Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 3.02.2019
Ran by Radka (administrator) on RADKA-PC (03-02-2019 20:10:33)
Running from C:\Users\Radka\Desktop
Loaded Profiles: Radka (Available Profiles: Radka)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Baidu, Inc.) C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.122701.0\BAVSvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe
(Intel Corporation) C:\Windows\System32\SET70B2.tmp
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Microsoft Corporation) C:\Windows\System32\wscript.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Baidu, Inc.) C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.122701.0\BavTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Baidu, Inc.) C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.122701.0\BHipsSvc.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\mdm.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Red Bend Ltd.) C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe
(Microsoft Corporation) C:\Windows\System32\schtasks.exe
(Baidu, Inc.) C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.122701.0\bavhm.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\wscript.exe
(Microsoft Corporation) C:\Windows\System32\schtasks.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IntelWirelessWiMAX] => C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe [1626112 2011-12-01] (Intel® Corporation)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2817872 2012-04-27] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
HKLM-x32\...\Run: [Baidu Antivirus] => C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.122701.0\BavTray.exe [1997296 2015-05-15] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation -> Intel Corporation)
HKU\S-1-5-21-3421731538-1396672586-2054023457-1000\...\Run: [f.lux] => C:\Users\Radka\AppData\Local\FluxSoftware\Flux\flux.exe [1820168 2018-10-24] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-3421731538-1396672586-2054023457-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-3421731538-1396672586-2054023457-1000\...\MountPoints2: {ae017c66-58d4-11e8-b083-de2758c50c6f} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\72.0.3626.81\Installer\chrmstp.exe [2019-01-30] (Google LLC -> Google Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\Lenovo\Bluetooth Software\\BtwCP.dll [2012-07-02] (Broadcom Corporation -> Broadcom Corporation.)
HKLM\Software\...\Authentication\Credential Providers: [{D28973E5-8630-41af-8831-50A15FEB396B}] -> C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll [2012-07-02] (Broadcom Corporation -> Broadcom Corporation.)
HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [174856 2015-02-23] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [156840 2015-02-23] (NVIDIA Corporation)
Lsa: [Notification Packages] scecli C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll
Startup: C:\Users\Radka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\setup.js [2018-09-22] ()
BootExecute: autocheck autochk * aswBoot.exe /A:"* " /L:"1029" /KBD:2 /wow /dir:"C:\Program Files\AVAST Software\Avast"

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.10.10.10
Tcpip\..\Interfaces\{77A4EB83-99E0-41D0-A033-E582A5FF4405}: [DhcpNameServer] 10.10.10.10

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKU\S-1-5-21-3421731538-1396672586-2054023457-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\S-1-5-21-3421731538-1396672586-2054023457-1000 -> {B004DCD9-DCB7-4223-A406-6FD0F9EC3945} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [{55A8EC97-6AF6-442c-877F-11C51DBD162D}] - C:\Program Files (x86)\Tomabo\MP4 Player\YTVD_FF.xpi
FF Extension: (YouTube Video Downloader Extension) - C:\Program Files (x86)\Tomabo\MP4 Player\YTVD_FF.xpi [2013-05-13] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{8B1E27AE-119E-456b-B22E-08C61FACB097}] - C:\Program Files (x86)\Tomabo\MP4 Player\MP4D_FF.xpi
FF Extension: (MP4 Downloader Extension) - C:\Program Files (x86)\Tomabo\MP4 Player\MP4D_FF.xpi [2015-01-24] [Legacy] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_114.dll [2019-01-09] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_114.dll [2019-01-09] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-01-07] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-01-07] (Intel Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)

Chrome: 
=======
CHR HomePage: Default -> file:///D:/
CHR StartupUrls: Default -> "about:blank"
CHR DefaultSearchURL: Default -> hxxps://services.srchweb.org/search/{searchTerms}
CHR DefaultSearchKeyword: Default -> Yahoo
CHR DefaultSuggestURL: Default -> hxxps://sug.srchweb.org/sug/?s={searchTerms}
CHR Profile: C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default [2019-02-03]
CHR Extension: (Prezentace) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-15]
CHR Extension: (Dokumenty) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-15]
CHR Extension: (Disk Google) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-18]
CHR Extension: (YouTube) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-18]
CHR Extension: (Tabulky) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-15]
CHR Extension: (MP4 Downloader Extension) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\glhecpdglaanfgdgcefipbokcmenleaf [2016-03-31]
CHR Extension: (YouTube Video Downloader Extension) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\igljnkmljjbhcellpnjppojkfdfmkjmp [2016-03-31]
CHR Extension: (Night-Forest) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\kolmklakogjichcflpmdgcoaeknaoldj [2018-09-07]
CHR Extension: (Search with Yahoo) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmdkdncigplhkbhcfifnimpdficjhhnn [2018-01-16]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-04]
CHR Extension: (Gmail) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-18]
CHR Extension: (Chrome Media Router) - C:\Users\Radka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-01-30]
CHR HKLM-x32\...\Chrome\Extension: [glhecpdglaanfgdgcefipbokcmenleaf] - C:\Program Files (x86)\Tomabo\MP4 Player\MP4D_GC.crx [2015-01-27]
CHR HKLM-x32\...\Chrome\Extension: [igljnkmljjbhcellpnjppojkfdfmkjmp] - C:\Program Files (x86)\Tomabo\MP4 Player\YTVD_GC.crx [2015-01-27]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 BavSvc; C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.122701.0\BavSvc.exe [2572928 2015-05-15] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.)
S3 BdSandboxSrv; C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.122701.0\BdSandboxSrv64.exe [264736 2015-01-08] (Baidu Online Network Technology (Beijing)Co., Ltd -> Baidu, Inc.)
R2 BHipsSvc; C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.122701.0\BHipsSvc.exe [531232 2015-05-15] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.)
S4 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [1005944 2012-07-02] (Broadcom Corporation -> Broadcom Corporation.)
R2 DMAgent; C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe [514048 2011-11-30] (Red Bend Ltd.) [File not signed]
S4 EPSON_EB_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE [166400 2009-09-14] (SEIKO EPSON CORPORATION) [File not signed]
S4 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE [128512 2009-09-14] (SEIKO EPSON CORPORATION) [File not signed]
S2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-08-27] (Intel Corporation - pGFX -> Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-29] (Intel Corporation -> Intel Corporation)
S4 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.812\McCHSvc.exe [405392 2018-09-27] (McAfee, Inc. -> McAfee, Inc.)
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
S4 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] (Intel Corporation - Mobile Wireless Group -> )
R2 WiMAXAppSrv; C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe [979456 2011-11-30] (Intel(R) Corporation) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel Corporation - Mobile Wireless Group -> Intel® Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 adp94xx; C:\Windows\system32\DRIVERS\adp94xx.sys [491088 2009-07-14] (Microsoft Windows -> Adaptec, Inc.)
S3 adpahci; C:\Windows\system32\DRIVERS\adpahci.sys [339536 2009-07-14] (Microsoft Windows -> Adaptec, Inc.)
S3 adpu320; C:\Windows\system32\DRIVERS\adpu320.sys [182864 2009-07-14] (Microsoft Windows -> Adaptec, Inc.)
S3 aliide; C:\Windows\system32\drivers\aliide.sys [15440 2009-07-14] (Microsoft Windows -> Acer Laboratories Inc.)
S3 arc; C:\Windows\system32\DRIVERS\arc.sys [87632 2009-07-14] (Microsoft Windows -> Adaptec, Inc.)
S3 arcsas; C:\Windows\system32\DRIVERS\arcsas.sys [97856 2009-07-14] (Microsoft Windows -> Adaptec, Inc.)
R3 bdark64; C:\Windows\system32\drivers\bdark64.sys [78792 2015-04-20] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> )
S3 BdSandbox; C:\Windows\System32\drivers\BdSandbox.sys [232440 2015-01-08] (Baidu Online Network Technology (Beijing)Co., Ltd -> Baidu, Inc.)
R1 Bfilter; C:\Windows\System32\drivers\Bfilter.sys [62920 2015-05-15] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.)
R1 Bfmon; C:\Windows\System32\drivers\Bfmon.sys [38344 2015-05-15] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.)
R1 Bnbase; C:\Windows\System32\drivers\bnbasex64.sys [62792 2015-05-15] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.)
R1 Bndef; C:\Windows\System32\drivers\bndef64.sys [485672 2015-05-15] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.)
R3 BNmon; C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.122701.0\Bnmon64.sys [82376 2015-05-15] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.)
R1 Bprotect; C:\Windows\System32\drivers\Bprotect.sys [169416 2015-05-15] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.)
S3 cmdide; C:\Windows\system32\drivers\cmdide.sys [17488 2009-07-14] (Microsoft Windows -> CMD Technology, Inc.)
S3 elxstor; C:\Windows\system32\DRIVERS\elxstor.sys [530496 2009-07-14] (Microsoft Windows -> Emulex)
S3 nfrd960; C:\Windows\system32\DRIVERS\nfrd960.sys [51264 2009-07-14] (Microsoft Windows -> IBM Corporation)
S3 ql2300; C:\Windows\system32\DRIVERS\ql2300.sys [1524816 2009-07-14] (Microsoft Windows -> QLogic Corporation)
S3 ql40xx; C:\Windows\system32\DRIVERS\ql40xx.sys [128592 2009-07-14] (Microsoft Windows -> QLogic Corporation)
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [952832 2011-12-06] (Vimicro Corporation)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [73296 2013-10-08] (VMware, Inc. -> VMware, Inc.)
S3 WiseHDInfo; C:\Windows\WiseHDInfo64.dll [14800 2016-07-06] (wisecleaner.com) [File not signed]
S3 WiseRegNotify; C:\Windows\WiseRegNotify.sys [29616 2016-07-06] (WiseCleaner.com) [File not signed]
S3 SWDUMon; system32\DRIVERS\SWDUMon.sys [X]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-02-03 20:10 - 2019-02-03 20:12 - 000018576 _____ C:\Users\Radka\Desktop\FRST.txt
2019-02-03 20:09 - 2019-02-03 20:10 - 002432512 _____ (Farbar) C:\Users\Radka\Desktop\FRST64.exe
2019-02-03 20:06 - 2019-02-03 20:07 - 000000000 ____D C:\Windows\LastGood
2019-02-03 19:52 - 2019-02-03 19:52 - 000858432 _____ (SlimWare Utilities, Inc.) C:\Users\Radka\Downloads\slimdrivers-setup.exe
2019-01-30 23:22 - 2019-01-30 23:22 - 000000000 ____D C:\Program Files\Elantech
2019-01-30 23:00 - 2012-08-08 09:07 - 002213776 _____ (ELAN Microelectronics Corp.) C:\Windows\ETDUninst.dll
2019-01-30 17:40 - 2019-01-30 17:40 - 000000000 ____D C:\Users\Public\Documents\Downloaded Installers
2019-01-30 17:34 - 2019-01-30 17:34 - 000003060 _____ C:\Windows\System32\Tasks\AdwCleaner_onReboot
2019-01-30 09:20 - 2019-01-30 17:39 - 000091136 _____ C:\Users\Radka\AppData\Roaming\tmp.exe
2019-01-30 09:18 - 2019-01-30 17:39 - 000518656 _____ C:\Users\Radka\AppData\Roaming\Sytes.exe
2019-01-29 10:08 - 2019-01-29 11:05 - 631303278 _____ C:\Users\Radka\Downloads\Most! - 4.díl.mp4
2019-01-29 09:38 - 2019-01-29 09:38 - 000003226 _____ C:\Windows\System32\Tasks\{648F47DA-B672-40A0-B39A-4523E2396DE6}
2019-01-29 09:27 - 2019-01-29 09:27 - 000003136 _____ C:\Windows\System32\Tasks\{953340DA-D800-4635-B352-1129CD487DD7}
2019-01-29 09:21 - 2019-01-29 09:26 - 280908168 _____ (Lenovo Group ) C:\Users\Radka\Downloads\0lto15ww (1).exe
2019-01-26 17:12 - 2019-01-26 17:12 - 000003468 _____ C:\Windows\System32\Tasks\anydesk
2019-01-26 15:11 - 2019-01-26 16:32 - 888041846 _____ C:\Users\Radka\Downloads\Kung Fu panda 1 (cz).avi
2019-01-26 14:24 - 2019-01-26 15:06 - 736697294 _____ C:\Users\Radka\Downloads\kung fu panda 2 cz dabing 101%.avi
2019-01-26 12:56 - 2019-01-26 12:57 - 000000000 ____D C:\AdwCleaner
2019-01-26 11:25 - 2019-02-03 20:10 - 000000000 ____D C:\FRST
2019-01-22 20:30 - 2019-01-22 21:33 - 692689943 _____ C:\Users\Radka\Downloads\Most! - 3.díl.mp4
2019-01-16 13:32 - 2019-01-16 16:37 - 2042268298 _____ C:\Users\Radka\Downloads\Upgrade 2018 CZ Dabing NOVINKA Akční Thriller Sci-Fi Horor Krimi dnes pridane NOVINKY.mkv
2019-01-15 19:40 - 2019-01-15 20:47 - 719011366 _____ C:\Users\Radka\Downloads\Most ! 2.díl.mkv
2019-01-13 14:27 - 2019-01-30 12:02 - 000035120 _____ C:\Windows\system32\lsdel.exe
2019-01-13 13:06 - 2019-01-13 13:06 - 000000000 ____D C:\Users\Radka\AppData\Local\AdAwareDesktop
2019-01-13 13:01 - 2019-01-13 13:01 - 000000000 ____D C:\Users\Radka\AppData\Local\AdAwareUpdater
2019-01-13 13:01 - 2019-01-13 13:01 - 000000000 ____D C:\Program Files\Common Files\adaware
2019-01-13 11:00 - 2019-01-13 11:06 - 280908168 _____ (Lenovo Group ) C:\Users\Radka\Downloads\0lto15ww.exe
2019-01-12 08:25 - 2019-02-03 08:36 - 000000000 ____D C:\Users\Radka\Downloads\opera autoupdate
2019-01-11 08:42 - 2019-01-11 08:42 - 000004292 _____ C:\Windows\System32\Tasks\Opera scheduled assistant Autoupdate 1547192503
2019-01-10 22:14 - 2019-01-11 00:29 - 000001719 _____ C:\Users\Radka\AppData\Roaming\Microsoft Corporation.jse
2019-01-09 09:50 - 2019-01-09 11:12 - 903999443 _____ C:\Users\Radka\Downloads\MOST! 1.díl.mkv
2019-01-07 17:18 - 2019-01-07 19:01 - 1051901952 _____ C:\Users\Radka\Downloads\Máš jí!.mkv
2019-01-07 11:18 - 2019-01-07 12:51 - 1671423973 _____ C:\Users\Radka\Downloads\Spotlight.mkv
2019-01-07 09:56 - 2019-01-07 11:17 - 1338796570 _____ C:\Users\Radka\Downloads\Nebezpečná laskavost CZtit.avi
2019-01-06 11:16 - 2019-01-06 12:40 - 1491408393 _____ C:\Users\Radka\Downloads\Dračí srdce.mkv
2019-01-05 10:20 - 2019-01-05 11:53 - 1006016204 _____ C:\Users\Radka\Downloads\Vesmír mezi námi.avi

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-02-03 20:07 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2019-02-03 20:06 - 2014-01-23 22:31 - 000000000 ____D C:\Program Files\Intel
2019-02-03 17:36 - 2018-12-22 17:36 - 000000464 _____ C:\Windows\Tasks\SlimDrivers Scan.job
2019-02-03 17:06 - 2009-07-14 16:18 - 000671838 _____ C:\Windows\system32\perfh005.dat
2019-02-03 17:06 - 2009-07-14 16:18 - 000142992 _____ C:\Windows\system32\perfc005.dat
2019-02-03 17:06 - 2009-07-14 06:13 - 001592896 _____ C:\Windows\system32\PerfStringBackup.INI
2019-02-03 08:57 - 2009-07-14 05:45 - 000025088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-02-03 08:57 - 2009-07-14 05:45 - 000025088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-02-03 08:30 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-01-30 22:46 - 2018-12-03 08:52 - 000000000 ____D C:\Windows\pss
2019-01-30 17:39 - 2018-12-01 17:44 - 000000000 ____D C:\Users\Radka\AppData\Roaming\System32
2019-01-30 17:36 - 2015-10-26 16:32 - 000000000 ____D C:\ProgramData\VMware
2019-01-30 09:32 - 2014-01-24 19:12 - 000002224 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-01-30 09:32 - 2014-01-24 19:12 - 000002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-01-28 09:13 - 2014-08-03 14:24 - 000000000 ____D C:\Users\Radka\AppData\Local\CrashDumps
2019-01-26 17:07 - 2014-12-30 12:50 - 000000000 ____D C:\Users\Radka\AppData\LocalLow\Temp
2019-01-26 11:12 - 2014-01-23 21:29 - 000000000 ____D C:\Users\Radka\AppData\Local\VirtualStore
2019-01-25 19:01 - 2017-04-03 14:59 - 000000000 ____D C:\Users\Radka\AppData\Local\Spotify
2019-01-25 18:42 - 2017-04-03 14:57 - 000000000 ____D C:\Users\Radka\AppData\Roaming\Spotify
2019-01-11 08:42 - 2018-09-25 15:31 - 000004058 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1537885790
2019-01-09 10:39 - 2018-03-13 19:39 - 000004528 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-01-09 10:39 - 2014-01-23 23:29 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-01-09 10:39 - 2014-01-23 23:29 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-01-09 10:39 - 2014-01-23 23:29 - 000004396 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2019-01-09 10:39 - 2014-01-23 23:29 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-01-09 10:39 - 2014-01-23 23:29 - 000000000 ____D C:\Windows\system32\Macromed

==================== Files in the root of some directories =======

2013-11-22 12:40 - 2013-11-22 12:40 - 000170344 _____ (Baidu, Inc.) C:\ProgramData\FileSplitUpLoad.dll
2019-01-10 22:14 - 2019-01-11 00:29 - 000001719 _____ () C:\Users\Radka\AppData\Roaming\Microsoft Corporation.jse
2019-01-30 09:18 - 2019-01-30 17:39 - 000518656 _____ () C:\Users\Radka\AppData\Roaming\Sytes.exe
2019-01-30 09:20 - 2019-01-30 17:39 - 000091136 _____ () C:\Users\Radka\AppData\Roaming\tmp.exe
2016-02-28 13:38 - 2016-02-28 13:38 - 000007601 _____ () C:\Users\Radka\AppData\Local\Resmon.ResmonCfg

Some files in TEMP:
====================
2019-01-27 19:12 - 2010-11-05 02:53 - 001717576 _____ (Microsoft Corporation) C:\Users\Radka\AppData\Local\Temp\.exe
2019-01-26 17:16 - 2019-01-26 17:16 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901261616141626632.dll
2019-01-26 17:16 - 2019-01-26 17:16 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901261616155356556.dll
2019-01-27 09:09 - 2019-01-27 09:09 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901270809038611536.dll
2019-01-28 09:22 - 2019-01-28 09:22 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901280822549627060.dll
2019-01-29 09:37 - 2019-01-29 09:37 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901290837473861648.dll
2019-01-30 17:42 - 2019-01-30 17:42 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901301642501846284.dll
2019-01-30 17:42 - 2019-01-30 17:42 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901301642539007080.dll
2019-01-30 22:56 - 2019-01-30 22:56 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901302156566586040.dll
2019-01-30 22:56 - 2019-01-30 22:56 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901302156583596084.dll
2019-01-30 23:10 - 2019-01-30 23:10 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901302210450023136.dll
2019-01-30 23:10 - 2019-01-30 23:10 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_190130221046546296.dll
2019-01-30 23:29 - 2019-01-30 23:29 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901302229465895332.dll
2019-01-30 23:29 - 2019-01-30 23:29 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901302229480874268.dll
2019-01-30 23:37 - 2019-01-30 23:37 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901302237440852616.dll
2019-01-30 23:37 - 2019-01-30 23:37 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901302237461445908.dll
2019-01-31 09:19 - 2019-01-31 09:19 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901310819192437944.dll
2019-01-31 09:19 - 2019-01-31 09:19 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901310819203157824.dll
2019-01-31 19:47 - 2019-01-31 19:47 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901311847567126044.dll
2019-01-31 19:47 - 2019-01-31 19:47 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1901311847596455520.dll
2019-02-03 08:36 - 2019-02-03 08:36 - 003022336 _____ (Opera Software) C:\Users\Radka\AppData\Local\Temp\Opera_installer_1902030736308955960.dll
2019-01-27 19:12 - 2019-01-29 09:34 - 000091136 _____ () C:\Users\Radka\AppData\Local\Temp\tmp.exe
2019-01-27 19:12 - 2019-01-27 19:12 - 000142920 _____ (REA) C:\Users\Radka\AppData\Local\Temp\xmxe3wu.putty.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\dllhost.exe => File is digitally signed
C:\Windows\SysWOW64\dllhost.exe => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2019-02-02 13:21

==================== End of FRST.txt ============================