Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu a pomoc s vyčištěním C Díky!

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
spok
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 09 led 2012 16:51

Prosím o kontrolu a pomoc s vyčištěním C Díky!

#1 Příspěvek od spok »

RSIT

Logfile of random's system information tool 1.10 (written by random/random)
Run by Uzivatel at 2019-10-29 20:55:04
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 6 GB (5%) free of 114 GB
Total RAM: 16341 MB (82% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:55:06, on 29.10.2019
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.19507)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe
C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe
C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
C:\Program Files\trend micro\Uzivatel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE07DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKCU\..\Run: [XperiaCompanionAgent] "C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe"
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [vidnotifier.exe] C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [GarminExpress] "C:\Program Files (x86)\Garmin\Express\express.exe" /minimized (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [GarminExpress] "C:\Program Files (x86)\Garmin\Express\express.exe" /minimized (User 'Default user')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba CCleaner Browser Update (ccleaner) (ccleaner) - Piriform Software - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe
O23 - Service: CCleaner Browser Elevation Service (CCleanerBrowserElevationService) - Piriform Software - C:\Program Files (x86)\CCleaner Browser\Application\77.1.1834.93\elevation_service.exe
O23 - Service: Služba CCleaner Browser Update (ccleanerm) (ccleanerm) - Piriform Software - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe
O23 - Service: Digital Wave Update Service (DigitalWave.Update.Service) - Digital Wave Ltd - C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\elevation_service.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IObit Uninstaller Service (IObitUnSvr) - IObit - C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Wireless Keyboard 850 Notification Service (WirelessKB850NotificationService) - Unknown owner - C:\Windows\system32\WirelessKB850NotificationService.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wondershare Application Framework Service (WsAppService) - Wondershare - C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppService.exe
O23 - Service: Wondershare Driver Install Service (WsDrvInst) - Wondershare - C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe
O23 - Service: Služba Xperia Companion (XperiaCompanionService) - Sony - C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe

--
End of file - 9092 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe"
"C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe"
"C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe"
"C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe"
C:\Windows\system32\EscSvc64.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\WirelessKB850NotificationService.exe
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe"
"C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe"
AvastUI.exe /nogui
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-a09d9f22-049c-4702-995d-585a3ec3a297 -SystemEventPortName:HostProcess-c3f87817-fa5f-437a-956a-f6e9cc827060 -IoCancelEventPortName:HostProcess-46ff793f-a5f9-4e2b-8ed0-6dc2bd953b18 -NonStateChangingEventPortName:HostProcess-b71c37a7-6a8c-41b2-ad86-56ad07d7179f -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:34433f8e-d6f8-48f5-bc35-4c64f74755d7 -DeviceGroupId:WpdFsGroup
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\CCleaner Browser\Update\1.5.21.0\CCleanerBrowserCrashHandler.exe"
"C:\Program Files (x86)\CCleaner Browser\Update\1.5.21.0\CCleanerBrowserCrashHandler64.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe" /srvupt
"C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" "-launchedbycsxs"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --flag-switches-begin --flag-switches-end
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=77.0.3865.120 --initial-client-data=0x3c,0x40,0x44,0x38,0x48,0x7fed865ff08,0x7fed865ff18,0x7fed865ff28
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=1668 --on-initialized-event-handle=12 --parent-handle=120 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --gpu-preferences=KAAAAAAAAADgAAAwAAAAAAAAYAAAAAAAEAAAAAAAAAAAAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --service-request-channel-token=1753462712774586166 --mojo-platform-channel-handle=1016 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --service-sandbox-type=network --service-request-channel-token=11047238831960260424 --mojo-platform-channel-handle=1376 /prefetch:8
taskeng.exe {EB68D542-FF12-430C-8F9F-D829EC5D8E0A}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --service-sandbox-type=audio --service-request-channel-token=13860377273536070766 --mojo-platform-channel-handle=2340 /prefetch:8
C:\Windows\system32\wbem\WmiApSrv.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --enable-auto-reload --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=11195942763182100298 --renderer-client-id=30 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2920 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --enable-auto-reload --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=12647186790732737014 --renderer-client-id=45 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3812 /prefetch:1
taskeng.exe {2D07A053-7CDF-4B90-A465-3DFB6715E12B}
"C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe" /slMode
"C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe" --type=renderer /slMode
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --enable-auto-reload --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=5160974530011794633 --renderer-client-id=46 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4312 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --enable-auto-reload --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4411952755171220314 --renderer-client-id=47 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3820 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --enable-auto-reload --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=3626482884858065947 --renderer-client-id=48 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2412 /prefetch:1

C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Uzivatel\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\EPSON L382 Series Update {8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9}.job - C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSRRE.EXE /EXE:"{8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9}" /F:"Update"

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-07-19 2478864]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2012-06-18 626552]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2016-01-29 1340192]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe [2012-04-26 2907240]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2019-10-10 268680]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"XperiaCompanionAgent"=C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [2018-05-29 2132320]
"CCleaner Smart Cleaning"=C:\Program Files\CCleaner\CCleaner64.exe [2019-10-15 24552064]
"vidnotifier.exe"=C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [2019-10-21 1814848]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2014-10-31 2072928]
"EEventManager"=C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2016-03-14 1092304]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"vidc.mjpg"=pvmjpgx40.dll
"MSVideo8"=VfWWDM32.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux1"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2019-10-29 20:42:22 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2019-10-29 18:10:09 ----D---- C:\ProgramData\DigitalWave.ApplicationUpdater_files
2019-10-29 18:09:56 ----D---- C:\Program Files (x86)\FreeCodecPack
2019-10-29 18:09:56 ----D---- C:\Program Files (x86)\DVDVideoSoft
2019-10-29 18:09:43 ----D---- C:\Users\Uzivatel\AppData\Roaming\DVDVideoSoft
2019-10-18 15:34:11 ----A---- C:\Windows\system32\sipnotify.exe
2019-10-10 13:46:52 ----A---- C:\Windows\system32\aswBoot.exe
2019-10-10 13:46:48 ----A---- C:\Windows\system32\drivers\aswStm.sys
2019-10-10 13:46:48 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2019-10-09 17:32:12 ----A---- C:\Windows\system32\ieUnatt.exe
2019-10-09 17:32:12 ----A---- C:\Windows\system32\ieetwproxystub.dll
2019-10-09 17:32:12 ----A---- C:\Windows\system32\ieetwcollector.exe
2019-10-09 17:32:11 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2019-10-09 17:32:11 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2019-10-09 17:32:11 ----A---- C:\Windows\SYSWOW64\inseng.dll
2019-10-09 17:32:11 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2019-10-09 17:32:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2019-10-09 17:32:11 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2019-10-09 17:32:10 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2019-10-09 17:32:10 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2019-10-09 17:32:10 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2019-10-09 17:32:10 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2019-10-09 17:32:10 ----A---- C:\Windows\system32\ie4uinit.exe
2019-10-09 17:32:09 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2019-10-09 17:32:09 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2019-10-09 17:32:09 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2019-10-09 17:32:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\jscript.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\ieui.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2019-10-09 17:32:08 ----A---- C:\Windows\system32\urlmon.dll
2019-10-09 17:32:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2019-10-09 17:32:08 ----A---- C:\Windows\system32\iedkcs32.dll
2019-10-09 17:32:08 ----A---- C:\Windows\system32\dxtrans.dll
2019-10-09 17:32:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2019-10-09 17:32:07 ----A---- C:\Windows\system32\msfeeds.dll
2019-10-09 17:32:07 ----A---- C:\Windows\system32\iesetup.dll
2019-10-09 17:32:06 ----A---- C:\Windows\SYSWOW64\wininet.dll
2019-10-09 17:32:06 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2019-10-09 17:32:06 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2019-10-09 17:32:06 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2019-10-09 17:32:06 ----A---- C:\Windows\system32\vbscript.dll
2019-10-09 17:32:06 ----A---- C:\Windows\system32\iertutil.dll
2019-10-09 17:32:05 ----A---- C:\Windows\system32\mshtmled.dll
2019-10-09 17:32:05 ----A---- C:\Windows\system32\ieui.dll
2019-10-09 17:32:05 ----A---- C:\Windows\system32\ieframe.dll
2019-10-09 17:32:05 ----A---- C:\Windows\system32\dxtmsft.dll
2019-10-09 17:32:04 ----A---- C:\Windows\system32\mshtmlmedia.dll
2019-10-09 17:32:03 ----A---- C:\Windows\system32\wininet.dll
2019-10-09 17:32:03 ----A---- C:\Windows\system32\webcheck.dll
2019-10-09 17:32:03 ----A---- C:\Windows\system32\jscript9.dll
2019-10-09 17:32:03 ----A---- C:\Windows\system32\jscript.dll
2019-10-09 17:32:02 ----A---- C:\Windows\system32\MshtmlDac.dll
2019-10-09 17:32:02 ----A---- C:\Windows\system32\mshtml.dll
2019-10-09 17:32:02 ----A---- C:\Windows\system32\jsproxy.dll
2019-10-09 17:32:00 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2019-10-09 17:32:00 ----A---- C:\Windows\SYSWOW64\msrating.dll
2019-10-09 17:32:00 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2019-10-09 17:32:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\mstscax.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\msrating.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\jscript9diag.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\inseng.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\iernonce.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\ieapfltr.dll
2019-10-09 17:31:59 ----A---- C:\Windows\SYSWOW64\occache.dll
2019-10-09 17:31:59 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2019-10-09 17:31:59 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2019-10-09 17:31:59 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\win32k.sys
2019-10-09 17:31:59 ----A---- C:\Windows\system32\werconcpl.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\umpo.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\rdpcorets.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\occache.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\EncDump.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\audiosrv.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\AudioSes.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\AUDIOKSE.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\AudioEng.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\WerFault.exe
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\wer.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\user32.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\schannel.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\msrd3x40.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\msltus40.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\DWWIN.EXE
2019-10-09 17:31:58 ----A---- C:\Windows\system32\WerFault.exe
2019-10-09 17:31:58 ----A---- C:\Windows\system32\wercplsupport.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\wer.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\user32.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\schannel.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\msv1_0.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\Faultrep.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\DWWIN.EXE
2019-10-09 17:31:58 ----A---- C:\Windows\system32\drivers\rdbss.sys
2019-10-09 17:31:58 ----A---- C:\Windows\system32\drivers\monitor.sys
2019-10-09 17:31:58 ----A---- C:\Windows\system32\ci.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\audiodg.exe
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\wow32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\werui.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\wermgr.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\werdiagcontroller.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\user.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\sscore.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\srclient.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\setup16.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\secur32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\instnm.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\credssp.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\certcli.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\wow64win.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\wow64cpu.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\wow64.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\winsrv.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\werui.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\wermgr.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\WerFaultSecure.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\werdiagcontroller.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\wdigest.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\TSpkg.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\sspisrv.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\sspicli.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\sscore.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\srvsvc.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\srcore.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\srclient.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\smss.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\setbcdlocale.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\secur32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\rstrui.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\rpchttp.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\rpcrt4.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\ntvdm64.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\ntoskrnl.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\ntdll.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\ncrypt.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\lsass.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\lsasrv.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\KernelBase.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\kernel32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\kerberos.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\hal.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\videoprt.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\srvnet.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\srv2.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\srv.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\processr.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\npfs.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\intelppm.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\appid.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\amdppm.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\amdk8.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\csrsrv.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\cryptbase.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\credssp.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\conhost.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\certcli.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\bcrypt.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\auditpol.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\appidsvc.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\appidapi.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\apisetschema.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\advapi32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\adtschema.dll
2019-10-09 17:31:56 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2019-10-09 17:31:56 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2019-10-09 17:31:56 ----A---- C:\Windows\system32\msobjs.dll
2019-10-09 17:31:56 ----A---- C:\Windows\system32\msaudite.dll
2019-10-05 21:29:45 ----D---- C:\Program Files (x86)\CCleaner Browser
2019-10-05 21:29:44 ----D---- C:\ProgramData\CCleaner Browser

======List of files/folders modified in the last 1 month======

2019-10-29 20:55:05 ----D---- C:\Program Files\trend micro
2019-10-29 20:47:25 ----D---- C:\Windows\Temp
2019-10-29 20:47:25 ----D---- C:\ProgramData\ProductData
2019-10-29 20:46:56 ----D---- C:\Windows\System32
2019-10-29 20:46:56 ----D---- C:\Windows\inf
2019-10-29 20:46:56 ----A---- C:\Windows\system32\PerfStringBackup.INI
2019-10-29 20:42:33 ----D---- C:\Windows\system32\config
2019-10-29 20:42:22 ----D---- C:\Windows\system32\drivers
2019-10-29 20:42:15 ----D---- C:\Program Files\CCleaner
2019-10-29 18:10:09 ----HD---- C:\ProgramData
2019-10-29 18:09:56 ----RD---- C:\Program Files (x86)
2019-10-29 18:09:56 ----D---- C:\Program Files (x86)\Common Files
2019-10-29 17:00:32 ----A---- C:\Users\Uzivatel\AppData\Roaming\POČÍTAČ.MTBF.txt
2019-10-28 11:17:44 ----SHD---- C:\System Volume Information
2019-10-27 16:08:03 ----SHD---- C:\Windows\Installer
2019-10-27 16:07:58 ----D---- C:\Windows\SysWOW64
2019-10-19 11:06:05 ----D---- C:\Windows\winsxs
2019-10-17 20:28:13 ----D---- C:\Windows\system32\Tasks
2019-10-17 20:27:59 ----D---- C:\Program Files (x86)\Internet Explorer
2019-10-10 15:22:35 ----D---- C:\Windows\Microsoft.NET
2019-10-10 15:17:44 ----RSD---- C:\Windows\assembly
2019-10-10 13:51:34 ----D---- C:\Windows\SYSWOW64\en-US
2019-10-10 13:51:34 ----D---- C:\Windows\SYSWOW64\cs-CZ
2019-10-10 13:51:34 ----D---- C:\Windows\system32\en-US
2019-10-10 13:51:34 ----D---- C:\Windows\system32\drivers\en-US
2019-10-10 13:51:34 ----D---- C:\Windows\system32\cs-CZ
2019-10-10 13:51:34 ----D---- C:\Windows\PolicyDefinitions
2019-10-10 13:51:34 ----D---- C:\Windows\ehome
2019-10-10 13:51:34 ----D---- C:\Windows\AppPatch
2019-10-10 13:51:34 ----D---- C:\Program Files\Internet Explorer
2019-10-10 13:51:33 ----D---- C:\Windows\system32\DriverStore
2019-10-10 13:51:33 ----D---- C:\Windows\system32\Boot
2019-10-10 13:49:15 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2019-10-10 13:48:33 ----D---- C:\Windows\system32\MRT
2019-10-10 13:46:02 ----D---- C:\Windows\debug
2019-10-10 13:45:47 ----AC---- C:\Windows\system32\MRT.exe
2019-10-09 17:29:22 ----D---- C:\Windows\system32\catroot2
2019-10-07 20:03:45 ----D---- C:\Program Files (x86)\Google
2019-10-06 09:49:38 ----D---- C:\Windows\rescache
2019-10-06 09:04:26 ----D---- C:\Windows
2019-10-05 21:23:30 ----D---- C:\Users\Uzivatel\AppData\Roaming\IObit
2019-10-05 21:02:15 ----D---- C:\ProgramData\Apple
2019-10-05 21:02:15 ----D---- C:\Program Files\Common Files

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswArDisk;aswArDisk; C:\Windows\system32\drivers\aswArDisk.sys [2019-10-10 37616]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2019-10-10 83792]
R0 iaStor;Intel RAID Controller; C:\Windows\system32\drivers\iaStor.sys [2012-06-18 568600]
R0 iaStorF;iaStorF; C:\Windows\system32\drivers\iaStorF.sys [2012-03-15 24496]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\drivers\iusb3hcs.sys [2012-06-18 16152]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-11-13 289120]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2018-01-01 213736]
R1 aswHdsKe;aswHdsKe; C:\Windows\system32\drivers\aswHdsKe.sys [2019-10-10 276952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2019-10-10 460448]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2018-06-29 516096]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2014-06-27 131856]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2019-10-10 171520]
R3 e1cexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver C; C:\Windows\system32\DRIVERS\e1c62x64.sys [2012-06-18 358576]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTDVHD64.sys [2012-04-26 3712360]
R3 IUProcessFilter;IUProcessFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IUProcessFilter.sys [2018-10-16 19312]
R3 IURegistryFilter;IURegistryFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IURegistryFilter.sys [2018-10-16 25488]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 MBAMSwissArmy;MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [2019-10-29 275232]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-05-25 60184]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-11-13 133816]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2012-05-25 188224]
S3 AF9035HB;AF9035 Hybrid Device; C:\Windows\System32\Drivers\AF9035HB.sys [2016-12-24 907904]
S3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x64; C:\Windows\system32\DRIVERS\Apfiltr.sys [2012-06-18 416592]
S3 AscFileControl;AscFileControl; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscFileControl.sys []
S3 AscFileFilter;AscFileFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscFileFilter.sys []
S3 AscRegistryFilter;AscRegistryFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscRegistryFilter.sys []
S3 aswArPot;aswArPot; C:\Windows\system32\drivers\aswArPot.sys [2019-10-10 204824]
S3 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdriver.sys [2019-10-10 274456]
S3 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsh.sys [2019-10-10 209552]
S3 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniv.sys [2019-10-10 65120]
S3 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2019-10-10 42736]
S3 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2019-10-10 110320]
S3 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2019-10-10 848432]
S3 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2019-10-10 236024]
S3 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2019-10-10 316528]
S3 atmeltpm;atmeltpm; C:\Windows\system32\drivers\atmeltpm64.sys [2012-05-25 19456]
S3 BCMTPM;BCMTPM; C:\Windows\system32\drivers\btpmwx64.sys [2012-05-25 32096]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2012-06-07 132648]
S3 btwrchid;btwrchid; C:\Windows\system32\drivers\btwrchid.sys [2012-06-07 21160]
S3 cpuz143;cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys []
S3 d554gps;Dell Wireless HSPA Mini-Card GPS Port; C:\Windows\system32\drivers\d554gps64.sys [2012-06-18 102440]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2019-07-09 135520]
S3 DIGITECH;DIGITECH; C:\Windows\system32\drivers\DIGITECH.sys [2011-06-08 25648]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 E1G60;Intel(R) PRO/1000 NDIS 6 – ovladač adaptéru; C:\Windows\system32\DRIVERS\E1G6032E.sys [2009-06-10 145792]
S3 ecnssndis; Mobile Broadband Driver; C:\Windows\System32\Drivers\wwuss64.sys [2012-06-18 26664]
S3 ecnssndisfltr; Mobile Broadband Driver Filter; C:\Windows\System32\Drivers\wwussf64.sys [2012-06-18 29736]
S3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver; C:\Windows\system32\drivers\FLxHCIc.sys [2012-03-02 221184]
S3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver; C:\Windows\system32\drivers\FLxHCIh.sys [2012-03-02 65536]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2011-04-15 69320]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2011-04-15 84808]
S3 ggflt;SOMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2018-03-14 16512]
S3 ggsomc;SOMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsomc.sys [2018-03-14 32384]
S3 HBtnKey;DELL Tablet PC Key Buttons HID Driver; C:\Windows\system32\drivers\HBtnKey.sys [2011-07-19 20424]
S3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\drivers\HECIx64.sys [2012-05-25 60184]
S3 CH341SER_A64;CH341SER_A64; C:\Windows\System32\Drivers\CH341S64.SYS [2015-01-25 59904]
S3 iaStorA;iaStorA; C:\Windows\system32\drivers\iaStorA.sys [2012-03-15 567216]
S3 iaStorS;iaStorS; C:\Windows\system32\drivers\iaStorS.sys [2012-06-15 639408]
S3 Impcd;Impcd; C:\Windows\system32\drivers\Impcd.sys [2012-07-04 158976]
S3 irstrtdv;Intel(R) Rapid Start Technology Driver; C:\Windows\system32\drivers\irstrtdv.sys [2011-06-16 26504]
S3 ISCT;Intel(R) Smart Connect Technology Device Driver; C:\Windows\system32\drivers\ISCTD64.sys [2012-05-25 44992]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\drivers\iusb3hub.sys [2012-06-18 356120]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\drivers\iusb3xhc.sys [2012-06-18 788760]
S3 libusb0;libusb-win32 - Kernel Driver 01/18/2012 1.2.6.0; C:\Windows\system32\DRIVERS\libusb0.sys [2017-03-14 56576]
S3 Mbm3CBus;Dell Wireless 5530 HSPA Mini-Card Device (WDM); C:\Windows\system32\drivers\Mbm3CBus.sys [2012-06-18 419400]
S3 Mbm3DevMt;Dell Wireless HSPA Mini-Card Device Management Driver (WDM); C:\Windows\system32\drivers\Mbm3DevMt.sys [2012-06-18 430664]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\drivers\nusb3hub.sys [2012-07-04 80384]
S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\drivers\nusb3xhc.sys [2012-04-20 177152]
S3 NvStUSB;NVIDIA Stereoscopic 3D USB driver; C:\Windows\system32\drivers\nvstusb.sys [2012-05-25 399168]
S3 NWADI;NWADI Bus Enumerator; C:\Windows\system32\drivers\NWADIenum.sys [2009-10-26 237568]
S3 nwdelgobi3kfilter;Dell Wireless Gobi 3000 USB Composite Device Filter Driver; C:\Windows\system32\drivers\nwdelgobi3kfilter.sys [2012-06-18 34304]
S3 NWDellPort;Dell Wireless Mobile Broadband Status Port Driver; C:\Windows\system32\drivers\nwdelser.sys [2012-06-18 222208]
S3 NWDellPort2;Dell Wireless Mobile Broadband Status2 Port Driver; C:\Windows\system32\drivers\nwdelser2.sys [2012-06-18 222208]
S3 nwdelserial;Dell Wireless Gobi 3000 USB Device for Legacy Serial Communication; C:\Windows\system32\drivers\nwdelserial.sys [2012-06-18 234112]
S3 O2MDFRDR;O2MDFRDR; C:\Windows\system32\drivers\O2MDFw7x64.sys [2012-06-18 72808]
S3 O2MDRRDR;O2MDRRDR; C:\Windows\system32\drivers\O2MDRw7x64.sys [2012-06-18 74984]
S3 O2SDJRDR;O2SDJRDR; C:\Windows\system32\drivers\o2sdjw7x64.sys [2012-06-18 84712]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 percsas2;percsas2; C:\Windows\system32\drivers\percsas2.sys [2012-06-15 53584]
S3 QCFilterdl;Dell Wireless 5600 (EV-DO-HSPA) Mobile Broadband Mini-Card Composite Device Filter Driver; C:\Windows\system32\drivers\qcfilterdl.sys [2012-05-10 8832]
S3 qcfilterdl2k;Dell Wireless 5620 (EV-DO-HSPA) Mobile Broadband Mini-Card Composite Device Filter; C:\Windows\system32\drivers\qcfilterdl2k.sys [2012-07-05 6400]
S3 qcombusdl;Gobi 2000 USB Composite Device Driver(413C-8186); C:\Windows\system32\drivers\qcombusdl.sys [2012-07-05 137800]
S3 qcusbserdl;Dell USB Device for Legacy Serial Communication; C:\Windows\system32\drivers\qcusbserdl.sys [2012-05-10 127104]
S3 qcusbserdl2k;Gobi 2000 USB Device for Legacy Serial Communication(413C-8186); C:\Windows\system32\drivers\qcusbserdl2k.sys [2012-07-05 230784]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 rimmptsk;rimmptsk; C:\Windows\system32\drivers\rimmpx64.sys [2012-05-10 67584]
S3 rimspci;rimspci; C:\Windows\system32\drivers\rimspe64.sys [2012-05-10 60416]
S3 rimsptsk;rimsptsk; C:\Windows\system32\drivers\rimspx64.sys [2012-05-10 55296]
S3 risdpcie;risdpcie; C:\Windows\system32\drivers\risdpe64.sys [2012-05-10 80896]
S3 rismxdp;rismxdp; C:\Windows\system32\drivers\rixdpx64.sys [2012-05-10 57856]
S3 rixdpcie;rixdpcie; C:\Windows\system32\drivers\rixdpe64.sys [2012-05-10 55808]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2012-06-07 222720]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\drivers\ser2pl64.sys [2011-04-15 97280]
S3 silabser;Silicon Labs CP210x USB to UART Bridge Driver; C:\Windows\system32\DRIVERS\silabser.sys [2016-10-27 111608]
S3 SNXPPAMD;SUNIX Parallel Port Driver; C:\Windows\system32\drivers\snxppamd.sys [2012-07-04 100728]
S3 SNXPSAMD;SUNIX Serial Port Driver; C:\Windows\system32\drivers\snxpsamd.sys [2012-07-04 97144]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2019-07-09 166752]
S3 ST_ACCEL;STMicroelectronics Accelerometer Service; C:\Windows\system32\drivers\ST_ACCEL.sys [2012-05-25 68208]
S3 ST7007;ST7007; C:\Windows\system32\drivers\ST7007.sys [2011-06-20 67696]
S3 stmtpm;stmtpm; C:\Windows\system32\drivers\stm_tpm.sys [2012-05-25 29184]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 tcm;tcm; C:\Windows\system32\drivers\tcm.sys [2012-07-04 17048]
S3 terahid;PCoIP(R) HID Minidriver; C:\Windows\system32\drivers\terahid.sys [2012-06-14 7680]
S3 terahidmapper;PCoIP(R) HID Minidriver Service; C:\Windows\system32\drivers\terahidmapper.sys [2012-06-14 7680]
S3 teramouse;PCoIP(R) Mouse Service; C:\Windows\system32\drivers\teramouse.sys [2012-06-14 11264]
S3 terapcoip;PCoIP(R) Device Service; C:\Windows\system32\drivers\terapcoip.sys [2012-06-14 37376]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2012-08-23 29696]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2013-10-02 29696]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2015-06-17 54784]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2019-09-10 88136]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2019-10-10 996880]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DigitalWave.Update.Service;Digital Wave Update Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [2019-10-21 441664]
R2 EpsonScanSvc;Epson Scanner Service; C:\Windows\system32\EscSvc64.exe [2017-03-10 145224]
R2 MBAMService;Malwarebytes Service; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [2019-06-26 6744288]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2016-01-29 23808]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-05-31 890216]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2016-01-29 374344]
S2 ccleaner;Služba CCleaner Browser Update (ccleaner); C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [2019-10-05 209128]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2018-03-26 107592]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2018-03-26 128584]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22 153752]
S2 IObitUnSvr;IObit Uninstaller Service; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [2018-09-25 153360]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [2019-10-10 6085360]
S3 CCleanerBrowserElevationService;CCleaner Browser Elevation Service; C:\Program Files (x86)\CCleaner Browser\Application\77.1.1834.93\elevation_service.exe [2019-09-25 984880]
S3 ccleanerm;Služba CCleaner Browser Update (ccleanerm); C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [2019-10-05 209128]
S3 GoogleChromeElevationService;Google Chrome Elevation Service; C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\elevation_service.exe [2019-10-09 1106416]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22 153752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2019-10-06 116224]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2015-06-10 155520]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2018-03-26 52832]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2018-03-26 136288]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2018-03-26 136288]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2018-03-26 136288]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

spok
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 09 led 2012 16:51

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

#3 Příspěvek od spok »

AWD nic nenašel.
Čištění a opravy není..
Tady je zpráva (exportovat shrnutí)

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 30.10.19
Čas skenování: 18:19
Logovací soubor: 79265cdf-fb39-11e9-94c4-782bcbaf1b4f.json

-Informace o softwaru-
Verze: 3.8.3.2965
Verze komponentů: 1.0.627
Aktualizovat verzi balíku komponent: 1.0.13115
Licence: Bezplatný

-Systémová informace-
OS: Windows 7 Service Pack 1
CPU: x64
Systém souborů: NTFS
Uživatel: PO\u00c4\u008c\u00c3\u008dTA\u00c4\u008c\Uzivatel

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Spuštění skenování: Ruční
Výsledek: Dokončeno
Skenované objekty: 232216
Zjištěné hrozby: 0
Hrozby umístěné do karantény: 0
Uplynulý čas: 1 min, 14 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)

Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)

WMI: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

#4 Příspěvek od Rudy »

Ano, toto je OK. Dejte logy FRST+Addition: https://forum.viry.cz/viewtopic.php?f=13&t=154679 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

spok
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 09 led 2012 16:51

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

#5 Příspěvek od spok »

Vyhodilo to dva logy:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02.08.2018
Ran by Uzivatel (01-11-2019 19:08:52)
Running from C:\Users\Uzivatel\Desktop
Windows 7 Professional Service Pack 1 (X64) (2015-07-14 06:06:27)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2828151382-1855654344-3190346470-500 - Administrator - Disabled)
Guest (S-1-5-21-2828151382-1855654344-3190346470-501 - Limited - Disabled)
Uzivatel (S-1-5-21-2828151382-1855654344-3190346470-1001 - Administrator - Enabled) => C:\Users\Uzivatel

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {768124D7-F5F7-6D2F-DDC2-94DFA4017C95}
AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Microsoft Security Essentials (Enabled - Up to date) {CDE0C533-D3CD-62A1-E772-AFADDF863628}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.021.20049 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9120 - Adobe Systems Inc.)
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
AirDroid 3.4.2.0 (HKLM-x32\...\AirDroid) (Version: 3.4.2.0 - Sand Studio)
Any Video Converter 6.3.2 (HKLM-x32\...\Any Video Converter) (Version: 6.3.2 - Anvsoft)
Ashampoo Burning Studio FREE (HKLM-x32\...\{91B33C97-91F8-FFB3-581B-BC952C901685}_is1) (Version: 1.14.5 - Ashampoo GmbH & Co. KG)
Autodesk Fusion 360 (HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.5519 - Autodesk, Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
Balíček ovladače systému Windows - Adafruit Industries LLC (usbser) Ports (02/25/2016 6.2.2600.0) (HKLM\...\1245A5961AC9D2C18ADF9EEC931D77E059B7F74E) (Version: 02/25/2016 6.2.2600.0 - Adafruit Industries LLC)
Balíček ovladače systému Windows - Arduino LLC (www.arduino.cc) Genuino USB Driver (01/07/2016 1.0.3.0) (HKLM\...\EC414D98E2986DCA1628FAED2163CD1C9A4ED7EC) (Version: 01/07/2016 1.0.3.0 - Arduino LLC (www.arduino.cc))
Balíček ovladače systému Windows - Arduino Srl (www.arduino.org) Arduino USB Driver (03/19/2015 1.1.1.0) (HKLM\...\69E507459B453D69A453EFC9E461FAE1E073408A) (Version: 03/19/2015 1.1.1.0 - Arduino Srl (www.arduino.org))
Balíček ovladače systému Windows - dji-innovations inc. (usbser) Ports (12/06/2012 5.1.2600.5512) (HKLM\...\F731C4A8B354FB9B7579C5D98402D2F988E8B95C) (Version: 12/06/2012 5.1.2600.5512 - dji-innovations inc.)
Balíček ovladače systému Windows - libusb-win32 (libusb0) libusb-win32 devices (04/21/2015 1.0.0.0) (HKLM\...\28E91B69CA377EB48D6E1B92C37F897036E8A818) (Version: 04/21/2015 1.0.0.0 - libusb-win32)
Balíček ovladače systému Windows - Linino (usbser) Ports (01/13/2014 1.0.0.0) (HKLM\...\A2C084AD4515675961A87E71B10E80E4FDCF7FAA) (Version: 01/13/2014 1.0.0.0 - Linino)
Balíček ovladače systému Windows - Silicon Laboratories Inc. (silabser) Ports (09/19/2016 6.7.4.261) (HKLM\...\9E2C239D42290B984A9E2B350A67AF8BC8BD11B9) (Version: 09/19/2016 6.7.4.261 - Silicon Laboratories Inc.)
Balíček ovladače systému Windows - Sony Mobile Communications (ggsomc) SOMCFlashDevice (12/06/2017 3.2.0.0) (HKLM\...\7AA77B236196DB9A6C04257060560ACDBB626F30) (Version: 12/06/2017 3.2.0.0 - Sony Mobile Communications)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Capture-A-ScreenShot (HKLM-x32\...\Capture-A-ScreenShot_is1) (Version: - PopDrops.com)
CCleaner (HKLM\...\CCleaner) (Version: 5.62 - Piriform)
Cura 15.04 (HKLM-x32\...\Cura_15.04) (Version: - )
Dazzle Video Capture DVC100 X64 Driver 1.07 (HKLM-x32\...\{631D71FD-237F-4D74-B090-88E66FBC5A10}) (Version: 1.07.0000 - Pinnacle)
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1211.101.114 - ALPS ELECTRIC CO., LTD.)
DJI Assistant 2 version V1.1.6 (HKLM-x32\...\{D939E096-78F1-4A32-A711-C1AD3F3D082A}_is1) (Version: V1.1.6 - DJI)
DJI driver version 2.02 (HKLM-x32\...\{EDFDE5EE-84C7-4936-804C-6563943E5754}_is1) (Version: 2.02 - DJI)
Epson Event Manager (HKLM-x32\...\{E244A764-EDD0-46B0-8689-661F6B28D9E5}) (Version: 3.10.0069 - Seiko Epson Corporation)
EPSON L382 Series Printer Uninstall (HKLM\...\EPSON L382 Series) (Version: - Seiko Epson Corporation)
Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation)
EPSON Scan OCR Component (HKLM-x32\...\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}) (Version: 3.00.04 - SEIKO EPSON Corp.)
Epson Software Updater (HKLM-x32\...\{60A3CB9F-4429-4C7A-AA97-77CC4FE10671}) (Version: 4.4.9 - Seiko Epson Corporation)
FastStone Image Viewer 5.3 (HKLM-x32\...\FastStone Image Viewer) (Version: 5.3 - FastStone Soft)
Free YouTube Download (HKLM-x32\...\Free YouTube Download_is1) (Version: 4.2.22.1018 - Digital Wave Ltd)
Fushicai VIDEO DVR (HKLM-x32\...\{989BAFE8-E777-43D7-9749-9810E0E9FF48}) (Version: 2013.5.6 - Fushicai)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.120 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.301 - Google LLC) Hidden
Image Composite Editor (HKLM\...\{92AB5708-1AAA-4B1B-A8D5-45CF3AD77519}) (Version: 2.0.3 - Microsoft Corporation)
IObit Uninstaller 8 (HKLM-x32\...\IObitUninstall) (Version: 8.1.0.13 - IObit)
K-Lite Codec Pack 10.9.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.5 - )
LibreOffice 4.4 Help Pack (Czech) (HKLM-x32\...\{287D0D9F-A64D-455C-88A8-93B8FC1D9A8A}) (Version: 4.4.0.3 - The Document Foundation)
LibreOffice 4.4.0.3 (HKLM-x32\...\{8BEE1CDD-F95D-4759-952D-6B38DF99D1F0}) (Version: 4.4.0.3 - The Document Foundation)
Malwarebytes verze 3.8.3.2965 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.8.3.2965 - Malwarebytes)
Microsoft .NET Framework 4.7.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{2C303EE0-A595-3543-A71A-931C7AC40EDE}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.9.218.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
NirSoft WebBrowserPassView (HKLM-x32\...\NirSoft WebBrowserPassView) (Version: - )
OpenOffice 4.1.3 (HKLM-x32\...\{7308600A-5231-459C-A3E2-A637F842CACA}) (Version: 4.13.9783 - Apache Software Foundation)
Ovládací panel NVIDIA 296.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 296.88 - NVIDIA Corporation) Hidden
Ovladače videa společnosti Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems)
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
Pinnacle Studio 18 (HKLM\...\{11FB47FB-B341-4FD8-A505-E4C0CC0536C1}) (Version: 18.0.0.234 - Corel Corporation)
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.0 - Power Software Ltd)
Příručky společnosti EPSON (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.54.0.0 - Seiko Epson Corporation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5910 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.52 - Piriform)
Služba Xperia Companion (HKLM\...\{15BAF400-C4AC-45CD-86D4-986DD7EBF14A}) (Version: 2.1.12.0 - Sony) Hidden
Sony Mobile Software Update Drivers (HKLM\...\{4872001F-F67C-4C54-BC92-281C6A165251}) (Version: 3.2.0.3 - Sony Mobile Communications)
Sony Mobile Update Engine (HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Update Engine) (Version: 2.18.11.201808101101 - Sony Mobile Communications Inc.)
Sony PC Companion 2.10.303 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.303 - Sony)
Total Commander (Remove or Repair) (HKLM-x32\...\Totalcmd) (Version: 8.51 - Ghisler Software GmbH)
Ultimaker Cura 3.3 (HKLM-x32\...\Ultimaker Cura 3.3) (Version: 3.3.1 - Ultimaker)
Videoder 1.0.9 (HKLM-x32\...\808fc302-3d01-59ce-8094-e0443a55877e) (Version: 1.0.9 - GlennioTech)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc)
Windows Driver Package - Arduino LLC (www.arduino.cc) Arduino USB Driver (11/24/2015 1.2.3.0) (HKLM\...\8B585560B248755A6C5A24D5C0F50FA998310883) (Version: 11/24/2015 1.2.3.0 - Arduino LLC (www.arduino.cc))
Windows Driver Package - wch.cn (CH341SER_A64) Ports (08/08/2014 3.4.2014.08) (HKLM\...\E46668F0267651C248944766291791B0DEF36F1D) (Version: 08/08/2014 3.4.2014.08 - wch.cn)
WinRAR 5.70 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)
Xperia Companion (HKLM-x32\...\{0785ee9f-59ca-46b1-861d-edbe859a85c9}) (Version: 2.1.12.0 - Sony)
Xperia Companion (HKLM-x32\...\{AF8E220D-5B8C-4F8C-B1D9-487D27E2202F}) (Version: 2.1.12.0 - Sony) Hidden
YoutubeDLG version 0.3.8 (HKLM-x32\...\{3C455028-FC99-4846-8E04-4FCD87D85613}_is1) (Version: 0.3.8 - Sotiris Papadopoulos)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2828151382-1855654344-3190346470-1001_Classes\CLSID\{1AC77AE9-9EC6-405A-9F9B-C06AB3C10B71}\InprocServer32 -> C:\Program Files\Microsoft Research\Image Composite Editor\ShellExtension.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2828151382-1855654344-3190346470-1001_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\d01d42bcd8a98c5ea527109039f3188b1d8e80bf\NPreview10.dll ()
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-10] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-10] (AVAST Software)
ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-01-29] (Microsoft Corporation)
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2018-07-21] (IObit)
ContextMenuHandlers1: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2014-06-27] (Power Software Ltd)
ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\Windows\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (Alexander Roshal)
ContextMenuHandlers2: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-01-29] (Microsoft Corporation)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-10] (AVAST Software)
ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-01-29] (Microsoft Corporation)
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2018-07-21] (IObit)
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2014-06-27] (Power Software Ltd)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2015-04-08] (Piriform Ltd)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2012-05-31] (NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-10] (AVAST Software)
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2018-07-21] (IObit)
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2014-06-27] (Power Software Ltd)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2015-04-08] (Piriform Ltd)
ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\Windows\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {068B010C-183E-44E3-AFB8-9761CF3FC55A} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-01-13] ()
Task: {0717A2AA-896E-4224-A219-D0E3D379FF95} - System32\Tasks\{06C861BF-E871-4D21-9DD6-C03A7601AB58} => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe
Task: {07582DFF-9E19-4B3E-9455-B42455540820} - System32\Tasks\{11549FC8-BBE9-4A91-B53F-0AB4ABD8309D} => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe
Task: {133F9E3A-3EED-45CF-A380-2552FFEE2AE4} - System32\Tasks\EPSON L382 Series Update {8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSRRE.EXE [2013-11-22] (SEIKO EPSON CORPORATION)
Task: {1D25E552-E9C1-4C75-88A1-8EF91CA3D851} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2019-09-19] (AVAST Software)
Task: {25333BD6-DC4E-4596-BC3D-9E002B1435D2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
Task: {2DCA2293-1B6D-4D5A-9038-56C75125B208} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2019-10-15] (Piriform Software Ltd)
Task: {2E493F48-EAF7-4654-A56D-3B8D69A7ABF7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
Task: {3037C374-4D41-49CC-B26D-1A3FE4709629} - System32\Tasks\{312F2DA1-1FC9-4D9F-A0B7-E108B0C39E8D} => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe
Task: {62812189-F1E7-4FFE-8916-0B13758A6374} - System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => C:\Windows\system32\sipnotify.exe [2019-10-11] (Microsoft Corporation)
Task: {85A1CCC1-D068-4364-916E-9A38E827C556} - System32\Tasks\Microsoft\Windows\End Of Support\Notify2 => C:\Windows\system32\sipnotify.exe [2019-10-11] (Microsoft Corporation)
Task: {8A2A4FF8-18E8-4950-9BD1-2EB9ED59E573} - System32\Tasks\{167D854D-735A-4BDC-BC6B-71E65C3BEC3A} => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe
Task: {92C956BE-57E1-465C-A23C-0B940284C441} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2019-10-15] (Piriform Ltd)
Task: {973F9F4E-4AA8-4544-A8EA-87A1C409686A} - System32\Tasks\{E65FD195-998E-4335-800D-9A33C903A363} => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe
Task: {B8DCFEA9-95A3-4A8B-93FA-CCB7A95656EA} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2019-09-10] (Adobe Systems)
Task: {E12BD694-CB62-4604-8A06-B517A57B3B15} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2019-10-10] (AVAST Software)
Task: {EABBDD2E-7A0A-4AEE-A26F-36B11B3619A8} - System32\Tasks\AdobeAAMUpdater-1.0-POČÍTAČ-Uzivatel => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04] (Adobe Systems Incorporated)
Task: {EB91511A-BBEC-409D-8C45-06AC23CB26A6} - System32\Tasks\Uninstaller_SkipUac_Uzivatel => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2018-10-17] (IObit)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\EPSON L382 Series Update {8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSRRE.EXE:/EXE:{8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9} /F:UpdateSYSTEMĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2019-10-10 13:46 - 2019-10-10 13:46 - 001186696 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll
2019-10-10 13:46 - 2019-10-10 13:46 - 000227208 _____ () C:\Program Files\AVAST Software\Avast\features_manager.dll
2019-10-10 13:46 - 2019-10-10 13:46 - 108869848 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2019-10-10 13:46 - 2019-10-10 13:46 - 002694872 _____ () C:\Program Files\AVAST Software\Avast\swiftshader\libglesv2.dll
2019-10-10 13:46 - 2019-10-10 13:46 - 000167128 _____ () C:\Program Files\AVAST Software\Avast\swiftshader\libegl.dll
2019-10-30 18:19 - 2019-10-31 17:58 - 002717624 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2019-10-15 18:46 - 2019-10-09 04:52 - 006907376 _____ () C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\libglesv2.dll
2019-10-15 18:46 - 2019-10-09 04:52 - 000381424 _____ () C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\libegl.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000178496 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000108008 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000024040 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000048104 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000042984 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\jansson.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000178496 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\zlib1.dll
2015-12-30 21:20 - 2014-10-31 16:37 - 001498112 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2015-12-30 21:20 - 2014-05-19 17:19 - 000137728 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2018-11-03 15:38 - 2018-05-02 17:42 - 000442128 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl
2018-11-03 15:38 - 2018-05-02 17:42 - 000210704 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl
2018-11-03 15:38 - 2018-05-02 17:42 - 000059664 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl
2012-03-09 16:26 - 2012-03-09 16:26 - 000100352 _____ () C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\zlib1.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2019-01-04 19:21 - 000000035 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Uzivatel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.255.255.20 - 10.255.255.10
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{FEAE9702-F83D-4823-889F-4AF5A3CBA551}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe
FirewallRules: [{DBD23320-5164-4D9D-BF8C-7B5EDAF991EB}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe
FirewallRules: [{C33A631E-9798-42F4-A442-48BE5323B2D9}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe
FirewallRules: [{B6D30602-DFF0-498A-AEC7-35EF34F1A3A4}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe
FirewallRules: [{A1C7176D-17CC-4179-8DED-BBD43A9C097D}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe
FirewallRules: [{79B70E29-2A23-4A86-9858-6EAF66770ADB}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe
FirewallRules: [{89467DD7-0E9D-42E7-8EE1-4E51064A2F72}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{06615D4A-EE1C-4BA1-8130-C51CF8834C31}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C7A73D5D-0B27-412F-B073-1475EDD67636}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E69BE422-55B2-4E87-BEE1-B42C0050DD13}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{46BB6255-B889-4E8F-ACC1-11016E48E96C}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [UDP Query User{1DEF217F-EBA0-4CC8-88B8-D614812AECE1}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [TCP Query User{0212A482-9A24-4017-9F6A-A26DAE86F124}C:\program files (x86)\dji product\dji assistant 2\assistant\root.exe] => (Block) C:\program files (x86)\dji product\dji assistant 2\assistant\root.exe
FirewallRules: [UDP Query User{C351654B-D093-4AF8-8366-7A1B2808AD92}C:\program files (x86)\dji product\dji assistant 2\assistant\root.exe] => (Block) C:\program files (x86)\dji product\dji assistant 2\assistant\root.exe
FirewallRules: [TCP Query User{FA75ADAA-B36A-4A0E-8E48-F3A74D2A64C2}C:\program files (x86)\dji product\dji assistant 2\assistant\visionstarter.exe] => (Allow) C:\program files (x86)\dji product\dji assistant 2\assistant\visionstarter.exe
FirewallRules: [UDP Query User{94D12459-CB90-4CBE-801A-33938325FA08}C:\program files (x86)\dji product\dji assistant 2\assistant\visionstarter.exe] => (Allow) C:\program files (x86)\dji product\dji assistant 2\assistant\visionstarter.exe
FirewallRules: [{4C7B4EF2-783D-434C-AA6F-6D0541FA4D84}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{6097E211-764F-4FFD-99EC-712C726896BB}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{3E47F593-689B-45A6-8DED-719C0BB60392}] => (Allow) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe
FirewallRules: [{E1C4EACA-3D8A-43FC-AECA-A6744BB16314}] => (Allow) C:\ProgramData\Sony Mobile\Update Engine\{1E926C0D-6437-475C-8E7F-99F4247CCDA1}\Sony Mobile Update Engine.exe
FirewallRules: [{C752DF48-F8E9-4685-9302-C2D3DFF1EBCA}] => (Allow) C:\ProgramData\Sony Mobile\Update Engine\{1E926C0D-6437-475C-8E7F-99F4247CCDA1}\Sony Mobile Update Engine.exe
FirewallRules: [{4D87F503-9F56-4CBB-8863-3D01FD3837BF}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{B36F48C9-6342-4580-88FB-675AC5481810}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{1B276404-8988-4586-8839-A86CE38FAAAF}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
FirewallRules: [{27E6DB0E-C78A-4187-A902-06E4979D33CA}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
FirewallRules: [TCP Query User{ADD6A774-5679-435F-8C44-F5A11C50CC05}C:\program files\ultimaker cura 3.3\cura.exe] => (Allow) C:\program files\ultimaker cura 3.3\cura.exe
FirewallRules: [UDP Query User{077590E5-386F-459C-9418-73911BFFD7CA}C:\program files\ultimaker cura 3.3\cura.exe] => (Allow) C:\program files\ultimaker cura 3.3\cura.exe
FirewallRules: [{1FD9D75D-7422-4253-9932-B10A9A0CC2D6}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

01-11-2019 18:05:14 Windows Update

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/29/2019 09:00:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MsiExec.exe, verze: 5.0.7601.24460, časové razítko: 0x5cd43e80
Název chybujícího modulu: QuickTime.qts_unloaded, verze: 0.0.0.0, časové razítko: 0x55c3a9ef
Kód výjimky: 0xc0000005
Posun chyby: 0x6ba3cce9
ID chybujícího procesu: 0x1c34
Čas spuštění chybující aplikace: 0x01d58e938f3fa517
Cesta k chybující aplikaci: C:\Windows\syswow64\MsiExec.exe
Cesta k chybujícímu modulu: QuickTime.qts
ID zprávy: cd8bac29-fa86-11e9-8385-782bcbaf1b4f

Error: (10/29/2019 08:44:11 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/15/2019 06:36:39 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/10/2019 01:55:05 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/10/2019 01:52:28 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/05/2019 11:05:17 PM) (Source: ESENT) (EventID: 454) (User: )
Description: taskhost (2000) WebCacheLocal: Při zotavení či obnovení databáze došlo k neočekávané chybě -501.

Error: (10/05/2019 11:05:17 PM) (Source: ESENT) (EventID: 465) (User: )
Description: taskhost (2000) WebCacheLocal: Při částečném obnovení byl zjištěn poškozený soubor protokolu C:\Users\Uzivatel\AppData\Local\Microsoft\Windows\WebCache\V01.log. Záznam s chybou kontrolního součtu je umístěn na pozici END. Data neodpovídající záznamům protokolu se poprvé vyskytla v sektoru 500 (0x000001F4). Soubor je poškozený a nelze jej použít.

Error: (10/05/2019 11:05:17 PM) (Source: ESENT) (EventID: 465) (User: )
Description: taskhost (2000) WebCacheLocal: Při částečném obnovení byl zjištěn poškozený soubor protokolu C:\Users\Uzivatel\AppData\Local\Microsoft\Windows\WebCache\V01.log. Záznam s chybou kontrolního součtu je umístěn na pozici END. Data neodpovídající záznamům protokolu se poprvé vyskytla v sektoru 500 (0x000001F4). Soubor je poškozený a nelze jej použít.


System errors:
=============
Error: (10/29/2019 06:10:09 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba Digital Wave Update Service je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (10/29/2019 04:58:30 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (10/29/2019 04:58:30 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (10/28/2019 11:17:44 AM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (10/28/2019 09:41:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (10/28/2019 09:41:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (10/28/2019 09:41:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (10/28/2019 09:41:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.


Windows Defender:
===================================
Date: 2014-07-31 05:30:51.192
Description:
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání:{F74994EE-6443-4737-AD02-11C9F1FC565C}
Typ prohledávání:Antispywarový program
Parametry prohledávání:Rychlé prohledávání
Uživatel:NT AUTHORITY\NETWORK SERVICE

CodeIntegrity:
===================================

Date: 2015-09-08 19:42:53.162
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system.

Date: 2015-09-08 19:42:53.137
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system.

Date: 2015-09-08 19:42:53.111
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe because the set of per-page image hashes could not be found on the system.

Date: 2015-09-08 19:42:53.084
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

Processor: Intel(R) Xeon(R) CPU E31270 @ 3.40GHz
Percentage of memory in use: 26%
Total physical RAM: 16341.02 MB
Available physical RAM: 12065.41 MB
Total Virtual: 32680.18 MB
Available Virtual: 26591.65 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:111.59 GB) (Free:10.25 GB) NTFS
Drive e: () (Fixed) (Total:1863.01 GB) (Free:805.79 GB) NTFS
Drive f: () (Fixed) (Total:465.75 GB) (Free:39.2 GB) NTFS

\\?\Volume{21a79c0b-29ee-11e5-a69a-806e6f6e6963}\ (System) (Fixed) (Total:0.2 GB) (Free:0.16 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: EEB3DC2A)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111.6 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: 6B4C4BE7)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 465.8 GB) (Disk ID: 045D58BA)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=0F Extended)

==================== End of Addition.txt ============================


Druhý:


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.08.2018
Ran by Uzivatel (administrator) on POČÍTAČ (01-11-2019 19:08:36)
Running from C:\Users\Uzivatel\Desktop
Loaded Profiles: Uzivatel (Available Profiles: Uzivatel)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe
(Sony) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe
(Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
(Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
(Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Sony) C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Adobe Systems, Incorporated) C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [626552 2012-06-18] (Alps Electric Co., Ltd.)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1340192 2016-01-29] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe [2907240 2012-04-26] (Realtek Semiconductor Corp.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-10-10] (AVAST Software)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2072928 2014-10-31] (Wondershare)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1092304 2016-03-14] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [2132320 2018-05-29] (Sony)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-15] (Piriform Ltd)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [1814848 2019-10-21] (Digital Wave Ltd)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-18\...\Run: [GarminExpress] => "C:\Program Files (x86)\Garmin\Express\express.exe" /minimized
HKU\S-1-5-18\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-15] (Piriform Ltd)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.255.255.20 10.255.255.10
Tcpip\..\Interfaces\{8D3DD345-AED1-4C5F-A2DF-FEB54F9F04B4}: [DhcpNameServer] 10.255.255.20 10.255.255.10

Internet Explorer:
==================
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=i ... ar=msnhome
SearchScopes: HKLM -> DefaultScope {5E9BA19F-E032-4A60-9A60-64552215D6C9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {5E9BA19F-E032-4A60-9A60-64552215D6C9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {EB117507-5E4C-40E1-B8D9-2945353E4AEB} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {EB117507-5E4C-40E1-B8D9-2945353E4AEB} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2828151382-1855654344-3190346470-1001 -> {CE3E38F5-B53D-4216-8A26-B4A2AC610792} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-07-19] (IObit)

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-07] (Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-07] (Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-16] (Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default [2019-11-01]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2019-10-29]
CHR Extension: (Adobe Acrobat) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-10-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]
CHR Extension: (Chrome Media Router) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-05]
CHR HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-10-10] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-10-10] (AVAST Software)
R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [441664 2019-10-21] (Digital Wave Ltd)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [145224 2017-03-10] (Seiko Epson Corporation)
S3 GoogleChromeElevationService; C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\elevation_service.exe [1106416 2019-10-09] (Google LLC)
S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [153360 2018-09-25] (IObit)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2016-01-29] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [374344 2016-01-29] (Microsoft Corporation)
S3 Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [155520 2015-06-10] (Avanquest Software) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WirelessKB850NotificationService; C:\Windows\system32\WirelessKB850NotificationService.exe [174256 2018-05-14] (Microsoft Corporation)
S3 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppService.exe [495840 2018-01-26] (Wondershare)
S3 WsDrvInst; C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe [120096 2018-01-16] (Wondershare)
R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2195968 2018-05-29] (Sony) [File not signed]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AF9035HB; C:\Windows\System32\Drivers\AF9035HB.sys [907904 2016-12-24] (ITE Technologies )
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37616 2019-10-10] (AVAST Software)
S3 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [204824 2019-10-10] (AVAST Software)
S3 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [274456 2019-10-10] (AVAST Software)
S3 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [209552 2019-10-10] (AVAST Software)
S3 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [65120 2019-10-10] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [276952 2019-10-10] (AVAST Software)
S3 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42736 2019-10-10] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [171520 2019-10-10] (AVAST Software)
S3 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [110320 2019-10-10] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [83792 2019-10-10] (AVAST Software)
S3 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [848432 2019-10-10] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [460448 2019-10-10] (AVAST Software)
S3 aswStm; C:\Windows\System32\drivers\aswStm.sys [236024 2019-10-10] (AVAST Software)
S3 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [316528 2019-10-10] (AVAST Software)
S3 atmeltpm; C:\Windows\system32\drivers\atmeltpm64.sys [19456 2012-05-25] (Atmel, Inc.)
S3 BCMTPM; C:\Windows\system32\drivers\btpmwx64.sys [32096 2012-05-25] (Broadcom Corp.)
S3 CH341SER_A64; C:\Windows\System32\Drivers\CH341S64.SYS [59904 2015-01-25] (www.winchiphead.com)
S3 d554gps; C:\Windows\system32\drivers\d554gps64.sys [102440 2012-06-18] (Ericsson AB)
S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [135520 2019-07-09] (Samsung Electronics Co., Ltd.)
S3 DIGITECH; C:\Windows\system32\drivers\DIGITECH.sys [25648 2011-06-08] (Copyright(c) Digitech Systems)
S3 ecnssndis; C:\Windows\System32\Drivers\wwuss64.sys [26664 2012-06-18] (Ericsson AB)
S3 ecnssndisfltr; C:\Windows\System32\Drivers\wwussf64.sys [29736 2012-06-18] (Ericsson AB)
S3 FLxHCIh; C:\Windows\system32\drivers\FLxHCIh.sys [65536 2012-03-02] (Fresco Logic)
S3 ggsomc; C:\Windows\System32\DRIVERS\ggsomc.sys [32384 2018-03-14] (Sony Mobile Communications)
S3 HBtnKey; C:\Windows\system32\drivers\HBtnKey.sys [20424 2011-07-19] (Dell Inc.)
R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [24496 2012-03-15] (Intel Corporation)
S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [639408 2012-06-15] (Intel Corporation)
R3 IntcAzAudAddService; C:\Windows\System32\drivers\RTDVHD64.sys [3712360 2012-04-26] (Realtek Semiconductor Corp.)
S3 irstrtdv; C:\Windows\system32\drivers\irstrtdv.sys [26504 2011-06-16] (Intel Corporation)
S3 ISCT; C:\Windows\system32\drivers\ISCTD64.sys [44992 2012-05-25] ()
R3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IUProcessFilter.sys [19312 2018-10-16] (IObit)
R3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IURegistryFilter.sys [25488 2018-10-16] (IObit)
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [56576 2017-03-14] (hxxp://libusb-win32.sourceforge.net)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [275232 2019-10-31] (Malwarebytes)
S3 Mbm3CBus; C:\Windows\system32\drivers\Mbm3CBus.sys [419400 2012-06-18] (MCCI Corporation)
S3 Mbm3DevMt; C:\Windows\system32\drivers\Mbm3DevMt.sys [430664 2012-06-18] (MCCI Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [289120 2015-11-13] (Microsoft Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133816 2015-11-13] (Microsoft Corporation)
S3 nwdelgobi3kfilter; C:\Windows\system32\drivers\nwdelgobi3kfilter.sys [34304 2012-06-18] (Novatel Wireless Inc)
S3 NWDellPort; C:\Windows\system32\drivers\nwdelser.sys [222208 2012-06-18] (Novatel Wireless Inc.)
S3 NWDellPort2; C:\Windows\system32\drivers\nwdelser2.sys [222208 2012-06-18] (Novatel Wireless Inc.)
S3 nwdelserial; C:\Windows\system32\drivers\nwdelserial.sys [234112 2012-06-18] (Novatel Wireless Inc.)
S3 percsas2; C:\Windows\system32\drivers\percsas2.sys [53584 2012-06-15] (LSI Corporation)
S3 QCFilterdl; C:\Windows\system32\drivers\qcfilterdl.sys [8832 2012-05-10] (QUALCOMM Incorporated)
S3 qcfilterdl2k; C:\Windows\system32\drivers\qcfilterdl2k.sys [6400 2012-07-05] (QUALCOMM Incorporated)
S3 qcombusdl; C:\Windows\system32\drivers\qcombusdl.sys [137800 2012-07-05] (MCCI)
S3 qcusbserdl; C:\Windows\system32\drivers\qcusbserdl.sys [127104 2012-05-10] (QUALCOMM Incorporated)
S3 qcusbserdl2k; C:\Windows\system32\drivers\qcusbserdl2k.sys [230784 2012-07-05] (QUALCOMM Incorporated)
S3 SNXPPAMD; C:\Windows\system32\drivers\snxppamd.sys [100728 2012-07-04] (SUNIX Co., Ltd.)
S3 SNXPSAMD; C:\Windows\system32\drivers\snxpsamd.sys [97144 2012-07-04] (SUNIX Co., Ltd.)
S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166752 2019-07-09] (Samsung Electronics Co., Ltd.)
S3 ST7007; C:\Windows\system32\drivers\ST7007.sys [67696 2011-06-20] (STMicroelectronics)
S3 stmtpm; C:\Windows\system32\drivers\stm_tpm.sys [29184 2012-05-25] (STMicroelectronics, INC)
S3 ST_ACCEL; C:\Windows\system32\drivers\ST_ACCEL.sys [68208 2012-05-25] (STMicroelectronics)
S3 tcm; C:\Windows\system32\drivers\tcm.sys [17048 2012-07-04] ()
S3 terahid; C:\Windows\system32\drivers\terahid.sys [7680 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 terahidmapper; C:\Windows\system32\drivers\terahidmapper.sys [7680 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 teramouse; C:\Windows\system32\drivers\teramouse.sys [11264 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 terapcoip; C:\Windows\system32\drivers\terapcoip.sys [37376 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Apple, Inc.) [File not signed]
S3 X86BDA; C:\Windows\System32\DRIVERS\OEMDrv.sys [268416 2011-06-08] ( )
S3 AscFileControl; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscFileControl.sys [X]
S3 AscFileFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscFileFilter.sys [X]
S3 AscRegistryFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscRegistryFilter.sys [X]
U3 aswbdisk; no ImagePath
U3 aswblog; no ImagePath
S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-01 19:07 - 2019-11-01 19:08 - 000037771 _____ C:\Users\Uzivatel\Desktop\Addition.txt
2019-11-01 19:07 - 2019-11-01 19:08 - 000019318 _____ C:\Users\Uzivatel\Desktop\FRST.txt
2019-10-31 17:59 - 2019-10-31 17:59 - 000275232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2019-10-30 18:19 - 2019-10-31 17:59 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2019-10-30 18:19 - 2019-10-30 18:19 - 000001878 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-10-30 18:19 - 2019-10-30 18:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-10-30 18:12 - 2019-10-30 18:12 - 066367928 _____ (Malwarebytes ) C:\Users\Uzivatel\Desktop\mb3-setup-37469.37469-3.8.3.2965-1.0.627-1.0.12633.exe
2019-10-29 18:10 - 2019-10-29 18:10 - 000001356 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2019-10-29 18:10 - 2019-10-29 18:10 - 000001323 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk
2019-10-29 18:10 - 2019-10-29 18:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2019-10-29 18:10 - 2019-10-29 18:10 - 000000000 ____D C:\ProgramData\DigitalWave.ApplicationUpdater_files
2019-10-29 18:09 - 2019-10-29 20:22 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\DVDVideoSoft
2019-10-29 18:09 - 2019-10-29 18:09 - 000000000 ____D C:\Program Files (x86)\FreeCodecPack
2019-10-29 18:09 - 2019-10-29 18:09 - 000000000 ____D C:\Program Files (x86)\DVDVideoSoft
2019-10-18 15:34 - 2019-10-11 03:22 - 000338944 _____ (Microsoft Corporation) C:\Windows\system32\sipnotify.exe
2019-10-10 13:46 - 2019-10-10 13:46 - 000355720 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-10-10 13:46 - 2019-10-10 13:46 - 000236024 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-10-10 13:46 - 2019-10-10 13:46 - 000171520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-10-09 17:32 - 2019-10-07 07:49 - 000390752 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-10-09 17:32 - 2019-10-07 06:57 - 000341896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2019-10-09 17:32 - 2019-10-06 05:12 - 025753088 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-10-09 17:32 - 2019-10-06 05:00 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-10-09 17:32 - 2019-10-06 04:49 - 002909184 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-10-09 17:32 - 2019-10-06 04:48 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-10-09 17:32 - 2019-10-06 04:47 - 000579584 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-10-09 17:32 - 2019-10-06 04:47 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-10-09 17:32 - 2019-10-06 04:47 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-10-09 17:32 - 2019-10-06 04:46 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-10-09 17:32 - 2019-10-06 04:41 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-10-09 17:32 - 2019-10-06 04:40 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-10-09 17:32 - 2019-10-06 04:38 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-10-09 17:32 - 2019-10-06 04:37 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-10-09 17:32 - 2019-10-06 04:37 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-10-09 17:32 - 2019-10-06 04:36 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-10-09 17:32 - 2019-10-06 04:36 - 000797696 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-10-09 17:32 - 2019-10-06 04:34 - 005500928 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-10-09 17:32 - 2019-10-06 04:32 - 020290048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-10-09 17:32 - 2019-10-06 04:31 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-10-09 17:32 - 2019-10-06 04:28 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-10-09 17:32 - 2019-10-06 04:23 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-10-09 17:32 - 2019-10-06 04:22 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-10-09 17:32 - 2019-10-06 04:22 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-10-09 17:32 - 2019-10-06 04:19 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-10-09 17:32 - 2019-10-06 04:19 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-10-09 17:32 - 2019-10-06 04:18 - 000496128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-10-09 17:32 - 2019-10-06 04:18 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2019-10-09 17:32 - 2019-10-06 04:17 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2019-10-09 17:32 - 2019-10-06 04:17 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-10-09 17:32 - 2019-10-06 04:16 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2019-10-09 17:32 - 2019-10-06 04:15 - 002302464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-10-09 17:32 - 2019-10-06 04:12 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2019-10-09 17:32 - 2019-10-06 04:12 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2019-10-09 17:32 - 2019-10-06 04:11 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2019-10-09 17:32 - 2019-10-06 04:10 - 000663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-10-09 17:32 - 2019-10-06 04:10 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-10-09 17:32 - 2019-10-06 04:10 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2019-10-09 17:32 - 2019-10-06 04:07 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-10-09 17:32 - 2019-10-06 04:05 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-10-09 17:32 - 2019-10-06 04:05 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-10-09 17:32 - 2019-10-06 04:03 - 002132992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-10-09 17:32 - 2019-10-06 04:03 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-10-09 17:32 - 2019-10-06 04:03 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2019-10-09 17:32 - 2019-10-06 04:00 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2019-10-09 17:32 - 2019-10-06 04:00 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2019-10-09 17:32 - 2019-10-06 03:59 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2019-10-09 17:32 - 2019-10-06 03:58 - 015413760 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-10-09 17:32 - 2019-10-06 03:57 - 004859904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-10-09 17:32 - 2019-10-06 03:57 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2019-10-09 17:32 - 2019-10-06 03:56 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2019-10-09 17:32 - 2019-10-06 03:56 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2019-10-09 17:32 - 2019-10-06 03:53 - 004112384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-10-09 17:32 - 2019-10-06 03:50 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2019-10-09 17:32 - 2019-10-06 03:49 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2019-10-09 17:32 - 2019-10-06 03:48 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2019-10-09 17:32 - 2019-10-06 03:48 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2019-10-09 17:32 - 2019-10-06 03:45 - 013808640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-10-09 17:32 - 2019-10-06 03:45 - 001566208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-10-09 17:32 - 2019-10-06 03:35 - 004387840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-10-09 17:32 - 2019-10-06 03:34 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-10-09 17:32 - 2019-10-06 03:32 - 001331712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-10-09 17:32 - 2019-10-06 03:30 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2019-10-09 17:32 - 2019-09-10 03:02 - 006135296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2019-10-09 17:32 - 2019-09-10 01:09 - 007082496 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-10-09 17:31 - 2019-10-06 05:00 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-10-09 17:31 - 2019-10-06 04:28 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2019-10-09 17:31 - 2019-10-06 04:17 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2019-10-09 17:31 - 2019-10-06 04:16 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-10-09 17:31 - 2019-10-06 03:55 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2019-10-09 17:31 - 2019-09-19 05:27 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2019-10-09 17:31 - 2019-09-17 03:32 - 004060896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2019-10-09 17:31 - 2019-09-17 03:32 - 003966688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2019-10-09 17:31 - 2019-09-17 03:32 - 000709856 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-10-09 17:31 - 2019-09-17 03:32 - 000627424 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-10-09 17:31 - 2019-09-17 03:31 - 005552864 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-10-09 17:31 - 2019-09-17 03:31 - 001319496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2019-10-09 17:31 - 2019-09-17 03:31 - 000263904 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-10-09 17:31 - 2019-09-17 03:31 - 000155360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-10-09 17:31 - 2019-09-17 03:31 - 000096992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-10-09 17:31 - 2019-09-17 03:30 - 001670784 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000834048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000555520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 001472512 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 001211392 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 001162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 001010176 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000733184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000408576 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:04 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2019-10-09 17:31 - 2019-09-17 03:03 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2019-10-09 17:31 - 2019-09-17 03:00 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2019-10-09 17:31 - 2019-09-17 03:00 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-10-09 17:31 - 2019-09-17 03:00 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2019-10-09 17:31 - 2019-09-17 02:59 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2019-10-09 17:31 - 2019-09-17 02:59 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2019-10-09 17:31 - 2019-09-17 02:59 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2019-10-09 17:31 - 2019-09-17 02:59 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2019-10-09 17:31 - 2019-09-17 02:59 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2019-10-09 17:31 - 2019-09-17 02:57 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2019-10-09 17:31 - 2019-09-17 02:57 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 02:57 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 02:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 02:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 02:56 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-10-09 17:31 - 2019-09-17 02:56 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2019-10-09 17:31 - 2019-09-17 02:55 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2019-10-09 17:31 - 2019-09-17 02:53 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2019-10-09 17:31 - 2019-09-17 02:53 - 000161280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-10-09 17:31 - 2019-09-17 02:52 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-10-09 17:31 - 2019-09-17 02:52 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-10-09 17:31 - 2019-09-17 02:52 - 000169984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2019-10-09 17:31 - 2019-09-17 02:52 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-10-09 17:31 - 2019-09-17 02:51 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2019-10-09 17:31 - 2019-09-17 01:13 - 000455392 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2019-10-09 17:31 - 2019-09-12 04:53 - 000442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2019-10-09 17:31 - 2019-09-12 04:52 - 000373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2019-10-09 17:31 - 2019-09-12 04:52 - 000195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2019-10-09 17:31 - 2019-09-12 04:44 - 000680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2019-10-09 17:31 - 2019-09-12 04:44 - 000499712 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2019-10-09 17:31 - 2019-09-12 04:44 - 000438784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2019-10-09 17:31 - 2019-09-12 04:44 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2019-10-09 17:31 - 2019-09-12 04:44 - 000284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2019-10-09 17:31 - 2019-09-12 04:24 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2019-10-09 17:31 - 2019-09-11 05:56 - 000353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-10-09 17:31 - 2019-09-11 05:56 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2019-10-09 17:31 - 2019-09-10 03:27 - 000383488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2019-10-09 17:31 - 2019-09-10 03:27 - 000320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2019-10-09 17:31 - 2019-09-10 03:27 - 000160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 001281536 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 000486912 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 000174080 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2019-10-09 17:31 - 2019-09-10 03:00 - 000361472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2019-10-09 17:31 - 2019-09-10 03:00 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2019-10-09 17:31 - 2019-09-10 03:00 - 000054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2019-10-09 17:31 - 2019-09-10 03:00 - 000028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2019-10-09 17:31 - 2019-09-10 03:00 - 000028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2019-10-09 17:31 - 2019-09-10 02:54 - 003231744 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-10-09 17:31 - 2019-09-10 02:53 - 000416256 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2019-10-09 17:31 - 2019-09-10 02:53 - 000152576 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2019-10-09 17:31 - 2019-09-10 02:53 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2019-10-09 17:31 - 2019-09-10 02:53 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2019-10-09 17:31 - 2019-09-10 02:52 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys
2019-10-09 17:31 - 2019-09-10 02:49 - 000317440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2019-10-09 17:31 - 2019-09-10 01:09 - 003187712 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2019-10-05 21:30 - 2019-10-05 21:30 - 000090002 _____ C:\Users\Uzivatel\Documents\cc_20191005_223002.reg

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-01 19:08 - 2017-03-04 23:56 - 000000000 ____D C:\FRST
2019-11-01 19:07 - 2018-11-01 21:07 - 000000911 _____ C:\Windows\Tasks\EPSON L382 Series Update {8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9}.job
2019-11-01 18:15 - 2015-07-15 21:51 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\Adobe
2019-11-01 18:12 - 2009-07-14 05:45 - 000030896 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-11-01 18:12 - 2009-07-14 05:45 - 000030896 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-10-31 17:01 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\rescache
2019-10-31 16:26 - 2018-11-03 15:38 - 000002866 _____ C:\Windows\System32\Tasks\Uninstaller_SkipUac_Uzivatel
2019-10-31 16:26 - 2018-11-01 21:07 - 000003978 _____ C:\Windows\System32\Tasks\EPSON L382 Series Update {8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9}
2019-10-31 16:26 - 2018-10-02 20:38 - 000003036 _____ C:\Windows\System32\Tasks\{11549FC8-BBE9-4A91-B53F-0AB4ABD8309D}
2019-10-31 16:26 - 2018-10-02 20:37 - 000003036 _____ C:\Windows\System32\Tasks\{167D854D-735A-4BDC-BC6B-71E65C3BEC3A}
2019-10-31 16:26 - 2018-10-02 20:37 - 000003036 _____ C:\Windows\System32\Tasks\{06C861BF-E871-4D21-9DD6-C03A7601AB58}
2019-10-31 16:26 - 2018-10-02 20:36 - 000003036 _____ C:\Windows\System32\Tasks\{E65FD195-998E-4335-800D-9A33C903A363}
2019-10-31 16:26 - 2018-10-02 20:36 - 000003036 _____ C:\Windows\System32\Tasks\{312F2DA1-1FC9-4D9F-A0B7-E108B0C39E8D}
2019-10-31 16:26 - 2018-08-14 15:51 - 000003870 _____ C:\Windows\System32\Tasks\CCleaner Update
2019-10-31 16:26 - 2018-08-14 15:51 - 000002794 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2019-10-31 16:26 - 2017-01-22 18:01 - 000003388 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-10-31 16:26 - 2017-01-22 18:01 - 000003260 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-10-31 16:26 - 2015-07-22 20:04 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2019-10-31 16:26 - 2015-07-16 20:55 - 000003506 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-POČÍTAČ-Uzivatel
2019-10-31 16:26 - 2015-02-08 13:40 - 000003688 _____ C:\Windows\System32\Tasks\klcp_update
2019-10-31 16:24 - 2018-08-14 15:53 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2019-10-30 18:19 - 2018-11-03 16:15 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-10-29 21:02 - 2017-04-20 14:11 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\Posta
2019-10-29 20:59 - 2018-03-29 18:08 - 000000000 ____D C:\ProgramData\Garmin
2019-10-29 20:59 - 2016-12-18 13:12 - 000000000 ____D C:\ProgramData\Package Cache
2019-10-29 20:59 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2019-10-29 20:55 - 2016-06-19 17:33 - 000000000 ____D C:\Program Files\trend micro
2019-10-29 20:47 - 2018-11-03 15:21 - 000000000 ____D C:\ProgramData\ProductData
2019-10-29 20:46 - 2014-07-31 01:14 - 000668542 _____ C:\Windows\system32\perfh005.dat
2019-10-29 20:46 - 2014-07-31 01:14 - 000141202 _____ C:\Windows\system32\perfc005.dat
2019-10-29 20:46 - 2009-07-14 06:13 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2019-10-29 20:42 - 2018-08-14 15:51 - 000000000 ____D C:\Program Files\CCleaner
2019-10-29 20:42 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-10-29 20:40 - 2018-08-14 15:51 - 000000877 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-10-29 17:25 - 2015-07-21 14:55 - 000023552 _____ C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2019-10-29 17:00 - 2015-09-23 15:09 - 000048033 _____ C:\Users\Uzivatel\AppData\Roaming\POČÍTAČ.MTBF.txt
2019-10-29 17:00 - 2015-07-15 15:08 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\Pinnacle
2019-10-29 17:00 - 2015-07-15 15:06 - 000000349 _____ C:\Users\Public\Documents\PCLECHAL.INI
2019-10-27 16:08 - 2017-12-19 19:53 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-10-21 20:34 - 2015-09-23 15:09 - 000000000 ____D C:\Users\Uzivatel\temp
2019-10-15 18:46 - 2017-01-22 18:03 - 000002241 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-10-15 18:46 - 2017-01-22 18:03 - 000002200 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-10-10 13:52 - 2009-07-14 05:45 - 005045192 _____ C:\Windows\system32\FNTCACHE.DAT
2019-10-10 13:51 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-10-10 13:49 - 2014-07-30 23:49 - 001557940 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2019-10-10 13:48 - 2014-07-30 21:08 - 000000000 ____D C:\Windows\system32\MRT
2019-10-10 13:47 - 2018-08-14 15:53 - 000848432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-10-10 13:47 - 2018-08-14 15:53 - 000460448 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-10-10 13:47 - 2018-08-14 15:53 - 000003910 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-10-10 13:46 - 2019-02-20 18:10 - 000276952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-10-10 13:46 - 2019-01-19 10:31 - 000274456 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-10-10 13:46 - 2019-01-17 16:09 - 000209552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-10-10 13:46 - 2019-01-17 16:09 - 000065120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-10-10 13:46 - 2019-01-17 16:09 - 000037616 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-10-10 13:46 - 2018-10-22 20:02 - 000042736 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-10-10 13:46 - 2018-08-14 15:53 - 000316528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-10-10 13:46 - 2018-08-14 15:53 - 000204824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-10-10 13:46 - 2018-08-14 15:53 - 000110320 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-10-10 13:46 - 2018-08-14 15:53 - 000083792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-10-10 13:45 - 2014-07-30 21:08 - 127230528 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-10-07 20:03 - 2015-02-08 12:12 - 000000000 ____D C:\Program Files (x86)\Google
2019-10-05 21:32 - 2017-04-26 20:59 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\CrashDumps
2019-10-05 21:28 - 2018-08-14 15:54 - 000002014 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2019-10-05 21:23 - 2018-11-03 15:21 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\IObit
2019-10-05 21:02 - 2015-09-10 17:18 - 000000000 ____D C:\ProgramData\Apple
2019-10-05 20:15 - 2019-06-30 21:15 - 000000000 _____ C:\Windows\system32\last.dump
2019-10-05 19:35 - 2017-05-08 15:13 - 000000000 ___RD C:\Users\Uzivatel\Documents\Scanned Documents

==================== Files in the root of some directories =======

2018-04-29 15:06 - 2018-04-29 15:06 - 000015704 _____ () C:\Users\Uzivatel\AppData\Roaming\.ptbt0
2015-07-29 17:55 - 2015-11-01 20:35 - 000000132 _____ () C:\Users\Uzivatel\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2016-07-27 12:03 - 2018-03-23 22:26 - 000000132 _____ () C:\Users\Uzivatel\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2015-09-23 15:09 - 2019-10-29 17:00 - 000048033 _____ () C:\Users\Uzivatel\AppData\Roaming\POČÍTAČ.MTBF.txt
2015-07-29 17:24 - 2015-07-29 17:24 - 000001480 _____ () C:\Users\Uzivatel\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2016-08-05 10:00 - 2017-03-04 21:35 - 000001480 _____ () C:\Users\Uzivatel\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2015-07-21 14:55 - 2019-10-29 17:25 - 000023552 _____ () C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2019-10-31 16:54

==================== End of FRST.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
Task: {2E493F48-EAF7-4654-A56D-3B8D69A7ABF7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
Task: {25333BD6-DC4E-4596-BC3D-9E002B1435D2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
FirewallRules: [{89467DD7-0E9D-42E7-8EE1-4E51064A2F72}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{06615D4A-EE1C-4BA1-8130-C51CF8834C31}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C7A73D5D-0B27-412F-B073-1475EDD67636}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E69BE422-55B2-4E87-BEE1-B42C0050DD13}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
U3 aswbdisk; no ImagePath
U3 aswblog; no ImagePath
S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X]
C:\Windows\System32\Tasks\{11549FC8-BBE9-4A91-B53F-0AB4ABD8309D}
C:\Windows\System32\Tasks\{167D854D-735A-4BDC-BC6B-71E65C3BEC3A}
C:\Windows\System32\Tasks\{06C861BF-E871-4D21-9DD6-C03A7601AB58}
C:\Windows\System32\Tasks\{E65FD195-998E-4335-800D-9A33C903A363}
C:\Windows\System32\Tasks\{312F2DA1-1FC9-4D9F-A0B7-E108B0C39E8D}
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

spok
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 09 led 2012 16:51

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

#7 Příspěvek od spok »

Udělal jsem podle popisu ale možnost fix to nenabídne.
Ani když dám scan. Zase to vyhodí dva logy a fixlist uložený na ploše nepoužije

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

#8 Příspěvek od Rudy »

spok píše:Udělal jsem podle popisu ale možnost fix to nenabídne.
Po spuštění FRST je tlačítko "Fix" vpravo. To stiskněte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

spok
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 09 led 2012 16:51

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

#9 Příspěvek od spok »

Už to jde. Asi jsem dělal něco blbě..

Fix result of Farbar Recovery Scan Tool (x64) Version: 01-11-2019
Ran by Uzivatel (03-11-2019 18:17:40) Run:2
Running from C:\Users\Uzivatel\Desktop
Loaded Profiles: Uzivatel (Available Profiles: Uzivatel)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
Task: {2E493F48-EAF7-4654-A56D-3B8D69A7ABF7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
Task: {25333BD6-DC4E-4596-BC3D-9E002B1435D2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
FirewallRules: [{89467DD7-0E9D-42E7-8EE1-4E51064A2F72}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{06615D4A-EE1C-4BA1-8130-C51CF8834C31}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C7A73D5D-0B27-412F-B073-1475EDD67636}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E69BE422-55B2-4E87-BEE1-B42C0050DD13}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
U3 aswbdisk; no ImagePath
U3 aswblog; no ImagePath
S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X]
C:\Windows\System32\Tasks\{11549FC8-BBE9-4A91-B53F-0AB4ABD8309D}
C:\Windows\System32\Tasks\{167D854D-735A-4BDC-BC6B-71E65C3BEC3A}
C:\Windows\System32\Tasks\{06C861BF-E871-4D21-9DD6-C03A7601AB58}
C:\Windows\System32\Tasks\{E65FD195-998E-4335-800D-9A33C903A363}
C:\Windows\System32\Tasks\{312F2DA1-1FC9-4D9F-A0B7-E108B0C39E8D}
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2E493F48-EAF7-4654-A56D-3B8D69A7ABF7}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2E493F48-EAF7-4654-A56D-3B8D69A7ABF7}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{25333BD6-DC4E-4596-BC3D-9E002B1435D2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{25333BD6-DC4E-4596-BC3D-9E002B1435D2}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{89467DD7-0E9D-42E7-8EE1-4E51064A2F72}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{06615D4A-EE1C-4BA1-8130-C51CF8834C31}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C7A73D5D-0B27-412F-B073-1475EDD67636}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E69BE422-55B2-4E87-BEE1-B42C0050DD13}" => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\System\CurrentControlSet\Services\aswbdisk => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\aswblog => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\cpuz143 => removed successfully
cpuz143 => service removed successfully
C:\Windows\System32\Tasks\{11549FC8-BBE9-4A91-B53F-0AB4ABD8309D} => moved successfully
C:\Windows\System32\Tasks\{167D854D-735A-4BDC-BC6B-71E65C3BEC3A} => moved successfully
C:\Windows\System32\Tasks\{06C861BF-E871-4D21-9DD6-C03A7601AB58} => moved successfully
C:\Windows\System32\Tasks\{E65FD195-998E-4335-800D-9A33C903A363} => moved successfully
C:\Windows\System32\Tasks\{312F2DA1-1FC9-4D9F-A0B7-E108B0C39E8D} => moved successfully
"C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore" => not found
C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 27250504 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 15418747 B
Edge => 0 B
Chrome => 332759641 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 0 B
systemprofile32 => 128 B
LocalService => 128 B
NetworkService => 86770 B
Uzivatel => 2810488885 B

RecycleBin => 339535539 B
EmptyTemp: => 3.3 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 03-11-2019 18:19:38)


Result of scheduled keys to remove after reboot:

HKLM\System\CurrentControlSet\Services\aswbdisk => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\aswblog => could not remove, key could be protected

==== End of Fixlog 18:19:38 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

#10 Příspěvek od Rudy »

Smazáno. Log by již měl být OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

spok
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 09 led 2012 16:51

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

#11 Příspěvek od spok »

Děkuji.
Pošlu něco na pivo :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

#12 Příspěvek od Rudy »

Nemáte zač a my děkujeme za příspěvek! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno