Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu. Děkuji.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
roman7
Návštěvník
Návštěvník
Příspěvky: 331
Registrován: 25 bře 2008 23:09

Prosím o kontrolu logu. Děkuji.

#1 Příspěvek od roman7 »

Prosím o kontrolu logu. Poslední dobou mi nějak často zamrzá pc. Děkuji.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-03-2022
Ran by Roman (administrator) on DESKTOP-5C2V1IG (01-04-2022 20:00:57)
Running from C:\Users\Roman\Desktop
Loaded Profiles: Roman
Platform: Microsoft Windows 10 Pro Version 21H1 19043.1586 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AsDLNAServerReal.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler64.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvLaunch.exe
(C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
(C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
(C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe
(C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe ->) (ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(DriverStore\FileRepository\u0366969.inf_amd64_08be8e6c39509940\B367342\atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366969.inf_amd64_08be8e6c39509940\B367342\atieclxx.exe
(explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366969.inf_amd64_08be8e6c39509940\B367342\atiesrxx.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
(services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
(services.exe ->) (ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(svchost.exe ->) () [File not signed] C:\Windows\DAODx.exe
(svchost.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe
(svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AssistTools\WiFi GO! Server.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2202.10603.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.21102.11411.0_x64__8wekyb3d8bbwe\Music.UI.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\PrintIsolationHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1525_none_7e00daaa7c97a563\TiWorker.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [157464 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8483032 2015-05-28] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [357944 2022-02-08] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2013-01-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
HKLM-x32\...\Run: [Sovos] => C:\Program Files (x86)\Canyon CND-SGM14RGB Gaming Mouse\OemDrv.exe [2450944 2019-08-22] () [File not signed]
HKU\S-1-5-21-128406778-2638418637-827040753-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35888256 2022-03-10] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-128406778-2638418637-827040753-1001\...\Run: [Opera Browser Assistant] => C:\Users\Roman\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4105424 2021-10-14] (Opera Software AS -> Opera Software)
HKLM\...\Windows x64\Print Processors\us005PC: C:\Windows\System32\spool\prtprocs\x64\us005pc.dll [43520 2014-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Windows x64\Print Processors\us015PC: C:\Windows\System32\spool\prtprocs\x64\us015pc.dll [52088 2019-08-26] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\WINDOWS\system32\pxcpmL.dll [2044248 2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
HKLM\...\Print\Monitors\us005 Langmon: C:\WINDOWS\system32\us005lm.dll [22528 2014-11-25] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\us008 Langmon: us008lm.dll
HKLM\...\Print\Monitors\us015 Langmon: C:\WINDOWS\system32\us015lm.dll [31096 2019-08-26] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\99.0.15283.83\Installer\chrmstp.exe [2022-04-01] (Avast Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0A802BEC-32FB-4C1D-9F22-03BE382FE27D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {29DA0816-81C9-471B-B11C-A382DB685E63} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4992280 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
Task: {2DC55ED9-E11A-48A6-BE54-96BB451D7394} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2296088 2022-03-07] (Avast Software s.r.o. -> Avast Software)
Task: {34D15DFC-7C17-4CD1-969F-EBB632ABF633} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-03-10] (Piriform Software Ltd -> Piriform)
Task: {3B074D41-A1F4-4C1C-B0FF-04BFC6D359FC} - System32\Tasks\ASUS\RunDAOD => C:\WINDOWS\DAODx.exe [32768 2009-03-30] () [File not signed]
Task: {4D5D36A4-D2A0-470A-82EC-CA8EDB93874C} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-03] (Avast Software s.r.o. -> AVAST Software)
Task: {5E691FD7-12E9-45E7-8BD2-A13F13ED35F2} - System32\Tasks\ASUS\Easy Update => C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe [1426232 2013-10-18] (ASUSTeK Computer Inc. -> )
Task: {5E7CC867-948E-4CC9-9356-70B5A71AA350} - System32\Tasks\ASUS\ASUS Network iControl Help Execute => C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\NetSvcHelp\NetSvcHelpEntry.exe [328504 2013-02-07] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {620F3A9E-26F5-4252-B620-337E96F890AF} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {7EFF5572-97C2-4071-9D31-88D9787A746D} - System32\Tasks\Opera scheduled Autoupdate 1572383546 => C:\Users\Roman\AppData\Local\Programs\Opera\launcher.exe [2470608 2022-03-16] (Opera Software AS -> Opera Software)
Task: {87A832AC-6F30-438A-81E6-D9F408CBE4AC} - System32\Tasks\CCleanerSkipUAC - Roman => C:\Program Files\CCleaner\CCleaner.exe [30053504 2022-03-10] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {940AADAA-E746-451D-AD13-BC58B7A07E80} - System32\Tasks\ASUS\ASUS WiFi GO! Server Execute => C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AssistTools\WiFi GO! Server.exe [967480 2013-08-26] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {9873A753-B7ED-4366-B84D-C804201D9371} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr.exe [90112 2011-09-09] () [File not signed]
Task: {98F70D21-6544-4B36-A021-B3C5A4E31B1D} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1907712 2021-10-20] () [File not signed]
Task: {9AC89552-E14B-4697-A121-B2AB7A76628A} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-03] (Avast Software s.r.o. -> AVAST Software)
Task: {A9AB8724-AA03-48B0-80A3-EB3F043D51E9} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2724952 2022-03-21] (Avast Software s.r.o. -> AVAST Software)
Task: {A9BF9436-3228-47F8-8E8C-B71B7813334D} - System32\Tasks\EPM Preload => C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2DotNetHandler.exe [752200 2018-05-21] (HP Inc. -> )
Task: {ACC1A794-D902-468D-A625-56E7C0936E84} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2935424 2012-03-13] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {E35DA19C-F36F-445C-BBE2-2B2DC6BBDB11} - System32\Tasks\Opera scheduled assistant Autoupdate 1585845267 => C:\Users\Roman\AppData\Local\Programs\Opera\launcher.exe [2470608 2022-03-16] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Roman\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {F70D7DF3-C979-4ADF-89B3-7DCA7C6463B8} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2724952 2022-03-21] (Avast Software s.r.o. -> AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{f02d60bc-40be-4e2a-a15c-aa7546e56a7e}: [DhcpNameServer] 192.168.1.1

Edge:
=======
DownloadDir: C:\Users\Roman\Downloads
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\Roman\AppData\Local\Microsoft\Edge\User Data\Default [2022-03-28]
Edge DownloadDir: Default -> C:\Users\Roman\Downloads
Edge Extension: (Avast Online Security & Privacy) - C:\Users\Roman\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2022-03-22]

FireFox:
========
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\dtplugin\npDeployJava1.dll [2020-10-25] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\plugin2\npjp2.dll [2020-10-25] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @java.com/DTPlugin,version=10.21.2 -> C:\WINDOWS\SysWOW64\npDeployJava1.dll [2020-04-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-09-03] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-09-03] (Avast Software s.r.o. -> AVAST Software)
FF Plugin HKU\S-1-5-21-128406778-2638418637-827040753-1001: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-128406778-2638418637-827040753-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-128406778-2638418637-827040753-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-128406778-2638418637-827040753-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)

Opera:
=======
OPR Profile: C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable [2022-04-01]
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Extension: (Avast Online Security & Privacy) - C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\daanglpcpkjjlkhcbladppjphglbigam [2021-11-24]
OPR Extension: (Rich Hints Agent) - C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-02-18]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-14]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2022-02-25] (Apple Inc. -> Apple Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2013-09-17] (ASUSTeK Computer Inc. -> )
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2013-09-17] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2020-04-08] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe [1632256 2020-04-08] (ASUSTeK Computer Inc.) [File not signed]
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8483920 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-03] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [564504 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [1957144 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [563992 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-03] (Avast Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\99.0.15283.83\elevation_service.exe [1876832 2022-03-21] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
S4 Samsung Printer Dianostics Service; C:\WINDOWS\SysWOW64\\spdsvc.exe [508488 2018-05-24] (HP Inc. -> )
S4 SamsungUPDUtilSvc; C:\WINDOWS\SysWOW64\SecUPDUtilSvc.exe [143664 2015-02-07] (Samsung Electronics CO., LTD. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6228008 2022-03-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-15] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-15] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2013-01-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_8e2568524f674315\amdsafd.sys [100768 2021-03-29] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] (ASUSTeK Computer Inc. -> )
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2013-01-15] (ASUSTeK Computer Inc. -> )
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [228928 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [370752 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [252992 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [100416 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-09-23] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42416 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [269440 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [546320 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108912 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83976 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [855336 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [551920 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215920 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [318760 2022-03-24] (Avast Software s.r.o. -> AVAST Software)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R1 ndisrd; C:\WINDOWS\system32\DRIVERS\ndisrd.sys [32840 2013-02-21] (Realtek Semiconductor Corp -> NT Kernel Resources)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2019-12-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2019-12-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-15] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-04-01 20:00 - 2022-04-01 20:01 - 000028114 _____ C:\Users\Roman\Desktop\FRST.txt
2022-04-01 20:00 - 2022-04-01 20:00 - 000000000 ____D C:\Users\Roman\Desktop\FRST-OlderVersion
2022-03-29 21:52 - 2022-03-29 21:54 - 040534018 _____ C:\Users\Roman\Downloads\sotury-temne-udoli-2012 přes MultiLoad.cz.zip
2022-03-29 11:34 - 2022-03-29 11:34 - 000259372 _____ C:\Users\Roman\Downloads\Zmocneni k nakladani s peneznimi prostredky na uctech prostrednictvim sluzeb CSOB Elektronickeho bankovnictvi (SEK3) (2).pdf
2022-03-29 11:34 - 2022-03-29 11:34 - 000259372 _____ C:\Users\Roman\Downloads\Zmocneni k nakladani s peneznimi prostredky na uctech prostrednictvim sluzeb CSOB Elektronickeho bankovnictvi (SEK3) (1).pdf
2022-03-28 21:03 - 2022-03-28 21:03 - 000002154 _____ C:\Users\Roman\Documents\cc_20220328_210332.reg
2022-03-26 11:11 - 2022-03-26 11:11 - 000140323 _____ C:\Users\Roman\Desktop\Dodatek smlouva telefony 2020 1700660.pdf
2022-03-26 11:07 - 2022-03-26 11:07 - 000162909 _____ C:\Users\Roman\Desktop\Dodatek_ telefony smlouva1873441.pdf
2022-03-26 11:07 - 2022-03-26 11:07 - 000117460 _____ C:\Users\Roman\Documents\D137D159-D8F3-4272-82E4-FF32AA40C7A2.jpeg
2022-03-26 11:07 - 2022-03-26 11:07 - 000115258 _____ C:\Users\Roman\Documents\67E7B896-182D-4C9B-8D3B-6364928E09E6.jpeg
2022-03-26 11:00 - 2022-03-26 11:00 - 000070753 _____ C:\Users\Roman\Documents\0447-20211001-20211031-10-MCZB.pdf
2022-03-26 10:51 - 2022-03-26 10:51 - 000039220 _____ C:\Users\Roman\Documents\ukončení pojištění.pdf
2022-03-26 10:50 - 2022-03-26 10:50 - 000129344 _____ C:\Users\Roman\Documents\Žádost o ukončení pojištění.pdf
2022-03-25 13:59 - 2022-03-25 13:59 - 000077321 _____ C:\Users\Roman\Desktop\Pozadavek k ukonceni pojisteni2.zip
2022-03-25 13:58 - 2022-03-25 13:58 - 000032705 _____ C:\Users\Roman\Documents\Pozadavek k ukonceni pojisteni.zip
2022-03-24 20:48 - 2022-03-24 20:48 - 000000000 ____D C:\WINDOWS\system32\gf2engine
2022-03-24 15:46 - 2022-03-24 15:46 - 000053004 _____ C:\Users\Roman\Downloads\formular_pro_vymenu_vraceni_nebo_reklamaci.pdf
2022-03-24 15:46 - 2022-03-24 15:46 - 000053004 _____ C:\Users\Roman\Downloads\formular_pro_vymenu_vraceni_nebo_reklamaci (1).pdf
2022-03-24 14:56 - 2022-03-24 14:56 - 000340760 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2022-03-24 14:56 - 2022-03-24 14:56 - 000215920 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2022-03-22 18:25 - 2022-03-22 18:26 - 021388775 _____ C:\Users\Roman\Downloads\manual-x-max-125-2013 tento-pdf.pdf
2022-03-22 18:25 - 2022-03-22 18:26 - 021388775 _____ C:\Users\Roman\Desktop\manual-x-max-125-2013 tento-pdf.pdf
2022-03-22 15:12 - 2022-03-22 15:12 - 000001816 _____ C:\Users\Public\Desktop\iTunes.lnk
2022-03-22 15:12 - 2022-03-22 15:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2022-03-22 15:12 - 2022-03-22 15:12 - 000000000 ____D C:\Program Files\iTunes
2022-03-16 20:31 - 2022-03-16 20:31 - 000259372 _____ C:\Users\Roman\Downloads\Zmocneni k nakladani s peneznimi prostredky na uctech prostrednictvim sluzeb CSOB Elektronickeho bankovnictvi (SEK3).pdf
2022-03-16 20:30 - 2022-03-16 20:30 - 000104344 _____ C:\Users\Roman\Downloads\Oznameni CSOB o stanovenych urokovych podminkach vkladu a uveru vKc.pdf
2022-03-16 20:29 - 2022-03-16 20:29 - 000268886 _____ C:\Users\Roman\Downloads\ZmocneniknakladanispeneznimiprostredkynauctechprostrednictvimsluzebCSOBElektronickehobankovnictvi(SEK3).pdf
2022-03-16 20:29 - 2022-03-16 20:29 - 000259372 _____ C:\Users\Roman\Downloads\ZmocneniknakladanispeneznimiprostredkynauctechprostrednictvimsluzebCSOBElektronickehobankovnictvi(SEK3) (1).pdf
2022-03-13 01:13 - 2022-03-13 01:13 - 000003642 _____ C:\Users\Roman\Documents\cc_20220313_001330.reg
2022-03-10 20:17 - 2022-03-10 20:17 - 000195584 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll
2022-03-10 20:16 - 2022-03-10 20:16 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-03-10 20:16 - 2022-03-10 20:16 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2022-03-10 20:16 - 2022-03-10 20:16 - 000272896 _____ C:\WINDOWS\system32\TpmTool.exe
2022-03-10 20:16 - 2022-03-10 20:16 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2022-03-10 20:16 - 2022-03-10 20:16 - 000011911 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-03-10 20:07 - 2022-03-10 20:07 - 000000000 ___HD C:\$WinREAgent
2022-03-08 22:42 - 2022-03-08 22:42 - 001415808 _____ C:\Users\Roman\Desktop\klikatipa-montazni-navod-0.pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-04-01 20:01 - 2021-05-12 10:37 - 000000000 ____D C:\FRST
2022-04-01 20:01 - 2019-11-01 16:56 - 000000000 ____D C:\Program Files\CCleaner
2022-04-01 20:00 - 2021-05-06 21:15 - 002365440 _____ (Farbar) C:\Users\Roman\Desktop\FRST64.exe
2022-04-01 20:00 - 2020-04-08 07:34 - 001048576 _____ C:\WINDOWS\PE_Rom.dll
2022-04-01 20:00 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-04-01 19:59 - 2020-11-06 23:29 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-04-01 19:59 - 2020-11-06 23:21 - 000000000 ____D C:\Users\Roman
2022-04-01 19:59 - 2020-11-06 23:19 - 000008192 ___SH C:\DumpStack.log.tmp
2022-04-01 19:59 - 2020-11-06 23:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-04-01 19:57 - 2020-11-06 23:28 - 001693568 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-04-01 19:57 - 2019-12-07 16:43 - 000716874 _____ C:\WINDOWS\system32\perfh005.dat
2022-04-01 19:57 - 2019-12-07 16:43 - 000145052 _____ C:\WINDOWS\system32\perfc005.dat
2022-04-01 19:57 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-04-01 19:55 - 2020-04-08 07:35 - 000000000 _____ C:\WINDOWS\Path.idx
2022-04-01 19:50 - 2019-11-01 17:16 - 000000000 ____D C:\ProgramData\AVAST Software
2022-04-01 18:09 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-04-01 18:09 - 2019-10-29 20:58 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2022-04-01 15:01 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-04-01 15:01 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-04-01 10:09 - 2019-12-18 22:23 - 000002498 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2022-03-30 23:01 - 2020-01-25 09:36 - 000000000 ____D C:\Users\Roman\AppData\Local\CrashDumps
2022-03-29 20:59 - 2021-12-12 22:55 - 000003058 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-128406778-2638418637-827040753-1001
2022-03-29 20:59 - 2021-12-05 15:37 - 000003024 _____ C:\WINDOWS\system32\Tasks\klcp_update
2022-03-29 20:59 - 2021-09-16 18:12 - 000003764 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1585845267
2022-03-29 20:59 - 2021-08-22 17:42 - 000002250 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Roman
2022-03-29 20:59 - 2021-02-23 20:26 - 000003510 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1572383546
2022-03-29 20:59 - 2020-12-30 12:02 - 000002724 _____ C:\WINDOWS\system32\Tasks\EPM Preload
2022-03-29 20:59 - 2020-11-06 23:32 - 000003318 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6b4835897e39e
2022-03-29 20:59 - 2020-11-06 23:29 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-03-29 20:59 - 2020-11-06 23:29 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-03-29 20:59 - 2020-11-06 23:29 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-03-29 20:59 - 2020-11-06 23:29 - 000002854 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-128406778-2638418637-827040753-1001
2022-03-29 20:59 - 2020-11-06 23:29 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-03-28 22:57 - 2020-11-06 23:29 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-03-28 10:38 - 2020-06-10 19:01 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-03-26 11:08 - 2020-11-06 23:21 - 000002377 _____ C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-03-24 14:56 - 2020-10-14 19:53 - 000269440 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2022-03-24 14:56 - 2020-04-02 18:34 - 000855336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2022-03-24 14:56 - 2020-04-02 18:34 - 000551920 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2022-03-24 14:56 - 2020-04-02 18:34 - 000546320 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2022-03-24 14:56 - 2020-04-02 18:34 - 000370752 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2022-03-24 14:56 - 2020-04-02 18:34 - 000318760 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2022-03-24 14:56 - 2020-04-02 18:34 - 000252992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2022-03-24 14:56 - 2020-04-02 18:34 - 000228928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2022-03-24 14:56 - 2020-04-02 18:34 - 000108912 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2022-03-24 14:56 - 2020-04-02 18:34 - 000100416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2022-03-24 14:56 - 2020-04-02 18:34 - 000083976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2022-03-24 14:56 - 2020-04-02 18:34 - 000042416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2022-03-24 14:56 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-03-22 21:54 - 2021-12-12 11:38 - 000000942 _____ C:\Users\Roman\Desktop\aida64.exe – zástupce.lnk
2022-03-21 13:03 - 2021-09-16 18:13 - 000001405 _____ C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2022-03-18 16:00 - 2021-12-05 15:40 - 000000000 ____D C:\Users\Roman\AppData\Roaming\MPC-HC
2022-03-17 15:30 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-03-17 11:01 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-03-16 19:55 - 2021-05-07 16:37 - 000000000 ____D C:\KVRT2020_Data
2022-03-14 11:59 - 2020-12-22 20:03 - 000000368 _____ C:\Users\Roman\Desktop\Ethernet – zástupce (2).lnk
2022-03-11 00:29 - 2020-11-06 23:19 - 000438960 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-03-11 00:28 - 2019-12-07 16:47 - 000000000 ___SD C:\WINDOWS\system32\AppV
2022-03-11 00:28 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-03-11 00:28 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-03-11 00:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-03-11 00:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2022-03-11 00:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-03-11 00:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2022-03-11 00:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-03-11 00:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-03-11 00:28 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2022-03-10 20:20 - 2020-09-30 20:16 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-03-10 20:15 - 2020-11-06 23:22 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-03-10 20:07 - 2019-10-31 21:15 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-03-10 20:03 - 2019-10-31 21:15 - 145666720 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== Files in the root of some directories ========

2020-08-18 15:02 - 2020-08-18 15:02 - 000007597 _____ () C:\Users\Roman\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Addition.zip
(12.05 KiB) Staženo 80 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Děkuji.

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roman7
Návštěvník
Návštěvník
Příspěvky: 331
Registrován: 25 bře 2008 23:09

Re: Prosím o kontrolu logu. Děkuji.

#3 Příspěvek od roman7 »

Zdravím, tuto ulitu pužívám

Malwarebytes AdwCleaner 8.3.1.0
# -------------------------------
# Build: 11-18-2021
# Database: 2022-03-15.3 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 04-01-2022
# Duration: 00:00:17
# OS: Windows 10 Pro
# Scanned: 32047
# Detected: 2


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

Preinstalled.SamsungEasyDocumentCreator Folder C:\Program Files (x86)\SAMSUNG\EASY DOCUMENT CREATOR
Preinstalled.SamsungEasyDocumentCreator Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Samsung Easy Document Creator


AdwCleaner[S00].txt - [1633 octets] - [07/05/2021 16:20:52]
AdwCleaner[S01].txt - [1694 octets] - [11/05/2021 22:04:17]
AdwCleaner[S02].txt - [1755 octets] - [24/05/2021 08:36:32]
AdwCleaner[S03].txt - [1816 octets] - [06/06/2021 11:03:33]
AdwCleaner[S04].txt - [1877 octets] - [13/06/2021 12:04:18]
AdwCleaner[S05].txt - [1938 octets] - [08/07/2021 08:14:25]
AdwCleaner[S06].txt - [1999 octets] - [22/08/2021 17:43:42]
AdwCleaner[S07].txt - [2060 octets] - [02/10/2021 08:32:30]
AdwCleaner[S08].txt - [2121 octets] - [11/10/2021 10:53:42]
AdwCleaner[S09].txt - [2182 octets] - [24/10/2021 22:16:32]
AdwCleaner[S10].txt - [2243 octets] - [09/11/2021 23:31:48]
AdwCleaner[S11].txt - [2304 octets] - [14/11/2021 00:26:08]
AdwCleaner[S12].txt - [2365 octets] - [20/11/2021 11:43:21]
AdwCleaner[S13].txt - [2426 octets] - [05/12/2021 23:07:12]
AdwCleaner[S14].txt - [2487 octets] - [14/12/2021 22:04:30]
AdwCleaner[S15].txt - [2548 octets] - [20/12/2021 23:48:23]
AdwCleaner[S16].txt - [2609 octets] - [31/12/2021 15:53:50]
AdwCleaner[S17].txt - [2670 octets] - [02/01/2022 23:00:20]
AdwCleaner[S18].txt - [2731 octets] - [18/01/2022 19:04:00]
AdwCleaner[S19].txt - [2792 octets] - [29/01/2022 23:37:15]
AdwCleaner[S20].txt - [2853 octets] - [14/02/2022 12:11:48]
AdwCleaner[S21].txt - [2914 octets] - [16/03/2022 18:55:01]
AdwCleaner[S22].txt - [2975 octets] - [22/03/2022 18:26:14]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S23].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Děkuji.

#4 Příspěvek od Rudy »

Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
C:\DumpStack.log.tmp

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roman7
Návštěvník
Návštěvník
Příspěvky: 331
Registrován: 25 bře 2008 23:09

Re: Prosím o kontrolu logu. Děkuji.

#5 Příspěvek od roman7 »

Fix result of Farbar Recovery Scan Tool (x64) Version: 01-04-2022
Ran by Roman (02-04-2022 22:16:22) Run:1
Running from C:\Users\Roman\Desktop
Loaded Profiles: Roman
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
C:\DumpStack.log.tmp

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.

=========== EmptyTemp: ==========

BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 26534822 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 27179 B
Edge => 0 B
Firefox => 0 B
Opera => 307083641 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 60712 B
NetworkService => 60712 B
Roman => 343640527 B

RecycleBin => 0 B
EmptyTemp: => 647.3 MB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 02-04-2022 22:17:39)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 22:17:39 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Děkuji.

#6 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roman7
Návštěvník
Návštěvník
Příspěvky: 331
Registrován: 25 bře 2008 23:09

Re: Prosím o kontrolu logu. Děkuji.

#7 Příspěvek od roman7 »

Trocha se pc zrychlilo. To občasný zamrzání, může to být i nějaký špatný hardware? Je nějaký program (laikům srozumitelný) na otestování součástí pc,

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Děkuji.

#8 Příspěvek od Rudy »

Samozřejmě může, i když, pokud vám PC nehází BSOD, bude to spíše sw problém. Defragmentujte disk a stáhněte, neinstalujte a spusťte CrystalDiskInfo: https://www.instaluj.cz/crystaldiskinfo . Přes Úprvy>Kopírovat sem pak dejte log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roman7
Návštěvník
Návštěvník
Příspěvky: 331
Registrován: 25 bře 2008 23:09

Re: Prosím o kontrolu logu. Děkuji.

#9 Příspěvek od roman7 »

BSOD mi to nehází. Mám ssd disky. Možná příčina je, asi myš. Vypadalo to jako zamrznutí nereagovala myš a nic tak jsem ji odpojil a připojil a jelo to. Zatím děkuji za čistku.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Děkuji.

#10 Příspěvek od Rudy »

To je zvláštní, že zrovna myš. Zkuste ji vyměnit.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roman7
Návštěvník
Návštěvník
Příspěvky: 331
Registrován: 25 bře 2008 23:09

Re: Prosím o kontrolu logu. Děkuji.

#11 Příspěvek od roman7 »

Zdravím,
tak dnes opět divné chování pc nefunkční myš (pouze v prohlížeči) pomalé načítání a někdy i zamrznutí Opery. Avast nic nehlásí a adwcleaner taky nic. Použil bych ještě KVRT, ale to nevím jestli je dneska bezpečné používat když je to Kašpersky. Ještě došel včera divnej mail manželce, jakoby s její adresy a za ní byla ještě jedna adresa randomzavináčskywireusatečkacom
na její adresu, ze které byl poslán. Byl tam odkaz na který jsme neklikly a mail smazali. Ta adresa je nějaká komunikační firma v USA. Pro jistotu prosím o kontrolu logu. Děkuji.


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-04-2022
Ran by Roman (administrator) on DESKTOP-5C2V1IG (26-04-2022 09:12:24)
Running from C:\Users\Roman\Desktop
Loaded Profiles: Roman
Platform: Microsoft Windows 10 Pro Version 21H1 19043.1645 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AsDLNAServerReal.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler64.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
(C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
(C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe
(C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe ->) (ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(DriverStore\FileRepository\u0366969.inf_amd64_08be8e6c39509940\B367342\atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366969.inf_amd64_08be8e6c39509940\B367342\atieclxx.exe
(explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366969.inf_amd64_08be8e6c39509940\B367342\atiesrxx.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
(services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
(services.exe ->) (ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(svchost.exe ->) () [File not signed] C:\Windows\DAODx.exe
(svchost.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe
(svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AssistTools\WiFi GO! Server.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2203.4603.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.22031.10091.0_x64__8wekyb3d8bbwe\Music.UI.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [208152 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8483032 2015-05-28] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [357944 2022-02-08] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2013-01-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
HKLM-x32\...\Run: [Sovos] => C:\Program Files (x86)\Canyon CND-SGM14RGB Gaming Mouse\OemDrv.exe [2450944 2019-08-22] () [File not signed]
HKU\S-1-5-21-128406778-2638418637-827040753-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [36705520 2022-04-07] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-128406778-2638418637-827040753-1001\...\Run: [Opera Browser Assistant] => C:\Users\Roman\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4110592 2022-04-20] (Opera Software AS -> Opera Software)
HKLM\...\Windows x64\Print Processors\us005PC: C:\Windows\System32\spool\prtprocs\x64\us005pc.dll [43520 2014-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Windows x64\Print Processors\us015PC: C:\Windows\System32\spool\prtprocs\x64\us015pc.dll [52088 2019-08-26] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\WINDOWS\system32\pxcpmL.dll [2044248 2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
HKLM\...\Print\Monitors\us005 Langmon: C:\WINDOWS\system32\us005lm.dll [22528 2014-11-25] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\us008 Langmon: us008lm.dll
HKLM\...\Print\Monitors\us015 Langmon: C:\WINDOWS\system32\us015lm.dll [31096 2019-08-26] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\100.0.15871.128\Installer\chrmstp.exe [2022-04-22] (Avast Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0A802BEC-32FB-4C1D-9F22-03BE382FE27D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {22B5ED3D-4F2F-4704-8996-B66C2DEFB750} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-04-07] (Piriform Software Ltd -> Piriform)
Task: {2DC55ED9-E11A-48A6-BE54-96BB451D7394} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2296088 2022-03-07] (Avast Software s.r.o. -> Avast Software)
Task: {3B074D41-A1F4-4C1C-B0FF-04BFC6D359FC} - System32\Tasks\ASUS\RunDAOD => C:\WINDOWS\DAODx.exe [32768 2009-03-30] () [File not signed]
Task: {4D5D36A4-D2A0-470A-82EC-CA8EDB93874C} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-03] (Avast Software s.r.o. -> AVAST Software)
Task: {5E691FD7-12E9-45E7-8BD2-A13F13ED35F2} - System32\Tasks\ASUS\Easy Update => C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe [1426232 2013-10-18] (ASUSTeK Computer Inc. -> )
Task: {5E7CC867-948E-4CC9-9356-70B5A71AA350} - System32\Tasks\ASUS\ASUS Network iControl Help Execute => C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\NetSvcHelp\NetSvcHelpEntry.exe [328504 2013-02-07] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {620F3A9E-26F5-4252-B620-337E96F890AF} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {7D46D477-6C35-4CC7-9D92-34AF22658400} - System32\Tasks\Opera scheduled Autoupdate 1572383546 => C:\Users\Roman\AppData\Local\Programs\Opera\launcher.exe [2433792 2022-04-20] (Opera Software AS -> Opera Software)
Task: {87A832AC-6F30-438A-81E6-D9F408CBE4AC} - System32\Tasks\CCleanerSkipUAC - Roman => C:\Program Files\CCleaner\CCleaner.exe [30836464 2022-04-07] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {8DA4AB10-2A34-4BE5-9E1D-033D6B3D72BE} - System32\Tasks\Opera scheduled assistant Autoupdate 1585845267 => C:\Users\Roman\AppData\Local\Programs\Opera\launcher.exe [2433792 2022-04-20] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Roman\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {940AADAA-E746-451D-AD13-BC58B7A07E80} - System32\Tasks\ASUS\ASUS WiFi GO! Server Execute => C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AssistTools\WiFi GO! Server.exe [967480 2013-08-26] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {9873A753-B7ED-4366-B84D-C804201D9371} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr.exe [90112 2011-09-09] () [File not signed]
Task: {98F70D21-6544-4B36-A021-B3C5A4E31B1D} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1907712 2021-10-20] () [File not signed]
Task: {9AC89552-E14B-4697-A121-B2AB7A76628A} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-03] (Avast Software s.r.o. -> AVAST Software)
Task: {A9AB8724-AA03-48B0-80A3-EB3F043D51E9} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2692464 2022-04-15] (Avast Software s.r.o. -> AVAST Software)
Task: {A9BF9436-3228-47F8-8E8C-B71B7813334D} - System32\Tasks\EPM Preload => C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2DotNetHandler.exe [752200 2018-05-21] (HP Inc. -> )
Task: {ACC1A794-D902-468D-A625-56E7C0936E84} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2935424 2012-03-13] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {AFC693BA-383C-4B78-B0C8-C7E2E598FF3F} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4992792 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
Task: {F70D7DF3-C979-4ADF-89B3-7DCA7C6463B8} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2692464 2022-04-15] (Avast Software s.r.o. -> AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{f02d60bc-40be-4e2a-a15c-aa7546e56a7e}: [DhcpNameServer] 192.168.1.1

Edge:
=======
DownloadDir: C:\Users\Roman\Downloads
Edge Profile: C:\Users\Roman\AppData\Local\Microsoft\Edge\User Data\Default [2022-04-24]
Edge DownloadDir: Default -> C:\Users\Roman\Downloads
Edge Extension: (Avast Online Security & Privacy) - C:\Users\Roman\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2022-04-10]

FireFox:
========
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\dtplugin\npDeployJava1.dll [2020-10-25] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\plugin2\npjp2.dll [2020-10-25] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @java.com/DTPlugin,version=10.21.2 -> C:\WINDOWS\SysWOW64\npDeployJava1.dll [2020-04-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-09-03] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-09-03] (Avast Software s.r.o. -> AVAST Software)
FF Plugin HKU\S-1-5-21-128406778-2638418637-827040753-1001: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-128406778-2638418637-827040753-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-128406778-2638418637-827040753-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-128406778-2638418637-827040753-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-21] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.)

Opera:
=======
OPR Profile: C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable [2022-04-26]
OPR StartupUrls: Opera Stable -> "hxxps://www.seznam.cz/"
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Session Restore: Opera Stable -> is enabled.
OPR Extension: (Avast Online Security & Privacy) - C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\daanglpcpkjjlkhcbladppjphglbigam [2021-11-24]
OPR Extension: (Rich Hints Agent) - C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-02-18]
OPR Extension: (Opera Crypto Wallet) - C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-04-25]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-14]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2022-02-25] (Apple Inc. -> Apple Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2013-09-17] (ASUSTeK Computer Inc. -> )
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2013-09-17] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2020-04-08] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe [1632256 2020-04-08] (ASUSTeK Computer Inc.) [File not signed]
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8507016 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-03] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [563024 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [1968976 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [563024 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-03] (Avast Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\100.0.15871.128\elevation_service.exe [1972912 2022-04-15] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
S4 Samsung Printer Dianostics Service; C:\WINDOWS\SysWOW64\\spdsvc.exe [508488 2018-05-24] (HP Inc. -> )
S4 SamsungUPDUtilSvc; C:\WINDOWS\SysWOW64\SecUPDUtilSvc.exe [143664 2015-02-07] (Samsung Electronics CO., LTD. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6254352 2022-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-15] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-15] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2013-01-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_8e2568524f674315\amdsafd.sys [100768 2021-03-29] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] (ASUSTeK Computer Inc. -> )
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2013-01-15] (ASUSTeK Computer Inc. -> )
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [228912 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [378944 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [252984 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [100408 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-09-23] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42400 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [269448 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [546296 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108888 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83968 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [855320 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [556088 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215936 2022-04-11] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [320904 2022-04-20] (Avast Software s.r.o. -> AVAST Software)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R1 ndisrd; C:\WINDOWS\system32\DRIVERS\ndisrd.sys [32840 2013-02-21] (Realtek Semiconductor Corp -> NT Kernel Resources)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2019-12-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2019-12-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-15] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-04-26 09:12 - 2022-04-26 09:13 - 000027057 _____ C:\Users\Roman\Desktop\FRST.txt
2022-04-26 09:12 - 2022-04-26 09:12 - 000000000 ____D C:\Users\Roman\Desktop\FRST-OlderVersion
2022-04-24 12:16 - 2022-04-24 12:16 - 000000000 ____D C:\Program Files\PCHealthCheck
2022-04-24 08:31 - 2022-04-24 08:31 - 000226704 _____ C:\Users\Roman\Desktop\RM_2903.pdf
2022-04-23 10:29 - 2022-04-23 10:30 - 215925448 _____ (Zhuhai Kingsoft Office Software Co.,Ltd) C:\Users\Roman\Downloads\WPSOffice_11.2.0.11029.exe
2022-04-22 12:47 - 2022-04-22 12:47 - 000000297 _____ C:\Users\Roman\Downloads\CSOB_20220422124016.txt
2022-04-15 21:15 - 2022-04-15 21:15 - 008551608 _____ (Malwarebytes) C:\Users\Roman\Desktop\adwcleaner(1).exe
2022-04-14 15:36 - 2022-04-14 15:36 - 000011803 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-04-14 15:35 - 2022-04-14 15:35 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2022-04-14 15:35 - 2022-04-14 15:35 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2022-04-14 15:35 - 2022-04-14 15:35 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2022-04-14 15:22 - 2022-04-14 15:22 - 000000000 ___HD C:\$WinREAgent
2022-04-12 21:11 - 2022-04-12 21:11 - 022760720 _____ C:\Users\Roman\Desktop\5853_yamaha-yp125r-yp250r.pdf
2022-04-11 23:49 - 2022-04-11 23:49 - 000294095 _____ C:\Users\Roman\Desktop\Alarm-Disc-Lock-CZ-Instructions.pdf
2022-04-11 16:44 - 2022-04-11 16:44 - 000340760 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2022-04-11 16:44 - 2022-04-11 16:44 - 000215936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2022-04-09 22:19 - 2022-04-10 14:14 - 000000000 ____D C:\Users\Roman\Downloads\Národní házená
2022-04-06 07:28 - 2022-04-06 07:28 - 000032705 _____ C:\Users\Roman\Documents\Pozadavek k ukonceni pojistenji.zip
2022-04-06 07:27 - 2022-04-06 07:27 - 000077321 _____ C:\Users\Roman\Documents\Pozadavek k ukonceni pojistenii.zip
2022-04-06 07:23 - 2022-04-06 07:23 - 000050534 _____ C:\Users\Roman\Documents\Zanik pojisteni cislo 4781386443.zip
2022-04-05 16:19 - 2022-04-05 16:19 - 000213927 _____ C:\Users\Roman\Downloads\Smlouva_o_investicnich_sluzbach.pdf
2022-04-05 16:18 - 2022-04-05 16:18 - 000254217 _____ C:\Users\Roman\Downloads\Produktova brozura.pdf
2022-04-05 16:17 - 2022-04-05 16:17 - 000375846 _____ C:\Users\Roman\Downloads\Souhrn souvisejicich dokumentu.pdf
2022-04-05 16:17 - 2022-04-05 16:17 - 000342569 _____ C:\Users\Roman\Downloads\Obchodni podminky ke Smlouve o investicnich sluzbach.pdf
2022-04-05 16:15 - 2022-04-05 16:15 - 000127772 _____ C:\Users\Roman\Downloads\Smlouva o investicnich sluzbach vzor.pdf
2022-04-05 11:49 - 2022-04-05 11:49 - 000002448 _____ C:\Users\Roman\Documents\cc_20220405_114912.reg
2022-03-28 21:03 - 2022-03-28 21:03 - 000002154 _____ C:\Users\Roman\Documents\cc_20220328_210332.reg

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-04-26 09:12 - 2021-05-12 10:37 - 000000000 ____D C:\FRST
2022-04-26 09:12 - 2021-05-06 21:15 - 002366976 _____ (Farbar) C:\Users\Roman\Desktop\FRST64.exe
2022-04-26 09:10 - 2020-11-06 23:28 - 001693568 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-04-26 09:10 - 2019-12-07 16:43 - 000716874 _____ C:\WINDOWS\system32\perfh005.dat
2022-04-26 09:10 - 2019-12-07 16:43 - 000145052 _____ C:\WINDOWS\system32\perfc005.dat
2022-04-26 09:10 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-04-26 09:09 - 2020-04-08 07:35 - 000000000 _____ C:\WINDOWS\Path.idx
2022-04-26 09:05 - 2019-11-01 16:56 - 000000000 ____D C:\Program Files\CCleaner
2022-04-26 09:04 - 2020-04-08 07:34 - 001048576 _____ C:\WINDOWS\PE_Rom.dll
2022-04-26 09:04 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-04-26 09:03 - 2020-11-06 23:29 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-04-26 09:03 - 2020-11-06 23:21 - 000000000 ____D C:\Users\Roman
2022-04-26 09:03 - 2020-11-06 23:19 - 000008192 ___SH C:\DumpStack.log.tmp
2022-04-26 09:03 - 2020-11-06 23:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-04-26 08:49 - 2019-11-01 17:16 - 000000000 ____D C:\ProgramData\AVAST Software
2022-04-25 23:10 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-04-25 23:10 - 2019-10-29 20:58 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2022-04-25 23:09 - 2020-01-25 09:36 - 000000000 ____D C:\Users\Roman\AppData\Local\CrashDumps
2022-04-25 20:23 - 2021-09-16 18:13 - 000001405 _____ C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2022-04-25 20:23 - 2021-02-23 20:26 - 000004206 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1572383546
2022-04-25 16:56 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-04-25 16:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-04-24 12:16 - 2021-11-06 10:50 - 000001146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-04-23 20:28 - 2020-06-10 19:01 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-04-22 21:24 - 2019-12-18 22:23 - 000002498 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2022-04-22 13:29 - 2019-11-01 20:51 - 000000000 ____D C:\Users\Roman\Documents\Scan
2022-04-22 13:20 - 2019-11-01 20:51 - 000000000 ____D C:\ProgramData\boost_interprocess
2022-04-22 08:46 - 2020-11-06 23:29 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-04-22 08:43 - 2021-12-12 22:55 - 000003058 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-128406778-2638418637-827040753-1001
2022-04-22 08:43 - 2021-12-05 15:37 - 000003024 _____ C:\WINDOWS\system32\Tasks\klcp_update
2022-04-22 08:43 - 2021-09-16 18:12 - 000003764 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1585845267
2022-04-22 08:43 - 2021-08-22 17:42 - 000002250 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Roman
2022-04-22 08:43 - 2020-12-30 12:02 - 000002724 _____ C:\WINDOWS\system32\Tasks\EPM Preload
2022-04-22 08:43 - 2020-11-06 23:32 - 000003318 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6b4835897e39e
2022-04-22 08:43 - 2020-11-06 23:29 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-04-22 08:43 - 2020-11-06 23:29 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-04-22 08:43 - 2020-11-06 23:29 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-04-22 08:43 - 2020-11-06 23:29 - 000002854 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-128406778-2638418637-827040753-1001
2022-04-22 08:43 - 2020-11-06 23:29 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-04-21 13:26 - 2020-11-06 23:21 - 000002377 _____ C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-04-21 09:23 - 2021-12-05 15:40 - 000000000 ____D C:\Users\Roman\AppData\Roaming\MPC-HC
2022-04-20 12:32 - 2020-04-02 18:34 - 000320904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2022-04-15 21:58 - 2020-12-22 20:03 - 000000368 _____ C:\Users\Roman\Desktop\Ethernet – zástupce (2).lnk
2022-04-14 23:31 - 2019-10-31 21:15 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-04-14 23:26 - 2019-10-31 21:15 - 143823848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-04-14 16:30 - 2020-11-06 23:19 - 000438960 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-04-14 16:29 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-04-14 16:29 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-04-14 16:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-04-14 16:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-04-14 16:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-04-14 16:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-04-14 16:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-04-14 16:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-04-14 16:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-04-14 16:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-04-14 15:40 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-04-11 16:44 - 2020-10-14 19:53 - 000269448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2022-04-11 16:44 - 2020-04-02 18:34 - 000855320 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2022-04-11 16:44 - 2020-04-02 18:34 - 000556088 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2022-04-11 16:44 - 2020-04-02 18:34 - 000546296 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2022-04-11 16:44 - 2020-04-02 18:34 - 000378944 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2022-04-11 16:44 - 2020-04-02 18:34 - 000252984 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2022-04-11 16:44 - 2020-04-02 18:34 - 000228912 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2022-04-11 16:44 - 2020-04-02 18:34 - 000108888 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2022-04-11 16:44 - 2020-04-02 18:34 - 000100408 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2022-04-11 16:44 - 2020-04-02 18:34 - 000083968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2022-04-11 16:44 - 2020-04-02 18:34 - 000042400 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2022-04-11 16:44 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-04-05 18:45 - 2020-09-30 20:16 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools

==================== Files in the root of some directories ========

2020-08-18 15:02 - 2020-08-18 15:02 - 000007597 _____ () C:\Users\Roman\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Přílohy
Addition.zip
(12.32 KiB) Staženo 65 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Děkuji.

#12 Příspěvek od Rudy »

Zdravím!
Spusťte tutio utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roman7
Návštěvník
Návštěvník
Příspěvky: 331
Registrován: 25 bře 2008 23:09

Re: Prosím o kontrolu logu. Děkuji.

#13 Příspěvek od roman7 »

Malwarebytes AdwCleaner 8.3.2.0
# -------------------------------
# Build: 03-23-2022
# Database: 2022-03-15.3 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 04-26-2022
# Duration: 00:00:17
# OS: Windows 10 Pro
# Scanned: 32047
# Detected: 2


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

Preinstalled.SamsungEasyDocumentCreator Folder C:\Program Files (x86)\SAMSUNG\EASY DOCUMENT CREATOR
Preinstalled.SamsungEasyDocumentCreator Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Samsung Easy Document Creator


AdwCleaner[S00].txt - [1633 octets] - [07/05/2021 16:20:52]
AdwCleaner[S01].txt - [1694 octets] - [11/05/2021 22:04:17]
AdwCleaner[S02].txt - [1755 octets] - [24/05/2021 08:36:32]
AdwCleaner[S03].txt - [1816 octets] - [06/06/2021 11:03:33]
AdwCleaner[S04].txt - [1877 octets] - [13/06/2021 12:04:18]
AdwCleaner[S05].txt - [1938 octets] - [08/07/2021 08:14:25]
AdwCleaner[S06].txt - [1999 octets] - [22/08/2021 17:43:42]
AdwCleaner[S07].txt - [2060 octets] - [02/10/2021 08:32:30]
AdwCleaner[S08].txt - [2121 octets] - [11/10/2021 10:53:42]
AdwCleaner[S09].txt - [2182 octets] - [24/10/2021 22:16:32]
AdwCleaner[S10].txt - [2243 octets] - [09/11/2021 23:31:48]
AdwCleaner[S11].txt - [2304 octets] - [14/11/2021 00:26:08]
AdwCleaner[S12].txt - [2365 octets] - [20/11/2021 11:43:21]
AdwCleaner[S13].txt - [2426 octets] - [05/12/2021 23:07:12]
AdwCleaner[S14].txt - [2487 octets] - [14/12/2021 22:04:30]
AdwCleaner[S15].txt - [2548 octets] - [20/12/2021 23:48:23]
AdwCleaner[S16].txt - [2609 octets] - [31/12/2021 15:53:50]
AdwCleaner[S17].txt - [2670 octets] - [02/01/2022 23:00:20]
AdwCleaner[S18].txt - [2731 octets] - [18/01/2022 19:04:00]
AdwCleaner[S19].txt - [2792 octets] - [29/01/2022 23:37:15]
AdwCleaner[S20].txt - [2853 octets] - [14/02/2022 12:11:48]
AdwCleaner[S21].txt - [2914 octets] - [16/03/2022 18:55:01]
AdwCleaner[S22].txt - [2975 octets] - [22/03/2022 18:26:14]
AdwCleaner[S23].txt - [3036 octets] - [01/04/2022 21:55:39]
AdwCleaner[S24].txt - [3097 octets] - [15/04/2022 21:15:49]
AdwCleaner[S25].txt - [3158 octets] - [25/04/2022 20:15:48]
AdwCleaner[S26].txt - [3219 octets] - [26/04/2022 09:47:16]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S27].txt ##########

Pokud nic nenajde tak tlačítko čištění opravy není k dispozici. Bývalo u starších verzí.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Děkuji.

#14 Příspěvek od Rudy »

Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Tady problém nejspíše nebude.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roman7
Návštěvník
Návštěvník
Příspěvky: 331
Registrován: 25 bře 2008 23:09

Re: Prosím o kontrolu logu. Děkuji.

#15 Příspěvek od roman7 »

Fix result of Farbar Recovery Scan Tool (x64) Version: 22-04-2022
Ran by Roman (26-04-2022 16:11:56) Run:2
Running from C:\Users\Roman\Desktop
Loaded Profiles: Roman
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Policies\Mozilla => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 20249295 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 51415 B
Edge => 0 B
Firefox => 0 B
Opera => 69113816 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 88732 B
NetworkService => 88732 B
Roman => 605602156 B

RecycleBin => 8540456 B
EmptyTemp: => 672.6 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 16:12:06 ====

Odpovědět