Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01-04-2025
Ran by JM (administrator) on DESKTOP-17NI7RM (Micro-Star International Co., Ltd. MS-7A34) (13-04-2025 18:29:54)
Running from C:\Users\JM\Desktop\FRST64.exe
Loaded Profiles: JM
Platform: Microsoft Windows 10 Home Version 22H2 19045.5737 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(AVG Technologies USA, LLC -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\AVGUI.exe <4>
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\AVG\Antivirus\AVGSvc.exe ->) (AVG Technologies USA, LLC -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe
(cmd.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(explorer.exe ->) (AVB Disc Soft, SIA -> Disc Soft FZE LLC) C:\Program Files\DAEMON Tools Lite\DTAgent.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe
(explorer.exe ->) (National Instruments Corporation -> National Instruments Corporation) C:\Program Files\National Instruments\Shared\NI Error Reporting\nierserver.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(services.exe ->) (AVB Disc Soft, SIA -> Disc Soft FZE LLC) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\wsc_proxy.exe
(services.exe ->) (AVG Technologies USA, LLC -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\afwServ.exe
(services.exe ->) (AVG Technologies USA, LLC -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(services.exe ->) (AVG Technologies USA, LLC -> Gen Digital Inc.) C:\Program Files\AVG\Antivirus\avgToolsSvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe
(services.exe ->) (National Instruments Corporation -> National Instruments Corporation) C:\Windows\SysWOW64\lkads.exe
(services.exe ->) (pdfforge GmbH -> Avanquest pdfforge GmbH) C:\Program Files\PDF Architect 9\activation-service.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2502.2.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.051.0317.0003\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9270560 2019-05-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [492872 2025-04-12] (AVG Technologies USA, LLC -> Gen Digital Inc.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-322305931-481856066-2600299116-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5012288 2025-04-12] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-322305931-481856066-2600299116-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [484408 2024-09-26] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
HKU\S-1-5-21-322305931-481856066-2600299116-1001\...\Run: [AMDNoiseSuppression] => "C:\Windows\system32\AMD\ANR\AMDNoiseSuppression.exe" (No File)
HKU\S-1-5-21-322305931-481856066-2600299116-1001\...\Run: [MyDriveConnect.exe] => C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe [2221480 2022-05-02] (TomTom International B.V. -> TomTom)
HKU\S-1-5-21-322305931-481856066-2600299116-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4694624 2025-04-02] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-322305931-481856066-2600299116-1001\...\Run: [NIRegistrationWizard] => C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe [847000 2013-04-19] (National Instruments Corporation -> )
HKU\S-1-5-21-322305931-481856066-2600299116-1001\...\MountPoints2: {f8c3eb91-7d6e-11ef-af54-309c239de035} - "G:\setup.EXE" /AUTORUN
HKLM\...\Print\Monitors\PDF Architect 9 Monitor: C:\Windows\system32\spool\DRIVERS\x64\architect_pdfpmon_v.6.23.0.2.dll [974120 2025-03-05] (PDF Tools AG -> PDF Tools AG (
hxxp://www.pdf-tools.com))
HKLM\...\Print\Monitors\pdfcmon: C:\Windows\system32\pdfcmon.dll [196096 2024-11-06] (pdfforge GmbH) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{48F69C39-1356-4A7B-A899-70E3539D4982}] -> C:\Program Files\AVG\Browser\Application\133.0.29379.143\Installer\chrmstp.exe [2025-04-08] (AVG Technologies USA, LLC -> Gen Digital Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\135.0.7049.85\Installer\chrmstp.exe [2025-04-12] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NI Error Reporting (64-bit).lnk [2024-10-12]
ShortcutTarget: NI Error Reporting (64-bit).lnk -> C:\Program Files\National Instruments\Shared\NI Error Reporting\nierserver.exe (National Instruments Corporation -> National Instruments Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NI Error Reporting.lnk [2024-10-12]
ShortcutTarget: NI Error Reporting.lnk -> C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe (National Instruments Corporation -> National Instruments Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {1AC42CCD-55AB-42E0-931F-E200C200FDCE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2024-12-18] (Adobe Inc. -> Adobe Inc.)
Task: {41C69810-707B-40C7-9C6C-7588CDF9045D} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030584 2024-02-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {DFC9DEA4-E203-4077-8A5B-ACCA5BE1344C} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030584 2024-02-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {EB7EB277-9F69-40C6-8CB8-22FC1445D14D} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [183736 2024-02-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {5FBBE97D-FFE0-4456-AD20-0F7C3CC85EFB} - System32\Tasks\AMHelper => C:\Program Files (x86)\Zemana\AntiMalware\AntiMalware.exe [682008 2021-03-30] (Zemana D.O.O. Sarajevo -> Zemana Ltd.)
Task: {189A822C-03A7-4E73-BB4C-2665E64A7287} - System32\Tasks\AMSkipUAC => C:\Program Files (x86)\Zemana\AntiMalware\AntiMalware.exe [682008 2021-03-30] (Zemana D.O.O. Sarajevo -> Zemana Ltd.)
Task: {B3A6B506-8DBE-4837-8B1E-9F4E40142CFF} - System32\Tasks\Avanquest pdfforge GmbH\PDF Architect 9\Installer updater => C:\ProgramData\PDF Architect 9\Installation\PDF_Architect_9_Installer.exe [12189840 2025-03-04] (pdfforge GmbH -> )
Task: {FBBBB1DD-9E33-43BB-9B9F-2C18669E2F84} - System32\Tasks\Avanquest pdfforge GmbH\PDF Architect 9\Update => C:\Program Files\PDF Architect 9\architect.exe [3639744 2025-02-14] (pdfforge GmbH -> Avanquest pdfforge GmbH)
Task: {EEA9F4CB-3E4C-44D8-A1C5-870D4160E08B} - System32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) => C:\Program Files\AVG\Browser\Application\AVGBrowser.exe [3739592 2025-04-04] (AVG Technologies USA, LLC -> Gen Digital Inc.)
Task: {5327793A-F35F-40FD-951E-CF6A2137425A} - System32\Tasks\AVG Secure Browser Heartbeat Task (Logon) => C:\Program Files\AVG\Browser\Application\AVGBrowser.exe [3739592 2025-04-04] (AVG Technologies USA, LLC -> Gen Digital Inc.)
Task: {A74BDFDD-2B62-4082-A185-27AF92476D15} - System32\Tasks\AVG\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [5330760 2025-04-12] (AVG Technologies USA, LLC -> Gen Digital Inc.)
Task: {2413E76E-8588-4D09-94B9-D50AFE186773} - System32\Tasks\AVG\AVG Antivirus Patcher => C:\Program Files\Common Files\AVG\Icarus\avg-av\icarus.exe [8618824 2025-03-27] (AVG Technologies USA, LLC -> Gen Digital Inc.)
Task: {E4775E52-4FC6-4B35-9DD8-8F70338C1A29} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2547016 2024-09-28] (AVG Technologies USA, LLC -> Gen Digital Inc.)
Task: {C41F7FA3-2178-4616-A911-D5FCC2B9C594} - System32\Tasks\AVGUpdateTaskMachineCore => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209736 2024-09-28] (AVG Technologies USA, LLC -> Gen Digital Inc.)
Task: {8C3D583B-1171-4808-A27E-1580B615C9B3} - System32\Tasks\AVGUpdateTaskMachineUA => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209736 2024-09-28] (AVG Technologies USA, LLC -> Gen Digital Inc.)
Task: {3EB9F125-42D3-4B15-8D4D-FF8D4BF5F9FE} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem137.0.7115.0{C649A2AB-85F9-40E8-8DBD-7A6D43FCC6DB} => C:\Program Files (x86)\Google\GoogleUpdater\137.0.7115.0\updater.exe [7360096 2025-04-08] (Google LLC -> Google LLC)
Task: {4D37016D-0D7A-4D57-BE07-21C44E64DF8A} - System32\Tasks\HPCustParticipation HP LaserJet MFP M28-M31 => C:\Program Files\HP\HP LaserJet MFP M28-M31\Bin\HPCustPartic.exe [6662792 2018-07-04] (Hewlett Packard -> HP Inc.)
Task: {F17D08FD-85A4-4BDE-B3D8-05424C8189A6} - System32\Tasks\JKIUpdateTask => C:\Program Files (x86)\JKI\VI Package Manager\support\JKIUpdate.exe [545808 2014-04-22] (James Kring, Inc. DBA JKI -> JKI) [File not signed] -> C:\Program Files (x86)\JKI\VI Package Manager\\/silent
Task: {60BC65A0-E2A1-40DA-A672-2EA93C3689B0} - System32\Tasks\Microsoft\Office\Office Apps Prewarm => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [225400 2025-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {BD46F50E-646D-41CC-9A32-C91E26D03DD4} - System32\Tasks\Microsoft\Office\Office Apps Prewarm Recurring => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [225400 2025-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {30AA147D-90BE-4023-916E-4705BC8486B7} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29106392 2025-04-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {09AE1C9E-3FB1-42CF-BB31-65EB0C949E8F} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE16\opushutil.exe [59600 2025-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {6F14F393-8055-4CAE-8C14-7D6A63910F21} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29106392 2025-04-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {3DB58CA8-93BA-4074-ABC1-7952FCB8D53B} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [225400 2025-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {C3EC252A-E469-4CD7-A021-E00D0D9B5CCF} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [225400 2025-04-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {49333A1C-93BC-4EB1-AA4A-337E85AE499C} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030584 2024-02-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {019A3AEB-D458-49E5-A121-C2F10FBDE780} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880 2025-04-12] (Mozilla Corporation -> Mozilla Foundation)
Task: {C9097A1B-405E-497F-B7D2-88033FCF1ED3} - System32\Tasks\NIUpdateServiceStartupTask => C:\Program Files (x86)\National Instruments\Shared\Update Service\NIUpdateService.exe [863008 2014-06-10] (National Instruments Corporation -> National Instruments)
Task: {8762B5D6-D38E-415A-9678-8CB0D115CB7E} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223808 2025-04-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {9A5606C4-A1C7-493A-B807-3B16D9254AFF} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-322305931-481856066-2600299116-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223808 2025-04-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {A564F22B-9652-4282-BFCB-A844F6C76F21} - System32\Tasks\OneDrive Startup Task-S-1-5-21-322305931-481856066-2600299116-1001 => C:\Program Files\Microsoft OneDrive\25.051.0317.0003\OneDriveLauncher.exe [674624 2025-04-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {473CBB8A-D7C3-4829-8E10-484A5E9631D3} - System32\Tasks\RunAsStdUser Task => C:\Program Files\MATLAB\R2010a\MATLAB R2010a.lnk -> C:\Program Files\MATLAB\R2010a\\-sd $documents\MATLAB -r "setenv('PATH', ['C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\HP\Common\HPDestPlgIn\;C:\Program Files (x86)\HP\IdrsOCR_15.2.10.1114\;C: (the data entry has 82 more characters).
Task: {FFF23440-B7D1-4299-9AC4-75BFA6CEC5A8} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [60344 2024-02-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {64B898BE-06BE-4392-A72B-FD34523197E2} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [324024 2024-02-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [26512 2014-06-06] (National Instruments Corporation -> National Instruments Corporation)
Winsock: Catalog5-x64 08 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [28560 2014-06-06] (National Instruments Corporation -> National Instruments Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{7c533d47-3b40-4cab-97d8-cc3d42fe83d0}: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge Profile: C:\Users\JM\AppData\Local\Microsoft\Edge\User Data\Default [2025-04-13]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\JM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bojobppfploabceghnmlahpoonbcbacn [2025-04-13]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx
Edge Extension: (Dokumenty Google offline) - C:\Users\JM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-04-13]hxxps://clients2.google.com/service/update2/crx
Edge Extension: (Edge relevant text changes) - C:\Users\JM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-10-04]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx
Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
FireFox:
========
FF DefaultProfile: 3e7m8k3q.default
FF ProfilePath: C:\Users\JM\AppData\Roaming\Mozilla\Firefox\Profiles\3e7m8k3q.default [2024-09-28]
FF ProfilePath: C:\Users\JM\AppData\Roaming\Mozilla\Firefox\Profiles\pb2n8ud9.default-release [2025-04-13]
FF Extension: (Language: Čeština (Czech)) - C:\Users\JM\AppData\Roaming\Mozilla\Firefox\Profiles\pb2n8ud9.default-release\Extensions\langpack-cs@firefox.mozilla.org.xpi [2025-04-12]
FF ProfilePath: C:\Users\JM\AppData\Roaming\kompozer.net\KompoZer\Profiles\iwnyctjo.default [2025-04-12]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [2013-09-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-03-13] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll [2013-09-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1693.6\npAvgBrowserUpdate3.dll [2024-09-28] (AVG Technologies USA, LLC -> Gen Digital Inc.)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1693.6\npAvgBrowserUpdate3.dll [2024-09-28] (AVG Technologies USA, LLC -> Gen Digital Inc.)
Chrome:
=======
CHR Profile: C:\Users\JM\AppData\Local\Google\Chrome\User Data\Default [2025-04-13]
CHR DownloadDir: E:\Downloads
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\JM\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-04-10]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (Dokumenty Google offline) - C:\Users\JM\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-03-25]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\JM\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-04-12]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\JM\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-09-28]hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKU\S-1-5-21-322305931-481856066-2600299116-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [achogidmbhmofkmpgamphmlebdhgkdhc]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2024-12-18] (Adobe Inc. -> Adobe Inc.)
S2 avg; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209736 2024-09-28] (AVG Technologies USA, LLC -> Gen Digital Inc.)
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [844104 2025-04-12] (AVG Technologies USA, LLC -> Gen Digital Inc.)
R2 AVG Firewall; C:\Program Files\AVG\Antivirus\afwServ.exe [2551624 2025-04-12] (AVG Technologies USA, LLC -> Gen Digital Inc.)
R2 AVG Tools; C:\Program Files\AVG\Antivirus\avgToolsSvc.exe [896328 2025-04-12] (AVG Technologies USA, LLC -> Gen Digital Inc.)
S3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [7524680 2025-04-12] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgm; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209736 2024-09-28] (AVG Technologies USA, LLC -> Gen Digital Inc.)
S3 AVGSecureBrowserElevationService; C:\Program Files\AVG\Browser\Application\133.0.29379.143\elevation_service.exe [2207096 2025-04-04] (AVG Technologies USA, LLC -> Gen Digital Inc.)
R2 AVGWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [109480 2024-09-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13860056 2025-04-01] (Microsoft Corporation -> Microsoft Corporation)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4938808 2024-09-26] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.051.0317.0003\FileSyncHelper.exe [3543888 2025-04-12] (Microsoft Corporation -> Microsoft Corporation)
S2 LkCitadelServer; C:\Windows\SysWOW64\lkcitdl.exe [695136 2014-01-14] (National Instruments Corporation -> National Instruments, Inc.)
R2 lkClassAds; C:\Windows\SysWOW64\lkads.exe [53032 2014-06-08] (National Instruments Corporation -> National Instruments Corporation)
S2 lkTimeSync; C:\Windows\SysWOW64\lktsrv.exe [63280 2014-06-09] (National Instruments Corporation -> National Instruments Corporation)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9407072 2025-04-12] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [2788304 2025-04-12] (Malwarebytes Inc. -> Malwarebytes)
S2 mxssvr; C:\Program Files (x86)\National Instruments\MAX\nimxs.exe [84280 2014-06-07] (National Instruments Corporation -> National Instruments Corporation)
S2 NIApplicationWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [57184 2014-06-10] (National Instruments Corporation -> National Instruments Corporation)
S4 NIApplicationWebServer64; C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [80736 2014-06-10] (National Instruments Corporation -> National Instruments Corporation)
R2 niauth; C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe [569152 2014-06-20] (National Instruments Corporation -> National Instruments Corporation)
S2 NIDomainService; C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe [394544 2014-06-09] (National Instruments Corporation -> National Instruments Corporation)
S3 NILM License Manager; C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe [1427688 2010-08-02] (National Instruments Corporation -> Macrovision Corporation)
S2 nimDNSResponder; C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [320368 2014-06-06] (National Instruments Corporation -> National Instruments Corporation)
S2 NINetworkDiscovery; C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe [177536 2014-06-19] (National Instruments Corporation -> National Instruments Corporation)
S2 NiSvcLoc; C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe [89928 2014-06-06] (National Instruments Corporation -> National Instruments Corporation)
S2 NISystemWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [57168 2014-06-10] (National Instruments Corporation -> National Instruments Corporation)
S2 NITaggerService; C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe [692040 2014-06-10] (National Instruments Corporation -> National Instruments Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.051.0317.0003\OneDriveUpdaterService.exe [3891536 2025-04-12] (Microsoft Corporation -> Microsoft Corporation)
R3 PDF Architect 9; C:\Program Files\PDF Architect 9\activation-service.exe [3421120 2025-02-14] (pdfforge GmbH -> Avanquest pdfforge GmbH)
S3 PDF Architect 9 Creator; C:\Program Files\PDF Architect 9\creator-ws.exe [509376 2025-02-14] (pdfforge GmbH -> Avanquest pdfforge GmbH)
S3 PDF Architect 9 Update Service; C:\Program Files\PDF Architect 9\update-service.exe [416192 2025-02-14] (pdfforge GmbH -> Avanquest pdfforge GmbH)
S2 rkrtservice; C:\Program Files\RogueKiller\RogueKillerSvc.exe [15953464 2025-04-01] (ADLICE -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 AAErrorPort; C:\Users\JM\AppData\Local\Temp\ActiveAnticheat\1223771\aaerrport.exe [X] <==== ATTENTION
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdfendrmgr; C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrmgr.sys [25672 2024-04-23] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdgpio3; C:\Windows\System32\drivers\amdgpio3.sys [33504 2024-07-11] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
R2 AMDRyzenMasterDriverV20; C:\Windows\system32\AMDRyzenMasterDriver.sys [48328 2024-02-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 AMDSAFD; C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_960126269e89c62e\amdsafd.sys [113880 2024-05-10] (Advanced Micro Devices -> Advanced Micro Devices)
R3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0403852.inf_amd64_63c1d613d771eff0\B400781\amdkmdag.sys [106387968 2024-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [61888 2023-05-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R1 amsdk; C:\Windows\system32\drivers\amsdk.sys [232792 2025-04-13] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
R0 avgArDisk; C:\Windows\System32\drivers\avgArDisk.sys [20536 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [248376 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [393272 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [296528 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [84560 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgElam; C:\Windows\System32\drivers\avgElam.sys [28280 2024-11-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [37944 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [282680 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgNetHub; C:\Windows\System32\drivers\avgNetHub.sys [553528 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [98872 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [69688 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [942672 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [1427512 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 avgStm; C:\Windows\System32\drivers\avgStm.sys [207440 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [391760 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [42256 2024-09-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [63696 2024-09-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [22120 2025-04-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239568 2025-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
U3 AVG Business Console Client Antivirus Service; no ImagePath
U3 avgBcc; no ImagePath
U3 avgbdisk; no ImagePath
S3 PRProt; \??\C:\Users\JM\AppData\Local\Temp\ActiveAnticheat\1223771\active64.sys [X] <==== ATTENTION
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-04-13 17:12 - 2025-04-13 17:12 - 000000000 ____D C:\Users\JM\AppData\Roaming\Microsoft\MMC
2025-04-13 17:05 - 2025-04-13 17:09 - 000041514 _____ C:\Users\JM\Desktop\Addition.txt
2025-04-13 17:03 - 2025-04-13 18:30 - 000032278 _____ C:\Users\JM\Desktop\FRST.txt
2025-04-13 17:03 - 2025-04-13 18:30 - 000000000 ____D C:\FRST
2025-04-13 17:01 - 2025-04-13 17:00 - 002404864 _____ (Farbar) C:\Users\JM\Desktop\FRST64.exe
2025-04-13 17:00 - 2025-04-13 16:59 - 002097152 _____ (Farbar) C:\Users\JM\Desktop\FRST.exe
2025-04-13 15:18 - 2025-04-13 18:30 - 001955121 _____ C:\Windows\ZAM.krnl.trace
2025-04-13 15:18 - 2025-04-13 17:23 - 000002516 _____ C:\Windows\system32\Tasks\AMHelper
2025-04-13 15:18 - 2025-04-13 17:23 - 000002208 _____ C:\Windows\system32\Tasks\AMSkipUAC
2025-04-13 15:18 - 2025-04-13 15:18 - 000232792 _____ (Copyright 2018.) C:\Windows\system32\Drivers\amsdk.sys
2025-04-13 15:18 - 2025-04-13 15:18 - 000001329 _____ C:\Users\Public\Desktop\Zemana AntiMalware.lnk
2025-04-13 15:18 - 2025-04-13 15:18 - 000000000 ____D C:\Users\JM\AppData\Local\Zemana
2025-04-13 15:18 - 2025-04-13 15:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
2025-04-13 15:18 - 2025-04-13 15:18 - 000000000 ____D C:\Program Files (x86)\Zemana
2025-04-13 15:17 - 2025-04-13 15:19 - 000000000 ____D C:\Users\JM\AppData\Local\AMSDK
2025-04-13 15:17 - 2025-04-13 15:17 - 013922376 _____ (Zemana Ltd. ) C:\Users\JM\Desktop\Zemana.AntiMalware.Setup.exe
2025-04-13 12:24 - 2025-04-13 12:24 - 000007764 _____ C:\Users\JM\Desktop\RK.txt
2025-04-13 12:06 - 2025-04-13 12:22 - 000000000 ____D C:\ProgramData\RogueKiller
2025-04-13 12:06 - 2025-04-13 12:06 - 000001223 _____ C:\Users\JM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Adlice Protect.lnk
2025-04-13 12:06 - 2025-04-13 12:06 - 000000899 _____ C:\Users\Public\Desktop\Adlice Protect.lnk
2025-04-13 12:06 - 2025-04-13 12:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2025-04-13 12:06 - 2025-04-13 12:06 - 000000000 ____D C:\Program Files\RogueKiller
2025-04-13 12:05 - 2025-04-13 12:05 - 000000000 ____D C:\Users\JM\AppData\Local\pdfforge
2025-04-13 12:02 - 2025-04-13 12:02 - 051540232 _____ (Adlice Software ) C:\Users\JM\Desktop\RogueKiller_setup.exe
2025-04-13 00:49 - 2025-04-13 00:49 - 000000000 ____D C:\ProgramData\Sophos
2025-04-13 00:48 - 2025-04-13 00:48 - 000002775 _____ C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
2025-04-13 00:48 - 2025-04-13 00:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2025-04-13 00:48 - 2025-04-13 00:48 - 000000000 ____D C:\Program Files (x86)\Sophos
2025-04-13 00:46 - 2025-04-13 00:46 - 185115928 _____ (Sophos Limited) C:\Users\JM\Desktop\Sophos Virus Removal Tool.exe
2025-04-12 21:41 - 2025-04-12 21:41 - 000001098 _____ C:\Users\JM\Desktop\JRT.txt
2025-04-12 21:37 - 2025-04-12 21:37 - 001790024 _____ (Malwarebytes) C:\Users\JM\Desktop\JRT.exe
2025-04-12 21:28 - 2025-04-12 21:28 - 000001235 _____ C:\Users\JM\Desktop\Malwarebytes Scan Report 2025-04-12 192624.txt
2025-04-12 21:15 - 2025-04-12 21:35 - 000000000 ____D C:\Users\JM\AppData\Local\Malwarebytes
2025-04-12 21:15 - 2025-04-12 21:15 - 000002093 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2025-04-12 21:15 - 2025-04-12 21:15 - 000002081 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2025-04-12 21:14 - 2025-04-12 21:14 - 002834160 _____ (Malwarebytes) C:\Users\JM\Desktop\MBSetup.exe
2025-04-12 21:14 - 2025-04-12 21:14 - 000000000 ____D C:\ProgramData\Malwarebytes
2025-04-12 21:14 - 2025-04-12 21:14 - 000000000 ____D C:\Program Files\Malwarebytes
2025-04-12 21:06 - 2025-04-12 21:06 - 000001453 _____ C:\Users\JM\Desktop\AdwCleaner[S00].txt
2025-04-12 21:05 - 2025-04-12 21:11 - 000000000 ____D C:\AdwCleaner
2025-04-12 21:05 - 2025-04-12 21:04 - 009566696 _____ (Malwarebytes) C:\Users\JM\Desktop\AdwCleaner.exe
2025-04-12 21:02 - 2025-04-13 17:18 - 000009096 _____ C:\Users\JM\Desktop\pomoc hekri.txt
2025-04-12 20:57 - 2025-04-12 20:57 - 000000000 ____D C:\Users\JM\AppData\Roaming\addpcs
2025-04-12 12:51 - 2025-04-12 21:16 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-04-12 12:07 - 2025-04-12 12:07 - 000000000 ____D C:\inetpub
2025-04-12 12:06 - 2025-04-12 12:06 - 000316232 _____ (Gen Digital Inc.) C:\Windows\system32\avgBoot.exe
2025-04-09 11:22 - 2025-04-09 11:22 - 000000000 ___HD C:\$WinREAgent
2025-03-16 01:38 - 2025-03-16 01:38 - 000001282 _____ C:\Users\Public\Desktop\Heroes of Might and Magic 2 Gold.lnk
2025-03-16 01:38 - 2025-03-16 01:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of Might and Magic 2 Gold [GOG.com]
2025-03-16 01:37 - 2025-03-16 01:37 - 000000000 ____D C:\ProgramData\GOG.com
2025-03-16 01:02 - 2025-03-16 01:05 - 000000000 ____D C:\Users\JM\AppData\Local\Notepad
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-04-13 17:23 - 2025-02-06 21:44 - 000003070 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-322305931-481856066-2600299116-1001
2025-04-13 17:23 - 2024-10-12 22:26 - 000002502 _____ C:\Windows\system32\Tasks\NIUpdateServiceStartupTask
2025-04-13 17:23 - 2024-10-12 22:22 - 000003380 _____ C:\Windows\system32\Tasks\JKIUpdateTask
2025-04-13 17:23 - 2024-09-30 06:52 - 000002652 _____ C:\Windows\system32\Tasks\HPCustParticipation HP LaserJet MFP M28-M31
2025-04-13 17:23 - 2024-09-28 16:26 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software
2025-04-13 17:23 - 2024-09-28 14:36 - 000002716 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2025-04-13 17:23 - 2024-09-28 14:05 - 000003482 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2025-04-13 17:23 - 2024-09-28 10:30 - 000002514 _____ C:\Windows\system32\Tasks\AMDInstallLauncher
2025-04-13 17:23 - 2024-09-28 10:29 - 000002672 _____ C:\Windows\system32\Tasks\ModifyLinkUpdate
2025-04-13 17:23 - 2024-09-28 10:29 - 000002506 _____ C:\Windows\system32\Tasks\AMDLinkUpdate
2025-04-13 17:23 - 2024-09-28 10:29 - 000002400 _____ C:\Windows\system32\Tasks\AMDRyzenMasterSDKTask
2025-04-13 17:23 - 2024-09-28 10:28 - 000002194 _____ C:\Windows\system32\Tasks\StartCN
2025-04-13 17:23 - 2024-09-28 10:28 - 000002114 _____ C:\Windows\system32\Tasks\StartDVR
2025-04-13 17:23 - 2024-09-28 10:23 - 000003062 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-322305931-481856066-2600299116-1001
2025-04-13 17:23 - 2024-09-28 09:53 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-04-13 17:23 - 2024-09-28 09:53 - 000003344 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-04-13 16:53 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-04-13 16:52 - 2024-09-28 09:53 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-04-13 15:10 - 2024-09-28 14:55 - 000000000 ____D C:\Program Files (x86)\Steam
2025-04-13 15:09 - 2024-11-06 09:08 - 000000000 ____D C:\ProgramData\boost_interprocess
2025-04-13 13:59 - 2024-09-28 15:51 - 000000000 ____D C:\Users\JM\AppData\Roaming\vlc
2025-04-13 12:08 - 2024-09-28 10:03 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-04-13 12:03 - 2024-10-04 21:59 - 000000000 ____D C:\Windows\SystemTemp
2025-04-13 12:00 - 2024-09-28 09:53 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-04-12 21:40 - 2024-10-20 14:39 - 000000000 ____D C:\Users\JM\AppData\Local\CrashDumps
2025-04-12 21:23 - 2024-09-28 10:24 - 000000000 ____D C:\Users\JM\AppData\Local\AMD_Common
2025-04-12 21:16 - 2024-09-28 10:03 - 000001065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-04-12 21:16 - 2024-09-28 10:03 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-04-12 21:15 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2025-04-12 21:15 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2025-04-12 21:06 - 2024-09-28 10:00 - 001694140 _____ C:\Windows\system32\PerfStringBackup.INI
2025-04-12 21:06 - 2019-12-07 16:41 - 000717008 _____ C:\Windows\system32\perfh005.dat
2025-04-12 21:06 - 2019-12-07 16:41 - 000145186 _____ C:\Windows\system32\perfc005.dat
2025-04-12 21:00 - 2024-09-28 10:34 - 000000000 ____D C:\ProgramData\AVG
2025-04-12 21:00 - 2024-09-28 10:03 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2025-04-12 21:00 - 2024-09-28 09:53 - 000008192 ___SH C:\DumpStack.log.tmp
2025-04-12 21:00 - 2024-09-28 09:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-04-12 21:00 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2025-04-12 12:10 - 2024-09-28 10:35 - 000393272 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgbidsdriver.sys
2025-04-12 12:09 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-04-12 12:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2025-04-12 12:08 - 2024-09-28 18:54 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2025-04-12 12:08 - 2024-09-28 09:53 - 000452392 _____ C:\Windows\system32\FNTCACHE.DAT
2025-04-12 12:07 - 2024-10-04 21:59 - 000000000 ____D C:\Windows\system32\compatrel
2025-04-12 12:07 - 2019-12-07 16:42 - 000000000 ____D C:\Windows\system32\OpenSSH
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents
2025-04-12 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2025-04-12 12:06 - 2024-09-28 10:35 - 001427512 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgSP.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000942672 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgSnx.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000553528 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgNetHub.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000391760 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgVmm.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000296528 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgbidsh.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000282680 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgMonFlt.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000248376 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgArPot.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000098872 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgRdr2.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000084560 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgbuniv.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000069688 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgRvrt.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000037944 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgKbd.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000020536 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\avgArDisk.sys
2025-04-12 12:06 - 2024-09-28 10:35 - 000000000 ____D C:\Windows\system32\Tasks\AVG
2025-04-12 09:54 - 2024-09-28 14:36 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-04-12 09:53 - 2024-09-28 10:33 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-04-12 09:53 - 2024-09-28 10:33 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-04-10 12:33 - 2024-09-28 10:04 - 000000000 ____D C:\Users\JM\AppData\Local\D3DSCache
2025-04-09 11:34 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2025-04-09 11:29 - 2024-09-28 09:57 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2025-04-09 11:21 - 2024-09-30 16:51 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER
2025-04-09 09:41 - 2024-09-28 10:36 - 000000000 ____D C:\Users\JM\AppData\Local\AVG
2025-04-09 09:21 - 2024-09-28 15:36 - 000000000 ____D C:\Users\JM\AppData\Roaming\Microsoft\Šablony
2025-04-08 09:19 - 2024-09-28 10:36 - 000002321 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Secure Browser.lnk
2025-04-08 09:19 - 2024-09-28 10:36 - 000002286 _____ C:\Users\Public\Desktop\AVG Secure Browser.lnk
2025-04-05 19:39 - 2024-10-26 12:19 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2025-03-31 13:04 - 2024-10-05 09:48 - 000000000 ____D C:\Program Files\RUXIM
2025-03-21 20:20 - 2024-09-28 14:04 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2025-03-21 20:20 - 2024-09-28 14:04 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2025-03-16 17:51 - 2024-09-28 10:04 - 000000000 ____D C:\Users\JM\AppData\Local\AMD
2025-03-16 05:54 - 2024-12-08 21:24 - 000000260 _____ C:\Users\JM\Desktop\pamatky praha.txt
2025-03-16 01:03 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2025-03-14 10:23 - 2024-09-28 16:28 - 000000000 ____D C:\Users\JM\AppData\Roaming\Awesomium
==================== Files in the root of some directories ========
2024-09-28 10:36 - 2024-09-28 10:36 - 000000000 _____ () C:\Program Files\AVGBrowser_installer.log
2024-09-28 10:33 - 2024-10-04 19:05 - 000104581 _____ () C:\Program Files\chrome_installer.log
2024-09-28 10:03 - 2024-10-04 19:05 - 000122701 _____ () C:\Program Files\msedge_installer.log
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================