Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-03-2020
Ran by Dana (administrator) on DANAPC (LENOVO 80G0) (03-04-2020 10:38:40)
Running from C:\Users\Dana\Desktop
Loaded Profiles: Dana (Available Profiles: Dana)
Platform: Windows 8.1 Connected (Update) (X64) Language: Čeština (Česká republika)
Default browser: IE
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine\Vpn.exe
(Avast Software s.r.o. -> avast technologies, LLC) C:\Program Files (x86)\AVAST Software\AvastAntiTrackPremium\AvastAntiTrackPremium.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(CyberLink -> ) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(Lenovo (Beijing) Limited -> Lenovo(beijing) Limited) C:\Windows\System32\LenovoWiFiHotspotSvr.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [907480 2013-09-05] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] (Fortemedia Inc -> )
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.) [File not signed]
HKLM\...\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [7818552 2013-11-07] (Motorola Solutions Inc. -> Motorola Solutions, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [277664 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-3889243092-4243220494-3433804193-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3889243092-4243220494-3433804193-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [371304 2019-08-17] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-3889243092-4243220494-3433804193-1001\...\MountPoints2: {87b23926-5b74-11ea-8371-d07e35257776} - "G:\HiSuiteDownLoader.exe" 
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\Installer\chrmstp.exe [2020-03-19] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.81\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{d0869df6-64b0-4289-b483-9bff61394420}] -> C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfCredProv.dll [2014-11-07] (Lenovo (Beijing) Limited -> )
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast Cleanup Premium.lnk [2018-02-27]
ShortcutTarget: Avast Cleanup Premium.lnk -> C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe (AVAST Software s.r.o. -> AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2019-05-26]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine\Vpn.exe (AVAST Software s.r.o. -> AVAST Software)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {04A60C09-3E0A-47E1-AFB5-59FEEB539904} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {04C6E15B-A253-44EF-A563-7A05B3A900C2} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe
Task: {07D9000A-F3B2-4076-8891-2C15B63406B8} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1642672 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {16CA7D26-D3AA-4088-A366-D34BF6FD1001} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
Task: {16F11B6F-AF5C-4DAD-8A44-BA76D46A7121} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2781936 2013-12-24] (Synaptics Incorporated -> Synaptics Incorporated)
Task: {227D7627-3BC5-4E61-BEB7-245B31C75D6F} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe
Task: {38599729-8C42-4634-A8D0-A31120C01C24} - System32\Tasks\PDVDServ Task => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE
Task: {4945EC3C-B0FB-4DC2-A0CE-6378E46834A0} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe
Task: {556E5E07-6D8D-4A05-BBD5-2C520350C66E} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3894664 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
Task: {5FE1CEFC-7A93-40EC-9BA7-6B7F5CC5DDC8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
Task: {6166D085-3DC3-4B3B-8AD0-E142D15D8C6E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {625A9DE6-262C-45D9-8B73-371CC02F2183} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [17184 2014-05-30] (LENOVO -> Lenovo)
Task: {69EF22EE-A8FD-443E-B4F6-AE862EC6A6AD} - System32\Tasks\Avast TUNEUP Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe [1659000 2019-07-25] (AVAST Software s.r.o. -> AVAST Software)
Task: {6A8FBF5E-6885-4916-BBED-BD4B78B34E2C} - System32\Tasks\Microsoft\Windows\AvastAntiTrackPremium\AvastAntiTrackPremiumStart => C:\Program Files (x86)\AVAST Software\AvastAntiTrackPremium\AvastAntiTrackPremium.exe [20934240 2019-07-15] (Avast Software s.r.o. -> avast technologies, LLC)
Task: {9CD79699-F781-4F70-9634-5809B205EE2D} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => C:\windows\system32\rundll32.exe C:\windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
Task: {BDD99146-CA06-4D0C-93D1-8AC12A854C6F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software)
Task: {C24F8789-61DC-4F0B-B175-3A92463972CA} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\AVAST Software\SecureLine\VpnUpdate.exe [1390472 2019-10-24] (AVAST Software s.r.o. -> AVAST Software)
Task: {C3C1404F-1CB3-47C2-B318-DC261740281D} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-01-21] (Adobe Inc. -> Adobe)
Task: {C3F6344A-761B-4B99-A4BC-CA6F43C66BBF} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_321_Plugin.exe [1458232 2020-01-21] (Adobe Inc. -> Adobe)
Task: {D238E082-3BD8-48A4-A7C2-7663A03A1257} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {D5C9EE66-D9CC-486E-90F2-350759F4D0A7} - System32\Tasks\Lenovo\Dependency Package Auto Update => C:\Program Files\Lenovo\iMController\AutoUpdate.exe
Task: {DC65E382-326C-4890-91E5-9108CABC4AC0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc -> Google Inc.)
Task: {E88B2B11-576C-43DB-83EC-E8E505CC730C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc -> Google Inc.)
Task: {ED218A41-6704-48D1-B586-0D407D441D0D} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.UpdateStatusService.exe
Task: {F5BBB25C-44E2-40B1-98F3-8C3168B2A798} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {FB10ED6C-C1C0-4680-9BC3-998408E04308} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{12996816-4142-4481-B7CA-D792E3FA9A67}: [DhcpNameServer] 8.8.8.8
Tcpip\..\Interfaces\{21B84060-CC21-485B-99E1-E42C4C0F22C5}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{64950EF1-786A-4D7A-B118-0693423FC9EC}: [NameServer] 100.120.184.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3889243092-4243220494-3433804193-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3889243092-4243220494-3433804193-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-3889243092-4243220494-3433804193-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3889243092-4243220494-3433804193-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3889243092-4243220494-3433804193-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3889243092-4243220494-3433804193-1001 -> {2789D291-4CB9-4229-8C26-100D431E1756} URL = 
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2013-07-10] (Microsoft Corporation -> Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2013-07-13] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2013-07-13] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKU\S-1-5-21-3889243092-4243220494-3433804193-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} -  No File
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_32_0_0_321.dll [2020-01-21] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_321.dll [2020-01-21] (Adobe Inc. -> )

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Dana\AppData\Local\Google\Chrome\User Data\Default [2020-04-01]
CHR Notifications: Default -> hxxps://hqq.watch; hxxps://modry-kruh.pushcrew.com; hxxps://www.flashx.tv; hxxps://www.postazdarma.cz
CHR Extension: (Dokumenty) - C:\Users\Dana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\Dana\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Dana\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Vyhledávání Google) - C:\Users\Dana\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dana\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-10]
CHR Extension: (Glossy Blue) - C:\Users\Dana\AppData\Local\Google\Chrome\User Data\Default\Extensions\nheaocaplknjkpcnbadlgfpdfjaabiml [2015-08-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dana\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-06]
CHR Extension: (Gmail) - C:\Users\Dana\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-08]
CHR Extension: (Chrome Media Router) - C:\Users\Dana\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-23]
CHR Profile: C:\Users\Dana\AppData\Local\Google\Chrome\User Data\System Profile [2020-03-25]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6046624 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [413472 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
S2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [428560 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
S2 CleanupPSvc; C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe [10287216 2019-07-25] (AVAST Software s.r.o. -> AVAST Software)
S4 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [130008 2014-01-22] (Intel Corporation - pGFX -> Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\windows\system32\igfxCUIService.exe [282096 2014-03-12] (Intel Corporation - Software and Firmware Products -> Intel Corporation)
S4 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed]
S4 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R2 LenovoWiFiHotspotSvr; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [198192 2014-11-07] (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-04-02] (Malwarebytes Inc -> Malwarebytes)
S4 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2014-01-18] (Intel Corporation-Mobile Wireless Group -> )
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] (CyberLink -> )
S2 SecureLine; C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe [6828424 2019-10-24] (AVAST Software s.r.o. -> AVAST Software)
S4 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [67856 2014-11-07] (Lenovo (Beijing) Limited -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S4 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3816176 2014-01-18] (Intel Corporation-Mobile Wireless Group -> Intel® Corporation)
S4 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswArPot; C:\windows\System32\drivers\aswArPot.sys [205576 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\windows\System32\drivers\aswbidsdriver.sys [271120 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\windows\System32\drivers\aswbidsh.sys [206608 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\windows\System32\drivers\aswbuniv.sys [64272 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\windows\System32\drivers\aswKbd.sys [42976 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\windows\System32\drivers\aswMonFlt.sys [175400 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetSec; C:\windows\System32\drivers\aswNetSec.sys [552576 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\windows\System32\drivers\aswRdr2.sys [110560 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\windows\System32\drivers\aswRvrt.sys [84056 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\windows\System32\drivers\aswSnx.sys [848672 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\windows\System32\drivers\aswSP.sys [458584 2020-03-16] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\windows\System32\drivers\aswStm.sys [235184 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
S3 aswTap; C:\windows\system32\DRIVERS\aswTap.sys [53904 2017-03-19] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\windows\System32\drivers\aswVmm.sys [316256 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
S3 bcmfn2; C:\windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Broadcom Corporation -> Windows (R) Win 7 DDK provider)
R3 btmaux; C:\windows\system32\DRIVERS\btmaux.sys [140600 2013-11-07] (Motorola Solutions Inc. -> Motorola Solutions, Inc.)
R3 btmhsf; C:\windows\system32\DRIVERS\btmhsf.sys [1411384 2013-11-07] (Motorola Solutions Inc. -> Motorola Solutions, Inc.)
R3 ibtusb; C:\windows\system32\DRIVERS\ibtusb.sys [149448 2014-01-22] (Intel Corporation-Mobile Wireless Group -> Intel Corporation)
R0 MBI; C:\windows\System32\drivers\MBI.sys [29464 2013-10-10] (Intel(R) Software -> Intel Corporation)
S0 mfeelamk; C:\windows\System32\drivers\mfeelamk.sys [80160 2015-02-13] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, Inc.)
R1 netfilter2; C:\windows\System32\drivers\netfilter2.sys [86632 2018-11-05] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R3 NETwNb64; C:\windows\system32\DRIVERS\Netwbw02.sys [3443680 2014-06-01] (Intel Corporation-Mobile Wireless Group -> Intel Corporation)
S3 NETwNe64; C:\windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation-Mobile Wireless Group -> Intel Corporation)
R3 rtsuvc; C:\windows\system32\DRIVERS\rtsuvc.sys [9105624 2014-01-21] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-12-24] (Synaptics Incorporated -> Synaptics Incorporated)
S3 TXEIx64; C:\windows\System32\drivers\TXEIx64.sys [88592 2014-01-16] (Intel Corporation - Client Components Group -> Intel Corporation)
S3 WdBoot; C:\windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\windows\system32\DRIVERS\usb2ser.sys [159936 2016-08-16] (NGO -> MBB)
S3 WdNisDrv; C:\windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 wsvd; C:\windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] (CyberLink -> "CyberLink)
S3 MBAMSwissArmy; \SystemRoot\System32\Drivers\mbamswissarmy.sys [X]
S3 NAVENG; \??\C:\Program Files\Norton Security\NortonData\22.9.1.12\Definitions\SDSDefs\20190816.009\NAVENG.SYS [X]
S3 NAVEX15; \??\C:\Program Files\Norton Security\NortonData\22.9.1.12\Definitions\SDSDefs\20190816.009\NAVEX15.SYS [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-04-03 10:38 - 2020-04-03 13:49 - 000023335 _____ C:\Users\Dana\Desktop\FRST.txt
2020-04-03 10:38 - 2020-04-03 10:38 - 000000000 ____D C:\Users\Dana\Desktop\FRST-OlderVersion
2020-04-02 18:33 - 2020-04-02 20:11 - 000000000 ____D C:\AdwCleaner
2020-04-02 18:29 - 2020-04-02 18:26 - 008199856 _____ (Malwarebytes) C:\Users\Dana\Desktop\AdwCleaner.exe
2020-04-02 17:52 - 2020-04-02 17:52 - 000000000 ____D C:\Users\Dana\AppData\Local\cache
2020-04-02 17:49 - 2020-04-02 17:49 - 000000000 ____D C:\Users\Dana\AppData\Local\mbam
2020-04-02 17:48 - 2020-04-02 17:48 - 000000000 ____D C:\Users\Dana\AppData\Local\mbamtray
2020-04-02 17:48 - 2020-04-02 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2020-04-02 17:43 - 2020-04-02 17:37 - 000153312 _____ (Malwarebytes) C:\windows\system32\Drivers\mbae64.sys
2020-04-02 17:38 - 2020-04-02 17:38 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-04-02 17:33 - 2020-04-02 17:33 - 000000000 ____D C:\Program Files\Malwarebytes
2020-03-27 03:06 - 2020-03-12 22:05 - 000368056 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2020-03-26 23:17 - 2020-04-03 12:32 - 000000000 ____D C:\FRST
2020-03-26 23:16 - 2020-04-03 10:38 - 002280448 _____ (Farbar) C:\Users\Dana\Desktop\FRST64.exe
2020-03-26 00:09 - 2020-03-26 00:10 - 022267336 _____ (Piriform Software Ltd) C:\Users\Dana\Downloads\ccsetup565.exe
2020-03-23 17:23 - 2020-03-23 17:23 - 000130267 _____ C:\Users\Dana\Desktop\[SkT]____Medicejove__Vladci_Florencie___Medici__Masters_of_Florence_-_2._serie_[WebRip][720p]_=_CSFD_79%.torrent
2020-03-23 17:23 - 2020-03-23 17:23 - 000000000 ____D C:\Program Files (x86)\WinRAR
2020-03-23 17:17 - 2020-03-23 17:18 - 000488368 _____ C:\windows\system32\FNTCACHE.DAT
2020-03-23 16:57 - 2020-03-23 16:57 - 000000000 ____D C:\Users\Dana\AppData\Roaming\WinRAR
2020-03-23 16:49 - 2020-03-25 19:01 - 000000000 ____D C:\Program Files\WinRAR
2020-03-22 23:40 - 2020-03-23 00:53 - 806028026 _____ C:\Users\Dana\Desktop\Medicejové-Vládci Florencie 8.díl - Zjevení Páně.avi
2020-03-21 03:40 - 2020-03-21 05:22 - 892584952 _____ C:\Users\Dana\Desktop\Rusko z výšky E02 2020 seriál CZ dabing.mkv
2020-03-18 07:10 - 2020-03-25 21:28 - 000002030 _____ C:\Users\Public\Desktop\Avast Premium Security.lnk
2020-03-18 07:10 - 2020-03-25 21:28 - 000002030 _____ C:\ProgramData\Desktop\Avast Premium Security.lnk
2020-03-15 22:43 - 2020-03-05 04:30 - 001542920 _____ (Microsoft Corporation) C:\windows\system32\user32.dll
2020-03-15 22:43 - 2020-03-05 02:50 - 001479680 _____ (Microsoft Corporation) C:\windows\system32\wsecedit.dll
2020-03-15 22:43 - 2020-03-05 02:23 - 000274944 _____ (Microsoft Corporation) C:\windows\system32\scecli.dll
2020-03-15 22:43 - 2020-03-04 08:58 - 001335808 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsecedit.dll
2020-03-15 22:43 - 2020-03-04 08:43 - 001377792 _____ (Microsoft Corporation) C:\windows\SysWOW64\user32.dll
2020-03-15 22:43 - 2020-03-04 08:40 - 000214528 _____ (Microsoft Corporation) C:\windows\SysWOW64\scecli.dll
2020-03-15 22:43 - 2020-03-04 02:40 - 007362288 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2020-03-15 22:43 - 2020-03-04 02:39 - 002013936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys
2020-03-15 22:43 - 2020-02-25 04:25 - 003329536 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2020-03-15 22:43 - 2020-02-25 04:22 - 003634688 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2020-03-15 22:43 - 2020-02-15 18:45 - 001728000 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Immersive.dll
2020-03-15 22:43 - 2020-02-15 18:41 - 001546240 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Immersive.dll
2020-03-15 22:43 - 2020-02-13 20:22 - 000337408 _____ (Microsoft Corporation) C:\windows\system32\SearchProtocolHost.exe
2020-03-15 22:43 - 2020-02-13 20:20 - 000468992 _____ (Microsoft Corporation) C:\windows\system32\mssph.dll
2020-03-15 22:43 - 2020-02-13 20:03 - 003631616 _____ (Microsoft Corporation) C:\windows\system32\tquery.dll
2020-03-15 22:43 - 2020-02-13 19:42 - 000133120 _____ (Microsoft Corporation) C:\windows\system32\mssprxy.dll
2020-03-15 22:43 - 2020-02-13 19:39 - 000905728 _____ (Microsoft Corporation) C:\windows\system32\SearchIndexer.exe
2020-03-15 22:43 - 2020-02-13 19:38 - 002551808 _____ (Microsoft Corporation) C:\windows\system32\mssrch.dll
2020-03-15 22:43 - 2020-02-13 19:25 - 000391680 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssph.dll
2020-03-15 22:43 - 2020-02-13 19:25 - 000272896 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchProtocolHost.exe
2020-03-15 22:43 - 2020-02-13 19:17 - 002750464 _____ (Microsoft Corporation) C:\windows\SysWOW64\tquery.dll
2020-03-15 22:43 - 2020-02-13 18:59 - 001920000 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssrch.dll
2020-03-15 22:43 - 2020-02-13 18:58 - 000711168 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchIndexer.exe
2020-03-15 22:43 - 2020-02-13 12:35 - 001765064 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2020-03-15 22:43 - 2020-02-13 08:23 - 001489512 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2020-03-15 22:43 - 2020-02-13 07:26 - 000135680 _____ (Microsoft Corporation) C:\windows\system32\DeviceMetadataRetrievalClient.dll
2020-03-15 22:43 - 2020-02-13 07:06 - 000861184 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2020-03-15 22:43 - 2020-02-13 06:42 - 000459264 _____ (Microsoft Corporation) C:\windows\system32\upnphost.dll
2020-03-15 22:43 - 2020-02-13 06:41 - 002780160 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2020-03-15 22:43 - 2020-02-13 06:11 - 000332800 _____ (Microsoft Corporation) C:\windows\SysWOW64\upnphost.dll
2020-03-15 22:43 - 2020-02-13 06:06 - 002464256 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2020-03-15 22:43 - 2020-02-12 01:09 - 001368288 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2020-03-15 22:43 - 2020-02-11 16:15 - 025753600 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2020-03-15 22:43 - 2020-02-11 16:01 - 004168192 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2020-03-15 22:43 - 2020-02-11 15:58 - 000060416 _____ (Microsoft Corporation) C:\windows\system32\mf3216.dll
2020-03-15 22:43 - 2020-02-11 15:50 - 002911232 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2020-03-15 22:43 - 2020-02-11 15:48 - 000580096 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2020-03-15 22:43 - 2020-02-11 15:48 - 000088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2020-03-15 22:43 - 2020-02-11 15:39 - 020290048 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2020-03-15 22:43 - 2020-02-11 15:38 - 000615936 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2020-03-15 22:43 - 2020-02-11 15:37 - 005500416 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2020-03-15 22:43 - 2020-02-11 15:37 - 000790016 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2020-03-15 22:43 - 2020-02-11 15:30 - 000046080 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf3216.dll
2020-03-15 22:43 - 2020-02-11 15:23 - 000496640 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2020-03-15 22:43 - 2020-02-11 15:21 - 000064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2020-03-15 22:43 - 2020-02-11 15:20 - 002304000 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2020-03-15 22:43 - 2020-02-11 15:16 - 000060416 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2020-03-15 22:43 - 2020-02-11 15:15 - 000092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2020-03-15 22:43 - 2020-02-11 15:14 - 000145408 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2020-03-15 22:43 - 2020-02-11 15:13 - 000660992 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2020-03-15 22:43 - 2020-02-11 15:13 - 000315392 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2020-03-15 22:43 - 2020-02-11 15:09 - 001033216 _____ (Microsoft Corporation) C:\windows\system32\inetcomm.dll
2020-03-15 22:43 - 2020-02-11 15:03 - 000262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2020-03-15 22:43 - 2020-02-11 15:02 - 015468544 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2020-03-15 22:43 - 2020-02-11 15:01 - 000809472 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2020-03-15 22:43 - 2020-02-11 15:01 - 000728064 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2020-03-15 22:43 - 2020-02-11 14:58 - 002132992 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2020-03-15 22:43 - 2020-02-11 14:57 - 000052736 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2020-03-15 22:43 - 2020-02-11 14:55 - 000279040 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2020-03-15 22:43 - 2020-02-11 14:55 - 000128000 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2020-03-15 22:43 - 2020-02-11 14:52 - 000880640 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcomm.dll
2020-03-15 22:43 - 2020-02-11 14:50 - 004112384 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2020-03-15 22:43 - 2020-02-11 14:50 - 001756672 _____ (Microsoft Corporation) C:\windows\system32\GdiPlus.dll
2020-03-15 22:43 - 2020-02-11 14:49 - 001085440 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2020-03-15 22:43 - 2020-02-11 14:48 - 000230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2020-03-15 22:43 - 2020-02-11 14:47 - 002058752 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2020-03-15 22:43 - 2020-02-11 14:47 - 000696320 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2020-03-15 22:43 - 2020-02-11 14:47 - 000333312 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2020-03-15 22:43 - 2020-02-11 14:46 - 004859392 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2020-03-15 22:43 - 2020-02-11 14:44 - 013854208 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2020-03-15 22:43 - 2020-02-11 14:40 - 001493504 _____ (Microsoft Corporation) C:\windows\SysWOW64\GdiPlus.dll
2020-03-15 22:43 - 2020-02-11 14:35 - 001566720 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2020-03-15 22:43 - 2020-02-11 14:29 - 004387328 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2020-03-15 22:43 - 2020-02-11 14:25 - 001332224 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2020-03-15 22:43 - 2020-02-11 14:24 - 000800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2020-03-15 22:43 - 2020-02-11 14:24 - 000710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2020-03-15 22:43 - 2020-02-08 22:05 - 000537824 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2020-03-15 22:43 - 2020-02-08 22:04 - 000140128 _____ (Microsoft Corporation) C:\windows\system32\wermgr.exe
2020-03-15 22:43 - 2020-02-08 20:32 - 000450536 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2020-03-15 22:43 - 2020-02-08 20:32 - 000136744 _____ (Microsoft Corporation) C:\windows\SysWOW64\wermgr.exe
2020-03-15 22:43 - 2020-02-08 19:55 - 000037888 _____ (Microsoft Corporation) C:\windows\system32\npmproxy.dll
2020-03-15 22:43 - 2020-02-08 19:32 - 000087040 _____ (Microsoft Corporation) C:\windows\system32\wercplsupport.dll
2020-03-15 22:43 - 2020-02-08 19:10 - 000112128 _____ (Microsoft Corporation) C:\windows\system32\AxInstSv.dll
2020-03-15 22:43 - 2020-02-08 19:09 - 000933888 _____ (Microsoft Corporation) C:\windows\system32\qmgr.dll
2020-03-15 22:43 - 2020-02-08 19:04 - 001254912 _____ (Microsoft Corporation) C:\windows\system32\werconcpl.dll
2020-03-15 22:43 - 2020-02-08 18:52 - 000255488 _____ (Microsoft Corporation) C:\windows\system32\netprofm.dll
2020-03-15 22:43 - 2020-02-08 18:52 - 000030208 _____ (Microsoft Corporation) C:\windows\system32\nlmproxy.dll
2020-03-15 22:43 - 2020-02-08 18:50 - 000550912 _____ (Microsoft Corporation) C:\windows\system32\netprofmsvc.dll
2020-03-15 22:43 - 2020-02-08 18:50 - 000056320 _____ (Microsoft Corporation) C:\windows\system32\profext.dll
2020-03-15 22:43 - 2020-02-08 18:35 - 000210432 _____ (Microsoft Corporation) C:\windows\SysWOW64\netprofm.dll
2020-03-15 22:43 - 2020-02-08 18:35 - 000046592 _____ (Microsoft Corporation) C:\windows\SysWOW64\profext.dll
2020-03-15 22:43 - 2020-02-08 18:28 - 000266752 _____ (Microsoft Corporation) C:\windows\system32\netman.dll
2020-03-15 22:43 - 2020-02-07 20:46 - 000784896 _____ (Microsoft Corporation) C:\windows\system32\lpksetup.exe
2020-03-15 22:43 - 2020-02-07 20:15 - 000787456 _____ (Microsoft Corporation) C:\windows\system32\WorkfoldersControl.dll
2020-03-15 22:43 - 2020-02-07 20:02 - 000229888 _____ (Microsoft Corporation) C:\windows\system32\profsvc.dll
2020-03-15 22:43 - 2020-02-07 19:32 - 001680896 _____ (Microsoft Corporation) C:\windows\system32\workfolderssvc.dll
2020-03-15 22:43 - 2020-02-05 16:38 - 000205824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndiswan.sys
2020-03-15 22:43 - 2020-02-05 16:38 - 000095744 _____ (Microsoft Corporation) C:\windows\system32\Drivers\agilevpn.sys
2020-03-15 22:43 - 2020-02-05 16:20 - 001544888 _____ (Microsoft Corporation) C:\windows\system32\diagtrack.dll
2020-03-15 22:43 - 2020-02-01 19:36 - 000377344 _____ (Microsoft Corporation) C:\windows\system32\mprddm.dll
2020-03-15 22:43 - 2020-02-01 19:07 - 000319488 _____ (Microsoft Corporation) C:\windows\SysWOW64\mprddm.dll
2020-03-15 22:43 - 2020-02-01 18:57 - 000845312 _____ (Microsoft Corporation) C:\windows\system32\BFE.DLL
2020-03-15 22:43 - 2020-02-01 18:56 - 001080320 _____ (Microsoft Corporation) C:\windows\system32\IKEEXT.DLL
2020-03-15 22:43 - 2020-02-01 18:48 - 000422400 _____ (Microsoft Corporation) C:\windows\system32\FWPUCLNT.DLL
2020-03-15 22:43 - 2020-02-01 18:44 - 000429568 _____ (Microsoft Corporation) C:\windows\system32\vpnike.dll
2020-03-15 22:43 - 2020-02-01 18:36 - 000542720 _____ (Microsoft Corporation) C:\windows\system32\rasmans.dll
2020-03-15 22:43 - 2020-02-01 18:34 - 000272384 _____ (Microsoft Corporation) C:\windows\SysWOW64\FWPUCLNT.DLL
2020-03-15 22:43 - 2020-02-01 18:33 - 000713216 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2020-03-15 22:43 - 2020-02-01 18:24 - 000562176 _____ (Microsoft Corporation) C:\windows\SysWOW64\nshwfp.dll
2020-03-15 22:43 - 2020-01-28 21:53 - 001349120 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentServer.dll
2020-03-15 22:43 - 2020-01-28 21:47 - 000955904 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.dll
2020-03-15 22:43 - 2020-01-14 23:05 - 000101832 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mountmgr.sys
2020-03-12 22:08 - 2020-02-13 08:03 - 000146432 _____ (Microsoft Corporation) C:\windows\system32\poqexec.exe
2020-03-12 22:08 - 2020-02-13 07:06 - 000129536 _____ (Microsoft Corporation) C:\windows\SysWOW64\poqexec.exe
2020-03-12 22:06 - 2020-03-12 22:05 - 000235184 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys
2020-03-12 22:06 - 2020-03-12 22:05 - 000175400 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-04-03 14:55 - 2019-08-20 10:23 - 000000000 ____D C:\Users\Dana\AppData\Local\CrashDumps
2020-04-02 23:09 - 2015-04-19 13:33 - 000003598 _____ C:\windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3889243092-4243220494-3433804193-1001
2020-04-02 22:37 - 2013-08-22 16:45 - 000000006 ____H C:\windows\Tasks\SA.DAT
2020-04-02 20:18 - 2014-11-07 11:34 - 000000000 ____D C:\Program Files\Lenovo
2020-04-02 20:18 - 2014-11-07 11:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2020-04-02 20:18 - 2014-11-07 11:33 - 000000000 ____D C:\Program Files (x86)\Lenovo
2020-04-02 14:50 - 2015-04-19 13:28 - 000000000 __RDO C:\Users\Dana\OneDrive
2020-04-02 14:40 - 2014-11-07 11:25 - 000739924 _____ C:\windows\system32\perfh005.dat
2020-04-02 14:40 - 2014-11-07 11:25 - 000151610 _____ C:\windows\system32\perfc005.dat
2020-04-02 14:40 - 2014-03-18 11:53 - 001745984 _____ C:\windows\system32\PerfStringBackup.INI
2020-04-02 14:40 - 2013-08-22 15:36 - 000000000 ____D C:\windows\Inf
2020-04-02 14:16 - 2017-03-19 11:44 - 000004168 _____ C:\windows\system32\Tasks\Avast Emergency Update
2020-04-02 02:23 - 2018-04-24 15:32 - 000004128 _____ C:\windows\system32\Tasks\CCleaner Update
2020-04-01 22:57 - 2015-04-19 10:30 - 000000000 ____D C:\Users\Dana
2020-03-29 09:53 - 2019-05-26 12:11 - 000004188 _____ C:\windows\system32\Tasks\Avast SecureLine VPN Update
2020-03-27 03:06 - 2015-06-20 21:21 - 000000000 ____D C:\ProgramData\AVAST Software
2020-03-26 21:40 - 2015-04-19 10:35 - 000000000 ____D C:\Users\Dana\AppData\Local\Packages
2020-03-26 21:40 - 2013-08-22 17:36 - 000000000 ____D C:\windows\AppReadiness
2020-03-26 21:22 - 2018-03-21 21:52 - 000004522 _____ C:\windows\system32\Tasks\Adobe Flash Player NPAPI Notifier
2020-03-26 21:22 - 2017-07-27 13:00 - 000003168 _____ C:\windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3889243092-4243220494-3433804193-1001
2020-03-26 21:22 - 2015-12-03 14:58 - 000000000 ____D C:\windows\system32\Tasks\AVAST Software
2020-03-26 21:22 - 2015-10-12 19:49 - 000004372 _____ C:\windows\system32\Tasks\Adobe Flash Player Updater
2020-03-26 21:22 - 2015-08-13 17:22 - 000002784 _____ C:\windows\system32\Tasks\CCleanerSkipUAC
2020-03-26 21:22 - 2015-04-19 13:37 - 000003388 _____ C:\windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-03-26 21:22 - 2015-04-19 13:37 - 000003260 _____ C:\windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-03-26 00:13 - 2015-08-13 17:22 - 000000845 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-03-26 00:13 - 2015-08-13 17:22 - 000000845 _____ C:\ProgramData\Desktop\CCleaner.lnk
2020-03-25 23:51 - 2018-06-22 07:12 - 000000000 ____D C:\Users\Dana\AppData\Local\AVAST Software
2020-03-25 23:48 - 2018-02-27 16:00 - 000000000 ____D C:\Program Files (x86)\AVAST Software
2020-03-25 21:50 - 2015-08-10 16:13 - 005200384 ___SH C:\Users\Dana\Desktop\Thumbs.db
2020-03-25 19:03 - 2013-08-22 15:25 - 000262144 ___SH C:\windows\system32\config\BBI
2020-03-23 16:12 - 2016-01-24 19:03 - 000000000 ____D C:\Users\Dana\Desktop\filmečky
2020-03-22 22:19 - 2019-11-14 14:05 - 000000000 ____D C:\Users\Dana\Desktop\knihy přes internet
2020-03-22 17:29 - 2018-03-21 22:05 - 000002345 _____ C:\Users\Dana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive pro firmy.lnk
2020-03-19 18:57 - 2013-08-22 17:20 - 000000000 ____D C:\windows\CbsTemp
2020-03-19 18:29 - 2015-04-19 13:38 - 000002255 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-03-19 18:29 - 2015-04-19 13:38 - 000002214 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-03-19 18:29 - 2015-04-19 13:38 - 000002214 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-03-19 18:22 - 2019-09-01 12:03 - 000000000 ____D C:\Users\Dana\Desktop\Školka SNP
2020-03-18 09:07 - 2013-08-22 17:36 - 000000000 ____D C:\windows\rescache
2020-03-18 07:10 - 2018-02-09 17:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2020-03-18 07:02 - 2013-08-22 17:36 - 000000000 ____D C:\windows\system32\setup
2020-03-17 21:12 - 2015-04-19 17:10 - 000000000 ____D C:\windows\system32\MRT
2020-03-17 21:03 - 2015-04-19 17:10 - 121542864 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2020-03-16 16:50 - 2015-06-20 21:25 - 000458584 _____ (AVAST Software) C:\windows\system32\Drivers\aswSP.sys
2020-03-12 22:05 - 2019-02-13 22:57 - 000552576 _____ (AVAST Software) C:\windows\system32\Drivers\aswNetSec.sys
2020-03-12 22:05 - 2018-10-25 03:17 - 000042976 _____ (AVAST Software) C:\windows\system32\Drivers\aswKbd.sys
2020-03-12 22:05 - 2017-11-20 15:48 - 000205576 _____ (AVAST Software) C:\windows\system32\Drivers\aswArPot.sys
2020-03-12 22:05 - 2015-06-20 21:25 - 000848672 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2020-03-12 22:05 - 2015-06-20 21:25 - 000316256 _____ (AVAST Software) C:\windows\system32\Drivers\aswVmm.sys
2020-03-12 22:05 - 2015-06-20 21:25 - 000110560 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2020-03-12 22:05 - 2015-06-20 21:25 - 000084056 _____ (AVAST Software) C:\windows\system32\Drivers\aswRvrt.sys
2020-03-12 22:04 - 2019-01-18 14:48 - 000271120 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsdriver.sys
2020-03-12 22:04 - 2019-01-18 14:48 - 000206608 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsh.sys
2020-03-12 22:04 - 2019-01-18 14:48 - 000064272 _____ (AVAST Software) C:\windows\system32\Drivers\aswbuniv.sys
2020-03-12 21:50 - 2013-08-22 17:36 - 000000000 ____D C:\windows\system32\NDF
2020-03-12 21:49 - 2020-01-14 22:18 - 000699392 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssvp.dll
2020-03-12 21:48 - 2020-01-14 22:18 - 000774144 _____ (Microsoft Corporation) C:\windows\system32\mssvp.dll
2020-03-12 21:48 - 2020-01-14 22:18 - 000248832 _____ (Microsoft Corporation) C:\windows\system32\mssphtb.dll
2020-03-10 08:47 - 2015-11-15 02:53 - 000000000 ____D C:\Users\Dana\Desktop\náměty na VV do MŠ
2020-03-08 23:25 - 2015-04-20 02:14 - 000000000 __RHD C:\Users\Public\AccountPictures

==================== Files in the root of some directories ========

2020-01-01 19:20 - 2020-01-01 19:20 - 000000000 _____ () C:\Users\Dana\AppData\Local\{4ABF836D-9150-40C6-9212-3F0DB6836F38}

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2020-03-23 18:07
==================== End of FRST.txt ========================