Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu LOGU

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Lexus_XL
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 16 pro 2017 00:03

Prosím o kontrolu LOGU

#1 Příspěvek od Lexus_XL »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-06-2019 01
Ran by Lexus (administrator) on DESKTOP-J5MSFAM (LENOVO 80NV) (09-06-2019 21:37:59)
Running from C:\Users\Lexus\Downloads
Loaded Profiles: Lexus (Available Profiles: Lexus)
Platform: Windows 10 Home Version 1809 17763.503 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19041.16510.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19051.545.0_x64__8wekyb3d8bbwe\YourPhone.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems, Incorporated -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Electronic Arts, Inc. -> ) C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
(Electronic Arts, Inc. -> ) C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
(Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe
(Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\IntelCpHeciSvc.exe
(Intel(R) Software Development Products -> Intel(R) Corporation) C:\Program Files (x86)\Common Files\Intel\RSDCM\bin\win32\RealSenseDCM.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.WindowsStore_11905.1001.4.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Wargaming.net Limited -> Wargaming.net) C:\ProgramData\Wargaming.net\GameCenter\wargamingerrormonitor.exe
(Wargaming.net Limited -> Wargaming.net) C:\ProgramData\Wargaming.net\GameCenter\wgc.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16482040 2016-03-31] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1427712 2016-03-31] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1427712 2016-03-31] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1427712 2016-03-31] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [262024 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2017-07-27] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3500056 2017-07-27] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2541944 2019-06-03] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3152160 2019-04-30] (Valve -> Valve Corporation)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {38549253-1CBF-40F4-BAA2-A10B8FC32ECF} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {49A1385B-6447-497D-8085-ABD80E6FEB0B} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3787304 2019-05-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5BDACBE7-900C-49EC-ACA4-7651D767F2D8} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2281944 2019-06-04] (AVAST Software s.r.o. -> AVAST Software)
Task: {5C9FF4AE-0285-4E34-B7F9-5E0F0495616A} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [899056 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {774DC997-CFDF-40B6-A823-2690BCFC14D7} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2934152 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
Task: {7C4F03B9-827A-47F5-8A86-05CDAC8365BF} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {867FDD04-0B22-455E-883F-FD6CEC4A81FA} - System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-l.e.x.u.s@seznam.cz => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {880D057D-3DA7-40AD-A3C7-6D4B6F8710C9} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [899056 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {90773FDD-BFD9-43D5-B2AB-E1F3482A4D00} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A35F891D-F6F6-44EB-AFCC-C0872A18EE51} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A7FDE119-A0E6-4206-BEDF-BB373FFA650C} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648504 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D43AA7E4-DF3A-4783-B470-D6D71A069E56} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F467A6E6-FA1B-42E2-9597-1C32FF87AC79} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{cda22af2-8222-4449-9b4e-f6deb34e6377}: [DhcpNameServer] 192.168.0.1 0.0.0.0

Internet Explorer:
==================
HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-07-26] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-07-26] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-07-27] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-07-27] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-07-26] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-07-27] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)

Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-3666700429-4150128885-3738917540-1001 -> hxxp://www.google.com/

FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.15@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2019-06-02] [Legacy]
FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2013-09-25] (VideoLAN) [File not signed]
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2019-01-11] (NVIDIA Corporation -> NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2019-01-11] (NVIDIA Corporation -> NVIDIA Corporation)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2017-08-18] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems)

Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-07-27]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3117648 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2888272 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6844776 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [409224 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 DAX2API; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [163328 2016-01-27] () [File not signed]
R2 ibtsiva; C:\Windows\system32\ibtsiva.exe [541896 2018-05-10] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2303792 2019-06-03] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3175728 2019-06-03] (Electronic Arts, Inc. -> Electronic Arts)
R2 RealSenseDCM; C:\Program Files (x86)\Common Files\Intel\RSDCM\bin\win32\RealSenseDCM.exe [3663512 2015-10-15] (Intel(R) Software Development Products -> Intel(R) Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [267328 2017-05-16] (Synaptics Incorporated -> Synaptics Incorporated)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11814232 2019-06-05] (TeamViewer GmbH -> TeamViewer GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\NisSrv.exe [3851264 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MsMpEng.exe [118144 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [207448 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [262496 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [205848 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [61472 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [15488 2019-06-03] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [279120 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [167872 2019-06-06] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1030784 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [477584 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [225608 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [385880 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [136728 2018-05-10] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 IntelDFUACPI; C:\Windows\System32\drivers\IntelDFUACPI.sys [36352 2015-10-15] (Intel(R) Software Development Products -> Intel(R) Corporation)
R3 IXCamera; C:\Windows\system32\DRIVERS\RealSenseDCM.sys [72704 2015-10-15] (Intel(R) Software Development Products -> Intel(R) Corporation)
R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [7708160 2018-09-15] (Microsoft Windows -> Intel Corporation)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_829f9f00d6329f1a\nvlddmkm.sys [20461984 2019-01-12] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-05-10] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-07-22] (Realtek Semiconductor Corp -> Realtek )
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [72768 2017-05-16] (Synaptics Incorporated -> Synaptics Incorporated)
R3 umbus; C:\Windows\System32\drivers\umbus.sys [56832 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [46472 2019-04-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [344544 2019-04-23] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [60896 2019-04-23] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-06-09 21:37 - 2019-06-09 21:38 - 000025155 _____ C:\Users\Lexus\Downloads\FRST.txt
2019-06-09 21:36 - 2019-06-09 21:37 - 000000000 ____D C:\FRST
2019-06-09 21:35 - 2019-06-09 21:35 - 002418176 _____ (Farbar) C:\Users\Lexus\Downloads\FRST64.exe
2019-06-09 11:57 - 2019-06-09 15:01 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\.minecraft
2019-06-09 11:57 - 2019-06-09 11:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft Launcher
2019-06-09 11:57 - 2019-06-09 11:57 - 000000000 ____D C:\Program Files (x86)\Minecraft Launcher
2019-06-07 21:41 - 2019-06-07 21:43 - 394487624 _____ C:\Users\Lexus\Downloads\3697,Ulice,díl.3697 (11.6.2019) - díl. 3697 Serial.ČR.mp4
2019-06-06 20:53 - 2019-06-06 20:55 - 496998642 _____ C:\Users\Lexus\Downloads\3696,Ulice,díl.3696 (10.6.2019) - díl. 3696 Serial.ČR.avi
2019-06-05 21:16 - 2019-06-05 21:18 - 387126560 _____ C:\Users\Lexus\Downloads\3695,Ulice,díl.3695 (7.6.2019) - díl. 3695 Serial.ČR.avi
2019-06-05 20:01 - 2019-06-05 20:01 - 000893889 _____ C:\Users\Lexus\OneDrive\Documents\potvrzený dobropis.pdf
2019-06-05 19:06 - 2019-06-05 19:06 - 000824994 _____ C:\Users\Lexus\Downloads\ABB_3559-A52345_navod-k-instalaci.pdf
2019-06-04 20:59 - 2019-06-04 20:59 - 000022018 _____ C:\Users\Lexus\Downloads\[CzT]Cernobyl_Chernobyl_S01E01_1_23_45_CZ_WebRip_1080p_.torrent
2019-06-04 20:57 - 2019-06-04 21:06 - 1190277698 _____ C:\Users\Lexus\Downloads\Černobyl 3.díl. (2019) CZ-dabing HD.avi
2019-06-04 20:57 - 2019-06-04 21:02 - 529195138 _____ C:\Users\Lexus\Downloads\Černobyl 2.díl Please Remain Calm (2019) CZ-dabing.avi
2019-06-04 20:52 - 2019-06-04 20:56 - 484679396 _____ C:\Users\Lexus\Downloads\Černobyl 1.díl 1-23-45 (2019) CZ-dabing.avi
2019-06-04 20:50 - 2019-06-04 20:53 - 379395792 _____ C:\Users\Lexus\Downloads\3694,Ulice,díl.3694 (6.6.2019) - díl. 3694 Serial.ČR.avi
2019-06-04 20:50 - 2019-06-04 20:51 - 166618069 _____ C:\Users\Lexus\Downloads\Ulice 3693 Díl Datum 05.06.2019.mp4
2019-06-03 23:59 - 2019-06-03 23:59 - 000000000 ____D C:\Users\Lexus\AppData\LocalLow\SKS
2019-06-03 23:39 - 2019-06-03 23:39 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-06-03 23:33 - 2019-06-09 21:26 - 000000000 ____D C:\Program Files (x86)\Origin Games
2019-06-03 23:31 - 2019-06-03 23:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2019-06-03 23:31 - 2019-06-03 23:31 - 000000000 ____D C:\Program Files (x86)\Origin
2019-06-03 23:29 - 2019-06-03 23:29 - 000000000 ____D C:\ProgramData\Blizzard Entertainment
2019-06-03 23:28 - 2019-06-09 21:32 - 000000000 ____D C:\ProgramData\Origin
2019-06-03 23:28 - 2019-06-09 21:26 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\Origin
2019-06-03 23:28 - 2019-06-03 23:33 - 000000000 ____D C:\Users\Lexus\AppData\Local\Origin
2019-06-03 23:28 - 2019-06-03 23:28 - 000000000 ____D C:\Users\Lexus\.QtWebEngineProcess
2019-06-03 23:28 - 2019-06-03 23:28 - 000000000 ____D C:\Users\Lexus\.Origin
2019-06-03 23:27 - 2019-06-04 00:59 - 000000000 ____D C:\Users\Lexus\AppData\Local\Battle.net
2019-06-03 23:27 - 2019-06-03 23:29 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\Battle.net
2019-06-03 23:27 - 2019-06-03 23:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2019-06-03 23:26 - 2019-06-03 23:27 - 000000000 ____D C:\Program Files (x86)\Battle.net
2019-06-03 23:22 - 2019-06-03 23:27 - 000000000 ____D C:\Users\Lexus\AppData\Local\Blizzard Entertainment
2019-06-03 23:21 - 2019-06-03 23:21 - 000000000 ____D C:\Users\Lexus\AppData\Local\Steam
2019-06-03 23:21 - 2019-06-03 23:21 - 000000000 ____D C:\ProgramData\Battle.net
2019-06-03 23:19 - 2019-06-09 18:25 - 000000000 ____D C:\Program Files (x86)\Steam
2019-06-03 23:19 - 2019-06-03 23:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2019-06-03 23:16 - 2019-06-09 16:04 - 000002948 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-03 23:16 - 2019-06-09 16:04 - 000002948 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-03 23:16 - 2019-06-09 16:04 - 000002948 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-03 23:16 - 2019-06-09 16:04 - 000002948 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-03 23:16 - 2019-06-03 23:16 - 000000000 ____D C:\Windows\LastGood.Tmp
2019-06-03 23:08 - 2019-06-09 16:04 - 000002850 _____ C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-l.e.x.u.s@seznam.cz
2019-06-03 23:05 - 2019-06-09 15:01 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2019-06-03 23:05 - 2019-06-03 23:05 - 000002164 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2019-06-03 23:05 - 2019-06-03 23:05 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\AVAST Software
2019-06-03 23:05 - 2019-06-03 23:05 - 000000000 ____D C:\Users\Lexus\AppData\Local\AVAST Software
2019-06-03 23:04 - 2019-06-06 20:46 - 000167872 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-06-03 23:04 - 2019-06-03 23:05 - 000385880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-06-03 23:04 - 2019-06-03 23:05 - 000225608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 001030784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000477584 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000363400 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-06-03 23:04 - 2019-06-03 23:04 - 000279120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000262496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000207448 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000205848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000112312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000087944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000061472 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000037104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000015488 _____ (AVAST Software) C:\Windows\system32\Drivers\aswElam.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000003990 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-06-03 23:04 - 2019-06-03 23:04 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2019-06-03 23:04 - 2019-06-03 23:04 - 000000000 ____D C:\Program Files\AVAST Software
2019-06-03 23:03 - 2019-06-03 23:04 - 000000000 ____D C:\ProgramData\AVAST Software
2019-06-02 21:52 - 2019-06-03 22:56 - 000030959 _____ C:\Users\Lexus\OneDrive\Documents\neplatce vzor.xlsx
2019-06-02 21:50 - 2019-06-02 21:50 - 000094006 _____ C:\Users\Lexus\OneDrive\Documents\faktura pdf.pdf
2019-06-02 21:01 - 2019-06-02 21:50 - 000142336 _____ C:\Users\Lexus\OneDrive\Documents\faktura_neplatce_DPH_vzor.xls
2019-06-02 21:00 - 2019-06-02 21:00 - 000040960 _____ C:\Users\Lexus\Downloads\faktura_neplatce_DPH_vzor.xls
2019-06-02 19:24 - 2019-06-02 19:24 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\com.adobe.formscentral.FormsCentralForAcrobat
2019-06-02 19:15 - 2019-06-02 19:17 - 000002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat XI Pro.lnk
2019-06-02 19:15 - 2019-06-02 19:17 - 000002287 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe FormsCentral.lnk
2019-06-02 19:15 - 2019-06-02 19:17 - 000002126 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller XI.lnk
2019-06-02 19:10 - 2019-06-02 19:10 - 003122016 _____ (Alexander Roshal) C:\Users\Lexus\Downloads\winrar-x64-561.exe
2019-06-02 19:10 - 2019-06-02 19:10 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\WinRAR
2019-06-02 19:10 - 2019-06-02 19:10 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-02 19:10 - 2019-06-02 19:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-02 19:10 - 2019-06-02 19:10 - 000000000 ____D C:\Program Files\WinRAR
2019-06-02 18:52 - 2019-06-02 18:52 - 000102721 _____ C:\Users\Lexus\Downloads\Faktura-dodaci list - 3019807125.pdf
2019-06-02 07:30 - 2019-06-02 07:31 - 141964717 _____ C:\Users\Lexus\Downloads\Ulice 3692 - CELÝ DÍL.mp4
2019-06-02 07:27 - 2019-06-02 07:29 - 396540047 _____ C:\Users\Lexus\Downloads\Ulice 3691 Díl Datum 03.06.2019.mp4
2019-06-01 08:54 - 2019-06-01 08:54 - 000000000 ____D C:\ProgramData\HP
2019-05-31 17:56 - 2019-05-31 18:40 - 1043859968 _____ C:\Users\Lexus\Downloads\PS4UPDATE.PUP
2019-05-25 19:53 - 2019-05-25 19:53 - 415799158 _____ C:\Users\Lexus\Downloads\Ulice-3687-28.5.2019.avi
2019-05-25 19:52 - 2019-05-25 19:53 - 258977275 _____ C:\Users\Lexus\Downloads\Ulice 3686 27.5.2019.mp4
2019-05-25 19:28 - 2019-05-25 19:29 - 324349426 _____ C:\Users\Lexus\Downloads\PublicAgent.E10.Alexis.XXX.XViD-BTRG.avi
2019-05-23 22:56 - 2019-05-23 22:57 - 416877760 _____ C:\Users\Lexus\Downloads\Ulice-3685-24.5.2019.mp4
2019-05-21 20:59 - 2019-05-21 21:00 - 504676872 _____ C:\Users\Lexus\Downloads\3684,Ulice,díl.3684 (23.5.2019) - díl. 3684 Serial.ČR.avi
2019-05-21 20:58 - 2019-05-21 20:58 - 366082920 _____ C:\Users\Lexus\Downloads\Ulice 3683 Díl Datum 22.05.2019.mp4
2019-05-21 19:59 - 2019-05-21 20:08 - 000000000 ____D C:\Users\Lexus\AppData\Local\TeamViewer
2019-05-21 19:58 - 2019-06-09 18:24 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-05-21 19:58 - 2019-06-07 21:19 - 000001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 14.lnk
2019-05-21 19:58 - 2019-05-21 20:07 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\TeamViewer
2019-05-20 09:41 - 2019-05-20 09:41 - 167809234 _____ C:\Users\Lexus\Downloads\PORNO SEX jak udelat 1 ceske pornodite 1106162.mp4
2019-05-20 07:35 - 2019-05-20 07:36 - 511245465 _____ C:\Users\Lexus\Downloads\souloz-s-andilkem-,18-let-,xxx,sex,porno,domaci,mlada,teen,nevyholena,hairy,amaterka,oral,novinka,2013,cz,za-penize,za-prachy.wmv
2019-05-20 07:33 - 2019-05-20 07:33 - 006388617 _____ C:\Users\Lexus\Downloads\PORNO SEX cesky amateri mlada kraska a megaptak 1102517.mp4
2019-05-20 05:30 - 2019-05-20 05:32 - 1457436802 _____ C:\Users\Lexus\Downloads\S08E06 Game of Thrones CZ titulky.mkv
2019-05-17 23:01 - 2019-05-17 23:02 - 444503810 _____ C:\Users\Lexus\Downloads\Ulice 3682 Díl Datum 21.05.2019.mp4
2019-05-17 23:01 - 2019-05-17 23:02 - 439027741 _____ C:\Users\Lexus\Downloads\Ulice 3681 Díl Datum 20.05.2019.mp4
2019-05-16 20:29 - 2019-05-16 20:29 - 026807808 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 023438848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 020814848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 019022336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 009682744 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 007883776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 007879680 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 007687576 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 007645384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 006542464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 006440960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 006309040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 006072320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 005498880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 005040640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 004883968 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 004660736 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 004588544 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 003905536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 003743744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 003637248 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 003557888 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 003384832 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 003363856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 002780000 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 002708480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 002422272 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 002278240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 002189312 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001860096 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001760768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001701888 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001699496 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-05-16 20:29 - 2019-05-16 20:29 - 001641616 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001605120 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001484800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001470016 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 001395264 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001387520 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001342608 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-05-16 20:29 - 2019-05-16 20:29 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001309696 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001290752 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001253904 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 001225728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 001179680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 001062400 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001054712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 001048376 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 001026792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000972288 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000912384 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000895792 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000865280 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000840192 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000807464 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000758896 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000703488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000684032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000680184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000660992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000586280 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000543744 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000525824 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000508432 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000495104 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000449376 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000444944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000387832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000376320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspbde40.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000254952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000240640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000223544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000217088 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2019-05-16 20:29 - 2019-05-16 20:29 - 000216064 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000212792 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000203272 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000202768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000201016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000198456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000192824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000181248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2019-05-16 20:29 - 2019-05-16 20:29 - 000179728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000177976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000163240 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000147736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000128000 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000124928 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000122368 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000121656 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2019-05-16 20:29 - 2019-05-16 20:29 - 000090640 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000080184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000066688 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000055792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdll.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2019-05-15 22:47 - 2019-05-15 22:49 - 619704114 _____ C:\Users\Lexus\Downloads\Ordinace v růžové zahradě-2-899.Nemilý překvápko.mp4
2019-05-15 22:47 - 2019-05-15 22:49 - 574948224 _____ C:\Users\Lexus\Downloads\Ordinace v růžové zahradě-2-898.Slepé uličky.mp4
2019-05-15 22:46 - 2019-05-15 22:48 - 444756920 _____ C:\Users\Lexus\Downloads\3679,Ulice,díl.3679 (16.5.2019) - díl. 3679 Serial.ČR.avi
2019-05-15 22:46 - 2019-05-15 22:47 - 381200892 _____ C:\Users\Lexus\Downloads\3678,Ulice,díl.3678 (15.5.2019) - díl. 3678 Serial.ČR.avi
2019-05-13 21:27 - 2019-05-13 21:27 - 1046877102 _____ C:\Users\Lexus\Downloads\S08E05 Game of Thrones - Hry o trůny CZ titulky.avi
2019-05-12 20:30 - 2019-05-12 20:31 - 435612939 _____ C:\Users\Lexus\Downloads\Ulice 3677 Díl Datum 14.05.2019.mp4
2019-05-11 21:40 - 2019-05-11 21:58 - 1080085324 _____ C:\Users\Lexus\Downloads\Aquaman (2018) CZ dabing.avi
2019-05-11 10:33 - 2019-05-11 10:41 - 1216209352 _____ C:\Users\Lexus\Downloads\Noc-v-Roxbury (1998 CZdab) TOPkvalita.mkv
2019-05-10 22:34 - 2019-05-10 22:34 - 000000000 ____D C:\ProgramData\Lexmark B2400 Series XL
2019-05-10 16:59 - 2019-05-10 16:59 - 000014056 _____ C:\Users\Lexus\Downloads\[CzT]Prebytecna_zatez_Beast_of_Burden_2018_CZ_.torrent
2019-05-10 16:57 - 2019-05-10 16:59 - 689180160 _____ C:\Users\Lexus\Downloads\Noc-v-Roxbury---CZ-dabing.avi

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-06-09 21:32 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-06-09 21:24 - 2019-01-11 21:12 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-06-09 18:31 - 2019-01-11 21:20 - 001606102 _____ C:\Windows\system32\PerfStringBackup.INI
2019-06-09 18:31 - 2018-09-15 19:32 - 000683600 _____ C:\Windows\system32\perfh005.dat
2019-06-09 18:31 - 2018-09-15 19:32 - 000137282 _____ C:\Windows\system32\perfc005.dat
2019-06-09 18:31 - 2018-09-15 09:31 - 000000000 ____D C:\Windows\INF
2019-06-09 18:26 - 2019-01-11 21:29 - 000000000 ____D C:\ProgramData\NVIDIA
2019-06-09 18:24 - 2019-01-11 21:39 - 000000000 __SHD C:\Users\Lexus\IntelGraphicsProfiles
2019-06-09 18:24 - 2019-01-11 21:28 - 000000000 ____D C:\Users\Lexus
2019-06-09 18:24 - 2019-01-11 21:12 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-06-09 16:04 - 2019-01-11 22:18 - 000003398 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 22:18 - 000003196 _____ C:\Windows\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 22:18 - 000003152 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 22:18 - 000002984 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 22:18 - 000002914 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 22:18 - 000002744 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 21:35 - 000002862 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3666700429-4150128885-3738917540-1001
2019-06-09 11:34 - 2019-01-16 19:56 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\uTorrent
2019-06-09 11:34 - 2019-01-13 14:53 - 000000000 ____D C:\Users\Lexus\AppData\Local\CrashDumps
2019-06-08 23:13 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-06-08 23:13 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\AppReadiness
2019-06-08 22:57 - 2019-01-11 21:29 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-06-08 22:57 - 2018-09-15 08:09 - 000524288 _____ C:\Windows\system32\config\BBI
2019-06-07 21:24 - 2019-01-11 21:33 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\Adobe
2019-06-05 18:53 - 2019-01-11 21:35 - 000000000 ___RD C:\Users\Lexus\OneDrive
2019-06-05 18:53 - 2019-01-11 21:28 - 000002365 _____ C:\Users\Lexus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-06-03 23:31 - 2019-01-11 22:16 - 000000000 ____D C:\Users\Lexus\AppData\Local\D3DSCache
2019-06-03 23:31 - 2019-01-11 21:33 - 000000000 ____D C:\ProgramData\Package Cache
2019-06-03 23:16 - 2019-01-11 21:29 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-06-03 23:16 - 2019-01-11 21:29 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-06-03 23:04 - 2018-09-15 09:33 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-06-03 23:02 - 2019-01-11 21:12 - 005105128 _____ C:\Windows\system32\FNTCACHE.DAT
2019-06-02 19:26 - 2019-01-23 19:41 - 000000000 ____D C:\ProgramData\Adobe
2019-06-02 19:24 - 2019-01-23 19:47 - 000000000 ____D C:\Users\Lexus\AppData\LocalLow\Adobe
2019-06-02 19:24 - 2019-01-23 19:40 - 000000000 ____D C:\Users\Lexus\AppData\Local\Adobe
2019-06-02 19:16 - 2019-01-23 19:45 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2019-06-02 19:15 - 2019-01-23 19:43 - 000000000 ____D C:\Program Files (x86)\Adobe
2019-06-02 07:09 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\ServiceState
2019-06-01 22:29 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\NDF
2019-06-01 08:57 - 2019-01-11 21:35 - 000000000 ____D C:\Users\Lexus\AppData\Local\PlaceholderTileLogoFolder
2019-06-01 08:24 - 2019-01-11 21:33 - 000000000 ____D C:\Users\Lexus\AppData\Local\Packages
2019-05-22 15:45 - 2019-01-11 22:18 - 002785592 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2019-05-22 15:45 - 2019-01-11 22:18 - 002164536 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2019-05-22 15:45 - 2019-01-11 22:18 - 001316208 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll
2019-05-22 15:40 - 2019-01-11 22:18 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2019-05-19 22:01 - 2019-04-06 19:37 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\vlc
2019-05-16 23:10 - 2018-09-15 09:33 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2019-05-16 23:10 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\bcastdvr
2019-05-16 20:30 - 2018-09-15 09:23 - 000000000 ____D C:\Windows\CbsTemp
2019-05-15 16:33 - 2019-01-11 21:40 - 000000000 ____D C:\Windows\system32\MRT
2019-05-15 16:31 - 2019-01-11 21:40 - 132445408 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-05-13 23:23 - 2018-09-15 09:36 - 000835688 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-05-13 23:23 - 2018-09-15 09:36 - 000179816 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2019-06-05 18:55 - 2019-06-05 18:55 - 000000000 _____ () C:\Users\Lexus\AppData\Local\oobelibMkey.log
2019-01-18 22:06 - 2019-01-18 22:06 - 000007602 _____ () C:\Users\Lexus\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================

Lexus_XL
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 16 pro 2017 00:03

Re: Prosím o kontrolu LOGU

#2 Příspěvek od Lexus_XL »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-06-2019 01
Ran by Lexus (09-06-2019 21:38:50)
Running from C:\Users\Lexus\Downloads
Windows 10 Home Version 1809 17763.503 (X64) (2019-01-11 19:16:01)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3666700429-4150128885-3738917540-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3666700429-4150128885-3738917540-503 - Limited - Disabled)
Guest (S-1-5-21-3666700429-4150128885-3738917540-501 - Limited - Disabled)
Lexus (S-1-5-21-3666700429-4150128885-3738917540-1001 - Administrator - Enabled) => C:\Users\Lexus
WDAGUtilityAccount (S-1-5-21-3666700429-4150128885-3738917540-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.22 - Adobe Systems)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Aktualizace NVIDIA 37.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 37.0.0.0 - NVIDIA Corporation) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.5.2378 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 417.71 - NVIDIA Corporation) Hidden
Dolby Audio X2 Windows API SDK (HKLM\...\{6A478BF2-F67F-4ABC-A7F1-B6B5BA862371}) (Version: 0.6.3.44 - Dolby Laboratories, Inc.)
Intel® RealSense™ Depth Camera Manager Beta (x86): dptf_com (HKLM-x32\...\{C982EA5E-7331-11E5-ABE7-2C44FD873B55}) (Version: 2.2.0.52404 - Intel Corporation) Hidden
Intel® RealSense™ Depth Camera Manager F200 Gold (x86): Intel® RealSense™ 3D camera IO module (HKLM-x32\...\{6C1D3280-7332-11E5-AD4E-2C44FD873B55}) (Version: 1.4.27.52404 - Intel Corporation) Hidden
Intel® RealSense™ Depth Camera Manager F200 Gold (x86): Intel® RealSense™ Depth Camera Manager Service (HKLM-x32\...\{6C1D3280-7332-11E5-B485-2C44FD873B55}) (Version: 1.4.27.52404 - Intel Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\OneDriveSetup.exe) (Version: 19.070.0410.0007 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23019 (HKLM-x32\...\{2883cce3-040d-45b1-a27a-07934a6d47ec}) (Version: 14.0.23019.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23019 (HKLM-x32\...\{5184c1f9-e1f4-47ff-82ee-92712c162393}) (Version: 14.0.23019.0 - Microsoft Corporation)
Minecraft Launcher (HKLM-x32\...\{E154B2C8-2F3E-4763-B3D5-E7D34AE39C6B}) (Version: 1.0.0.0 - Mojang)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.15 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.19.0.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.19.0.94 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 417.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 417.71 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 417.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 417.71 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.18.0907 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.18.0907 - NVIDIA Corporation)
Origin (HKLM-x32\...\Origin) (Version: 10.5.40.26928 - Electronic Arts, Inc.)
Ovládací panel NVIDIA 417.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 417.71 - NVIDIA Corporation) Hidden
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7780 - Realtek Semiconductor Corp.)
Správce hloubkové kamery Intel® RealSense™ F200 (HKLM-x32\...\ARP_for_prd_dcm_runtime_1.4.27.52404) (Version: 1.4.27.52404 - Intel Corporation)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.3.4730 - TeamViewer)
VLC media player 2.1.0 (HKLM\...\VLC media player) (Version: 2.1.0 - VideoLAN)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Wargaming.net Game Center (HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\Wargaming.net Game Center) (Version: 19.2.1.4855 - Wargaming.net)
WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)

Packages:
=========
Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.1520.1.0_x86__kgqvnymyfvs32 [2019-06-03] (king.com)
Cooking Fever -> C:\Program Files\WindowsApps\NORDCURRENT.COOKINGFEVER_4.0.0.1_x86__m9bz608c1b9ra [2019-03-20] (Nordcurrent)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_2.4.521.0_x64__rz1tebttyb220 [2019-03-15] (Dolby Laboratories)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2019-01-11] (Fitbit)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_95.1.531.0_x64__v10z8vjag6ke6 [2019-06-01] (HP Inc.)
Meteor Showers -> C:\Program Files\WindowsApps\Microsoft.MeteorShowers_1.0.0.0_neutral__8wekyb3d8bbwe [2019-01-11] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-13] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.30.10924.0_x64__8wekyb3d8bbwe [2019-04-03] (Microsoft Corporation) [MS Ad]
Microsoft Remote Desktop -> C:\Program Files\WindowsApps\Microsoft.RemoteDesktop_10.1.1098.1000_x86__8wekyb3d8bbwe [2019-05-22] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.3.4032.0_x86__8wekyb3d8bbwe [2019-04-10] (Microsoft Studios) [MS Ad]
Microsoft Wireless Display Adapter -> C:\Program Files\WindowsApps\Microsoft.SurfaceWirelessDisplayAdapter_3.4.137.1000_x64__8wekyb3d8bbwe [2019-06-07] (Microsoft Corporation)
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe [2019-02-13] (Microsoft Corporation) [MS Ad]
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_2.2.9.0_x64__nfy108tqq3p12 [2019-01-11] (Thumbmunkeys Ltd) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11629.20174.0_x64__8wekyb3d8bbwe [2019-05-30] (Microsoft Corporation) [MS Ad]
Snowy Mountains -> C:\Program Files\WindowsApps\Microsoft.SnowyMountains_1.0.0.0_neutral__8wekyb3d8bbwe [2019-01-11] (Microsoft Corporation)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0 [2019-06-05] (Spotify AB)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2210608 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxDTCM.dll [2018-05-07] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2019-01-11] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2012-09-23 20:44 - 2012-09-23 20:44 - 000010240 _____ () [File not signed] C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\cs_cz\acrotray.cze
2019-06-03 23:31 - 2019-06-03 23:31 - 000015360 _____ () [File not signed] C:\Program Files (x86)\Origin\libEGL.DLL
2019-06-03 23:31 - 2019-06-03 23:31 - 003090944 _____ () [File not signed] C:\Program Files (x86)\Origin\libGLESv2.dll
2016-01-27 06:04 - 2016-01-27 06:04 - 000163328 _____ () [File not signed] C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
2012-09-23 20:44 - 2012-09-23 20:44 - 000010240 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2019-06-03 23:31 - 2019-06-03 23:31 - 000002560 _____ (The ICU Project) [File not signed] C:\Program Files (x86)\Origin\icudt58.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 001252864 _____ (The ICU Project) [File not signed] C:\Program Files (x86)\Origin\icuuc58.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 001548288 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000395776 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000030208 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\imageformats\qgif.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000032768 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\imageformats\qico.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000256512 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\imageformats\qjpeg.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000026112 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\imageformats\qtga.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000305152 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\imageformats\qtiff.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000025600 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\imageformats\qwbmp.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000278016 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\mediaservice\dsengine.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000709120 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Multimedia.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000207360 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Positioning.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000310272 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5PrintSupport.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 003513344 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Qml.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 003390976 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Quick.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000068096 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5QuickWidgets.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000045568 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5TextToSpeech.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 054064128 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5WebEngineCore.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000211456 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5WebEngineWidgets.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000116224 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5WebChannel.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000146432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5WebSockets.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-09-15 09:31 - 2018-09-15 09:31 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Lexus\OneDrive\Pictures\1920x1080-164732942-sensual-wallpapers.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{03B1D89D-DB48-4380-88EB-C8C99FDF7772}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{4EFDDB65-83F9-4794-AC8A-A4876236979D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{CACC3ABE-801C-4621-B188-5074EA4421C8}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{7417D5B4-8843-4485-89F0-61D80CDCCE4A}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [{7D3B0664-E219-491C-99FA-05F648C685BB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{8BFED7C9-7E90-462C-BA65-72E4F7E5ECF3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{15AD47FF-A5F4-43BB-8356-C4A26DB0078C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{68E66B16-5F60-489E-BDDB-7372AAB14DBA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{E706911E-2A48-4A10-9EB5-7E2BB66ECDB6}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{916001DD-C079-4143-A22A-9865D17EACBC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{8608FAEB-C026-47F4-9294-A115A10D3758}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{15F89F14-0F0A-4732-8BCC-1C2EC3F3FEF0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{6ED94EB3-D177-4FFA-9ED9-7B292EA1B594}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForest.exe () [File not signed]
FirewallRules: [{A5997678-C39B-4C6B-9E8E-B59F7A792591}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForest.exe () [File not signed]
FirewallRules: [{200478EC-86E1-4CFE-AB01-D12D6FCA2D66}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForestVR.exe () [File not signed]
FirewallRules: [{B3826C35-0434-4EE8-A14B-469D80932C64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForestVR.exe () [File not signed]
FirewallRules: [TCP Query User{643CECC0-4783-46EB-A3B1-D94EEE9A6CE8}C:\users\lexus\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\lexus\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{3FBB1C00-453B-443C-A629-D6F2B0BAACBF}C:\users\lexus\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\lexus\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [{3D315687-6049-4526-8FAD-9BDBE3C3D44E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9AA9844D-4A91-4B3E-8492-272FCE87C507}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{E38BA434-121D-4672-AD26-788DFAC636BE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{33B4D736-7126-4760-86A6-B6C61AE36A74}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4C6FD195-17A6-4728-B089-01BFF51EC418}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2DC19BA2-0FDB-4309-96C8-0225A5203FE4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9820ACBD-6C7D-4F2F-B59B-C8AAC60A182A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{FA6F01EE-7D6A-4342-89E2-3E4C14E70566}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9078E202-D12E-425F-8F72-BE2E411EB30E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{3A8110FD-30AC-41A8-9A8C-A8EAB58268F5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{A67A2E72-C6D3-486F-8098-2FEDCECEDF80}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{9699E198-926D-4682-803D-089BA56F1234}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)

==================== Restore Points =========================

24-05-2019 23:35:28 Naplánovaný kontrolní bod
01-06-2019 08:36:21 Naplánovaný kontrolní bod
02-06-2019 19:15:06 Installed Adobe Acrobat XI Pro.
03-06-2019 23:31:34 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
09-06-2019 11:56:53 Installed Minecraft Launcher

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/09/2019 11:34:45 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.17763.1, časové razítko: 0x1c1f7575
Kód výjimky: 0xc000041d
Posun chyby: 0x000060d7
ID chybujícího procesu: 0x37e4
Čas spuštění chybující aplikace: 0x01d51e867ad485d4
Cesta k chybující aplikaci: C:\Users\Lexus\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\Windows\System32\GDI32.dll
ID zprávy: f3700866-54f6-454c-ae41-6cf57a2b49e2
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/08/2019 11:05:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.17763.1, časové razítko: 0x1c1f7575
Kód výjimky: 0xc000041d
Posun chyby: 0x000060d7
ID chybujícího procesu: 0x2354
Čas spuštění chybující aplikace: 0x01d51e3de8049cd6
Cesta k chybující aplikaci: C:\Users\Lexus\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\Windows\System32\GDI32.dll
ID zprávy: 4a3bc709-58cd-4d9a-817b-0acdfef8d94d
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/08/2019 10:56:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.17763.1, časové razítko: 0x1c1f7575
Kód výjimky: 0xc000041d
Posun chyby: 0x000060d7
ID chybujícího procesu: 0x21ac
Čas spuštění chybující aplikace: 0x01d51e2a11366a2a
Cesta k chybující aplikaci: C:\Users\Lexus\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\Windows\System32\GDI32.dll
ID zprávy: 0fc5f202-8b98-40cf-b9cb-c340b8ba510f
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/05/2019 06:50:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: SettingSyncHost.exe, verze: 10.0.17763.404, časové razítko: 0x8a64310e
Název chybujícího modulu: SettingSyncHost.exe, verze: 10.0.17763.404, časové razítko: 0x8a64310e
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000281e2
ID chybujícího procesu: 0x3e50
Čas spuštění chybující aplikace: 0x01d51bbebbc1de6a
Cesta k chybující aplikaci: C:\Windows\system32\SettingSyncHost.exe
Cesta k chybujícímu modulu: C:\Windows\system32\SettingSyncHost.exe
ID zprávy: 9e0f8756-facf-4d71-a978-5a503ea70f14
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/04/2019 12:51:55 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.17763.1, časové razítko: 0x1c1f7575
Kód výjimky: 0xc000041d
Posun chyby: 0x000060d7
ID chybujícího procesu: 0x630
Čas spuštění chybující aplikace: 0x01d51a5ed2079b3c
Cesta k chybující aplikaci: C:\Users\Lexus\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\Windows\System32\GDI32.dll
ID zprávy: 12c93dcb-2663-4f42-b28b-4a82a786d788
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/03/2019 11:19:51 PM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe

Error: (06/03/2019 11:02:23 PM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Centru zabezpečení se nepodařilo ověřit volajícího s chybou %1.

Error: (06/02/2019 07:11:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.17763.1, časové razítko: 0x1c1f7575
Kód výjimky: 0xc000041d
Posun chyby: 0x000060d7
ID chybujícího procesu: 0x217c
Čas spuštění chybující aplikace: 0x01d5196463f5726f
Cesta k chybující aplikaci: C:\Users\Lexus\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\Windows\System32\GDI32.dll
ID zprávy: 89e2b1df-4db1-46d3-ad77-d719f1db0bae
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (06/09/2019 09:28:40 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.

Error: (06/09/2019 09:28:39 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.

Error: (06/09/2019 09:28:39 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.

Error: (06/09/2019 09:28:39 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.

Error: (06/09/2019 09:28:38 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.

Error: (06/09/2019 09:26:07 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.

Error: (06/09/2019 09:25:17 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.

Error: (06/09/2019 09:25:17 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.


Windows Defender:
===================================
Date: 2019-06-02 19:21:53.850
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Keygen
ID: 2147593794
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\adobe.snr.patch.v2.0-painter.exe
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Ochrana v reálném čase
Uživatel: DESKTOP-J5MSFAM\Lexus
Název procesu: C:\Windows\explorer.exe
Verze podpisu: AV: 1.293.2715.0, AS: 1.293.2715.0, NIS: 1.293.2715.0
Verze modulu: AM: 1.1.15900.4, NIS: 1.1.15900.4

Date: 2019-06-02 19:21:31.764
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Keygen
ID: 2147593794
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\adobe.snr.patch.v2.0-painter.exe
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Ochrana v reálném čase
Uživatel: DESKTOP-J5MSFAM\Lexus
Název procesu: C:\Windows\explorer.exe
Verze podpisu: AV: 1.293.2715.0, AS: 1.293.2715.0, NIS: 1.293.2715.0
Verze modulu: AM: 1.1.15900.4, NIS: 1.1.15900.4

Date: 2019-06-02 19:21:23.565
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Keygen
ID: 2147593794
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\adobe.snr.patch.v2.0-painter.exe
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Ochrana v reálném čase
Uživatel: DESKTOP-J5MSFAM\Lexus
Název procesu: C:\Windows\explorer.exe
Verze podpisu: AV: 1.293.2715.0, AS: 1.293.2715.0, NIS: 1.293.2715.0
Verze modulu: AM: 1.1.15900.4, NIS: 1.1.15900.4

Date: 2019-06-02 19:21:09.858
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Patch
ID: 2147649714
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Users\Lexus\OneDrive\Plocha\adobe\Adobe Acrobat XI Pro 11.0.22 FINAL + Crack [www.Tech-Tools.me]\Crack\Adobe CC 2015 Universal Patcher 1.5\adobe.snr.patch-painter.exe
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Ochrana v reálném čase
Uživatel: DESKTOP-J5MSFAM\Lexus
Název procesu: C:\Windows\System32\dllhost.exe
Verze podpisu: AV: 1.293.2715.0, AS: 1.293.2715.0, NIS: 1.293.2715.0
Verze modulu: AM: 1.1.15900.4, NIS: 1.1.15900.4

Date: 2019-06-02 19:20:58.366
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Patch
ID: 2147649714
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Users\Lexus\OneDrive\Plocha\adobe\Adobe Acrobat XI Pro 11.0.22 FINAL + Crack [www.Tech-Tools.me]\Crack\Adobe CC 2015 Universal Patcher 1.5\adobe.snr.patch-painter.exe
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Ochrana v reálném čase
Uživatel: DESKTOP-J5MSFAM\Lexus
Název procesu: C:\Windows\System32\dllhost.exe
Verze podpisu: AV: 1.293.2715.0, AS: 1.293.2715.0, NIS: 1.293.2715.0
Verze modulu: AM: 1.1.15900.4, NIS: 1.1.15900.4

CodeIntegrity:
===================================

Date: 2019-06-09 18:24:44.438
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-09 18:24:44.435
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-09 18:24:44.429
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-09 18:24:44.427
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-08 22:57:43.072
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-08 22:57:43.054
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-08 22:57:43.010
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-08 22:57:42.983
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: LENOVO CDCN27WW 11/12/2015
Motherboard: LENOVO Allsparks 5A
Processor: Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz
Percentage of memory in use: 28%
Total physical RAM: 16243.78 MB
Available physical RAM: 11551.52 MB
Total Virtual: 18675.78 MB
Available Virtual: 13748.23 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.16 GB) (Free:297.01 GB) NTFS
Drive d: () (Fixed) (Total:931.51 GB) (Free:119.83 GB) NTFS

\\?\Volume{067a3757-90b6-4b0a-bbcd-75abca92d596}\ (Obnovení) (Fixed) (Total:0.49 GB) (Free:0.47 GB) NTFS
\\?\Volume{8a549496-bda5-4753-8cb8-2a921091f938}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 14E3007A)

Partition: GPT.

========================================================
Disk: 1 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu LOGU

#3 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Lexus_XL
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 16 pro 2017 00:03

Re: Prosím o kontrolu LOGU

#4 Příspěvek od Lexus_XL »

# -------------------------------
# Malwarebytes AdwCleaner 7.3.0.0
# -------------------------------
# Build: 04-04-2019
# Database: 2019-05-27.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 06-09-2019
# Duration: 00:00:01
# OS: Windows 10 Home
# Cleaned: 6
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\dotomi.com
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\s.thebrighttag.com
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\thebrighttag.com
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\dotomi.com
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\s.thebrighttag.com
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\thebrighttag.com

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [2593 octets] - [09/06/2019 23:16:24]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu LOGU

#5 Příspěvek od Rudy »

OK. Dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Lexus_XL
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 16 pro 2017 00:03

Re: Prosím o kontrolu LOGU

#6 Příspěvek od Lexus_XL »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 10-06-2019
Ran by Lexus (administrator) on DESKTOP-J5MSFAM (LENOVO 80NV) (10-06-2019 19:01:28)
Running from C:\Users\Lexus\Downloads
Loaded Profiles: Lexus (Available Profiles: Lexus)
Platform: Windows 10 Home Version 1809 17763.503 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19051.545.0_x64__8wekyb3d8bbwe\YourPhone.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems, Incorporated -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\IntelCpHeciSvc.exe
(Intel(R) Software Development Products -> Intel(R) Corporation) C:\Program Files (x86)\Common Files\Intel\RSDCM\bin\win32\RealSenseDCM.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.WindowsStore_11905.1001.4.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Wargaming.net Limited -> Wargaming.net) C:\ProgramData\Wargaming.net\GameCenter\wargamingerrormonitor.exe
(Wargaming.net Limited -> Wargaming.net) C:\ProgramData\Wargaming.net\GameCenter\wgc.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16482040 2016-03-31] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1427712 2016-03-31] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1427712 2016-03-31] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1427712 2016-03-31] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [262024 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2017-07-27] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3500056 2017-07-27] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2541944 2019-06-03] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3152160 2019-04-30] (Valve -> Valve Corporation)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {38549253-1CBF-40F4-BAA2-A10B8FC32ECF} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {49A1385B-6447-497D-8085-ABD80E6FEB0B} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3787304 2019-05-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5BDACBE7-900C-49EC-ACA4-7651D767F2D8} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2281944 2019-06-04] (AVAST Software s.r.o. -> AVAST Software)
Task: {5C9FF4AE-0285-4E34-B7F9-5E0F0495616A} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [899056 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {774DC997-CFDF-40B6-A823-2690BCFC14D7} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2934152 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
Task: {7C4F03B9-827A-47F5-8A86-05CDAC8365BF} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {867FDD04-0B22-455E-883F-FD6CEC4A81FA} - System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-l.e.x.u.s@seznam.cz => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {880D057D-3DA7-40AD-A3C7-6D4B6F8710C9} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [899056 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {90773FDD-BFD9-43D5-B2AB-E1F3482A4D00} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A35F891D-F6F6-44EB-AFCC-C0872A18EE51} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A7FDE119-A0E6-4206-BEDF-BB373FFA650C} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648504 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D43AA7E4-DF3A-4783-B470-D6D71A069E56} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F467A6E6-FA1B-42E2-9597-1C32FF87AC79} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{cda22af2-8222-4449-9b4e-f6deb34e6377}: [DhcpNameServer] 192.168.0.1 0.0.0.0

Internet Explorer:
==================
HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-07-26] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-07-26] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-07-27] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-07-27] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-07-26] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-07-27] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)

Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-3666700429-4150128885-3738917540-1001 -> hxxp://www.google.com/

FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.15@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2019-06-02] [Legacy]
FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2013-09-25] (VideoLAN) [File not signed]
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2019-01-11] (NVIDIA Corporation -> NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2019-01-11] (NVIDIA Corporation -> NVIDIA Corporation)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2017-08-18] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems)

Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-07-27]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3117648 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2888272 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6844776 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [409224 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 DAX2API; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [163328 2016-01-27] () [File not signed]
R2 ibtsiva; C:\Windows\system32\ibtsiva.exe [541896 2018-05-10] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2303792 2019-06-03] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3175728 2019-06-03] (Electronic Arts, Inc. -> Electronic Arts)
R2 RealSenseDCM; C:\Program Files (x86)\Common Files\Intel\RSDCM\bin\win32\RealSenseDCM.exe [3663512 2015-10-15] (Intel(R) Software Development Products -> Intel(R) Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [267328 2017-05-16] (Synaptics Incorporated -> Synaptics Incorporated)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11814232 2019-06-05] (TeamViewer GmbH -> TeamViewer GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\NisSrv.exe [3851264 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MsMpEng.exe [118144 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [207448 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [262496 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [205848 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [61472 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [15488 2019-06-03] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [279120 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [167872 2019-06-06] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1030784 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [477584 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [225608 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [385880 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153328 2019-01-08] (Malwarebytes Corporation -> Malwarebytes)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [136728 2018-05-10] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 IntelDFUACPI; C:\Windows\System32\drivers\IntelDFUACPI.sys [36352 2015-10-15] (Intel(R) Software Development Products -> Intel(R) Corporation)
R3 IXCamera; C:\Windows\system32\DRIVERS\RealSenseDCM.sys [72704 2015-10-15] (Intel(R) Software Development Products -> Intel(R) Corporation)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [199768 2019-06-09] (Malwarebytes Corporation -> Malwarebytes)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [20936 2019-02-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [127136 2019-06-09] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [73912 2019-06-09] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [275232 2019-06-09] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [117344 2019-06-09] (Malwarebytes Corporation -> Malwarebytes)
R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [7708160 2018-09-15] (Microsoft Windows -> Intel Corporation)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_829f9f00d6329f1a\nvlddmkm.sys [20461984 2019-01-12] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-05-10] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-07-22] (Realtek Semiconductor Corp -> Realtek )
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [72768 2017-05-16] (Synaptics Incorporated -> Synaptics Incorporated)
R3 umbus; C:\Windows\System32\drivers\umbus.sys [56832 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [46472 2019-04-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [344544 2019-04-23] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [60896 2019-04-23] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-06-10 19:01 - 2019-06-10 19:01 - 000000000 ____D C:\Users\Lexus\Downloads\FRST-OlderVersion
2019-06-09 23:17 - 2019-06-09 23:17 - 000275232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2019-06-09 23:17 - 2019-06-09 23:17 - 000127136 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2019-06-09 23:17 - 2019-06-09 23:17 - 000117344 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2019-06-09 23:17 - 2019-06-09 23:17 - 000073912 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2019-06-09 23:16 - 2019-06-09 23:16 - 000000000 ____D C:\AdwCleaner
2019-06-09 23:15 - 2019-06-09 23:15 - 007025360 _____ (Malwarebytes) C:\Users\Lexus\Downloads\AdwCleaner.exe
2019-06-09 23:09 - 2019-06-09 23:09 - 000199768 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2019-06-09 23:09 - 2019-06-09 23:09 - 000000000 ____D C:\Users\Lexus\AppData\Local\mbamtray
2019-06-09 23:09 - 2019-06-09 23:09 - 000000000 ____D C:\Users\Lexus\AppData\Local\mbam
2019-06-09 23:09 - 2019-06-09 23:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-06-09 23:09 - 2019-06-09 23:09 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-06-09 23:09 - 2019-06-09 23:09 - 000000000 ____D C:\Program Files\Malwarebytes
2019-06-09 23:09 - 2019-02-01 12:20 - 000020936 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys
2019-06-09 23:09 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2019-06-09 23:08 - 2019-06-09 23:08 - 063720192 _____ (Malwarebytes ) C:\Users\Lexus\Downloads\mb3-setup-consumer-3.7.1.2839-1.0.586-1.0.10962.exe
2019-06-09 21:47 - 2019-06-09 21:51 - 664512036 _____ C:\Users\Lexus\Downloads\Ordinace v růžové zahradě 2 - 906. díl - Konečně ano.avi
2019-06-09 21:47 - 2019-06-09 21:49 - 314959650 _____ C:\Users\Lexus\Downloads\Ordinace v růžové zahradě 2 - 905. Díl - Svatbu si vzít nenechám!.avi
2019-06-09 21:38 - 2019-06-09 21:39 - 000041590 _____ C:\Users\Lexus\Downloads\Addition.txt
2019-06-09 21:37 - 2019-06-10 19:02 - 000025610 _____ C:\Users\Lexus\Downloads\FRST.txt
2019-06-09 21:36 - 2019-06-10 19:01 - 000000000 ____D C:\FRST
2019-06-09 21:35 - 2019-06-10 19:01 - 002418688 _____ (Farbar) C:\Users\Lexus\Downloads\FRST64.exe
2019-06-09 11:57 - 2019-06-09 15:01 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\.minecraft
2019-06-09 11:57 - 2019-06-09 11:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft Launcher
2019-06-09 11:57 - 2019-06-09 11:57 - 000000000 ____D C:\Program Files (x86)\Minecraft Launcher
2019-06-07 21:41 - 2019-06-07 21:43 - 394487624 _____ C:\Users\Lexus\Downloads\3697,Ulice,díl.3697 (11.6.2019) - díl. 3697 Serial.ČR.mp4
2019-06-06 20:53 - 2019-06-06 20:55 - 496998642 _____ C:\Users\Lexus\Downloads\3696,Ulice,díl.3696 (10.6.2019) - díl. 3696 Serial.ČR.avi
2019-06-05 21:16 - 2019-06-05 21:18 - 387126560 _____ C:\Users\Lexus\Downloads\3695,Ulice,díl.3695 (7.6.2019) - díl. 3695 Serial.ČR.avi
2019-06-05 20:01 - 2019-06-05 20:01 - 000893889 _____ C:\Users\Lexus\OneDrive\Documents\potvrzený dobropis.pdf
2019-06-05 19:06 - 2019-06-05 19:06 - 000824994 _____ C:\Users\Lexus\Downloads\ABB_3559-A52345_navod-k-instalaci.pdf
2019-06-04 20:59 - 2019-06-04 20:59 - 000022018 _____ C:\Users\Lexus\Downloads\[CzT]Cernobyl_Chernobyl_S01E01_1_23_45_CZ_WebRip_1080p_.torrent
2019-06-04 20:57 - 2019-06-04 21:06 - 1190277698 _____ C:\Users\Lexus\Downloads\Černobyl 3.díl. (2019) CZ-dabing HD.avi
2019-06-04 20:57 - 2019-06-04 21:02 - 529195138 _____ C:\Users\Lexus\Downloads\Černobyl 2.díl Please Remain Calm (2019) CZ-dabing.avi
2019-06-04 20:52 - 2019-06-04 20:56 - 484679396 _____ C:\Users\Lexus\Downloads\Černobyl 1.díl 1-23-45 (2019) CZ-dabing.avi
2019-06-04 20:50 - 2019-06-04 20:53 - 379395792 _____ C:\Users\Lexus\Downloads\3694,Ulice,díl.3694 (6.6.2019) - díl. 3694 Serial.ČR.avi
2019-06-04 20:50 - 2019-06-04 20:51 - 166618069 _____ C:\Users\Lexus\Downloads\Ulice 3693 Díl Datum 05.06.2019.mp4
2019-06-03 23:59 - 2019-06-03 23:59 - 000000000 ____D C:\Users\Lexus\AppData\LocalLow\SKS
2019-06-03 23:39 - 2019-06-03 23:39 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-06-03 23:33 - 2019-06-09 21:26 - 000000000 ____D C:\Program Files (x86)\Origin Games
2019-06-03 23:31 - 2019-06-03 23:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2019-06-03 23:31 - 2019-06-03 23:31 - 000000000 ____D C:\Program Files (x86)\Origin
2019-06-03 23:29 - 2019-06-03 23:29 - 000000000 ____D C:\ProgramData\Blizzard Entertainment
2019-06-03 23:28 - 2019-06-09 21:39 - 000000000 ____D C:\ProgramData\Origin
2019-06-03 23:28 - 2019-06-09 21:26 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\Origin
2019-06-03 23:28 - 2019-06-03 23:33 - 000000000 ____D C:\Users\Lexus\AppData\Local\Origin
2019-06-03 23:28 - 2019-06-03 23:28 - 000000000 ____D C:\Users\Lexus\.QtWebEngineProcess
2019-06-03 23:28 - 2019-06-03 23:28 - 000000000 ____D C:\Users\Lexus\.Origin
2019-06-03 23:27 - 2019-06-04 00:59 - 000000000 ____D C:\Users\Lexus\AppData\Local\Battle.net
2019-06-03 23:27 - 2019-06-03 23:29 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\Battle.net
2019-06-03 23:27 - 2019-06-03 23:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2019-06-03 23:26 - 2019-06-03 23:27 - 000000000 ____D C:\Program Files (x86)\Battle.net
2019-06-03 23:22 - 2019-06-03 23:27 - 000000000 ____D C:\Users\Lexus\AppData\Local\Blizzard Entertainment
2019-06-03 23:21 - 2019-06-03 23:21 - 000000000 ____D C:\Users\Lexus\AppData\Local\Steam
2019-06-03 23:21 - 2019-06-03 23:21 - 000000000 ____D C:\ProgramData\Battle.net
2019-06-03 23:19 - 2019-06-10 18:52 - 000000000 ____D C:\Program Files (x86)\Steam
2019-06-03 23:19 - 2019-06-03 23:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2019-06-03 23:16 - 2019-06-09 16:04 - 000002948 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-03 23:16 - 2019-06-09 16:04 - 000002948 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-03 23:16 - 2019-06-09 16:04 - 000002948 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-03 23:16 - 2019-06-09 16:04 - 000002948 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-03 23:16 - 2019-06-03 23:16 - 000000000 ____D C:\Windows\LastGood.Tmp
2019-06-03 23:08 - 2019-06-09 16:04 - 000002850 _____ C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-l.e.x.u.s@seznam.cz
2019-06-03 23:05 - 2019-06-09 15:01 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2019-06-03 23:05 - 2019-06-03 23:05 - 000002164 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2019-06-03 23:05 - 2019-06-03 23:05 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\AVAST Software
2019-06-03 23:05 - 2019-06-03 23:05 - 000000000 ____D C:\Users\Lexus\AppData\Local\AVAST Software
2019-06-03 23:04 - 2019-06-06 20:46 - 000167872 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-06-03 23:04 - 2019-06-03 23:05 - 000385880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-06-03 23:04 - 2019-06-03 23:05 - 000225608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 001030784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000477584 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000363400 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-06-03 23:04 - 2019-06-03 23:04 - 000279120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000262496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000207448 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000205848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000112312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000087944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000061472 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000037104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000015488 _____ (AVAST Software) C:\Windows\system32\Drivers\aswElam.sys
2019-06-03 23:04 - 2019-06-03 23:04 - 000003990 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-06-03 23:04 - 2019-06-03 23:04 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2019-06-03 23:04 - 2019-06-03 23:04 - 000000000 ____D C:\Program Files\AVAST Software
2019-06-03 23:03 - 2019-06-03 23:04 - 000000000 ____D C:\ProgramData\AVAST Software
2019-06-02 21:52 - 2019-06-03 22:56 - 000030959 _____ C:\Users\Lexus\OneDrive\Documents\neplatce vzor.xlsx
2019-06-02 21:50 - 2019-06-02 21:50 - 000094006 _____ C:\Users\Lexus\OneDrive\Documents\faktura pdf.pdf
2019-06-02 21:01 - 2019-06-02 21:50 - 000142336 _____ C:\Users\Lexus\OneDrive\Documents\faktura_neplatce_DPH_vzor.xls
2019-06-02 21:00 - 2019-06-02 21:00 - 000040960 _____ C:\Users\Lexus\Downloads\faktura_neplatce_DPH_vzor.xls
2019-06-02 19:24 - 2019-06-02 19:24 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\com.adobe.formscentral.FormsCentralForAcrobat
2019-06-02 19:15 - 2019-06-02 19:17 - 000002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat XI Pro.lnk
2019-06-02 19:15 - 2019-06-02 19:17 - 000002287 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe FormsCentral.lnk
2019-06-02 19:15 - 2019-06-02 19:17 - 000002126 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller XI.lnk
2019-06-02 19:10 - 2019-06-02 19:10 - 003122016 _____ (Alexander Roshal) C:\Users\Lexus\Downloads\winrar-x64-561.exe
2019-06-02 19:10 - 2019-06-02 19:10 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\WinRAR
2019-06-02 19:10 - 2019-06-02 19:10 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-02 19:10 - 2019-06-02 19:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-02 19:10 - 2019-06-02 19:10 - 000000000 ____D C:\Program Files\WinRAR
2019-06-02 18:52 - 2019-06-02 18:52 - 000102721 _____ C:\Users\Lexus\Downloads\Faktura-dodaci list - 3019807125.pdf
2019-06-02 07:30 - 2019-06-02 07:31 - 141964717 _____ C:\Users\Lexus\Downloads\Ulice 3692 - CELÝ DÍL.mp4
2019-06-02 07:27 - 2019-06-02 07:29 - 396540047 _____ C:\Users\Lexus\Downloads\Ulice 3691 Díl Datum 03.06.2019.mp4
2019-06-01 08:54 - 2019-06-01 08:54 - 000000000 ____D C:\ProgramData\HP
2019-05-31 17:56 - 2019-05-31 18:40 - 1043859968 _____ C:\Users\Lexus\Downloads\PS4UPDATE.PUP
2019-05-25 19:53 - 2019-05-25 19:53 - 415799158 _____ C:\Users\Lexus\Downloads\Ulice-3687-28.5.2019.avi
2019-05-25 19:52 - 2019-05-25 19:53 - 258977275 _____ C:\Users\Lexus\Downloads\Ulice 3686 27.5.2019.mp4
2019-05-25 19:28 - 2019-05-25 19:29 - 324349426 _____ C:\Users\Lexus\Downloads\PublicAgent.E10.Alexis.XXX.XViD-BTRG.avi
2019-05-23 22:56 - 2019-05-23 22:57 - 416877760 _____ C:\Users\Lexus\Downloads\Ulice-3685-24.5.2019.mp4
2019-05-21 20:59 - 2019-05-21 21:00 - 504676872 _____ C:\Users\Lexus\Downloads\3684,Ulice,díl.3684 (23.5.2019) - díl. 3684 Serial.ČR.avi
2019-05-21 20:58 - 2019-05-21 20:58 - 366082920 _____ C:\Users\Lexus\Downloads\Ulice 3683 Díl Datum 22.05.2019.mp4
2019-05-21 19:59 - 2019-05-21 20:08 - 000000000 ____D C:\Users\Lexus\AppData\Local\TeamViewer
2019-05-21 19:58 - 2019-06-09 23:17 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-05-21 19:58 - 2019-06-07 21:19 - 000001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 14.lnk
2019-05-21 19:58 - 2019-05-21 20:07 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\TeamViewer
2019-05-20 09:41 - 2019-05-20 09:41 - 167809234 _____ C:\Users\Lexus\Downloads\PORNO SEX jak udelat 1 ceske pornodite 1106162.mp4
2019-05-20 07:35 - 2019-05-20 07:36 - 511245465 _____ C:\Users\Lexus\Downloads\souloz-s-andilkem-,18-let-,xxx,sex,porno,domaci,mlada,teen,nevyholena,hairy,amaterka,oral,novinka,2013,cz,za-penize,za-prachy.wmv
2019-05-20 07:33 - 2019-05-20 07:33 - 006388617 _____ C:\Users\Lexus\Downloads\PORNO SEX cesky amateri mlada kraska a megaptak 1102517.mp4
2019-05-20 05:30 - 2019-05-20 05:32 - 1457436802 _____ C:\Users\Lexus\Downloads\S08E06 Game of Thrones CZ titulky.mkv
2019-05-17 23:01 - 2019-05-17 23:02 - 444503810 _____ C:\Users\Lexus\Downloads\Ulice 3682 Díl Datum 21.05.2019.mp4
2019-05-17 23:01 - 2019-05-17 23:02 - 439027741 _____ C:\Users\Lexus\Downloads\Ulice 3681 Díl Datum 20.05.2019.mp4
2019-05-16 20:29 - 2019-05-16 20:29 - 026807808 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 023438848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 020814848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 019022336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 009682744 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 007883776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 007879680 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 007687576 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 007645384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 006542464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 006440960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 006309040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 006072320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 005498880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 005040640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 004883968 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 004660736 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 004588544 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 003905536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 003743744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 003637248 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 003557888 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 003384832 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 003363856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 002780000 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 002708480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 002422272 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 002278240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 002189312 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001860096 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001760768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001701888 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001699496 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-05-16 20:29 - 2019-05-16 20:29 - 001641616 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001605120 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001484800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001470016 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 001395264 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001387520 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001342608 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-05-16 20:29 - 2019-05-16 20:29 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001309696 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001290752 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001253904 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 001225728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 001179680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 001062400 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 001054712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 001048376 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 001026792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000972288 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000912384 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000895792 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000865280 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000840192 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000807464 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000758896 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000703488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000684032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000680184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000660992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000586280 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000543744 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000525824 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000508432 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000495104 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000449376 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000444944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000387832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000376320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspbde40.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000254952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000240640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000223544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000217088 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2019-05-16 20:29 - 2019-05-16 20:29 - 000216064 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000212792 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000203272 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000202768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000201016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000198456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000192824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000181248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2019-05-16 20:29 - 2019-05-16 20:29 - 000179728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000177976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000163240 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000147736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000128000 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000124928 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000122368 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000121656 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2019-05-16 20:29 - 2019-05-16 20:29 - 000090640 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000080184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2019-05-16 20:29 - 2019-05-16 20:29 - 000079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2019-05-16 20:29 - 2019-05-16 20:29 - 000066688 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000055792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdll.dll
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2019-05-16 20:29 - 2019-05-16 20:29 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2019-05-15 22:47 - 2019-05-15 22:49 - 619704114 _____ C:\Users\Lexus\Downloads\Ordinace v růžové zahradě-2-899.Nemilý překvápko.mp4
2019-05-15 22:47 - 2019-05-15 22:49 - 574948224 _____ C:\Users\Lexus\Downloads\Ordinace v růžové zahradě-2-898.Slepé uličky.mp4
2019-05-15 22:46 - 2019-05-15 22:48 - 444756920 _____ C:\Users\Lexus\Downloads\3679,Ulice,díl.3679 (16.5.2019) - díl. 3679 Serial.ČR.avi
2019-05-15 22:46 - 2019-05-15 22:47 - 381200892 _____ C:\Users\Lexus\Downloads\3678,Ulice,díl.3678 (15.5.2019) - díl. 3678 Serial.ČR.avi
2019-05-13 21:27 - 2019-05-13 21:27 - 1046877102 _____ C:\Users\Lexus\Downloads\S08E05 Game of Thrones - Hry o trůny CZ titulky.avi
2019-05-12 20:30 - 2019-05-12 20:31 - 435612939 _____ C:\Users\Lexus\Downloads\Ulice 3677 Díl Datum 14.05.2019.mp4
2019-05-11 21:40 - 2019-05-11 21:58 - 1080085324 _____ C:\Users\Lexus\Downloads\Aquaman (2018) CZ dabing.avi
2019-05-11 10:33 - 2019-05-11 10:41 - 1216209352 _____ C:\Users\Lexus\Downloads\Noc-v-Roxbury (1998 CZdab) TOPkvalita.mkv

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-06-10 18:54 - 2019-01-11 21:29 - 000000000 ____D C:\ProgramData\NVIDIA
2019-06-10 18:51 - 2019-01-11 21:39 - 000000000 __SHD C:\Users\Lexus\IntelGraphicsProfiles
2019-06-10 00:18 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-06-09 23:23 - 2019-01-11 21:20 - 001606102 _____ C:\Windows\system32\PerfStringBackup.INI
2019-06-09 23:23 - 2018-09-15 19:32 - 000683600 _____ C:\Windows\system32\perfh005.dat
2019-06-09 23:23 - 2018-09-15 19:32 - 000137282 _____ C:\Windows\system32\perfc005.dat
2019-06-09 23:23 - 2018-09-15 09:31 - 000000000 ____D C:\Windows\INF
2019-06-09 23:17 - 2019-01-11 21:12 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-06-09 23:16 - 2019-01-11 21:28 - 000000000 ____D C:\Users\Lexus
2019-06-09 23:16 - 2018-09-15 08:09 - 000524288 _____ C:\Windows\system32\config\BBI
2019-06-09 23:09 - 2018-09-15 09:33 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-06-09 23:06 - 2019-01-11 21:12 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-06-09 16:04 - 2019-01-11 22:18 - 000003398 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 22:18 - 000003196 _____ C:\Windows\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 22:18 - 000003152 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 22:18 - 000002984 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 22:18 - 000002914 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 22:18 - 000002744 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-09 16:04 - 2019-01-11 21:35 - 000002862 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3666700429-4150128885-3738917540-1001
2019-06-09 11:34 - 2019-01-16 19:56 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\uTorrent
2019-06-09 11:34 - 2019-01-13 14:53 - 000000000 ____D C:\Users\Lexus\AppData\Local\CrashDumps
2019-06-08 23:13 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-06-08 23:13 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\AppReadiness
2019-06-08 22:57 - 2019-01-11 21:29 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-06-07 21:24 - 2019-01-11 21:33 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\Adobe
2019-06-05 18:53 - 2019-01-11 21:35 - 000000000 ___RD C:\Users\Lexus\OneDrive
2019-06-05 18:53 - 2019-01-11 21:28 - 000002365 _____ C:\Users\Lexus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-06-03 23:31 - 2019-01-11 22:16 - 000000000 ____D C:\Users\Lexus\AppData\Local\D3DSCache
2019-06-03 23:31 - 2019-01-11 21:33 - 000000000 ____D C:\ProgramData\Package Cache
2019-06-03 23:16 - 2019-01-11 21:29 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-06-03 23:16 - 2019-01-11 21:29 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-06-03 23:02 - 2019-01-11 21:12 - 005105128 _____ C:\Windows\system32\FNTCACHE.DAT
2019-06-02 19:26 - 2019-01-23 19:41 - 000000000 ____D C:\ProgramData\Adobe
2019-06-02 19:24 - 2019-01-23 19:47 - 000000000 ____D C:\Users\Lexus\AppData\LocalLow\Adobe
2019-06-02 19:24 - 2019-01-23 19:40 - 000000000 ____D C:\Users\Lexus\AppData\Local\Adobe
2019-06-02 19:16 - 2019-01-23 19:45 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2019-06-02 19:15 - 2019-01-23 19:43 - 000000000 ____D C:\Program Files (x86)\Adobe
2019-06-02 07:09 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\ServiceState
2019-06-01 22:29 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\NDF
2019-06-01 08:57 - 2019-01-11 21:35 - 000000000 ____D C:\Users\Lexus\AppData\Local\PlaceholderTileLogoFolder
2019-06-01 08:24 - 2019-01-11 21:33 - 000000000 ____D C:\Users\Lexus\AppData\Local\Packages
2019-05-22 15:45 - 2019-01-11 22:18 - 002785592 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2019-05-22 15:45 - 2019-01-11 22:18 - 002164536 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2019-05-22 15:45 - 2019-01-11 22:18 - 001316208 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll
2019-05-22 15:40 - 2019-01-11 22:18 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2019-05-19 22:01 - 2019-04-06 19:37 - 000000000 ____D C:\Users\Lexus\AppData\Roaming\vlc
2019-05-16 23:10 - 2018-09-15 09:33 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2019-05-16 23:10 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\bcastdvr
2019-05-16 20:30 - 2018-09-15 09:23 - 000000000 ____D C:\Windows\CbsTemp
2019-05-15 16:33 - 2019-01-11 21:40 - 000000000 ____D C:\Windows\system32\MRT
2019-05-15 16:31 - 2019-01-11 21:40 - 132445408 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-05-13 23:23 - 2018-09-15 09:36 - 000835688 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-05-13 23:23 - 2018-09-15 09:36 - 000179816 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2019-06-05 18:55 - 2019-06-05 18:55 - 000000000 _____ () C:\Users\Lexus\AppData\Local\oobelibMkey.log
2019-01-18 22:06 - 2019-01-18 22:06 - 000007602 _____ () C:\Users\Lexus\AppData\Local\Resmon.ResmonCfg

==================== FLock =======

2019-06-09 11:56 C:\System Volume Information

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================

Lexus_XL
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 16 pro 2017 00:03

Re: Prosím o kontrolu LOGU

#7 Příspěvek od Lexus_XL »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-06-2019
Ran by Lexus (10-06-2019 19:02:29)
Running from C:\Users\Lexus\Downloads
Windows 10 Home Version 1809 17763.503 (X64) (2019-01-11 19:16:01)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3666700429-4150128885-3738917540-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3666700429-4150128885-3738917540-503 - Limited - Disabled)
Guest (S-1-5-21-3666700429-4150128885-3738917540-501 - Limited - Disabled)
Lexus (S-1-5-21-3666700429-4150128885-3738917540-1001 - Administrator - Enabled) => C:\Users\Lexus
WDAGUtilityAccount (S-1-5-21-3666700429-4150128885-3738917540-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.22 - Adobe Systems)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Aktualizace NVIDIA 37.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 37.0.0.0 - NVIDIA Corporation) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.5.2378 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 417.71 - NVIDIA Corporation) Hidden
Dolby Audio X2 Windows API SDK (HKLM\...\{6A478BF2-F67F-4ABC-A7F1-B6B5BA862371}) (Version: 0.6.3.44 - Dolby Laboratories, Inc.)
Intel® RealSense™ Depth Camera Manager Beta (x86): dptf_com (HKLM-x32\...\{C982EA5E-7331-11E5-ABE7-2C44FD873B55}) (Version: 2.2.0.52404 - Intel Corporation) Hidden
Intel® RealSense™ Depth Camera Manager F200 Gold (x86): Intel® RealSense™ 3D camera IO module (HKLM-x32\...\{6C1D3280-7332-11E5-AD4E-2C44FD873B55}) (Version: 1.4.27.52404 - Intel Corporation) Hidden
Intel® RealSense™ Depth Camera Manager F200 Gold (x86): Intel® RealSense™ Depth Camera Manager Service (HKLM-x32\...\{6C1D3280-7332-11E5-B485-2C44FD873B55}) (Version: 1.4.27.52404 - Intel Corporation) Hidden
Malwarebytes verze 3.7.1.2839 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.7.1.2839 - Malwarebytes)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\OneDriveSetup.exe) (Version: 19.070.0410.0007 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23019 (HKLM-x32\...\{2883cce3-040d-45b1-a27a-07934a6d47ec}) (Version: 14.0.23019.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23019 (HKLM-x32\...\{5184c1f9-e1f4-47ff-82ee-92712c162393}) (Version: 14.0.23019.0 - Microsoft Corporation)
Minecraft Launcher (HKLM-x32\...\{E154B2C8-2F3E-4763-B3D5-E7D34AE39C6B}) (Version: 1.0.0.0 - Mojang)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.15 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.19.0.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.19.0.94 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 417.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 417.71 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 417.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 417.71 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.18.0907 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.18.0907 - NVIDIA Corporation)
Origin (HKLM-x32\...\Origin) (Version: 10.5.40.26928 - Electronic Arts, Inc.)
Ovládací panel NVIDIA 417.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 417.71 - NVIDIA Corporation) Hidden
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7780 - Realtek Semiconductor Corp.)
Správce hloubkové kamery Intel® RealSense™ F200 (HKLM-x32\...\ARP_for_prd_dcm_runtime_1.4.27.52404) (Version: 1.4.27.52404 - Intel Corporation)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.3.4730 - TeamViewer)
VLC media player 2.1.0 (HKLM\...\VLC media player) (Version: 2.1.0 - VideoLAN)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Wargaming.net Game Center (HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\Wargaming.net Game Center) (Version: 19.2.1.4855 - Wargaming.net)
WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)

Packages:
=========
Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.1520.1.0_x86__kgqvnymyfvs32 [2019-06-03] (king.com)
Cooking Fever -> C:\Program Files\WindowsApps\NORDCURRENT.COOKINGFEVER_4.0.0.1_x86__m9bz608c1b9ra [2019-03-20] (Nordcurrent)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_2.4.521.0_x64__rz1tebttyb220 [2019-03-15] (Dolby Laboratories)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2019-01-11] (Fitbit)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_95.1.531.0_x64__v10z8vjag6ke6 [2019-06-01] (HP Inc.)
Meteor Showers -> C:\Program Files\WindowsApps\Microsoft.MeteorShowers_1.0.0.0_neutral__8wekyb3d8bbwe [2019-01-11] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-13] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.30.10924.0_x64__8wekyb3d8bbwe [2019-04-03] (Microsoft Corporation) [MS Ad]
Microsoft Remote Desktop -> C:\Program Files\WindowsApps\Microsoft.RemoteDesktop_10.1.1098.1000_x86__8wekyb3d8bbwe [2019-05-22] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.3.4032.0_x86__8wekyb3d8bbwe [2019-04-10] (Microsoft Studios) [MS Ad]
Microsoft Wireless Display Adapter -> C:\Program Files\WindowsApps\Microsoft.SurfaceWirelessDisplayAdapter_3.4.137.1000_x64__8wekyb3d8bbwe [2019-06-07] (Microsoft Corporation)
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe [2019-02-13] (Microsoft Corporation) [MS Ad]
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_2.2.9.0_x64__nfy108tqq3p12 [2019-01-11] (Thumbmunkeys Ltd) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11629.20174.0_x64__8wekyb3d8bbwe [2019-05-30] (Microsoft Corporation) [MS Ad]
Snowy Mountains -> C:\Program Files\WindowsApps\Microsoft.SnowyMountains_1.0.0.0_neutral__8wekyb3d8bbwe [2019-01-11] (Microsoft Corporation)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0 [2019-06-05] (Spotify AB)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2210608 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxDTCM.dll [2018-05-07] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2019-01-11] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2012-09-23 20:44 - 2012-09-23 20:44 - 000010240 _____ () [File not signed] C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\cs_cz\acrotray.cze
2016-01-27 06:04 - 2016-01-27 06:04 - 000163328 _____ () [File not signed] C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
2012-09-23 20:44 - 2012-09-23 20:44 - 000010240 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2019-06-03 23:31 - 2019-06-03 23:31 - 001548288 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000395776 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2019-06-03 23:31 - 2019-06-03 23:31 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-09-15 09:31 - 2018-09-15 09:31 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Lexus\OneDrive\Pictures\1920x1080-164732942-sensual-wallpapers.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{03B1D89D-DB48-4380-88EB-C8C99FDF7772}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{4EFDDB65-83F9-4794-AC8A-A4876236979D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{CACC3ABE-801C-4621-B188-5074EA4421C8}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{7417D5B4-8843-4485-89F0-61D80CDCCE4A}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [{7D3B0664-E219-491C-99FA-05F648C685BB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{8BFED7C9-7E90-462C-BA65-72E4F7E5ECF3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{15AD47FF-A5F4-43BB-8356-C4A26DB0078C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{68E66B16-5F60-489E-BDDB-7372AAB14DBA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{E706911E-2A48-4A10-9EB5-7E2BB66ECDB6}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{916001DD-C079-4143-A22A-9865D17EACBC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{8608FAEB-C026-47F4-9294-A115A10D3758}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{15F89F14-0F0A-4732-8BCC-1C2EC3F3FEF0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{6ED94EB3-D177-4FFA-9ED9-7B292EA1B594}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForest.exe () [File not signed]
FirewallRules: [{A5997678-C39B-4C6B-9E8E-B59F7A792591}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForest.exe () [File not signed]
FirewallRules: [{200478EC-86E1-4CFE-AB01-D12D6FCA2D66}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForestVR.exe () [File not signed]
FirewallRules: [{B3826C35-0434-4EE8-A14B-469D80932C64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForestVR.exe () [File not signed]
FirewallRules: [TCP Query User{643CECC0-4783-46EB-A3B1-D94EEE9A6CE8}C:\users\lexus\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\lexus\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{3FBB1C00-453B-443C-A629-D6F2B0BAACBF}C:\users\lexus\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\lexus\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [{3D315687-6049-4526-8FAD-9BDBE3C3D44E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9AA9844D-4A91-4B3E-8492-272FCE87C507}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{E38BA434-121D-4672-AD26-788DFAC636BE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{33B4D736-7126-4760-86A6-B6C61AE36A74}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4C6FD195-17A6-4728-B089-01BFF51EC418}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2DC19BA2-0FDB-4309-96C8-0225A5203FE4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9820ACBD-6C7D-4F2F-B59B-C8AAC60A182A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{FA6F01EE-7D6A-4342-89E2-3E4C14E70566}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9078E202-D12E-425F-8F72-BE2E411EB30E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{3A8110FD-30AC-41A8-9A8C-A8EAB58268F5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{A67A2E72-C6D3-486F-8098-2FEDCECEDF80}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{9699E198-926D-4682-803D-089BA56F1234}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)

==================== Restore Points =========================

24-05-2019 23:35:28 Naplánovaný kontrolní bod
01-06-2019 08:36:21 Naplánovaný kontrolní bod
02-06-2019 19:15:06 Installed Adobe Acrobat XI Pro.
03-06-2019 23:31:34 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
09-06-2019 11:56:53 Installed Minecraft Launcher

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/09/2019 11:53:28 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program MicrosoftEdgeCP.exe verze 11.0.17763.1 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 2268

Čas spuštění: 01d51f08db0e2089

Čas ukončení: 13

Cesta k aplikaci: C:\Windows\System32\MicrosoftEdgeCP.exe

ID hlášení: 54307ce4-2ccd-4d96-bc7e-d12dc52a5b00

Úplný název balíčku s chybou: Microsoft.MicrosoftEdge_44.17763.1.0_neutral__8wekyb3d8bbwe

ID aplikace relativní podle balíčku s chybou: MicrosoftEdge

Typ zablokování: Unknown

Error: (06/09/2019 11:17:43 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\DESKTOP-J5MSFAM$ přes https://INTC-KeyId-5e73c89aa3e902b272b9 ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(140ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)

Error: (06/09/2019 11:34:45 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.17763.1, časové razítko: 0x1c1f7575
Kód výjimky: 0xc000041d
Posun chyby: 0x000060d7
ID chybujícího procesu: 0x37e4
Čas spuštění chybující aplikace: 0x01d51e867ad485d4
Cesta k chybující aplikaci: C:\Users\Lexus\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\Windows\System32\GDI32.dll
ID zprávy: f3700866-54f6-454c-ae41-6cf57a2b49e2
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/08/2019 11:05:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.17763.1, časové razítko: 0x1c1f7575
Kód výjimky: 0xc000041d
Posun chyby: 0x000060d7
ID chybujícího procesu: 0x2354
Čas spuštění chybující aplikace: 0x01d51e3de8049cd6
Cesta k chybující aplikaci: C:\Users\Lexus\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\Windows\System32\GDI32.dll
ID zprávy: 4a3bc709-58cd-4d9a-817b-0acdfef8d94d
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/08/2019 10:56:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.17763.1, časové razítko: 0x1c1f7575
Kód výjimky: 0xc000041d
Posun chyby: 0x000060d7
ID chybujícího procesu: 0x21ac
Čas spuštění chybující aplikace: 0x01d51e2a11366a2a
Cesta k chybující aplikaci: C:\Users\Lexus\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\Windows\System32\GDI32.dll
ID zprávy: 0fc5f202-8b98-40cf-b9cb-c340b8ba510f
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/05/2019 06:50:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: SettingSyncHost.exe, verze: 10.0.17763.404, časové razítko: 0x8a64310e
Název chybujícího modulu: SettingSyncHost.exe, verze: 10.0.17763.404, časové razítko: 0x8a64310e
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000281e2
ID chybujícího procesu: 0x3e50
Čas spuštění chybující aplikace: 0x01d51bbebbc1de6a
Cesta k chybující aplikaci: C:\Windows\system32\SettingSyncHost.exe
Cesta k chybujícímu modulu: C:\Windows\system32\SettingSyncHost.exe
ID zprávy: 9e0f8756-facf-4d71-a978-5a503ea70f14
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/04/2019 12:51:55 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.17763.1, časové razítko: 0x1c1f7575
Kód výjimky: 0xc000041d
Posun chyby: 0x000060d7
ID chybujícího procesu: 0x630
Čas spuštění chybující aplikace: 0x01d51a5ed2079b3c
Cesta k chybující aplikaci: C:\Users\Lexus\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\Windows\System32\GDI32.dll
ID zprávy: 12c93dcb-2663-4f42-b28b-4a82a786d788
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/03/2019 11:19:51 PM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe


System errors:
=============
Error: (06/10/2019 06:55:44 PM) (Source: Netwtw04) (EventID: 5010) (User: )
Description: Intel(R) Dual Band Wireless-AC 3165 : Síťový adaptér vrátil ovladači neplatnou hodnotu.
5010 - Driver DBG_ASSERT - instead of BSOD

Error: (06/10/2019 06:55:44 PM) (Source: Netwtw04) (EventID: 5010) (User: )
Description: Intel(R) Dual Band Wireless-AC 3165 : Síťový adaptér vrátil ovladači neplatnou hodnotu.
5010 - Driver DBG_ASSERT - instead of BSOD

Error: (06/10/2019 06:55:43 PM) (Source: Netwtw04) (EventID: 5010) (User: )
Description: Intel(R) Dual Band Wireless-AC 3165 : Síťový adaptér vrátil ovladači neplatnou hodnotu.
5010 - Driver DBG_ASSERT - instead of BSOD

Error: (06/10/2019 06:55:43 PM) (Source: Netwtw04) (EventID: 5010) (User: )
Description: Intel(R) Dual Band Wireless-AC 3165 : Síťový adaptér vrátil ovladači neplatnou hodnotu.
5010 - Driver DBG_ASSERT - instead of BSOD

Error: (06/10/2019 06:54:45 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.

Error: (06/10/2019 06:54:44 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.

Error: (06/10/2019 06:54:44 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.

Error: (06/10/2019 06:54:43 PM) (Source: TPM) (EventID: 27) (User: NT AUTHORITY)
Description: Inicializace čipu TPM (Trusted Platform Module) se nezdařila. Čip může být v režimu selhání. Pokud chcete povolit diagnostiku, kontaktujte jeho výrobce a předejte mu připojené informace.


Windows Defender:
===================================
Date: 2019-06-02 19:21:53.850
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Keygen
ID: 2147593794
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\adobe.snr.patch.v2.0-painter.exe
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Ochrana v reálném čase
Uživatel: DESKTOP-J5MSFAM\Lexus
Název procesu: C:\Windows\explorer.exe
Verze podpisu: AV: 1.293.2715.0, AS: 1.293.2715.0, NIS: 1.293.2715.0
Verze modulu: AM: 1.1.15900.4, NIS: 1.1.15900.4

Date: 2019-06-02 19:21:31.764
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Keygen
ID: 2147593794
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\adobe.snr.patch.v2.0-painter.exe
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Ochrana v reálném čase
Uživatel: DESKTOP-J5MSFAM\Lexus
Název procesu: C:\Windows\explorer.exe
Verze podpisu: AV: 1.293.2715.0, AS: 1.293.2715.0, NIS: 1.293.2715.0
Verze modulu: AM: 1.1.15900.4, NIS: 1.1.15900.4

Date: 2019-06-02 19:21:23.565
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Keygen
ID: 2147593794
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\adobe.snr.patch.v2.0-painter.exe
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Ochrana v reálném čase
Uživatel: DESKTOP-J5MSFAM\Lexus
Název procesu: C:\Windows\explorer.exe
Verze podpisu: AV: 1.293.2715.0, AS: 1.293.2715.0, NIS: 1.293.2715.0
Verze modulu: AM: 1.1.15900.4, NIS: 1.1.15900.4

Date: 2019-06-02 19:21:09.858
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Patch
ID: 2147649714
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Users\Lexus\OneDrive\Plocha\adobe\Adobe Acrobat XI Pro 11.0.22 FINAL + Crack [www.Tech-Tools.me]\Crack\Adobe CC 2015 Universal Patcher 1.5\adobe.snr.patch-painter.exe
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Ochrana v reálném čase
Uživatel: DESKTOP-J5MSFAM\Lexus
Název procesu: C:\Windows\System32\dllhost.exe
Verze podpisu: AV: 1.293.2715.0, AS: 1.293.2715.0, NIS: 1.293.2715.0
Verze modulu: AM: 1.1.15900.4, NIS: 1.1.15900.4

Date: 2019-06-02 19:20:58.366
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/Patch
ID: 2147649714
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Users\Lexus\OneDrive\Plocha\adobe\Adobe Acrobat XI Pro 11.0.22 FINAL + Crack [www.Tech-Tools.me]\Crack\Adobe CC 2015 Universal Patcher 1.5\adobe.snr.patch-painter.exe
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Ochrana v reálném čase
Uživatel: DESKTOP-J5MSFAM\Lexus
Název procesu: C:\Windows\System32\dllhost.exe
Verze podpisu: AV: 1.293.2715.0, AS: 1.293.2715.0, NIS: 1.293.2715.0
Verze modulu: AM: 1.1.15900.4, NIS: 1.1.15900.4

CodeIntegrity:
===================================

Date: 2019-06-09 23:17:08.734
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-09 23:17:08.694
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-09 23:17:08.639
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-09 23:17:08.597
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-09 23:17:08.557
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-09 23:17:08.541
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-09 18:24:44.438
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-09 18:24:44.435
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: LENOVO CDCN27WW 11/12/2015
Motherboard: LENOVO Allsparks 5A
Processor: Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz
Percentage of memory in use: 27%
Total physical RAM: 16243.78 MB
Available physical RAM: 11711.11 MB
Total Virtual: 18675.78 MB
Available Virtual: 13897 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.16 GB) (Free:294.86 GB) NTFS
Drive d: () (Fixed) (Total:931.51 GB) (Free:119.83 GB) NTFS

\\?\Volume{067a3757-90b6-4b0a-bbcd-75abca92d596}\ (Obnovení) (Fixed) (Total:0.49 GB) (Free:0.47 GB) NTFS
\\?\Volume{8a549496-bda5-4753-8cb8-2a921091f938}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 14E3007A)

Partition: GPT.

========================================================
Disk: 1 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu LOGU

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\adobe.snr.patch.v2.0-painter.exe
C:\Users\Lexus\OneDrive\Plocha\adobe\Adobe Acrobat XI Pro 11.0.22 FINAL + Crack
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\Run: [AdobeBridge] => [X]
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

EmptyTemp:
End
Uložte do C:\Users\Lexus\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Lexus_XL
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 16 pro 2017 00:03

Re: Prosím o kontrolu LOGU

#9 Příspěvek od Lexus_XL »

Fix result of Farbar Recovery Scan Tool (x64) Version: 10-06-2019
Ran by Lexus (10-06-2019 19:30:44) Run:1
Running from C:\Users\Lexus\Downloads
Loaded Profiles: Lexus (Available Profiles: Lexus)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\adobe.snr.patch.v2.0-painter.exe
C:\Users\Lexus\OneDrive\Plocha\adobe\Adobe Acrobat XI Pro 11.0.22 FINAL + Crack
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\...\Run: [AdobeBridge] => [X]
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => removed successfully
HKLM\Software\Classes\CLSID\{B298D29A-A6ED-11DE-BA8C-A68E55D89593} => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => removed successfully
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => removed successfully
HKLM\Software\Classes\CLSID\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => not found
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} => not found
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
HKLM\Software\Classes\CLSID\{474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => not found
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => not found
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D} => not found
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
HKLM\Software\Classes\CLSID\{474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => not found
"C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\adobe.snr.patch.v2.0-painter.exe" => not found
"C:\Users\Lexus\OneDrive\Plocha\adobe\Adobe Acrobat XI Pro 11.0.22 FINAL + Crack" => not found
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => removed successfully
"HKU\S-1-5-21-3666700429-4150128885-3738917540-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge" => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 7888896 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 85330512 B
Java, Flash, Steam htmlcache => 57066060 B
Windows/system/drivers => 1743311 B
Edge => 342782990 B
Chrome => 0 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 10718 B
LocalService => 0 B
NetworkService => 206308 B
NetworkService => 0 B
Lexus => 52985551 B

RecycleBin => 63212 B
EmptyTemp: => 522.7 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 19:31:45 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu LOGU

#10 Příspěvek od Rudy »

Smazáno. Log by již měl být OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Lexus_XL
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 16 pro 2017 00:03

Re: Prosím o kontrolu LOGU

#11 Příspěvek od Lexus_XL »

A co tam bylo za problém? Jinak díky moc.. :thumbsup:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu LOGU

#12 Příspěvek od Rudy »

Celkem žádný. Jen zbytečnosti.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět