Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-01-2019
Ran by MM (administrator) on MM-PC (28-01-2019 13:09:49)
Running from C:\Users\MM\Downloads
Loaded Profiles: MM (Available Profiles: MM & DefaultAppPool)
Platform: Microsoft Windows 10 Pro Version 1803 17134.556 (X86) Language: Čeština (Česko)
Default browser: IE
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Cheetah Mobile,Inc.) C:\Program Files\cmcm\Clean Master\cmcore.exe
(IObit) C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(CobianSoft, Luis Cobian) C:\Program Files\Cobian Backup 11\cbVSCService11.exe
() C:\Program Files\Synology\Assistant\UsbClientService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1901.7-0\MsMpEng.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(ABBYY (BIT Software)) C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
(Digital Wave Ltd.) C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe
() C:\Program Files\Common Files\Appkeys\yytool.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Cheetah Mobile,Inc.) C:\Program Files\cmcm\Clean Master\cmtray.exe
(IObit) C:\Program Files\IObit\iFreeUp\iFreeUpMini.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Nuance Communications, Inc.) C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe
(Luis Cobian, CobianSoft) C:\Program Files\Cobian Backup 11\Cobian.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1901.7-0\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Olympus Corporation) C:\Program Files\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe
(Dropbox, Inc.) C:\Users\MM\AppData\Local\Dropbox\Update\DropboxUpdate.exe
(Luis Cobian, CobianSoft) C:\Program Files\Cobian Backup 11\cbInterface.exe
(Dropbox, Inc.) C:\Users\MM\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Dropbox, Inc.) C:\Users\MM\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Dropbox, Inc.) C:\Users\MM\AppData\Roaming\Dropbox\bin\Dropbox.exe
(MAGIX AG) C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe
(Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(The Qt Company Ltd.) C:\Users\MM\AppData\Roaming\Dropbox\bin\QtWebEngineProcess.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Corel) C:\Program Files\Common Files\Corel\Standby\Standby.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\WinSxS\x86_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.17134.464_none_8ed47a286510dff9\TiWorker.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [486816 2018-04-11] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [11738184 2013-02-05] (Realtek Semiconductor)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [67896 2018-06-23] (Apple Inc.)
HKLM\...\Run: [SSBkgdUpdate] => C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM\...\Run: [OpwareSE4] => C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe [79400 2007-02-04] (Nuance Communications, Inc.)
HKLM\...\Run: [Standby] => c:\Program Files\Common Files\Corel\Standby\Standby.exe [105632 2010-05-17] (Corel)
HKLM\...\Run: [OV3_Monitor] => C:\Program Files\OLYMPUS\OLYMPUS Viewer 3\FirstStart.exe [40400 2018-06-18] (Olympus Corporation)
HKLM\...\Run: [Cobian Backup 11] => C:\Program Files\Cobian Backup 11\Cobian.exe [720896 2012-12-05] (Luis Cobian, CobianSoft)
HKLM\...\Run: [ArcSoft Connection Service] => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [262456 2018-07-06] (Apple Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [601424 2018-10-06] (Oracle Corporation)
HKLM\...\Run: [cmsc] => c:\program files\cmcm\Clean Master\cmtray.exe [1607280 2018-12-04] (Cheetah Mobile,Inc.)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1107837428-173974533-547177936-1000\...\Run: [OV3_Monitor] => C:\Program Files\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe [415696 2018-06-18] (Olympus Corporation)
HKU\S-1-5-21-1107837428-173974533-547177936-1000\...\Run: [Dropbox Update] => C:\Users\MM\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
HKU\S-1-5-21-1107837428-173974533-547177936-1000\...\Run: [GarminExpress] => C:\Program Files\Garmin\Express\express.exe [30886976 2019-01-14] (Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-1107837428-173974533-547177936-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner.exe [14679256 2019-01-10] (Piriform Software Ltd)
HKU\S-1-5-21-1107837428-173974533-547177936-1000\...\Run: [FastVD] => C:\Program Files\FastPcTools\Fast VD\FastVD.exe [1636040 2019-01-22] (FastPcTools)
HKU\S-1-5-21-1107837428-173974533-547177936-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-18\...\Run: [GarminExpress] => C:\Program Files\Garmin\Express\express.exe [30886976 2019-01-14] (Garmin Ltd. or its subsidiaries)
HKLM\...\Drivers32: [vidc.ffds] => C:\WINDOWS\system32\ff_vfw.dll [112640 2013-03-13] ()
HKLM\...\Drivers32: [msacm.avis] => C:\WINDOWS\system32\ff_acm.acm [47616 2013-03-13] ()
HKLM\...\Drivers32: [msacm.aacacm] => C:\WINDOWS\system32\AACACM.acm [294912 2012-07-21] (fccHandler)
HKLM\...\Drivers32: [msacm.ac3acm] => C:\WINDOWS\system32\AC3ACM.acm [122880 2012-07-21] (fccHandler)
HKLM\...\Drivers32: [VIDC.CSCD] => C:\WINDOWS\system32\CamCodec.dll [49664 2010-10-24] (CamStudio Group)
HKLM\...\Drivers32: [VIDC.CFHD] => C:\WINDOWS\system32\CFHD.dll [1208320 2007-08-12] (CineForm Inc.)
HKLM\...\Drivers32: [msacm.lameacm] => C:\WINDOWS\system32\LameACM.acm [756224 2012-02-28] (hxxp://www.mp3dev.org/)
HKLM\...\Drivers32: [VIDC.LAGS] => C:\WINDOWS\system32\lagarith.dll [216064 2011-12-07] ( )
HKLM\...\Drivers32: [VIDC.MLCY] => C:\WINDOWS\system32\mlc.dll [155648 2012-05-21] ()
HKLM\...\Drivers32: [VIDC.ULRA] => C:\Windows\system32\utv_vcm.dll [69632 2013-01-13] ()
HKLM\...\Drivers32: [VIDC.ULRG] => C:\Windows\system32\utv_vcm.dll [69632 2013-01-13] ()
HKLM\...\Drivers32: [VIDC.ULY0] => C:\Windows\system32\utv_vcm.dll [69632 2013-01-13] ()
HKLM\...\Drivers32: [VIDC.ULY2] => C:\Windows\system32\utv_vcm.dll [69632 2013-01-13] ()
HKLM\...\Drivers32: [vidc.x264] => C:\Program Files\x264vfw\x264vfw.dll [4283392 2013-02-27] ()
HKLM\...\Drivers32: [vidc.XVID] => C:\WINDOWS\system32\xvidvfw.dll [243200 2012-08-29] ()
HKLM\...\Drivers32: [VIDC.VP80] => C:\WINDOWS\system32\vp8vfw.dll [560128 2011-12-05] (Optima SC Inc.)
HKLM\...\Drivers32: [VIDC.IV41] => C:\WINDOWS\system32\ir41_32.dll [756736 2003-03-25] (Intel Corporation)
HKLM\...\Drivers32: [VIDC.GEOX] => C:\WINDOWS\system32\GeoCodec.dll [622592 2010-10-11] (GeoVision)
HKLM\...\Drivers32: [VIDC.GEOV] => C:\WINDOWS\system32\GeoCodec.dll [622592 2010-10-11] (GeoVision)
HKLM\...\Drivers32: [VIDC.GEOS] => C:\WINDOWS\system32\GeoCodecD.dll [622592 2010-10-11] (GeoVision)
HKLM\...\Drivers32: [VIDC.VMnc] => C:\WINDOWS\system32\vmnc.dll [252464 2010-09-20] (VMware, Inc.)
HKLM\...\Drivers32: [vidc.dvsd] => C:\WINDOWS\system32\pdvcodec.dll [265797 2010-03-12] (Matsushita Electric Industrial Co., Ltd.)
HKLM\...\Drivers32: [msacm.dvacm] => C:\Program Files\Common Files\Ulead Systems\VIO\DVACM.acm [20480 2010-05-17] (Corel TW Corp.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-13] (Google Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> 
Startup: C:\Users\MM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2019-01-23]
ShortcutTarget: Dropbox.lnk -> C:\Users\MM\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{88f0fe0e-3f47-432c-a9ae-1a63be7485a1}: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{b3cf2ab9-b78c-45f0-babf-2d8e6e8bf54e}: [DhcpNameServer] 213.46.172.37 213.46.172.36

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.gmx.com/start?src=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=cz&p_tsrc=301ssg01&p_w=y2w02
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
HKU\S-1-5-21-1107837428-173974533-547177936-1000\Software\Microsoft\Internet Explorer\Main,Local Page = 
HKU\S-1-5-21-1107837428-173974533-547177936-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
HKU\S-1-5-21-1107837428-173974533-547177936-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/?clid=22668
HKU\S-1-5-21-1107837428-173974533-547177936-1000\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxps://www.google.cz/
SearchScopes: HKLM -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=cz&p_tsrc=301ssg01&p_w=y2w02&q={searchTerms}
SearchScopes: HKLM -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=cz&p_tsrc=301ssg01&p_w=y2w02&q={searchTerms}
SearchScopes: HKLM -> {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1107837428-173974533-547177936-1000 -> DefaultScope {A474C13C-4057-4FF7-8A1B-4B67CD52B1B8} URL = hxxp://cs.wikipedia.org/w/index.php?title=Speci%C3%A1ln%C3%AD:Hled%C3%A1n%C3%AD&search={searchTerms}
SearchScopes: HKU\S-1-5-21-1107837428-173974533-547177936-1000 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1107837428-173974533-547177936-1000 -> {A474C13C-4057-4FF7-8A1B-4B67CD52B1B8} URL = hxxp://cs.wikipedia.org/w/index.php?title=Speci%C3%A1ln%C3%AD:Hled%C3%A1n%C3%AD&search={searchTerms}
SearchScopes: HKU\S-1-5-21-1107837428-173974533-547177936-1000 -> {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxp://cs.wikipedia.org/w/index.php?title=Speci%C3%A1ln%C3%AD:Hled%C3%A1n%C3%AD&search={searchTerms}
SearchScopes: HKU\S-1-5-21-1107837428-173974533-547177936-1000 -> {CCDA515E-1E72-40F7-9565-91A832FEB561} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_191\bin\ssv.dll [2018-10-27] (Oracle Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-11-05] (Google Inc.)
BHO: Soda PDF 5 IE Helper -> {C737F472-1193-4281-BF53-A00B67AB3E19} -> C:\Program Files\Soda PDF 5\PDFIEHelper.dll [2013-01-25] (LULU Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_191\bin\jp2ssv.dll [2018-10-27] (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-11-05] (Google Inc.)
Toolbar: HKU\S-1-5-21-1107837428-173974533-547177936-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-11-05] (Google Inc.)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF DefaultProfile: fkn1jbez.default-1517395260472
FF ProfilePath: C:\Users\MM\AppData\Roaming\Mozilla\Firefox\Profiles\fkn1jbez.default-1517395260472 [2019-01-28]
FF Homepage: Mozilla\Firefox\Profiles\fkn1jbez.default-1517395260472 -> hxxps://search.gmx.com/start?src=p_jkld_pl&p=jkld&p_brw=ff&p_mkt=cz&p_tsrc=301ssg01&p_w=y2w02
FF HKLM\...\Firefox\Extensions: [FFSodaPDF5Converter@sodapdf.com] - C:\Program Files\Soda PDF 5\FFSoda5Ext
FF Extension: (Soda PDF 5 Converter For Firefox) - C:\Program Files\Soda PDF 5\FFSoda5Ext [2013-06-02] [Legacy] [not signed]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\SiteAdvisor\saffplg.xpi => not found
FF HKLM\...\Firefox\Extensions: [AllMyTube@Wondershare.com] - C:\ProgramData\Wondershare\AllMyTube\AllMyTube@Wondershare.com_xpi => not found
FF Plugin: @adobe.com/AuthorwarePlayer -> C:\Windows\system32\Macromed\AUTHORWA\np32asw.dll [2004-07-02] (Macromedia, Inc.)
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_32_0_0_114.dll [2019-01-08] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1200112.dll [2013-01-30] (Adobe Systems, Inc.)
FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [No File]
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-02-27] (Google)
FF Plugin: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2018-10-27] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2018-10-27] (Oracle Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin: @nokia.com/EnablerPlugin -> C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2014-11-19] ( )
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-18] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-18] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.5.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-12-04] (Adobe Systems Inc.)
StartMenuInternet: FIREFOX.EXE - firefox.exe

Chrome: 
=======
CHR Profile: C:\Users\MM\AppData\Local\Google\Chrome\User Data\Default [2019-01-28]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AbAdminService; C:\Program Files\ToolbarTerminator\AbAdminService.exe [30984 2015-01-22] (Ascora GmbH) [File not signed]
R2 ABBYY.Licensing.FineReader.Professional.9.0; C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe [660768 2007-12-06] (ABBYY (BIT Software))
R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 cbVSCService11; C:\Program Files\Cobian Backup 11\cbVSCService11.exe [67584 2012-12-05] (CobianSoft, Luis Cobian) [File not signed]
R2 cmcore; c:\program files\cmcm\Clean Master\cmcore.exe [397936 2018-12-04] (Cheetah Mobile,Inc.)
R2 DigitalWave.Update.Service; C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe [437224 2016-10-27] (Digital Wave Ltd.)
R2 Fabs; C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe [1858048 2012-01-23] (MAGIX AG) [File not signed]
S3 FirebirdServerMAGIXInstance; C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®) [File not signed]
R2 Leawo_service; C:\Program Files\Common Files\Appkeys\yytool.exe [942576 2014-08-22] ()
R2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-07-29] (IObit)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3151776 2018-07-15] (Microsoft Corporation)
S3 Soda PDF 5 Helper Service; C:\Program Files\Soda PDF 5\HelperService.exe [1237856 2013-01-25] (LULU Software)
S3 Soda PDF 5 Service; C:\Program Files\Soda PDF 5\ConversionService.exe [877920 2013-01-25] (LULU Software)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [353792 2018-03-19] ()
R2 UsbClientService; C:\Program Files\Synology\Assistant\UsbClientService.exe [248840 2016-03-18] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1901.7-0\NisSrv.exe [3378760 2019-01-25] (Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1901.7-0\MsMpEng.exe [91760 2019-01-25] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
R3 busenum; C:\WINDOWS\System32\drivers\busenum.sys [53728 2012-08-03] (Windows (R) Win 7 DDK provider)
R0 JRAID; C:\WINDOWS\System32\drivers\jraid.sys [106296 2012-09-17] (JMicron Technology Corp.)
S3 ksapi; C:\WINDOWS\system32\drivers\ksapi.sys [132832 2018-12-04] (Kingsoft Corporation)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [221112 2018-01-28] (Malwarebytes)
S3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [75712 2018-01-28] (Malwarebytes)
R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [504832 2018-04-11] (Realtek )
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [38504 2019-01-25] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [268792 2019-01-25] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [47608 2019-01-25] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [189952 2018-04-11] (Microsoft Corporation)
U3 idsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-01-28 13:09 - 2019-01-28 13:11 - 000020977 _____ C:\Users\MM\Downloads\FRST.txt
2019-01-28 13:09 - 2019-01-28 13:09 - 000000000 ____D C:\FRST
2019-01-28 13:08 - 2019-01-28 13:08 - 001787904 _____ (Farbar) C:\Users\MM\Downloads\FRST.exe
2019-01-28 11:21 - 2019-01-28 11:21 - 000000000 ____D C:\Users\MM\AppData\Roaming\WiseUpdate
2019-01-28 11:06 - 2019-01-28 11:07 - 003876168 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-01-28 08:25 - 2019-01-09 12:08 - 000254776 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-01-28 08:25 - 2019-01-09 11:02 - 000636872 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-01-28 08:25 - 2019-01-09 10:55 - 011919872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-01-28 08:25 - 2019-01-09 10:55 - 003257856 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-01-28 08:25 - 2019-01-09 10:55 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2019-01-28 08:25 - 2019-01-09 10:53 - 000958976 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2019-01-28 08:25 - 2019-01-09 10:51 - 002891776 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-01-28 08:25 - 2019-01-09 10:51 - 002094080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2019-01-28 08:25 - 2019-01-09 10:50 - 001082880 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-01-28 08:25 - 2019-01-09 06:53 - 000480056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-01-28 08:25 - 2019-01-09 06:48 - 000994264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-01-28 08:25 - 2019-01-09 06:48 - 000074040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-01-28 08:25 - 2019-01-09 06:44 - 000078688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 006683448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-01-28 08:25 - 2019-01-09 06:43 - 006567768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 006043496 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 004789944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 002253480 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 001990056 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 001617152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 000986936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-01-28 08:25 - 2019-01-09 06:43 - 000949856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-01-28 08:25 - 2019-01-09 06:43 - 000831528 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-01-28 08:25 - 2019-01-09 06:43 - 000607376 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 000358904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-01-28 08:25 - 2019-01-09 06:43 - 000287640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 000221496 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 000195576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2019-01-28 08:25 - 2019-01-09 06:43 - 000129088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 000127744 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2019-01-28 08:25 - 2019-01-09 06:43 - 000071456 _____ (Microsoft Corporation) C:\WINDOWS\system32\svchost.exe
2019-01-28 08:25 - 2019-01-09 06:42 - 001190496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-01-28 08:25 - 2019-01-09 06:42 - 001051032 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-01-28 08:25 - 2019-01-09 06:42 - 000371192 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2019-01-28 08:25 - 2019-01-09 06:42 - 000371192 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-01-28 08:25 - 2019-01-09 06:42 - 000140792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-01-28 08:25 - 2019-01-09 06:42 - 000100704 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2019-01-28 08:25 - 2019-01-09 06:34 - 022016512 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-01-28 08:25 - 2019-01-09 06:32 - 013878272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-01-28 08:25 - 2019-01-09 06:26 - 002966016 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-01-28 08:25 - 2019-01-09 06:25 - 003255296 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-01-28 08:25 - 2019-01-09 06:24 - 002808320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-01-28 08:25 - 2019-01-09 06:24 - 001834496 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2019-01-28 08:25 - 2019-01-09 06:24 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-01-28 08:25 - 2019-01-09 06:23 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2019-01-28 08:25 - 2019-01-09 06:23 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-01-28 08:25 - 2019-01-09 06:23 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2019-01-28 08:25 - 2019-01-09 06:23 - 001189888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2019-01-28 08:25 - 2019-01-09 06:23 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2019-01-28 08:25 - 2019-01-09 06:22 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-01-28 08:25 - 2019-01-09 06:22 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-01-28 08:25 - 2019-01-09 06:22 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-01-28 08:25 - 2019-01-09 06:22 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-01-28 08:25 - 2019-01-09 06:22 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2019-01-28 08:25 - 2019-01-09 06:22 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-01-28 08:25 - 2019-01-09 06:21 - 001752064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-01-28 08:25 - 2019-01-09 06:21 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-01-28 08:25 - 2019-01-09 06:21 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2019-01-28 08:25 - 2019-01-09 06:21 - 000196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2019-01-28 08:25 - 2019-01-09 06:21 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2019-01-28 08:25 - 2019-01-09 06:20 - 004516352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-01-28 08:25 - 2019-01-09 06:20 - 001272832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-01-28 08:25 - 2019-01-09 06:20 - 001000448 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2019-01-28 08:25 - 2019-01-09 06:20 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2019-01-28 08:25 - 2019-01-09 06:20 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2019-01-28 08:25 - 2019-01-09 06:19 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2019-01-28 08:25 - 2019-01-09 06:19 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-01-28 08:25 - 2019-01-09 06:18 - 000724992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-01-28 08:25 - 2019-01-09 06:18 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2019-01-28 08:25 - 2019-01-09 05:01 - 000806320 _____ C:\WINDOWS\system32\locale.nls
2019-01-28 08:19 - 2018-09-20 05:33 - 001499960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2019-01-25 13:15 - 2019-01-28 12:50 - 000000000 ____D C:\Users\MM\AppData\Roaming\Wise Duplicate Finder
2019-01-25 13:15 - 2019-01-28 11:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Duplicate Finder
2019-01-25 13:15 - 2019-01-25 13:15 - 000000000 ____D C:\Program Files\Wise
2019-01-25 12:41 - 2019-01-25 12:43 - 000000000 ____D C:\Users\MM\Desktop\Nová složka
2019-01-23 21:40 - 2019-01-23 21:40 - 000000000 ____D C:\Users\MM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2019-01-12 15:03 - 2019-01-12 15:03 - 008201952 _____ (Nullsoft, Inc.) C:\Users\MM\Downloads\winamp58_3660_beta_full_en-us.exe
2019-01-12 14:59 - 2019-01-12 14:59 - 002418200 _____ (Getimeteb ) C:\Users\MM\Downloads\winamp_4293877016.exe
2019-01-09 19:23 - 2019-01-01 14:20 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowslivelogin.dll
2019-01-09 19:23 - 2019-01-01 14:18 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2019-01-09 19:23 - 2019-01-01 14:17 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll
2019-01-09 19:23 - 2019-01-01 07:38 - 000539696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2019-01-09 19:23 - 2019-01-01 07:37 - 002478664 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-01-09 19:23 - 2019-01-01 07:37 - 002031104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-01-09 19:23 - 2019-01-01 07:37 - 001989040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-01-09 19:23 - 2019-01-01 07:37 - 000880048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2019-01-09 19:23 - 2019-01-01 07:37 - 000381240 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-01-09 19:23 - 2019-01-01 07:37 - 000142352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-01-09 19:23 - 2019-01-01 07:37 - 000098832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2019-01-09 19:23 - 2019-01-01 07:37 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
2019-01-09 19:23 - 2019-01-01 07:22 - 019405312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-01-09 19:23 - 2019-01-01 07:18 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe
2019-01-09 19:23 - 2019-01-01 07:18 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-01-09 19:23 - 2019-01-01 07:17 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-01-09 19:23 - 2019-01-01 07:17 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2019-01-09 19:23 - 2019-01-01 07:17 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-01-09 19:23 - 2019-01-01 07:16 - 005775872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-01-09 19:23 - 2019-01-01 07:16 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2019-01-09 19:23 - 2019-01-01 07:15 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2019-01-09 19:23 - 2019-01-01 07:14 - 001184768 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-01-09 19:23 - 2019-01-01 07:14 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2019-01-09 19:23 - 2019-01-01 07:13 - 001689088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2019-01-09 19:23 - 2019-01-01 07:13 - 001628160 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-01-09 19:23 - 2019-01-01 07:13 - 000594432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2019-01-09 19:23 - 2019-01-01 07:12 - 001036288 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2019-01-09 19:23 - 2019-01-01 07:12 - 000977408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-01-09 19:23 - 2019-01-01 07:12 - 000795648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2019-01-09 19:23 - 2019-01-01 07:12 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-01-09 19:23 - 2019-01-01 07:12 - 000516608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2019-01-09 19:23 - 2018-12-19 05:49 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrd3x40.dll
2019-01-04 08:30 - 2019-01-04 08:30 - 012245664 _____ C:\Users\MM\Downloads\FractalZoomer.exe
2019-01-02 14:58 - 2019-01-06 14:09 - 000000000 ____D C:\Users\MM\AppData\Roaming\Nanosoft
2019-01-02 14:57 - 2019-01-06 14:18 - 000000000 ____D C:\ProgramData\Nanosoft
2019-01-02 14:57 - 2019-01-02 14:57 - 000002495 _____ C:\Users\Public\Desktop\nanoCAD en 5.0.lnk
2019-01-02 14:57 - 2019-01-02 14:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nanosoft
2019-01-02 14:57 - 2019-01-02 14:57 - 000000000 ____D C:\Program Files\Nanosoft

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-01-28 12:56 - 2013-05-29 21:48 - 000000000 ___RD C:\Users\MM\Desktop\PC údržba
2019-01-28 12:33 - 2018-05-16 15:07 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-01-28 11:47 - 2018-04-11 21:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-01-28 11:41 - 2018-04-11 21:31 - 000000000 ____D C:\WINDOWS\INF
2019-01-28 11:29 - 2015-11-29 12:19 - 000000000 ____D C:\Users\MM\AppData\Roaming\vlc
2019-01-28 11:14 - 2018-05-16 15:11 - 001910950 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-01-28 11:14 - 2018-04-12 05:53 - 000793414 _____ C:\WINDOWS\system32\perfh005.dat
2019-01-28 11:14 - 2018-04-12 05:53 - 000178452 _____ C:\WINDOWS\system32\perfc005.dat
2019-01-28 11:14 - 2018-04-11 21:36 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-01-28 11:12 - 2013-05-29 21:39 - 000000000 ___RD C:\Users\MM\Dropbox
2019-01-28 11:06 - 2018-05-16 15:39 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-01-28 11:05 - 2018-04-11 13:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-01-28 11:04 - 2018-04-11 21:36 - 000000000 ___SD C:\WINDOWS\system32\F12
2019-01-28 11:04 - 2018-04-11 21:36 - 000000000 ___RD C:\Program Files\Windows Defender
2019-01-28 11:04 - 2018-04-11 21:36 - 000000000 ____D C:\WINDOWS\TextInput
2019-01-28 11:04 - 2018-04-11 21:36 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-01-28 11:04 - 2018-04-11 21:36 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-01-28 08:29 - 2018-04-11 21:25 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-01-28 07:31 - 2018-01-30 12:05 - 000000000 ____D C:\ProgramData\ProductData
2019-01-26 10:50 - 2018-04-11 21:36 - 000000000 ___HD C:\Program Files\WindowsApps
2019-01-25 18:33 - 2018-02-12 23:23 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-01-25 13:30 - 2013-06-02 18:02 - 000000000 ___RD C:\Users\MM\Desktop\Vypalování
2019-01-25 13:19 - 2013-05-29 19:18 - 000000000 ____D C:\Users\MM\AppData\Roaming\Ashampoo
2019-01-25 13:19 - 2013-05-29 19:18 - 000000000 ____D C:\Users\MM\AppData\Local\ashampoo
2019-01-25 13:19 - 2013-05-29 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2019-01-25 13:18 - 2013-05-29 19:18 - 000000000 ____D C:\ProgramData\Ashampoo
2019-01-25 13:18 - 2013-05-29 19:17 - 000000000 ____D C:\Program Files\Ashampoo
2019-01-24 07:48 - 2013-05-28 16:12 - 000000000 ____D C:\ProgramData\Package Cache
2019-01-24 07:47 - 2013-06-07 22:44 - 000000000 ____D C:\Program Files\Garmin
2019-01-24 07:47 - 2013-06-07 22:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
2019-01-24 07:46 - 2013-06-07 22:44 - 000000000 ____D C:\ProgramData\GARMIN
2019-01-23 21:40 - 2013-05-29 21:31 - 000000000 ____D C:\Users\MM\AppData\Roaming\Dropbox
2019-01-23 08:40 - 2013-10-29 21:41 - 000000000 ____D C:\Users\MM\AppData\Local\CrashDumps
2019-01-23 08:40 - 2013-05-28 19:23 - 000000000 ____D C:\Users\MM\AppData\Roaming\Winamp
2019-01-22 22:01 - 2014-03-16 20:22 - 000000000 ___RD C:\Users\MM\Desktop\Download
2019-01-22 09:11 - 2018-12-26 12:42 - 000000000 ____D C:\Users\MM\AppData\Local\FastVD
2019-01-22 09:11 - 2018-12-26 12:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fast VD
2019-01-20 10:51 - 2013-06-02 10:54 - 000000000 ____D C:\Users\MM\AppData\Roaming\Vso
2019-01-19 09:24 - 2018-05-16 15:16 - 000002413 _____ C:\Users\MM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-01-19 09:24 - 2016-07-21 21:36 - 000000000 ___RD C:\Users\MM\OneDrive
2019-01-18 10:38 - 2018-11-16 18:19 - 000000000 ____D C:\Program Files\rempl
2019-01-14 19:52 - 2018-05-20 16:59 - 000001674 _____ C:\Users\MM\Desktop\Dataserver MM.lnk
2019-01-12 15:07 - 2015-03-04 17:06 - 000000000 ___RD C:\Users\MM\Desktop\Audio
2019-01-12 15:04 - 2013-05-28 19:23 - 000000000 ____D C:\Program Files\Winamp
2019-01-11 09:25 - 2018-05-16 15:16 - 000000000 ____D C:\Users\MM\AppData\Local\Google
2019-01-11 09:25 - 2016-12-26 11:10 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2019-01-09 20:41 - 2013-05-28 21:55 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2019-01-09 19:38 - 2013-07-13 08:19 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-01-09 19:29 - 2013-05-30 17:28 - 129687688 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-01-09 06:44 - 2013-05-28 16:47 - 000407698 __RSH C:\bootmgr
2019-01-08 12:22 - 2018-04-11 21:36 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-01-07 18:46 - 2014-10-19 11:42 - 000000000 ____D C:\Users\MM\AppData\Roaming\Mp3tag
2019-01-06 14:27 - 2013-06-02 13:45 - 000000000 ____D C:\Users\MM\Documents\Calibre knihovna
2019-01-06 14:25 - 2013-05-28 21:30 - 000000000 ____D C:\Users\MM\Documents\My eBooks_pracovní (z kindle)
2019-01-06 13:54 - 2013-05-28 21:24 - 000000000 ____D C:\Users\MM\Documents\My eBooks_pracovní (mobi, doc, rtf z pdf, pdb)
2019-01-04 11:12 - 2013-05-28 21:31 - 000000000 ____D C:\Users\MM\Documents\My Publications
2019-01-04 11:01 - 2015-11-18 17:36 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-01-04 11:01 - 2013-05-28 21:14 - 000000000 ____D C:\Users\MM\Documents\ConvertXtoDVD
2019-01-02 20:41 - 2018-11-14 20:33 - 000835480 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2019-01-02 20:41 - 2018-11-14 20:33 - 000179600 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2018-04-15 11:32 - 2018-04-15 11:32 - 000000282 _____ () C:\ProgramData\fontcacheev1.dat
2013-02-07 13:22 - 2013-02-07 13:22 - 000050330 _____ () C:\Program Files\AntiDust.exe
2011-01-12 01:00 - 2011-01-12 01:00 - 000146944 _____ () C:\Program Files\Common Files\dsfFLACDecoder.dll
2011-01-12 01:00 - 2011-01-12 01:00 - 000221184 _____ () C:\Program Files\Common Files\dsfFLACEncoder.dll
2011-01-12 01:00 - 2011-01-12 01:00 - 000204800 _____ () C:\Program Files\Common Files\dsfNativeFLACSource.dll
2012-05-11 13:16 - 2012-05-11 13:16 - 000171520 _____ () C:\Program Files\Common Files\dsfOggDemux2.dll
2011-01-12 01:00 - 2011-01-12 01:00 - 000240128 _____ () C:\Program Files\Common Files\dsfVorbisDecoder.dll
2009-07-11 22:08 - 2009-07-11 22:08 - 000001860 _____ () C:\Program Files\Common Files\Microsoft.VC90.CRT.manifest
2011-04-18 21:51 - 2011-04-18 21:51 - 000569680 _____ (Microsoft Corporation) C:\Program Files\Common Files\MSVCP90.dll
2011-04-18 21:51 - 2011-04-18 21:51 - 000653136 _____ (Microsoft Corporation) C:\Program Files\Common Files\MSVCR90.dll
2010-12-16 20:39 - 2010-12-16 20:39 - 000412672 _____ (Google) C:\Program Files\Common Files\vp8decoder.dll
2010-12-16 20:39 - 2010-12-16 20:39 - 000701440 _____ (Google) C:\Program Files\Common Files\vp8encoder.dll
2010-12-16 20:39 - 2010-12-16 20:39 - 000302592 _____ (Google) C:\Program Files\Common Files\webmmux.dll
2010-12-16 20:39 - 2010-12-16 20:39 - 000292352 _____ (Google) C:\Program Files\Common Files\webmsplit.dll
2011-01-12 01:00 - 2011-01-12 01:00 - 000030208 _____ () C:\Program Files\Common Files\wmpinfo.dll
2014-10-19 12:06 - 2014-10-19 12:06 - 000001680 _____ () C:\Users\MM\AppData\Roaming\.ptbt0
2013-12-31 11:40 - 2018-03-17 17:23 - 000000082 _____ () C:\Users\MM\AppData\Roaming\default.pls
2013-06-02 10:54 - 2013-06-02 10:54 - 000087608 _____ () C:\Users\MM\AppData\Roaming\inst.exe
2013-06-02 10:54 - 2013-06-02 10:54 - 000007887 _____ () C:\Users\MM\AppData\Roaming\pcouffin.cat
2013-06-02 10:54 - 2013-06-02 10:54 - 000001144 _____ () C:\Users\MM\AppData\Roaming\pcouffin.inf
2013-06-02 10:55 - 2013-06-02 10:55 - 000000034 _____ () C:\Users\MM\AppData\Roaming\pcouffin.log
2013-06-02 10:54 - 2013-06-02 10:54 - 000047360 _____ (VSO Software) C:\Users\MM\AppData\Roaming\pcouffin.sys
2013-08-03 13:45 - 2013-08-03 13:46 - 000000010 _____ () C:\Users\MM\AppData\Roaming\pdfdrawcodec.dll
2013-05-28 16:21 - 2013-05-28 16:21 - 000000017 _____ () C:\Users\MM\AppData\Local\resmon.resmoncfg

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\dllhost.exe => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-05-16 15:07

==================== End of FRST.txt ============================