Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-10-2020
Ran by PC (administrator) on PC-PC (Dell Inc. Latitude E5440) (18-10-2020 17:08:58)
Running from C:\Users\PC\Desktop
Loaded Profiles: PC
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Default browser: Opera
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTAgent.exe
(BayHubTech/O2Micro) [File not signed] C:\Windows\System32\SDIOAssist.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Huawei Technologies Co., Ltd. -> ) C:\ProgramData\DatacardService\HWDeviceService64.exe
(Huawei Technologies Co., Ltd. -> ) C:\ProgramData\O2 Internet\OnlineUpdate\ouc.exe
(Huawei Technologies Co., Ltd. -> Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
(Intel(R) Wireless Connectivity Solutions -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Intel(R) Wireless Connectivity Solutions -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Intel(R) Wireless Connectivity Solutions -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\alg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(O2Micro -> BayHubTech/O2Micro International) C:\Windows\System32\drivers\o2flash.exe
(Opera Software AS -> Opera Software) C:\Users\PC\AppData\Local\Programs\Opera\71.0.3770.271\opera.exe <16>
(Opera Software AS -> Opera Software) C:\Users\PC\AppData\Local\Programs\Opera\71.0.3770.271\opera_crashreporter.exe
(Qualcomm Atheros -> Qualcomm®Atheros®) C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\Bluetooth Suite\BtvStack.exe
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\Bluetooth Suite\AdminService.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Wondershare) [File not signed] C:\Program Files (x86)\Wondershare\WAF\2.1.6.0\WsAppService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9230296 2017-11-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [723928 2017-01-26] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [185648 2020-08-10] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [] => [X]
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\Bluetooth Suite\BtvStack.exe [137184 2016-05-24] (Qualcomm Atheros -> Qualcomm®Atheros®)
HKU\S-1-5-21-793189064-2813996745-2248692698-1000\...\Run: [uTorrent] => C:\Users\PC\AppData\Roaming\uTorrent\uTorrent.exe [2117080 2020-09-14] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-793189064-2813996745-2248692698-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [365760 2020-09-21] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-793189064-2813996745-2248692698-1000\...\Run: [] => [X]
HKU\S-1-5-21-793189064-2813996745-2248692698-1000\...\Run: [Opera Browser Assistant] => C:\Users\PC\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3085336 2020-10-14] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-793189064-2813996745-2248692698-1000\...\MountPoints2: G - G:\autorun.exe
HKU\S-1-5-21-793189064-2813996745-2248692698-1000\...\MountPoints2: {1f7bf905-1a28-11e8-b1df-28e3476e9df3} - F:\SETUP.EXE /AUTORUN
HKU\S-1-5-21-793189064-2813996745-2248692698-1000\...\MountPoints2: {4e28f815-1a90-11e8-bb08-28e3476e9df3} - G:\autorun.exe
HKU\S-1-5-21-793189064-2813996745-2248692698-1000\...\MountPoints2: {54d272c1-b501-11e9-9834-28e3476e9df3} - E:\AutoRun.exe
HKU\S-1-5-21-793189064-2813996745-2248692698-1000\...\MountPoints2: {8f71b2d2-d285-11e8-89e4-ecf4bb69547c} - E:\.\StartModem.exe
HKU\S-1-5-21-793189064-2813996745-2248692698-1000\...\MountPoints2: {e1f10a77-6a58-11e9-90b8-ecf4bb69547c} - E:\AutoRun.exe
HKU\S-1-5-21-793189064-2813996745-2248692698-1000\...\MountPoints2: {f0295e77-1ae5-11e8-9dbf-28e3476e9df3} - E:\autorun.exe
HKLM\...\Windows x64\Print Processors\Canon MP140 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD8R.DLL [27648 2007-03-19] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP140 series: C:\Windows\system32\CNMLM8R.DLL [259584 2008-02-06] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\...\AppCompatFlags\Custom\H3Blade.exe: [{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb] -> GOG.com Heroes of Might and Magic 3
HKLM\Software\...\AppCompatFlags\Custom\Heroes3.exe: [{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb] -> GOG.com Heroes of Might and Magic 3
HKLM\Software\...\AppCompatFlags\InstalledSDB\{62a24b39-0106-4990-90ea-3a09e9dda7a6}: [DatabasePath] -> C:\Windows\AppPatch\Custom\{62a24b39-0106-4990-90ea-3a09e9dda7a6}.sdb [2017-03-20]
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{73FA19D0-2D75-11D2-995D-00C04F98BBC9}] -> 
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2016-05-24] (Qualcomm Atheros -> Qualcomm®Atheros®)
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2016-05-24] (Qualcomm Atheros -> Qualcomm®Atheros®)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {21EF5F97-F04C-4614-B357-B7DF58178DE1} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1447064 2019-08-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {5E6B73B3-5615-4944-8AFF-458A6229495D} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe
Task: {66C40211-14FA-4A1C-9AEC-FA7B76D6D66B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27351864 2019-07-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {6E43853D-8456-445B-8DF4-6E147CB9D9E4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-10-13] (Adobe Inc. -> Adobe)
Task: {7B95F5CD-615B-44C1-BDF5-14A4F056FE37} - System32\Tasks\Opera scheduled assistant Autoupdate 1602603882 => C:\Users\PC\AppData\Local\Programs\Opera\launcher.exe [1712152 2020-10-14] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\PC\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {7E0E6868-8D22-4CCC-8EBA-1FABEDCA3AE2} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1773192 2020-09-21] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {7E5D5AED-5BD0-450D-9713-048DFA423BBB} - System32\Tasks\Games\UpdateCheck_S-1-5-21-793189064-2813996745-2248692698-1000 => {CA22F5B1-E06F-4A2B-94FC-21E87FE53781} C:\Windows\System32\gameux.dll [2746880 2010-11-21] (Microsoft Windows -> Microsoft Corporation)
Task: {7E757E2A-CD75-48C5-B37E-99DCCE7AC716} - System32\Tasks\Opera scheduled Autoupdate 1602603881 => C:\Users\PC\AppData\Local\Programs\Opera\launcher.exe [1712152 2020-10-14] (Opera Software AS -> Opera Software)
Task: {84F3D658-4FEC-4D8F-9119-E43E74C019CB} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_445_pepper.exe [1497656 2020-10-13] (Adobe Inc. -> Adobe)
Task: {8C3A3C47-BF62-45C6-B314-3DF7F389917A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [114736 2019-08-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {BFD8C173-08FE-4EF4-AB86-4AAEFBC5ABDC} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\IntelPTTEKRecertification.exe [817472 2017-11-08] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {C2FD15D0-B7D9-432A-AED6-19F92225BA28} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [114736 2019-08-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {DA3EF67F-21F1-48A2-B20C-2AA553CCE16B} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1447064 2019-08-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {F6FBDFF7-6B6B-49B7-9291-200B1E31AA9C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27351864 2019-07-26] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Reimage-Post-Reboot.job => C:\ReimageUndo\PostReboot\PostRebootExecuter.exe <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\Parameters: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{159E690B-63AF-4607-A3BE-8CC04F639C6D}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{23928CA9-AC57-4EA3-BF5F-F4C928FD49F4}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{32C6A2CA-C440-4040-8834-48E95521B006}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{64F69195-42BD-4FC2-BC01-75C72274AC93}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{8DF6513F-1A2B-40E7-A0A4-5D0C0B72CA1B}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{AF856969-F0A1-4428-9226-2573CA16620F}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{AF856969-F0A1-4428-9226-2573CA16620F}: [DhcpNameServer] 8.8.8.8
Tcpip\..\Interfaces\{BEF961F4-20C8-4A91-8DE0-0037DFD18F7E}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{BEF961F4-20C8-4A91-8DE0-0037DFD18F7E}: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{E102C147-C967-4761-870C-F482B1352DA6}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{E9240FEF-E6FE-456C-B2CF-D649BD7E09A1}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{ED639C1C-8F24-4BD7-8084-CD21385E0559}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{FEED90F3-D64C-4C1A-B310-E2BC6838DF53}: [NameServer] 8.8.8.8

FireFox:
========
FF DefaultProfile: buipjt41.default
FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\buipjt41.default [2020-04-24]
FF Notifications: Mozilla\Firefox\Profiles\buipjt41.default -> hxxps://www.facebook.com; hxxps://www.quora.com
FF Extension: (Telemetry coverage) - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\buipjt41.default\features\{70996e1e-89b5-47ef-af47-44fa4495ea1c}\telemetry-coverage-bug1487578@mozilla.org.xpi [2018-10-13] [Legacy]
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-07-27] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-07-27] (Microsoft Corporation -> Microsoft Corporation)

Chrome: 
=======
CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default [2020-04-24]
CHR DefaultSearchURL: Default -> hxxps://feed.bazzsearch.com/?fext=true&publisherid=51206&publisher=defaultbazz&st=ed&q={searchTerms}
CHR DefaultSearchKeyword: Default -> Bazz Search
CHR Extension: (Prezentace) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-02-20]
CHR Extension: (Dokumenty) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-02-20]
CHR Extension: (Disk Google) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-02-20]
CHR Extension: (YouTube) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-02-20]
CHR Extension: (Tabulky) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-02-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-08]
CHR Extension: (AVG SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2019-07-13]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-09-08]
CHR Extension: (Gmail) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-07-14]
CHR Extension: (Chrome Media Router) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-07-14]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]

Opera: 
=======
OPR Notifications: hxxps://aukro.cz; hxxps://en.softonic.com; hxxps://kytary.cz; hxxps://mail-notification.info; hxxps://realhax.com; hxxps://smartmania.cz; hxxps://www.alibaba.com; hxxps://www.amateri.com; hxxps://www.automobilovedily24.cz; hxxps://www.conrad.cz; hxxps://www.esky.cz; hxxps://www.facebook.com; hxxps://www.profi-dj.cz; hxxps://www.regiojet.cz; hxxps://www.williampainter.com; hxxps://yoku.pro
OPR Extension: (Rich Hints Agent) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2020-10-18]
OPR Extension: (Amazon Assistant for Opera) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\mmmbddcnnndpbdflpccgcknaaabgldak [2020-10-12]
OPR Extension: (Alitools shopping assistant) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\nkekkheibgkgeepapinkalkongndfajn [2020-10-12]
OPR Extension: (Chrome Media Router) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\pphjpkjjljnllpnebififokmoejkeahp [2020-10-17]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

"obamwndj" => service was unlocked. <==== ATTENTION

S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-10-13] (Adobe Inc. -> Adobe)
R2 AtherosSvc; C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\Bluetooth Suite\adminservice.exe [325600 2016-05-24] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider)
S3 AthNetAgent; C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\Agent\AthNetAgent.exe [169040 2015-08-07] (Qualcomm Atheros -> Quacomm Atheros, Inc.) [File not signed]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11469920 2019-07-26] (Microsoft Corporation -> Microsoft Corporation)
S3 DCDhcpService; C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\DirectConnect\DCDhcpService.exe [198224 2015-08-07] (Qualcomm Atheros -> Qualcomm Atheros Inc.) [File not signed]
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4581568 2020-09-21] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2371760 2020-08-10] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2371760 2020-08-10] (ESET, spol. s r.o. -> ESET)
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2014-01-15] (Huawei Technologies Co., Ltd. -> )
R2 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [506536 2017-05-27] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
S2 MicroService; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (no ServiceDLL)
S2 MicroService; C:\Windows\SysWOW64\svchost.exe [20992 2009-07-14] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (no ServiceDLL)
S2 O2 Internet. RunOuc; C:\Program Files (x86)\O2 Internet\UpdateDog\ouc.exe [651856 2013-10-26] (Huawei Technologies Co., Ltd. -> )
S2 O2SDIOAssist; C:\Windows\SysWOW64\srvany.exe [8192 2012-03-09] () [File not signed]
R2 SDIOAssist; C:\Windows\System32\SDIOAssist.exe [816128 2016-01-07] (BayHubTech/O2Micro) [File not signed]
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [82904 2017-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.1.6.0\WsAppService.exe [388608 2016-01-28] (Wondershare) [File not signed]
S2 avg; "C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe" /svc [X]
S3 avgm; "C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe" /medsvc [X]
S2 obamwndj; no ImagePath

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 avgTap; C:\Windows\System32\DRIVERS\avgTap.sys [54888 2018-03-16] (AVG Technologies CZ, s.r.o. -> The OpenVPN Project)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [42256 2020-09-21] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [59360 2020-09-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [158512 2020-08-10] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [106640 2020-08-10] (ESET, spol. s r.o. -> ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [195976 2020-08-10] (ESET, spol. s r.o. -> ESET)
S2 ekbdflt; C:\Windows\System32\DRIVERS\ekbdflt.sys [53064 2020-08-10] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\System32\DRIVERS\epfw.sys [79552 2020-08-10] (ESET, spol. s r.o. -> ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [64008 2020-08-10] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [116488 2020-08-10] (ESET, spol. s r.o. -> ESET)
S3 ew_hwusbdev; C:\Windows\System32\DRIVERS\ew_hwusbdev.sys [109568 2013-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 ew_usbenumfilter; C:\Windows\System32\DRIVERS\ew_usbenumfilter.sys [14976 2012-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 huawei_enumerator; C:\Windows\System32\DRIVERS\ew_jubusenum.sys [91648 2013-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusb_cdcacm; C:\Windows\System32\DRIVERS\ew_cdcacm.sys [125952 2014-07-25] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusb_wwanecm; C:\Windows\System32\DRIVERS\ew_wwanecm.sys [380672 2014-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 NIWinCDEmu; C:\Windows\System32\DRIVERS\NIWinCDEmu.sys [112408 2015-08-24] (NATIVE INSTRUMENTS GmbH -> )
S3 nusb3hub; C:\Windows\System32\DRIVERS\nusb3hub.sys [77824 2010-01-22] (Microsoft Windows Hardware Compatibility Publisher -> NEC Electronics Corporation)
S3 nusb3xhc; C:\Windows\System32\DRIVERS\nusb3xhc.sys [180224 2010-01-22] (Microsoft Windows Hardware Compatibility Publisher -> NEC Electronics Corporation)
R3 O2FJ2RDR; C:\Windows\System32\DRIVERS\bhtscpcrx64.sys [201400 2015-12-16] (BayHub Technology Inc. -> BayHubTech/O2Micro)
R0 stdcfltn; C:\Windows\System32\DRIVERS\stdcfltn.sys [22128 2011-07-15] (STMicroelectronics -> ST Microelectronics)
R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [27136 2019-07-26] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 ysusb64; C:\Windows\System32\drivers\ysusb64.sys [113960 2013-01-29] (Yamaha Corporation -> Yamaha Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-10-18 17:08 - 2020-10-18 17:10 - 000023790 _____ C:\Users\PC\Desktop\FRST.txt
2020-10-18 17:08 - 2020-10-18 17:10 - 000000000 ____D C:\FRST
2020-10-18 16:54 - 2020-10-18 17:03 - 000000000 ____D C:\rsit
2020-10-18 16:54 - 2020-10-18 16:59 - 000000000 ____D C:\Program Files\trend micro
2020-10-18 16:54 - 2020-10-18 16:54 - 000000507 _____ C:\Users\PC\Desktop\thread.txt
2020-10-18 16:30 - 2020-10-18 16:30 - 001222144 _____ C:\Users\PC\Desktop\RSITx64.exe
2020-10-18 16:29 - 2020-10-18 16:30 - 002299904 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe
2020-10-18 14:09 - 2020-10-18 15:50 - 000000000 ____D C:\Program Files\RogueKiller
2020-10-18 13:39 - 2020-10-18 13:39 - 000000000 ____D C:\Users\PC\AppData\Local\ESET
2020-10-18 13:38 - 2020-10-18 13:38 - 000001903 _____ C:\Users\Public\Desktop\ESET Ochrana bankovnictví a online plateb.lnk
2020-10-18 13:38 - 2020-10-18 13:38 - 000001903 _____ C:\ProgramData\Desktop\ESET Ochrana bankovnictví a online plateb.lnk
2020-10-18 13:36 - 2020-10-18 13:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2020-10-18 13:36 - 2020-10-18 13:36 - 000000000 ____D C:\ProgramData\ESET
2020-10-18 13:36 - 2020-10-18 13:36 - 000000000 ____D C:\Program Files\ESET
2020-10-18 13:23 - 2020-10-18 13:23 - 000000000 ____D C:\Windows\system32\Tasks\Avira
2020-10-18 12:53 - 2020-10-18 12:53 - 000000020 ___SH C:\Users\PC\ntuser.ini
2020-10-18 12:45 - 2019-02-16 07:32 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2020-10-18 12:45 - 2019-02-16 07:30 - 000123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2020-10-18 12:43 - 2019-02-21 06:12 - 000631680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2020-10-18 12:43 - 2019-02-21 06:10 - 005552360 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-10-18 12:43 - 2019-02-21 06:10 - 000708328 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-10-18 12:43 - 2019-02-21 06:09 - 000262376 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2020-10-18 12:43 - 2019-02-21 06:09 - 000154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2020-10-18 12:43 - 2019-02-21 06:09 - 000095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2020-10-18 12:43 - 2019-02-21 06:08 - 001664360 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 001211392 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2020-10-18 12:43 - 2019-02-21 06:07 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 001472512 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 001162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000733184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 06:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:59 - 001314104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2020-10-18 12:43 - 2019-02-21 05:58 - 004055784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2020-10-18 12:43 - 2019-02-21 05:58 - 003960552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2020-10-18 12:43 - 2019-02-21 05:56 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000556032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:42 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2020-10-18 12:43 - 2019-02-21 05:42 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2020-10-18 12:43 - 2019-02-21 05:42 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2020-10-18 12:43 - 2019-02-21 05:41 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2020-10-18 12:43 - 2019-02-21 05:39 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2020-10-18 12:43 - 2019-02-21 05:39 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2020-10-18 12:43 - 2019-02-21 05:38 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2020-10-18 12:43 - 2019-02-21 05:38 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2020-10-18 12:43 - 2019-02-21 05:38 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2020-10-18 12:43 - 2019-02-21 05:36 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2020-10-18 12:43 - 2019-02-21 05:36 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2020-10-18 12:43 - 2019-02-21 05:36 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2020-10-18 12:43 - 2019-02-21 05:36 - 000169984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2020-10-18 12:43 - 2019-02-21 05:36 - 000161280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2020-10-18 12:43 - 2019-02-21 05:36 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2020-10-18 12:43 - 2019-02-21 05:35 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2020-10-18 12:43 - 2019-02-21 05:35 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2020-10-18 12:43 - 2019-02-21 05:35 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2020-10-18 12:43 - 2019-02-21 05:35 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2020-10-18 12:43 - 2019-02-21 05:35 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2020-10-18 12:43 - 2019-02-21 05:35 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2020-10-18 12:43 - 2019-02-21 05:35 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2020-10-18 12:43 - 2019-02-21 05:34 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2020-10-18 12:43 - 2019-02-21 05:34 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2020-10-18 12:43 - 2019-02-21 05:34 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2020-10-18 12:43 - 2019-02-21 05:34 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2020-10-18 12:43 - 2019-02-21 05:34 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:34 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2020-10-18 12:43 - 2019-02-21 05:34 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2020-10-18 12:43 - 2019-02-10 18:41 - 012574208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2020-10-18 12:43 - 2019-02-10 18:41 - 011411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 003207168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 002136064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 001329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 001177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 001005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll
2020-10-18 12:43 - 2019-02-10 18:41 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2020-10-18 12:43 - 2019-02-10 18:29 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2020-10-18 12:43 - 2019-02-10 18:29 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2020-10-18 12:43 - 2019-02-10 18:29 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2020-10-18 12:43 - 2019-02-10 18:28 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2020-10-18 12:43 - 2019-02-10 18:28 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2020-10-18 12:43 - 2019-02-10 18:10 - 000094440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2020-10-18 12:43 - 2019-02-10 18:09 - 014635520 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2020-10-18 12:43 - 2019-02-10 18:09 - 012574720 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2020-10-18 12:43 - 2019-02-10 18:09 - 001574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2020-10-18 12:43 - 2019-02-10 18:09 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2020-10-18 12:43 - 2019-02-10 18:09 - 000499712 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2020-10-18 12:43 - 2019-02-10 18:09 - 000371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2020-10-18 12:43 - 2019-02-10 18:09 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2020-10-18 12:43 - 2019-02-10 18:09 - 000187904 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2020-10-18 12:43 - 2019-02-10 18:09 - 000037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2020-10-18 12:43 - 2019-02-10 18:09 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2020-10-18 12:43 - 2019-02-10 18:09 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2020-10-18 12:43 - 2019-02-10 18:09 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2020-10-18 12:43 - 2019-02-10 18:09 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 004120576 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 002646528 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 001484800 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 001202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 001068544 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000632320 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000081920 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2020-10-18 12:43 - 2019-02-10 18:08 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2020-10-18 12:43 - 2019-02-10 18:07 - 000842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2020-10-18 12:43 - 2019-02-10 18:07 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2020-10-18 12:43 - 2019-02-10 18:07 - 000438784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2020-10-18 12:43 - 2019-02-10 18:07 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2020-10-18 12:43 - 2019-02-10 18:02 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2020-10-18 12:43 - 2019-02-10 17:50 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2020-10-18 12:43 - 2019-02-10 17:49 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2020-10-18 12:43 - 2019-02-10 17:49 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2020-10-18 12:43 - 2019-02-10 17:38 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2020-10-18 12:43 - 2019-02-10 17:38 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2020-10-18 12:43 - 2018-11-18 04:56 - 000459632 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2020-10-18 12:43 - 2018-11-18 04:44 - 000634272 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2020-10-18 12:43 - 2018-11-18 04:44 - 000546656 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2020-10-18 12:43 - 2018-11-18 04:43 - 000467856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2020-10-18 12:43 - 2018-11-18 04:43 - 000297984 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2020-10-18 12:43 - 2018-11-18 04:43 - 000249352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2020-10-18 11:54 - 2020-10-18 11:54 - 000000000 ____D C:\Users\PC\Documents\TotalAV
2020-10-18 11:50 - 2020-10-18 11:50 - 000000000 ____D C:\ProgramData\SecuritySuite
2020-10-17 20:39 - 2020-10-18 12:48 - 000000000 ____D C:\Program Files\GridinSoft Anti-Malware
2020-10-17 20:39 - 2020-10-18 11:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware
2020-10-17 20:39 - 2020-10-17 20:39 - 000000000 ____D C:\ProgramData\GridinSoft
2020-10-17 20:17 - 2020-10-17 20:17 - 000000000 ____D C:\Users\Public\Security Sessions
2020-10-17 20:14 - 2020-10-17 20:14 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf
2020-10-17 20:07 - 2020-10-17 20:17 - 000000000 ____D C:\Users\PC\AppData\Local\Avira
2020-10-17 20:06 - 2020-10-18 13:30 - 000000000 ____D C:\Program Files (x86)\Avira
2020-10-17 20:06 - 2020-10-18 13:24 - 000000000 ____D C:\ProgramData\Avira
2020-10-17 16:01 - 2020-10-17 16:05 - 000000270 __RSH C:\ProgramData\ntuser.pol
2020-10-17 11:44 - 2020-10-17 11:49 - 000000000 ____D C:\Users\PC\Desktop\HRY PRO PEPU
2020-10-13 21:01 - 2020-10-13 21:01 - 000001783 _____ C:\Users\Public\Desktop\BiglyBT.lnk
2020-10-13 21:01 - 2020-10-13 21:01 - 000001783 _____ C:\ProgramData\Desktop\BiglyBT.lnk
2020-10-13 20:30 - 2020-10-13 20:30 - 000000000 ____D C:\Users\PC\AppData\Local\mbam
2020-10-13 20:27 - 2020-10-13 20:27 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-10-13 17:58 - 2020-10-13 22:06 - 000000000 ____D C:\ProgramData\Avast Software
2020-10-13 17:44 - 2020-10-18 12:58 - 000004240 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1602603882
2020-10-13 17:44 - 2020-10-17 19:39 - 000004012 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1602603881
2020-10-13 17:44 - 2020-10-13 17:44 - 000001310 _____ C:\Users\PC\Desktop\Prohlížeč Opera.lnk
2020-10-13 17:44 - 2020-10-13 17:44 - 000001310 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2020-10-13 02:27 - 2020-10-13 02:27 - 000000000 ____D C:\ProgramData\DirectX
2020-10-13 02:26 - 2020-10-13 02:26 - 000000000 ____D C:\ProgramData\Vengeance
2020-10-13 02:11 - 2020-10-13 02:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arturia
2020-10-13 01:46 - 2020-10-13 02:26 - 000000000 ____D C:\Program Files\Common Files\VST3
2020-10-13 01:46 - 2020-10-13 01:48 - 000000000 ___RD C:\ProgramData\Arturia
2020-10-13 01:46 - 2020-10-13 01:46 - 000000000 ___RD C:\Program Files\Arturia
2020-10-13 01:42 - 2020-10-13 02:25 - 000000000 ____D C:\Program Files\VstPlugins
2020-10-13 01:42 - 2020-10-13 01:42 - 000002044 _____ C:\Users\Public\Desktop\FL Studio 20.lnk
2020-10-13 01:42 - 2020-10-13 01:42 - 000002044 _____ C:\ProgramData\Desktop\FL Studio 20.lnk
2020-10-13 01:42 - 2020-10-13 01:42 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2020-10-13 01:42 - 2020-10-13 01:42 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
2020-10-13 01:42 - 2020-10-13 01:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line
2020-10-13 01:42 - 2020-10-13 01:42 - 000000000 ____D C:\Program Files\Common Files\Propellerhead Software
2020-10-13 01:42 - 2020-10-13 01:42 - 000000000 ____D C:\Program Files (x86)\VstPlugins
2020-10-13 01:42 - 2020-10-13 01:42 - 000000000 ____D C:\Program Files (x86)\ASIO4ALL v2
2020-10-13 01:37 - 2020-10-13 01:42 - 000000000 ____D C:\Program Files (x86)\Image-Line
2020-10-13 01:08 - 2020-06-14 03:00 - 000044336 _____ (Microsoft Corporation) C:\Windows\vcruntime140_1.dll
2020-10-12 23:07 - 2020-10-12 23:07 - 000000000 ____D C:\Program Files (x86)\Arturia
2020-10-12 22:10 - 2020-10-13 21:00 - 000000000 ____D C:\Users\PC\Documents\BiglyBT Downloads
2020-10-09 21:34 - 2020-10-13 12:45 - 000000000 ____D C:\Users\PC\Documents\Image-Line
2020-10-08 12:51 - 2020-10-08 12:51 - 000000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2020-10-08 12:49 - 2020-10-08 12:49 - 000001705 _____ C:\Users\Public\Desktop\Gothic.lnk
2020-10-08 12:49 - 2020-10-08 12:49 - 000001705 _____ C:\ProgramData\Desktop\Gothic.lnk
2020-10-05 13:03 - 2020-10-07 15:41 - 000000000 ____D C:\Users\PC\Desktop\paja
2020-10-04 13:53 - 2020-10-15 17:24 - 000000000 ____D C:\Users\PC\Desktop\filmy lubos
2020-09-21 18:57 - 2020-09-21 18:57 - 000000000 ____D C:\ProgramData\GOG.com
2020-09-21 18:56 - 2020-10-08 12:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2020-09-21 18:55 - 2020-10-08 12:48 - 000000000 ____D C:\GOG Games
2020-09-21 18:30 - 2020-10-15 13:25 - 000019613 _____ C:\Users\PC\Documents\kniha.odt
2020-09-21 15:15 - 2020-09-25 19:29 - 000004485 _____ C:\Users\PC\Documents\MATRIX.odt
2020-09-21 14:46 - 2020-09-21 14:46 - 000000000 ____D C:\Users\PC\Documents\My eBooks
2020-09-21 10:05 - 2020-09-21 10:05 - 000000000 ____D C:\Users\Public\Documents\Daemon Tools Images
2020-09-21 10:05 - 2020-09-21 10:05 - 000000000 ____D C:\Users\PC\AppData\Roaming\DAEMON Tools Lite
2020-09-21 10:05 - 2020-09-21 10:05 - 000000000 ____D C:\Users\PC\AppData\Local\Disc_Soft_Ltd
2020-09-21 10:05 - 2020-09-21 10:05 - 000000000 ____D C:\ProgramData\Documents\Daemon Tools Images
2020-09-21 10:04 - 2020-09-21 10:04 - 000000000 ____D C:\Users\Public\Documents\Catch!
2020-09-21 10:04 - 2020-09-21 10:04 - 000000000 ____D C:\Users\PC\AppData\Roaming\Disc-Soft
2020-09-21 10:04 - 2020-09-21 10:04 - 000000000 ____D C:\ProgramData\Documents\Catch!
2020-09-21 10:01 - 2020-09-23 17:12 - 000059360 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtliteusbbus.sys
2020-09-21 10:00 - 2020-09-21 10:01 - 000000000 ____D C:\Program Files\DAEMON Tools Lite
2020-09-21 10:00 - 2020-09-21 10:00 - 000042256 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtlitescsibus.sys
2020-09-21 10:00 - 2020-09-21 10:00 - 000001673 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2020-09-21 10:00 - 2020-09-21 10:00 - 000001673 _____ C:\ProgramData\Desktop\DAEMON Tools Lite.lnk
2020-09-21 10:00 - 2020-09-21 10:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\DAEMON Tools Lite
2020-09-21 10:00 - 2020-09-21 10:00 - 000000000 ____D C:\ProgramData\Disc-Soft
2020-09-21 09:42 - 2020-09-21 09:42 - 004296704 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2020-09-21 09:42 - 2020-09-21 09:42 - 003550208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2020-09-19 21:07 - 2020-10-18 13:38 - 000000000 ____D C:\Users\PC\Desktop\programy
2020-09-19 20:49 - 2020-09-18 09:50 - 673109962 _____ C:\Users\PC\Desktop\Cesta upiru Van Helsing vs. Dracula CZ dabing.avi
2020-09-18 16:21 - 2020-09-18 16:32 - 000000000 ____D C:\Users\PC\AppData\Roaming\Mp3tag
2020-09-18 16:21 - 2020-09-18 16:21 - 000000000 ____D C:\Program Files (x86)\Mp3tag
2020-09-18 15:49 - 2020-09-18 15:49 - 000000000 ____D C:\Users\PC\AppData\Roaming\GoldWave
2020-09-18 15:49 - 2020-09-18 15:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Monkey's Audio x64
2020-09-18 15:49 - 2020-09-18 15:49 - 000000000 ____D C:\Program Files\Monkey's Audio x64
2020-09-18 15:49 - 2020-08-24 16:40 - 000561664 _____ (Matthew T. Ashland) C:\Windows\system32\MACDll.dll
2020-09-18 15:48 - 2020-09-18 15:49 - 000000000 ____D C:\Program Files\GoldWave

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-10-18 14:41 - 2018-09-30 22:12 - 000000000 ____D C:\ProgramData\Synaptics
2020-10-18 14:08 - 2009-07-14 06:45 - 000021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-10-18 14:08 - 2009-07-14 06:45 - 000021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-10-18 13:37 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2020-10-18 13:30 - 2020-09-14 15:51 - 000000000 ____D C:\Users\PC\AppData\LocalLow\uTorrent
2020-10-18 13:30 - 2020-04-05 13:55 - 000212992 _____ C:\Windows\system32\ClickToRun_Pipeline16
2020-10-18 13:30 - 2018-02-26 01:17 - 000000000 ___HD C:\Users\PC\AppData\Roaming\uTorrent
2020-10-18 13:30 - 2018-02-22 10:54 - 000000433 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2020-10-18 13:30 - 2018-02-20 13:15 - 000000000 __SHD C:\Users\PC\IntelGraphicsProfiles
2020-10-18 13:30 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-10-18 13:24 - 2018-10-15 01:38 - 000000000 ____D C:\ProgramData\Package Cache
2020-10-18 12:55 - 2011-04-12 10:34 - 000668890 _____ C:\Windows\system32\perfh005.dat
2020-10-18 12:55 - 2011-04-12 10:34 - 000141518 _____ C:\Windows\system32\perfc005.dat
2020-10-18 12:55 - 2009-07-14 07:13 - 001583642 _____ C:\Windows\system32\PerfStringBackup.INI
2020-10-18 12:53 - 2018-01-31 17:26 - 000000000 ___HD C:\Users\PC
2020-10-18 12:46 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\Dism
2020-10-18 12:46 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\Dism
2020-10-18 11:32 - 2009-07-14 06:45 - 000474992 _____ C:\Windows\system32\FNTCACHE.DAT
2020-10-17 16:03 - 2018-09-07 23:51 - 000000000 ____D C:\Program Files (x86)\P2PEnhance
2020-10-17 16:01 - 2018-01-31 17:27 - 000001443 ____H C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2020-10-17 16:00 - 2018-10-07 22:03 - 000000000 ___HD C:\Users\PC\AppData\Local\2A46FD30-D4CB-0A00-FC06-3E2C29A1B453
2020-10-17 16:00 - 2018-09-08 00:05 - 000000000 ___HD C:\Users\PC\AppData\Roaming\rwqe04mdpsj
2020-10-17 16:00 - 2018-09-08 00:05 - 000000000 ___HD C:\Users\PC\AppData\Roaming\kw1qexeg2ci
2020-10-17 16:00 - 2018-09-08 00:05 - 000000000 ___HD C:\Users\PC\AppData\Roaming\igv24vh11uk
2020-10-17 16:00 - 2018-09-07 23:54 - 000000000 ___HD C:\Users\PC\AppData\Roaming\2tmhfzktybe
2020-10-17 16:00 - 2018-09-07 23:52 - 000000000 ___HD C:\Users\PC\AppData\Roaming\w5hcxhoft3u
2020-10-17 16:00 - 2018-09-07 23:50 - 000000000 ___HD C:\Users\PC\AppData\Roaming\xercgsouaq3
2020-10-17 16:00 - 2018-09-07 23:41 - 000000000 ___HD C:\Users\PC\AppData\Roaming\2ziao1vea5u
2020-10-17 16:00 - 2018-09-07 23:38 - 000000000 ___HD C:\Users\PC\AppData\Roaming\nvkxg21s0rx
2020-10-17 16:00 - 2018-09-07 23:37 - 000000000 ___HD C:\Users\PC\AppData\Roaming\Windows RTL Handler
2020-10-17 16:00 - 2018-09-07 23:37 - 000000000 ___HD C:\Users\PC\AppData\Roaming\jdks40rhzpa
2020-10-17 16:00 - 2018-09-07 23:37 - 000000000 ___HD C:\Users\PC\AppData\Roaming\egpodfntuxn
2020-10-17 16:00 - 2018-09-07 23:37 - 000000000 ___HD C:\Users\PC\AppData\Roaming\cqhk2b2mvaq
2020-10-17 16:00 - 2018-09-07 23:37 - 000000000 ___HD C:\Users\PC\AppData\Roaming\bzo3okmy2tc
2020-10-17 15:59 - 2020-09-13 17:08 - 000000000 ____D C:\Users\test
2020-10-17 10:32 - 2018-09-16 17:34 - 000000000 ___HD C:\Users\PC\AppData\Roaming\vlc
2020-10-16 17:16 - 2018-02-25 14:52 - 000000000 ___HD C:\Users\PC\AppData\Local\CrashDumps
2020-10-14 08:37 - 2020-09-14 16:06 - 000000000 ____D C:\Users\PC\AppData\Roaming\BiglyBT
2020-10-13 21:01 - 2020-09-14 16:07 - 000001783 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BiglyBT.lnk
2020-10-13 21:01 - 2020-09-14 16:06 - 000000000 ____D C:\Program Files\BiglyBT
2020-10-13 20:57 - 2020-09-09 13:25 - 000004366 _____ C:\Windows\system32\Tasks\Adobe Flash Player Updater
2020-10-13 20:57 - 2018-09-29 23:46 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2020-10-13 20:57 - 2018-09-29 23:46 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2020-10-13 20:57 - 2018-09-29 23:46 - 000004528 _____ C:\Windows\system32\Tasks\Adobe Flash Player PPAPI Notifier
2020-10-13 20:57 - 2018-09-29 23:46 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2020-10-13 20:57 - 2018-09-29 23:46 - 000000000 ____D C:\Windows\system32\Macromed
2020-10-13 20:51 - 2018-10-15 01:39 - 000000000 ____D C:\ProgramData\Nero
2020-10-13 20:51 - 2018-09-07 23:32 - 000000000 ____D C:\Windows\system32\Tasks\System
2020-10-13 20:51 - 2009-07-14 05:20 - 000000000 __RHD C:\Users\Public\Libraries
2020-10-13 17:58 - 2019-07-26 03:41 - 000121128 _____ C:\Windows\system32\GDIPFONTCACHEV1.DAT
2020-10-07 18:44 - 2009-07-14 07:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2020-10-06 10:11 - 2019-08-18 19:27 - 000000000 ____D C:\Users\PC\Desktop\filmy
2020-09-22 13:06 - 2009-07-14 07:09 - 000000000 ____D C:\Windows\system32\Tasks\WPD
2020-09-21 17:08 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2020-09-21 17:08 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\registration
2020-09-21 17:02 - 2019-07-31 18:57 - 000000000 ____D C:\Users\PC\AppData\Local\ElevatedDiagnostics
2020-09-21 09:44 - 2018-09-14 02:05 - 001559292 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2020-09-19 20:48 - 2018-02-25 21:52 - 000000000 ___HD C:\Users\PC\AppData\Local\GHISLER
2020-09-19 14:15 - 2019-03-12 14:45 - 000000000 ___SD C:\Users\PC\AppData\LocalLow\Temp

==================== Files in the root of some directories ========

2019-06-29 14:39 - 2019-06-29 14:39 - 000224338 _____ () C:\Users\PC\AppData\Roaming\toi_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt
2018-02-25 22:16 - 2020-04-05 08:50 - 000011776 ____H () C:\Users\PC\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-09-13 19:09 - 2018-09-13 19:09 - 000000058 ____H () C:\Users\PC\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat
2018-09-19 03:52 - 2018-09-19 03:52 - 000000848 ____H () C:\Users\PC\AppData\Local\recently-used.xbel

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2018-09-05 19:08
==================== End of FRST.txt ========================