Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-04-2021
Ran by Květa (administrator) on IDEA-PC (LENOVO 20150) (22-04-2021 14:52:23)
Running from C:\Users\Květa\Desktop
Loaded Profiles: UpdatusUser & Květa
Platform: Windows 10 Home Version 20H2 19042.928 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\afwServ.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\avgToolsSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe <3>
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\wsc_proxy.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Secure VPN\Vpn.exe <3>
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Secure VPN\VpnSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\TuneUp\TuneupSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\TuneUp\TuneupUI.exe <3>
(Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Květa\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12101.1001.14.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [935104 2014-11-25] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [166144 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136 2015-06-03] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\AVG\TuneUp\TuneupUI.exe [2447104 2021-04-21] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
HKLM\...\Policies\Explorer\Run: [BtvStack] => "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\86.1.6960.198\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2013-01-25] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2013-01-25] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AVG Secure VPN.lnk [2021-04-21]
ShortcutTarget: AVG Secure VPN.lnk -> C:\Program Files\AVG\Secure VPN\Vpn.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
BootExecute: autocheck autochk * icarus_rvrt.exe
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {094CD275-5C71-4753-B57E-5566CA859498} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {0A3661F2-C3E9-4788-92FD-658744FF7928} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe
Task: {0F6DBBD1-1FA5-490B-A482-1F43FCC689E6} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {11D80AC5-1015-4DE8-9835-2594F50B8F9C} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => C:\windows\system32\rundll32.exe C:\windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
Task: {164E086D-3832-4220-8C02-EA119E155BA0} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1822976 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {1F7607D9-1E21-4D91-8C8F-6093B89C44C9} - System32\Tasks\MicrosoftEdgeUpdateBrowserReplacementTask => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
Task: {23852FC1-8B2F-45C7-BC84-2AA18CDB93F0} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136 2015-06-03] (Synaptics Incorporated -> Synaptics Incorporated)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {364DEFFF-93D1-4502-A39F-DDF751F7087C} - System32\Tasks\AVG\AVG Secure VPN Bug Report => C:\Program Files\AVG\Secure VPN\AvBugReport.exe [4731648 2021-04-21] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) -> --send "dumps|report" --silent --product 12 --programpath "C:\Program Files\AVG\Secure VPN" --configpath "C:\ProgramData\AVG\Secure VPN" --path "C:\ProgramData\AVG\Secure VPN\log" --path "C:\ProgramData\AVG\Icarus\Logs" --guid 454a4489-13d2-4e0a-a934-a1c3b1b518bf
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Flash Player NPAPI Notifier" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\Adobe Flash Player Updater" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\CCleaner Update" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\CCleanerSkipUAC" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\CreateChoiceProcessTask" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineCore" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineUA" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\MirageAgent" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\OFFICE2013ACT" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(12): schtasks.exe -> /Change /TN "\Optimize Start Menu Cache Files-S-1-5-21-765697036-1757503579-3624756556-1002" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(13): schtasks.exe -> /Change /TN "\Synaptics TouchPad Enhancements" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(14): schtasks.exe -> /Change /TN "\User_Feed_Synchronization-{D52D5280-274A-49CA-987D-54A0FBC0F0FA}" /ENABLE
Task: {4C46AF10-8A9A-494F-97D2-3F5075AEBA2D} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(15): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE
Task: {5D2CD28D-C759-4F29-9964-CD9D0C62DB70} - System32\Tasks\AVG\AVG TuneUp Update => C:\Program Files\Common Files\AVG\Icarus\avg-tu\icarus.exe [5546240 2021-03-08] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {5D581037-9FF4-432F-9CBF-4A967DC253F7} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [4747008 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
Task: {6088162D-50BA-45C0-B597-79A52EB7F9D7} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA}
Task: {662C5DAF-75E8-4E09-8CAB-451371A53E27} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [696304 2021-04-16] (Mozilla Corporation -> Mozilla Foundation)
Task: {676301FE-F586-4710-A51B-197FE759BFB7} - System32\Tasks\AVG Secure VPN Update => C:\Program Files\AVG\Secure VPN\VpnUpdate.exe [1237760 2021-04-21] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Task: {865E6C61-440E-4641-86F3-D71B3AB67D81} - System32\Tasks\AVG\AVG TuneUp BugReport => C:\Program Files\AVG\TuneUp\AvBugReport.exe [4665600 2021-04-21] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) -> --send "dumps|report" --silent --product 74 --programpath "C:\Program Files\AVG\TuneUp\Setup\.." --configpath "C:\Program Files\AVG\TuneUp\Setup" --path "C:\ProgramData\AVG\TuneUp\log"  --path "C:\ProgramData\AVG\Icarus\Logs" --guid b0fa48f3-2de4-4e61-9fc5-107a43f55213
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE}
Task: {8B6759EE-1C08-4B8F-955C-774AB5A6544E} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {92768D6A-98AD-4A40-AD6D-6B8DE495D39A} - System32\Tasks\Lenovo\Lenovo-5818 => C:\ProgramData\Lenovo-5818.vbs [198 2013-05-20] () [File not signed] <==== ATTENTION
Task: {B0B504F1-9F9A-4D75-BE6B-89B70F17499E} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-765697036-1757503579-3624756556-1002 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [24064 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
Task: {B35A48C7-1C91-4C70-AFBF-81C8F2D52DC5} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe
Task: {B945C815-331B-4812-ABE0-33D3C057418D} - System32\Tasks\OFFICE2013ACT => C:\ProgramData\Microsoft\Windows\OFFICEICON.vbs [133 2012-03-08] () [File not signed] <==== ATTENTION
Task: {C9DCF59E-6B97-4C0C-8641-B8261089C8CA} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {CB50A04C-3338-40B5-9B9E-CF304B453E28} - System32\Tasks\AVG\AVG Secure VPN Update => C:\Program Files\Common Files\AVG\Icarus\avg-vpn\icarus.exe [5546240 2021-03-16] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {DB21EF32-6BA9-4118-BBC1-BC4FF48961E5} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {F7EF1205-89DD-4C2C-B29B-9351D045F610} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{2BBC76B3-E9DF-42BC-A1D2-B38B3D146A17}: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{BD10B1F1-F062-4F7F-A95D-BA2AB2DFD3AA}: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF DefaultProfile: 1nsxtxx0.default
FF ProfilePath: C:\Users\Květa\AppData\Roaming\Mozilla\Firefox\Profiles\1nsxtxx0.default [2021-04-22]
FF Homepage: Mozilla\Firefox\Profiles\1nsxtxx0.default -> hxxp://seznam.cz/
FF Extension: (AVG Online Security) - C:\Users\Květa\AppData\Roaming\Mozilla\Firefox\Profiles\1nsxtxx0.default\Extensions\aos@avg.com.xpi [2021-04-17]
FF Extension: (Picture-In-Picture) - C:\Program Files\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi [2021-04-16] [not signed]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll [2014-06-24] (Adobe Systems, Inc.) [File not signed]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin HKU\S-1-5-21-765697036-1757503579-3624756556-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Květa\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-765697036-1757503579-3624756556-1002: intel.com/AppUp -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll [No File]

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default [2021-04-21]
CHR HomePage: Default -> hxxp://www.seznam.cz/?clid=12902
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR NewTab: Default -> "active": false,
            "entry": "chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
          
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam.cz
CHR DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Extension: (Dokumenty) - C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-01-27]
CHR Extension: (Disk Google) - C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-13]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2020-09-25]
CHR Extension: (Seznam doplněk - Esko-) - C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2019-08-21]
CHR Extension: (YouTube) - C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-18]
CHR Extension: (Vyhledávání Google) - C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-28]
CHR Extension: (Dokumenty Google offline) - C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-09-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-09-25]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2020-09-25]
CHR Extension: (Gmail) - C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-21]
CHR Extension: (Chrome Media Router) - C:\Users\Květa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-09-25]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [607488 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Firewall; C:\Program Files\AVG\Antivirus\afwServ.exe [1281792 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Tools; C:\Program Files\AVG\Antivirus\avgToolsSvc.exe [356608 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [7941688 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [109480 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 CleanupPSvc; C:\Program Files\AVG\TuneUp\TuneupSvc.exe [12421888 2021-04-21] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 SecureVpn; C:\Program Files\AVG\Secure VPN\VpnSvc.exe [8019200 2021-04-21] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-01-25] (Atheros) [File not signed]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [212344 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdriver.sys [365112 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsh.sys [250408 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniv.sys [99384 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\WINDOWS\System32\drivers\avgKbd.sys [41432 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [180576 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgNetHub; C:\WINDOWS\System32\drivers\avgNetHub.sys [522520 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [107920 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [83008 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [850784 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [467840 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S2 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [215488 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [327104 2021-04-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
R3 vm331avs; C:\WINDOWS\System32\Drivers\vm331avs.sys [975104 2012-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-14] (CyberLink -> "CyberLink)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-04-22 14:52 - 2021-04-22 14:54 - 000023311 _____ C:\Users\Květa\Desktop\FRST.txt
2021-04-22 09:59 - 2021-04-22 09:59 - 000258096 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-04-22 09:56 - 2021-04-22 09:56 - 000005602 _____ C:\Users\Květa\Desktop\AdwCleaner[C00].txt
2021-04-22 09:51 - 2021-04-22 09:51 - 008534696 _____ (Malwarebytes) C:\Users\Květa\Desktop\AdwCleaner.exe
2021-04-21 20:37 - 2021-04-21 20:37 - 000000927 _____ C:\Users\Public\Desktop\VLC media player.lnk
2021-04-21 20:37 - 2021-04-21 20:37 - 000000000 ____D C:\Users\Květa\AppData\Roaming\vlc
2021-04-21 20:37 - 2021-04-21 20:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2021-04-21 20:36 - 2021-04-21 20:36 - 000000000 ____D C:\Program Files\VideoLAN
2021-04-21 20:35 - 2021-04-21 20:35 - 042585440 _____ C:\Users\Květa\Downloads\vlc-3.0.12-win64.exe
2021-04-21 20:34 - 2021-04-21 20:34 - 041436128 _____ C:\Users\Květa\Downloads\vlc-3.0.12-win32.exe
2021-04-21 20:22 - 2021-04-21 20:22 - 001447178 _____ (Igor Pavlov) C:\Users\Květa\Downloads\7z1900-x64.exe
2021-04-21 20:22 - 2021-04-21 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2021-04-21 20:22 - 2021-04-21 20:22 - 000000000 ____D C:\Program Files\7-Zip
2021-04-21 18:04 - 2021-04-21 18:05 - 002298368 _____ (Farbar) C:\Users\Květa\Desktop\FRST64.exe
2021-04-21 14:30 - 2021-04-22 14:53 - 000000000 ____D C:\FRST
2021-04-21 14:22 - 2021-04-21 14:22 - 001802704 _____ (Bleeping Computer, LLC) C:\Users\Květa\Downloads\rkill.exe
2021-04-21 14:22 - 2021-04-21 14:22 - 000988112 _____ (Bleeping Computer, LLC) C:\Users\Květa\Downloads\rkill64.exe
2021-04-21 14:00 - 2021-04-21 14:00 - 000388608 _____ (Trend Micro Inc.) C:\Users\Květa\Downloads\hijackthis(1).exe
2021-04-21 13:52 - 2021-04-21 13:52 - 000002007 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Secure VPN.lnk
2021-04-21 13:51 - 2021-04-21 13:51 - 000000000 ____D C:\WINDOWS\Panther
2021-04-21 13:39 - 2021-04-22 13:43 - 000003274 _____ C:\WINDOWS\system32\Tasks\Optimize Push Notification Data File-S-1-5-21-765697036-1757503579-3624756556-1002
2021-04-21 13:07 - 2021-04-21 13:08 - 040488656 _____ (Adlice Software ) C:\Users\Květa\Downloads\RogueKiller_setup.exe
2021-04-21 11:49 - 2021-04-21 11:51 - 000000000 ____D C:\AdwCleaner
2021-04-21 11:48 - 2021-04-21 11:48 - 008534696 _____ (Malwarebytes) C:\Users\Květa\Downloads\adwcleaner_8.2.exe
2021-04-21 11:22 - 2021-04-21 11:22 - 000001016 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-04-21 11:22 - 2021-04-21 11:22 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-04-21 11:10 - 2021-04-21 11:10 - 014558544 _____ C:\Users\Květa\Downloads\Updater.exe
2021-04-21 10:56 - 2021-04-21 10:57 - 026066176 _____ (Adlice Software ) C:\Users\Květa\Downloads\UCheck_setup.exe
2021-04-21 10:50 - 2021-04-22 13:17 - 000003974 _____ C:\WINDOWS\system32\Tasks\AVG Secure VPN Update
2021-04-21 10:49 - 2021-04-21 13:52 - 000001995 _____ C:\Users\Public\Desktop\AVG Secure VPN.lnk
2021-04-21 10:47 - 2021-04-21 13:50 - 000000000 ____D C:\Program Files (x86)\AVG
2021-04-21 10:39 - 2021-04-21 10:39 - 037124664 _____ C:\Users\Květa\Downloads\RogueKiller_portable64.exe
2021-04-21 10:35 - 2021-04-21 10:35 - 000002074 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG TuneUp.lnk
2021-04-21 10:35 - 2021-04-21 10:35 - 000002062 _____ C:\Users\Public\Desktop\AVG TuneUp.lnk
2021-04-21 10:32 - 2021-03-08 21:46 - 000134400 _____ (AVG Technologies) C:\WINDOWS\system32\icarus_rvrt.exe
2021-04-21 10:30 - 2021-04-21 10:30 - 001205312 _____ (AVG Technologies) C:\Users\Květa\Downloads\avg_tuneup_online_setup.exe
2021-04-21 10:18 - 2021-04-21 13:58 - 000000000 ____D C:\Users\Květa\AppData\Local\D3DSCache
2021-04-18 23:41 - 2021-04-18 23:41 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2021-04-18 23:41 - 2021-04-18 23:41 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2021-04-18 22:10 - 2021-04-18 22:14 - 000003362 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-765697036-1757503579-3624756556-1002
2021-04-18 22:10 - 2021-04-18 22:14 - 000000000 ___RD C:\Users\Květa\OneDrive
2021-04-18 21:36 - 2021-04-18 21:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conexant
2021-04-18 21:34 - 2015-04-18 10:26 - 000427224 _____ (Conexant Systems, Inc.) C:\WINDOWS\SysWOW64\SASrv.exe
2021-04-18 21:34 - 2014-11-26 11:01 - 000004664 _____ C:\WINDOWS\system32\Drivers\CxSfPt.dat
2021-04-18 21:32 - 2021-04-18 21:32 - 000000000 ____D C:\Program Files\Dolby Digital Plus
2021-04-18 11:55 - 2021-04-18 11:55 - 000000000 ____D C:\Users\Květa\AppData\Local\Comms
2021-04-18 11:49 - 2021-04-18 11:49 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2021-04-18 11:49 - 2016-09-09 20:25 - 000269600 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2021-04-18 11:49 - 2016-09-09 20:25 - 000261920 _____ C:\WINDOWS\system32\vulkan-1.dll
2021-04-18 11:49 - 2016-09-09 20:25 - 000110880 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2021-04-18 11:49 - 2016-09-09 20:24 - 000125216 _____ C:\WINDOWS\system32\vulkaninfo.exe
2021-04-18 11:46 - 2016-12-29 15:10 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2021-04-18 11:45 - 2021-04-18 11:45 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-04-18 11:40 - 2021-04-18 12:00 - 000000000 ____D C:\Users\Květa\AppData\Local\PlaceholderTileLogoFolder
2021-04-18 11:36 - 2017-01-17 05:56 - 034717624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2021-04-18 11:36 - 2017-01-17 05:56 - 028209080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2021-04-18 11:36 - 2017-01-17 05:56 - 000951224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2021-04-18 11:36 - 2017-01-17 05:56 - 000904760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2021-04-18 11:36 - 2017-01-17 05:56 - 000048696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvpciflt.sys
2021-04-18 11:36 - 2017-01-17 05:55 - 002961336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2021-04-18 11:36 - 2017-01-17 05:55 - 002594744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2021-04-18 11:36 - 2017-01-17 05:55 - 001964600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6437654.dll
2021-04-18 11:36 - 2017-01-17 05:55 - 001598392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6437654.dll
2021-04-18 11:36 - 2017-01-17 05:55 - 001047096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2021-04-18 11:36 - 2017-01-17 05:55 - 000985144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2021-04-18 11:36 - 2017-01-17 05:53 - 011017016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2021-04-18 11:36 - 2017-01-17 05:52 - 010907368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2021-04-18 11:36 - 2017-01-17 05:52 - 010453152 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2021-04-18 11:36 - 2017-01-17 05:52 - 009246832 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2021-04-18 11:36 - 2017-01-17 05:52 - 009000336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2021-04-18 11:36 - 2017-01-17 05:52 - 008847016 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2021-04-18 11:36 - 2017-01-17 05:52 - 000698544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2021-04-18 11:36 - 2017-01-17 05:52 - 000586784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2021-04-18 11:36 - 2017-01-17 00:59 - 000042296 _____ C:\WINDOWS\system32\nvinfo.pb
2021-04-18 11:35 - 2017-01-17 05:54 - 040134200 _____ C:\WINDOWS\system32\nvcompiler.dll
2021-04-18 11:35 - 2017-01-17 05:54 - 035233336 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2021-04-18 11:35 - 2017-01-17 05:52 - 003972960 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2021-04-18 11:35 - 2017-01-17 05:52 - 003509152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2021-04-18 11:35 - 2017-01-17 00:59 - 000000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json
2021-04-18 11:35 - 2017-01-17 00:59 - 000000669 _____ C:\WINDOWS\system32\nv-vk64.json
2021-04-18 11:16 - 2021-04-18 11:16 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2021-04-18 11:14 - 2015-06-03 03:16 - 000419528 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll
2021-04-18 11:14 - 2015-06-03 03:16 - 000255176 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo29.dll
2021-04-18 11:14 - 2015-06-03 03:16 - 000042696 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel_Aux.sys
2021-04-18 11:14 - 2015-06-03 03:16 - 000042184 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_AMDASF_Aux.sys
2021-04-17 23:02 - 2021-04-17 22:46 - 000000000 ____D C:\Windows.old
2021-04-17 22:57 - 2021-04-17 22:57 - 000000000 ____D C:\Users\Květa\AppData\Local\Publishers
2021-04-17 22:54 - 2021-04-17 22:54 - 000000000 ___RD C:\Users\Květa\3D Objects
2021-04-17 22:53 - 2021-04-17 23:02 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2021-04-17 22:52 - 2021-04-17 22:54 - 000000000 ____D C:\Users\Květa\AppData\Local\ConnectedDevicesPlatform
2021-04-17 22:52 - 2021-04-17 22:52 - 000000020 ___SH C:\Users\Květa\ntuser.ini
2021-04-17 22:48 - 2021-04-17 22:48 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-04-17 22:44 - 2021-04-17 22:44 - 000002854 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-765697036-1757503579-3624756556-500
2021-04-17 22:42 - 2021-04-22 14:22 - 000004266 _____ C:\WINDOWS\system32\Tasks\Antivirus Emergency Update
2021-04-17 22:42 - 2021-04-21 14:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2021-04-17 22:42 - 2021-04-21 13:52 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVG
2021-04-17 22:42 - 2021-04-21 13:49 - 000002100 _____ C:\WINDOWS\system32\Tasks\Synaptics TouchPad Enhancements
2021-04-17 22:42 - 2021-04-21 12:40 - 000002694 _____ C:\WINDOWS\system32\Tasks\OFFICE2013ACT
2021-04-17 22:42 - 2021-04-17 22:44 - 000002810 _____ C:\WINDOWS\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-765697036-1757503579-3624756556-1002
2021-04-17 22:42 - 2021-04-17 22:44 - 000002316 _____ C:\WINDOWS\system32\Tasks\CreateChoiceProcessTask
2021-04-17 22:42 - 2021-04-17 22:43 - 000002968 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{D52D5280-274A-49CA-987D-54A0FBC0F0FA}
2021-04-17 22:42 - 2021-04-17 22:42 - 000000000 ____D C:\WINDOWS\system32\Tasks\WPD
2021-04-17 22:42 - 2021-04-17 22:42 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software
2021-04-17 22:40 - 2021-04-17 22:42 - 000011433 _____ C:\WINDOWS\diagwrn.xml
2021-04-17 22:40 - 2021-04-17 22:42 - 000011433 _____ C:\WINDOWS\diagerr.xml
2021-04-17 22:37 - 2021-04-18 11:06 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-04-17 22:29 - 2021-04-17 22:29 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-04-17 22:28 - 2021-04-17 22:28 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-04-17 22:28 - 2021-04-17 22:28 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-04-17 22:28 - 2021-04-17 22:28 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-04-17 22:28 - 2021-04-17 22:28 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-04-17 22:28 - 2021-04-17 22:28 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-04-17 22:28 - 2021-04-17 22:28 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-04-17 22:28 - 2021-04-17 22:28 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-04-17 22:28 - 2021-04-17 22:28 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-04-17 22:28 - 2021-04-17 22:28 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-04-17 22:28 - 2021-04-17 22:28 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-04-17 22:27 - 2021-04-17 22:27 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-04-17 22:27 - 2021-04-17 22:27 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-04-17 22:27 - 2021-04-17 22:27 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-04-17 22:27 - 2021-04-17 22:27 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-04-17 22:26 - 2021-04-17 22:26 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-04-17 22:26 - 2021-04-17 22:26 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-04-17 22:26 - 2021-04-17 22:26 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-04-17 22:26 - 2021-04-17 22:26 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-04-17 22:26 - 2021-04-17 22:26 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-04-17 22:26 - 2021-04-17 22:26 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-04-17 22:26 - 2021-04-17 22:26 - 000011357 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-04-17 22:25 - 2021-04-17 22:25 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-04-17 22:25 - 2021-04-17 22:25 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-04-17 22:25 - 2021-04-17 22:25 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-04-17 22:25 - 2021-04-17 22:25 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-04-17 22:24 - 2021-04-17 22:24 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-04-17 22:24 - 2021-04-17 22:24 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-04-17 22:24 - 2021-04-17 22:24 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-04-17 22:24 - 2021-04-17 22:24 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-04-17 22:24 - 2021-04-17 22:24 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-04-17 22:24 - 2021-04-17 22:24 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-04-17 22:24 - 2021-04-17 22:24 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-04-17 22:24 - 2021-04-17 22:24 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-04-17 22:24 - 2021-04-17 22:24 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-04-17 22:24 - 2021-04-17 22:24 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-04-17 22:23 - 2021-04-17 22:23 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-04-17 22:22 - 2021-04-21 21:10 - 000000000 ____D C:\Users\UpdatusUser
2021-04-17 22:22 - 2021-04-21 21:09 - 000000000 ____D C:\Users\Květa
2021-04-17 22:22 - 2021-04-18 22:14 - 000002410 _____ C:\Users\Květa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-17 22:22 - 2021-04-17 22:22 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-04-17 22:22 - 2021-04-17 22:22 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-04-17 22:22 - 2021-04-17 22:22 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-04-17 22:22 - 2021-04-17 22:22 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\Šablony
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\Soubory cookie
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\Poslední
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\Okolní tiskárny
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\Okolní síť
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\Nabídka Start
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\Dokumenty
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Obrázky
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Hudba
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Filmy
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\Data aplikací
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Data aplikací
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\Šablony
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\Soubory cookie
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\Poslední
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\Okolní tiskárny
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\Okolní síť
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\Nabídka Start
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\Dokumenty
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\Documents\Obrázky
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\Documents\Hudba
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\Documents\Filmy
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\Data aplikací
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-04-17 22:22 - 2021-04-17 22:22 - 000000000 _SHDL C:\Users\Květa\AppData\Local\Data aplikací
2021-04-17 22:22 - 2019-12-07 11:10 - 000001105 _____ C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-17 22:21 - 2021-04-17 22:21 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-04-17 22:21 - 2021-04-17 22:21 - 001823304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-04-17 22:21 - 2021-04-17 22:21 - 001394024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-04-17 22:21 - 2021-04-17 22:21 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-04-17 22:21 - 2021-04-17 22:21 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-04-17 22:21 - 2021-04-17 22:21 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-04-17 22:20 - 2021-04-17 22:20 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-04-17 22:20 - 2021-04-17 22:20 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-04-17 22:20 - 2021-04-17 22:20 - 000091136 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-04-17 22:19 - 2021-04-17 22:19 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-04-17 22:19 - 2021-04-17 22:19 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2021-04-17 22:19 - 2021-04-17 22:19 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-04-17 22:18 - 2021-04-17 22:18 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-04-17 22:18 - 2021-04-17 22:18 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-04-17 22:18 - 2021-04-17 22:18 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-04-17 22:18 - 2021-04-17 22:18 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-04-17 22:18 - 2021-04-17 22:18 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-04-17 22:18 - 2021-04-17 22:18 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-04-17 22:18 - 2021-04-17 22:18 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-04-17 22:18 - 2021-04-17 22:18 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-04-17 22:18 - 2021-04-17 22:18 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-04-17 22:18 - 2021-04-17 22:18 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-04-17 22:03 - 2021-04-22 13:15 - 000008192 ___SH C:\DumpStack.log.tmp
2021-04-17 21:57 - 2019-10-15 14:53 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml
2021-04-17 21:57 - 2019-04-18 19:49 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml
2021-04-17 21:52 - 2021-04-17 21:52 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2021-04-17 21:52 - 2021-04-17 21:52 - 000000000 ____D C:\Program Files\Reference Assemblies
2021-04-17 21:52 - 2021-04-17 21:52 - 000000000 ____D C:\Program Files\MSBuild
2021-04-17 21:52 - 2021-04-17 21:52 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2021-04-17 21:52 - 2021-04-17 21:52 - 000000000 ____D C:\Program Files (x86)\MSBuild
2021-04-17 18:50 - 2021-04-17 19:48 - 000000000 ____D C:\ESD
2021-04-17 18:48 - 2021-04-17 18:48 - 000000000 ___HD C:\$Windows.~WS
2021-04-17 17:38 - 2021-04-17 17:38 - 002078632 _____ (Malwarebytes) C:\Users\Květa\Downloads\MBSetup.exe
2021-04-17 10:48 - 2021-04-17 10:48 - 000020942 _____ C:\Users\Květa\Documents\cc_20210417_104827.reg
2021-04-17 10:27 - 2021-04-21 10:36 - 000000000 ____D C:\Users\Květa\AppData\Roaming\AVG
2021-04-17 10:26 - 2021-04-21 10:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2021-04-17 10:26 - 2021-04-17 10:26 - 000002013 _____ C:\Users\Public\Desktop\AVG Internet Security.lnk
2021-04-17 10:21 - 2021-04-21 10:32 - 000000000 ____D C:\Program Files\Common Files\AVG
2021-04-17 10:21 - 2021-04-17 10:20 - 000850784 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSnx.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000522520 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgNetHub.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000467840 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSP.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000365112 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsdriver.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000340224 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgBoot.exe
2021-04-17 10:21 - 2021-04-17 10:20 - 000327104 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgVmm.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000250408 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsh.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000215488 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgStm.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000212344 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgArPot.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000180576 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000107920 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRdr2.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000099384 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbuniv.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000083008 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRvrt.sys
2021-04-17 10:21 - 2021-04-17 10:20 - 000041432 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgKbd.sys
2021-04-17 10:18 - 2021-04-21 12:55 - 000000000 ____D C:\Program Files\AVG
2021-04-17 10:17 - 2021-04-22 13:17 - 000000000 ____D C:\ProgramData\AVG
2021-04-17 10:11 - 2021-04-17 10:13 - 000259344 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Květa\Downloads\avg_internet_security_setup.exe
2021-04-17 09:30 - 2021-04-17 09:31 - 031273232 _____ (Piriform Software Ltd) C:\Users\Květa\Downloads\ccsetup578.exe
2021-03-25 18:36 - 2021-04-21 11:22 - 000000000 ____D C:\Program Files\Mozilla Firefox

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-04-22 14:57 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-04-22 14:51 - 2020-11-19 00:29 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-04-22 13:29 - 2016-11-24 17:00 - 000000000 ____D C:\Users\Květa\AppData\LocalLow\Mozilla
2021-04-22 13:29 - 2013-09-18 19:15 - 000000000 ____D C:\ProgramData\Mozilla
2021-04-22 13:20 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2021-04-22 13:17 - 2014-11-20 20:21 - 000000000 __SHD C:\Users\Květa\IntelGraphicsProfiles
2021-04-22 13:15 - 2020-11-19 01:30 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-04-22 10:17 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-04-22 09:56 - 2013-05-20 16:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2021-04-22 09:55 - 2013-05-20 16:12 - 000000000 ____D C:\Program Files (x86)\Lenovo
2021-04-22 09:55 - 2013-05-20 15:51 - 000000000 ____D C:\Program Files (x86)\Vimicro
2021-04-21 14:19 - 2014-11-20 19:34 - 000000000 ____D C:\Program Files (x86)\Intel
2021-04-21 14:19 - 2013-05-20 15:25 - 000000000 ____D C:\ProgramData\Intel
2021-04-21 14:14 - 2013-05-20 15:23 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2021-04-21 14:13 - 2013-05-20 16:19 - 000000000 ____D C:\Program Files\Lenovo
2021-04-21 14:09 - 2013-05-20 16:18 - 000000000 ____D C:\ProgramData\CyberLink
2021-04-21 14:05 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-04-21 14:05 - 2013-08-05 19:18 - 000000000 ____D C:\Users\Květa\AppData\Local\Packages
2021-04-21 13:47 - 2014-07-27 20:40 - 000000000 ____D C:\Program Files (x86)\Google
2021-04-21 12:40 - 2020-11-19 01:32 - 000003008 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateBrowserReplacementTask
2021-04-21 12:38 - 2018-01-27 11:59 - 000000000 ____D C:\Users\Květa\Downloads\backups
2021-04-21 12:38 - 2015-07-04 20:02 - 000000000 ____D C:\Users\Květa\Documents\Euro Truck Simulator 2
2021-04-21 12:38 - 2015-03-22 11:49 - 000000000 ____D C:\Users\Květa\AppData\Roaming\Skype
2021-04-21 12:38 - 2014-11-21 12:37 - 000000000 ____D C:\Program Files\Common Files\Atheros
2021-04-21 12:38 - 2014-11-20 19:37 - 000000000 ____D C:\ProgramData\NVIDIA
2021-04-21 12:38 - 2014-01-31 20:54 - 000000000 ____D C:\Users\Květa\AppData\Local\CrashDumps
2021-04-21 11:22 - 2018-01-27 11:22 - 000001004 _____ C:\Users\Public\Desktop\Firefox.lnk
2021-04-18 23:40 - 2014-11-20 20:21 - 000000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2021-04-18 22:58 - 2020-11-19 01:33 - 000000000 ____D C:\ProgramData\Packages
2021-04-18 22:58 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-04-18 22:23 - 2013-09-18 19:11 - 000000000 ____D C:\ldiag
2021-04-18 21:32 - 2014-11-20 19:37 - 000000000 ____D C:\Program Files\CONEXANT
2021-04-18 21:31 - 2013-05-20 15:38 - 000000000 ____D C:\ProgramData\Conexant
2021-04-18 21:22 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-04-18 11:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-04-18 11:46 - 2014-11-20 19:35 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2021-04-18 11:46 - 2014-11-20 19:35 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2021-04-18 11:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-04-18 11:06 - 2019-12-07 16:41 - 000717850 _____ C:\WINDOWS\system32\perfh005.dat
2021-04-18 11:06 - 2019-12-07 16:41 - 000144992 _____ C:\WINDOWS\system32\perfc005.dat
2021-04-18 11:04 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-04-17 23:02 - 2019-12-07 16:41 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2021-04-17 23:02 - 2019-12-07 16:41 - 000000000 ____D C:\WINDOWS\system32\WCN
2021-04-17 23:02 - 2019-12-07 11:18 - 000000000 ____D C:\WINDOWS\Setup
2021-04-17 23:02 - 2019-12-07 11:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-04-17 23:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2021-04-17 23:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\IME
2021-04-17 23:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-04-17 23:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Macromed
2021-04-17 23:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\IME
2021-04-17 23:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-04-17 23:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Help
2021-04-17 23:02 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-04-17 23:02 - 2014-11-10 17:22 - 000000000 ____D C:\WINDOWS\system32\AutoUpdateLicense
2021-04-17 23:02 - 2014-09-24 21:02 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Embedded Lockdown Manager
2021-04-17 23:02 - 2014-07-27 20:39 - 000000000 ____D C:\WINDOWS\SysWOW64\Adobe
2021-04-17 23:02 - 2013-09-10 15:53 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-04-17 23:02 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-04-17 23:02 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2021-04-17 23:02 - 2013-05-20 16:28 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneKey Recovery
2021-04-17 23:02 - 2013-05-20 15:52 - 000000000 ____D C:\Program Files (x86)\Bluetooth Suite
2021-04-17 23:02 - 2013-05-20 15:42 - 000000000 ____D C:\WINDOWS\SysWOW64\Atheros_L1e
2021-04-17 23:02 - 2013-05-20 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2021-04-17 23:02 - 2013-05-20 15:24 - 000000000 ____D C:\Program Files\Intel
2021-04-17 23:02 - 2012-10-10 01:10 - 000000000 ____D C:\ProgramData\PRICache
2021-04-17 23:00 - 2019-12-07 11:14 - 000000000 __RHD C:\Users\Public\Libraries
2021-04-17 22:59 - 2019-12-07 16:41 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2021-04-17 22:59 - 2019-12-07 16:41 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2021-04-17 22:59 - 2019-12-07 16:41 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2021-04-17 22:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2021-04-17 22:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2021-04-17 22:58 - 2019-12-07 16:41 - 000000000 ____D C:\WINDOWS\system32\winrm
2021-04-17 22:58 - 2019-12-07 16:41 - 000000000 ____D C:\WINDOWS\system32\slmgr
2021-04-17 22:58 - 2019-12-07 16:41 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2021-04-17 22:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2021-04-17 22:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-04-17 22:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-04-17 22:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-04-17 22:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-04-17 22:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\InputMethod
2021-04-17 22:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-04-17 22:58 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2021-04-17 22:58 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2021-04-17 22:56 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-04-17 22:54 - 2020-11-19 01:33 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-04-17 22:54 - 2019-12-07 16:44 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-04-17 22:54 - 2019-12-07 16:44 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-04-17 22:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\InputMethod
2021-04-17 22:54 - 2014-11-20 19:35 - 000000000 ____D C:\Program Files\Synaptics
2021-04-17 22:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-04-17 22:45 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-04-17 22:43 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Registration
2021-04-17 22:43 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-04-17 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-04-17 22:41 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2021-04-17 22:38 - 2014-11-20 20:08 - 000023020 _____ C:\WINDOWS\system32\emptyregdb.dat
2021-04-17 22:26 - 2019-12-07 11:03 - 000065536 _____ C:\WINDOWS\system32\config\ELAM
2021-04-17 22:17 - 2020-11-19 01:32 - 002877440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2021-04-17 22:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\System
2021-04-17 22:09 - 2014-11-20 19:35 - 000000264 _____ C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
2021-04-17 21:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2021-04-17 21:52 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2021-04-17 21:52 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MUI
2021-04-17 18:21 - 2013-09-10 15:53 - 131963968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-04-17 10:31 - 2018-04-05 17:38 - 000000000 ____D C:\Users\Květa\AppData\Local\AVAST Software
2021-04-17 09:55 - 2013-09-18 18:48 - 000000000 ____D C:\ProgramData\AVAST Software

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================