07-26 11:17 - 2019-07-26 11:17 - 001389056 _____ (Indigo Rose Corporation) C:\Program Files (x86)\uninstallWinCanVX.exe
2023-06-25 09:42 - 2025-05-31 10:07 - 000001224 _____ () C:\Users\WinCan\AppData\Roaming\DESKTOP-Q0QN2E9.MTBF.txt
2023-06-25 09:42 - 2025-05-31 14:23 - 000005632 _____ () C:\Users\WinCan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2025-11-22 16:40 - 2025-11-22 16:41 - 000095816 _____ () C:\Users\WinCan\AppData\Local\dxdiag.log
2019-09-30 11:48 - 2019-09-30 11:48 - 000000003 _____ () C:\Users\WinCan\AppData\Local\updater.log
2019-09-30 11:48 - 2026-01-18 11:24 - 000000059 _____ () C:\Users\WinCan\AppData\Local\UserProducts.xml
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Ran by WinCan (administrator) on OCHMAŇÁCI (05-09-2026 09:51:01)
Running from C:\Users\WinCan\Desktop\FRST64.exe
Loaded Profiles: WinCan
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe ->) () [File not signed] C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK_0\tor.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxEM.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <5>
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <15>
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (DTS, Inc. -> ) C:\Windows\System32\DTS\PC\APO3x\DTSAPO3Service.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_bdd49bbe6b990549\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_5b51a286c5d2f192\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_65ac4d73bb85cb27\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_65ac4d73bb85cb27\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Memeo) [File not signed] C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(services.exe ->) (SafeNet, Inc. -> SafeNet Inc.) C:\Windows\System32\hasplms.exe
(services.exe ->) (WDC) [File not signed] C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2606.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (Google LLC) [File not signed] C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [838432 2019-03-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [1072056 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [750680 2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 <==== ATTENTION
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Microsoft Edge Update] => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\1.3.265.7\MicrosoftEdgeUpdateCore.exe [344400 2026-09-01] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31349528 2024-03-20] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [46787544 2026-08-10] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1008336 2026-06-19] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\Run: [MicrosoftEdgeAutoLaunch_CCCDB6D5B6877A23EE2B9C7196BB003D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5365576 2026-09-02] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3710502255-1612003614-3486849990-1001\...\MountPoints2: {d88fbe70-226d-11eb-bd8a-0492265a3e51} - "E:\WD SmartWare.exe" autoplay=true
HKLM\...\Windows x64\Print Processors\Canon MG3000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDG.DLL [30720 2023-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\Canon MX920 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBL.DLL [30208 2012-09-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX920 series: C:\Windows\system32\CNCALBL.DLL [303104 2012-09-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3000 series: C:\Windows\system32\CNMLMDG.DLL [485376 2023-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MX920 series: C:\Windows\system32\CNMLMBL.DLL [390656 2012-09-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\EPSON L6190 Series 64MonitorBE: C:\Windows\system32\E_YLMBSPE.DLL [184832 2017-07-14] (Seiko Epson Corporation) [File not signed]
HKLM\Software\...\AppCompatFlags\Custom\H3Blade.exe: [{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb] -> HoMM III Compatibility Database
HKLM\Software\...\AppCompatFlags\InstalledSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb [2023-10-18]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> "C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe" --first-run (No File)
Startup: C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DYYHXHYNDOFXWVHK.lnk [2026-07-01]
ShortcutTarget: DYYHXHYNDOFXWVHK.lnk -> (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDDMStatus.lnk [2020-11-09]
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (Western Digital Technologies Inc. -> WDC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDSmartWare.lnk [2020-11-09]
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital Technologies Inc. -> Western Digital)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {D512437F-0D0B-458D-81FF-8F8C57907AB9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {DFCEF145-8CC7-4C07-AA29-FAE91264630D} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9795576 2026-07-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {DAC51482-A7D8-40C3-B165-8DC974D7E2BD} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5805496 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {29F3202B-48E4-4BD9-A215-B29D3476F643} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2025-10-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {F8087465-D84E-4D39-8275-6B05B1DF0F33} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (No File)
Task: {9358FD62-420A-4437-B963-DBDE25460E9C} - System32\Tasks\DYYHXHYNDOFXWVHK_run => C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK.exe [2785432 2026-07-04] (Google LLC) [File not signed]
Task: {5DE18494-A1E1-471F-9D91-8B78D1C36B2D} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [31000 2024-03-20] (Garmin International, Inc. -> )
Task: {FBA14432-5F90-4239-8EC7-8A2CAE20D3FC} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
Task: {FF0D34D1-109F-47C1-97A1-C7477A1CDB17} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2113024 2023-05-12] () [File not signed]
Task: {70B399D4-1026-494B-BCD6-1CE1488E4962} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24257912 2018-12-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {17BF3C50-985F-422C-B74F-8B43EF4F904B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24257912 2018-12-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {3677C24E-C532-4B61-9A7C-77F82BF3AA1C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\sdxhelper.exe [123168 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {1DDEF508-8FAF-45E1-8484-18A0F0D7AE62} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\sdxhelper.exe [123168 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {02E1ABC8-FBB4-4880-B73A-FA668694E9C5} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2139424 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {85D3EA01-14AC-4D72-811B-307B20393BAD} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2139424 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {D20EBBB1-55CD-47A9-9962-E16B57D92CA0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [3398344 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {3ADB4836-F7CC-465F-8863-98C4B816405B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [3398344 2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {82FE661D-EBEA-4C7D-AD42-95C213A01623} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001Core => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {BEB3D2DC-FFC2-482C-A3A3-DFE361843847} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001UA => C:\Users\WinCan\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {10B09F56-3773-4DFE-A2FD-505198512A1E} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [1326720 2026-08-30] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {F6D84E5D-440B-4244-850B-F1943E28B187} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3710502255-1612003614-3486849990-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [1326720 2026-08-30] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {70D390B7-7A11-498C-BA7B-40681A2156DE} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33920 2026-08-30] (Mozilla Corporation -> Mozilla Foundation)
Task: {D869AFD7-DCEA-411A-AD52-CA8076FA560C} - System32\Tasks\PCAppStoreAutoUpdater => "C:\Users\WinCan\PCAppStore\AutoUpdater.exe" /i (No File)
Task: {DD6FA345-2D89-48E4-9ADF-163F924E2CF6} - System32\Tasks\PinnacleStudio24Notifier => C:\Program Files\Pinnacle\Studio 24\programs\PinnacleNotifierWrapper.exe [18016 2020-08-09] (Corel Corporation -> Pinnacle)
Task: {8B0A5DAB-758B-42C2-9DF7-79C89F64A39E} - System32\Tasks\Teamviewer-QS-updater-4ddf6hs => C:\Users\WinCan\AppData\Local\TeamViewer\CustomConfigs\4ddf6hs\TeamViewer.exe [36779288 2021-02-18] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
Task: {979BAF55-3D9F-40E0-9FF9-5748880F8FEF} - System32\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {0458FF29-A5E5-45CB-9F27-EB03127CFB4F} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Teamviewer-QS-updater-4ddf6hs.job => C:\Users\WinCan\AppData\Local\TeamViewer\CustomConfigs\4ddf6hs\TeamViewer.exe
Task: C:\WINDOWS\Tasks\update-S-1-5-21-3710502255-1612003614-3486849990-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 94.142.233.120 94.142.233.140 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{ffdec9c8-ae1c-4630-8bde-449ed677045f}: [DhcpNameServer] 94.142.233.120 94.142.233.140 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{ffdec9c8-ae1c-4630-8bde-449ed677045f}: [DhcpDomain] NetisRouter_64eeb71803bf
FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF DefaultProfile: lcrq4t87.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\ul0pjuxr.default [2023-07-23]
FF NewTab: Mozilla\Firefox\Profiles\ul0pjuxr.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
FF Extension: (No Name) - C:\Users\WinCan\AppData\Roaming\Mozilla\SystemExtensionsDev\DYYHXHYNDOFXWVHK_0 [2026-07-29] [not signed]
FF ProfilePath: C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release [2026-09-05]
FF Homepage: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://www.seznam.cz/
FF NewTab: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-11-02 06:07:45&bName=
FF Notifications: Mozilla\Firefox\Profiles\lcrq4t87.default-release -> hxxps://www.tipli.cz; hxxps://www.muziker.cz; hxxps://www.luxor.cz; hxxps://www.facebook.com; hxxps://www.bezvasport.cz
FF Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2026-09-05]
FF Extension: (SponsorBlock pro YouTube – Přeskoč sponzory) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\sponsorBlocker@ajay.app.xpi [2026-07-13]
FF Extension: (TinEye Reverse Image Search) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\tineye@ideeinc.com.xpi [2025-05-31]
FF Extension: (Audio Equalizer) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\{63d150c4-394c-4275-bc32-c464e76a891c}.xpi [2026-07-04]
FF Extension: (Flash Player 2021) - C:\Users\WinCan\AppData\Roaming\Mozilla\Firefox\Profiles\lcrq4t87.default-release\Extensions\{6cc0a66e-ae3d-4cd8-9a03-5cd93b392903}.xpi [2022-01-02]
FF Plugin: @java.com/DTPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-08-10] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [File not signed]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @photodex.com/PhotodexPresenter -> C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll [2023-05-25] () [File not signed]
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default [2026-06-14]
Edge DownloadDir: C:\Users\WinCan\Downloads
Edge HomePage: Default -> hxxps://www.google.cz/
Edge StartupUrls: Default -> "hxxps://www.google.cz/"
Edge Extension: (Dokumenty Google offline) - C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-14]
Edge Extension: (Edge relevant text changes) - C:\Users\WinCan\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-27]
Edge DownloadDir: Default -> C:\Users\WinCan\Downloads
Chrome:
=======
CHR Profile: C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default [2026-07-06]
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR Extension: (Dokumenty Google offline) - C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-07-06]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\WinCan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-03]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8039352 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1044920 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2755512 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1097656 2026-07-29] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-06-06] (Avast Software s.r.o. -> AVAST Software)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3642064 2026-06-23] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9619824 2018-12-26] (Microsoft Corporation -> Microsoft Corporation)
R2 DTSAPO3Service; C:\WINDOWS\System32\DTS\PC\APO3x\DTSAPO3Service.exe [206720 2018-09-05] (DTS, Inc. -> )
R2 hasplms; C:\Windows\system32\hasplms.exe [4665168 2015-09-24] (SafeNet, Inc. -> SafeNet Inc.)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [443344 2020-05-25] (Canon Inc. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [130048 2010-01-21] (WDC) [File not signed]
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\NisSrv.exe [2372048 2020-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WDSmartWareBackgroundService; C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MsMpEng.exe [128376 2020-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc (No File)
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc (No File)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aksdf; \??\C:\Windows\system32\drivers\aksdf.sys [109200 2015-09-24] (SafeNet, Inc. -> )
R2 aksfridge; \??\C:\Windows\system32\drivers\aksfridge.sys [205528 2015-09-24] (SafeNet, Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [21088 2026-04-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [245856 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [393824 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [317024 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [80992 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswDrvBrg; C:\WINDOWS\System32\drivers\aswDrvBrg.sys [86112 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [29144 2025-06-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [34912 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [299616 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [637024 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [100960 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [71776 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [857696 2026-09-05] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1299040 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [250976 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [473184 2026-07-29] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 DSoftAPRtlWlanu; C:\WINDOWS\System32\drivers\DSoftAPrtwlanu.sys [5608960 2016-11-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 e1dexpress; C:\WINDOWS\System32\DriverStore\FileRepository\e1d.inf_amd64_e64afe811c7e4662\e1d.sys [607400 2022-02-22] (Intel Corporation -> Intel Corporation)
R1 ElbyCDIO; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [42616 2017-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG)
R2 hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [350552 2015-09-24] (SafeNet, Inc. -> )
S4 IObitUnlocker; \??\C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [41536 2022-08-17] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2020-11-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [428264 2020-11-02] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [69864 2020-11-02] (Microsoft Windows -> Microsoft Corporation)
S3 R0OverwolfBrowser; \??\C:\Program Files (x86)\Overwolf\0.304.0.11\OverwolfBrowser.sys (No File)
==================== SvcHost (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-09-05 09:51 - 2026-09-05 09:51 - 000029877 _____ C:\Users\WinCan\Desktop\FRST.txt
2026-09-05 09:38 - 2026-09-05 09:38 - 002450944 _____ (Farbar) C:\Users\WinCan\Desktop\FRST64.exe
2026-08-30 21:37 - 2026-08-30 21:37 - 000012155 _____ C:\Users\WinCan\Downloads\[SkT]Neuteces___It_Follows_(2014)(CZ)[WebRip]_=_CSFD_60_.torrent
2026-08-30 21:34 - 2026-08-30 21:34 - 000088310 _____ C:\Users\WinCan\Downloads\[SkT]Stáhni_mě_do_pekla___Drag_Me_to_Hell_(2009)(CZ_EN)[2160p][HDR10_DV][HEVC]_=_CSFD_67_.torrent
2026-08-30 21:21 - 2026-08-30 21:21 - 000021656 _____ C:\Users\WinCan\Downloads\[SkT]Spider-Man__Zbrusu_nový_den___Spider-Man__Brand_New_Day_(2026)(CZ)[1080p][CAM]_=_CSFD_83_.torrent
2026-08-30 21:09 - 2026-08-30 21:09 - 000019419 _____ C:\Users\WinCan\Downloads\[SkT]Interstellar_(2014)(CZ_EN)[2160p][HDR_DV][HEVC]_=_CSFD_85_.torrent
2026-08-30 21:06 - 2026-08-30 21:06 - 000019984 _____ C:\Users\WinCan\Downloads\[SkT]Sirat___Sirāt_(2025)(CZ_ES)[WEB-DL][1080p]_=_CSFD_74_.torrent
2026-08-30 21:03 - 2026-09-01 20:34 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-08-30 21:03 - 2026-08-30 21:03 - 000097068 _____ C:\Users\WinCan\Downloads\[SkT]Interstellar_(2014)_BDRip.CZ.EN.1080p_=_CSFD_85_.torrent
2026-08-24 16:22 - 2026-08-24 16:22 - 000024967 _____ C:\Users\WinCan\Downloads\[SkT]Posedlost___Obsession_(2026)(CZ_EN)[1080p]_=_CSFD_82_.torrent
2026-08-24 16:22 - 2026-08-24 16:22 - 000021136 _____ C:\Users\WinCan\Downloads\[SkT]Toy_Story_5__Příběh_hraček_(2026)(CZ_SK_EN)[1080p]_=_CSFD_81_.torrent
2026-08-24 16:20 - 2026-08-24 16:20 - 000022245 _____ C:\Users\WinCan\Downloads\[SkT]Den_odhalení___Disclosure_Day_(2026)(CZ_EN)[1080p]_=_CSFD_61_.torrent
2026-08-24 15:31 - 2026-08-30 21:17 - 000002148 _____ C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-08-07 21:28 - 2026-08-07 21:28 - 000017068 _____ C:\Users\WinCan\Downloads\[SkT]Supergirl_(2026)(CZ)[1080p]_=_CSFD_57_.torrent
2026-08-07 21:17 - 2026-08-07 21:19 - 000349486 _____ C:\Users\WinCan\Downloads\Přihláška - Jana Ochmanová.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-09-05 09:52 - 2019-09-18 10:33 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\Microsoft\Word
2026-09-05 09:51 - 2023-07-18 18:13 - 000000000 ____D C:\FRST
2026-09-05 09:36 - 2023-01-17 16:59 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-09-05 09:36 - 2020-06-18 11:09 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-09-05 09:36 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-09-05 09:32 - 2021-06-06 12:13 - 000000000 ____D C:\Users\WinCan\AppData\Local\Avast Software
2026-09-05 09:32 - 2020-11-16 11:43 - 002575330 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-09-05 09:32 - 2020-11-16 11:01 - 000732278 _____ C:\WINDOWS\system32\perfh007.dat
2026-09-05 09:32 - 2020-11-16 11:01 - 000149678 _____ C:\WINDOWS\system32\perfc007.dat
2026-09-05 09:32 - 2019-12-07 16:43 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2026-09-05 09:32 - 2019-12-07 16:43 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2026-09-05 09:32 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2026-09-05 09:31 - 2021-12-16 17:54 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-09-05 09:30 - 2020-11-16 11:43 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-09-05 09:30 - 2020-11-16 11:43 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-09-05 09:30 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-09-05 09:28 - 2020-11-02 20:18 - 000857696 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2026-09-05 09:27 - 2020-11-02 20:17 - 000000000 ____D C:\ProgramData\Avast Software
2026-09-05 09:27 - 2019-07-26 08:35 - 000000000 __SHD C:\Users\WinCan\IntelGraphicsProfiles
2026-09-05 09:26 - 2020-11-16 11:43 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-09-05 09:26 - 2020-11-16 11:38 - 000008192 ___SH C:\DumpStack.log.tmp
2026-09-05 09:26 - 2019-07-26 08:35 - 000000000 ____D C:\Intel
2026-09-01 20:55 - 2023-07-23 11:21 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\qBittorrent
2026-09-01 20:55 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-09-01 20:38 - 2022-07-07 16:16 - 000003904 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001UA
2026-09-01 20:38 - 2022-07-07 16:16 - 000003840 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3710502255-1612003614-3486849990-1001Core
2026-09-01 20:37 - 2025-02-17 06:54 - 000003578 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-01 20:37 - 2023-07-15 12:33 - 000002397 _____ C:\Users\WinCan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-09-01 20:37 - 2021-12-12 20:55 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-01 20:37 - 2020-11-16 11:43 - 000003370 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3710502255-1612003614-3486849990-1001
2026-09-01 20:34 - 2019-07-26 10:50 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-08-30 21:26 - 2019-07-26 10:57 - 000000000 ____D C:\Users\WinCan\AppData\Roaming\vlc
2026-08-30 21:17 - 2021-10-09 16:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2026-08-30 21:17 - 2019-07-26 10:50 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-08-30 21:06 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2026-08-20 09:10 - 2020-11-16 11:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-08-20 09:07 - 2019-09-06 12:37 - 000000000 ____D C:\Users\WinCan\AppData\Local\D3DSCache
2026-08-20 09:06 - 2019-07-26 08:38 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-08-20 09:03 - 2019-07-26 08:38 - 228836432 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-08-20 08:56 - 2022-10-12 15:15 - 000002157 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-08-20 08:56 - 2022-10-12 15:15 - 000002072 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2026-08-07 20:06 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
==================== Files in the root of some directories ========
2019-07-26 11:17 - 2019-07-26 11:17 - 001389056 _____ (Indigo Rose Corporation) C:\Program Files (x86)\uninstallWinCanVX.exe
2023-06-25 09:42 - 2025-05-31 10:07 - 000001224 _____ () C:\Users\WinCan\AppData\Roaming\DESKTOP-Q0QN2E9.MTBF.txt
2023-06-25 09:42 - 2025-05-31 14:23 - 000005632 _____ () C:\Users\WinCan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2025-11-22 16:40 - 2025-11-22 16:41 - 000095816 _____ () C:\Users\WinCan\AppData\Local\dxdiag.log
2019-09-30 11:48 - 2019-09-30 11:48 - 000000003 _____ () C:\Users\WinCan\AppData\Local\updater.log
2019-09-30 11:48 - 2026-01-18 11:24 - 000000059 _____ () C:\Users\WinCan\AppData\Local\UserProducts.xml
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================