Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Kontrola

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
karlospatmat
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 384
Registrován: 28 led 2012 23:21
Bydliště: Novosedly nad Nežárkou
Kontaktovat uživatele:

Kontrola

#1 Příspěvek od karlospatmat »

Zdravím a poprosil bych o preventivní kontrolu Notebook skoro důchodce sotva chroupe zde log: Logfile of random's system information tool 1.10 (written by random/random)
Run by Ahoj at 2018-03-26 17:22:50
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 162 GB (34%) free of 477 GB
Total RAM: 4061 MB (33% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:24:29, on 26.3.2018
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18939)
Boot mode: Normal

Running processes:
C:\Users\Ahoj\AppData\Local\Microsoft\BingSvc\BingSvc.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\Program Files\trend micro\Ahoj.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=29530
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\RunOnce: [SBrowserCheck] "%ALLUSERSPROFILE%\Avast Software\Avast\SecureBrowser\avast_browser_setup_checker.exe" /s /run_source=av_update /runonce /cgid 101
O4 - HKCU\..\Run: [BingSvc] C:\Users\Ahoj\AppData\Local\Microsoft\BingSvc\BingSvc.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Flvto YouTube Downloader] "C:\Users\Ahoj\AppData\Local\Flvto YouTube Downloader\FlvtoYoutubeDownloader.Redesign.exe" /minimize
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Panasonic Local Printer Service - Panasonic System Networks Co., Ltd. - C:\PROGRA~2\PANASO~1\LocalCom\lmsrvnt.exe
O23 - Service: Panasonic Trap Monitor Service - Panasonic - C:\PROGRA~2\PANASO~1\TRAPMO~1\Trapmnnt.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8684 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"taskhost.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\PROGRA~2\PANASO~1\LocalCom\lmsrvnt.exe
C:\PROGRA~2\PANASO~1\TRAPMO~1\Trapmnnt.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 1168
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Users\Ahoj\AppData\Local\Microsoft\BingSvc\BingSvc.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
AvastUI.exe /nogui
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --ran-launcher --started-from-shortcut
"C:\Program Files (x86)\Opera\51.0.2830.55\opera_crashreporter.exe" --ran-launcher --started-from-shortcut --crash-reporter-parent-id=1016
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=gpu-process --field-trial-handle=1240,12688999023791728143,1563922972716305684,131072 --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3828 --gpu-preferences=GAAAAAAAAAAABwAAAQAAAAAAAAAAAGAA --gpu-vendor-id=0x8086 --gpu-device-id=0x2a42 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2302 --gpu-driver-date=2-11-2011 --gpu-secondary-vendor-ids=0x8086 --gpu-secondary-device-ids=0x2a43 --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3828 --service-request-channel-token=BD2B127B0705134360D07EE253E1B460 --mojo-platform-channel-handle=1244 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1240,12688999023791728143,1563922972716305684,131072 --service-pipe-token=779D0BB26B86224B38C98C33C7331333 --lang=cs --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3828 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=779D0BB26B86224B38C98C33C7331333 --renderer-client-id=4 --mojo-platform-channel-handle=2180 /prefetch:1
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1240,12688999023791728143,1563922972716305684,131072 --service-pipe-token=97FC6086B09747260D9376D6A1CB94C7 --lang=cs --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3828 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=97FC6086B09747260D9376D6A1CB94C7 --renderer-client-id=5 --mojo-platform-channel-handle=2328 /prefetch:1
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1240,12688999023791728143,1563922972716305684,131072 --service-pipe-token=EC9EBB019B819AFCA8D21AEF37E5F33B --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3828 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=EC9EBB019B819AFCA8D21AEF37E5F33B --renderer-client-id=7 --mojo-platform-channel-handle=3148 /prefetch:1
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1240,12688999023791728143,1563922972716305684,131072 --service-pipe-token=5EE8EF0D775F9B03B7BB3524512702B5 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3828 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=5EE8EF0D775F9B03B7BB3524512702B5 --renderer-client-id=8 --mojo-platform-channel-handle=3184 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=65.0.3325.181 --initial-client-data=0x88,0x8c,0x90,0x84,0x94,0x7fef67cf1e8,0x7fef67cf1f8,0x7fef67cf208
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=1472 --on-initialized-event-handle=360 --parent-handle=384 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --gpu-preferences=KAAAAAAAAAAABwAAAQAAAAAAAAAAAGAAAQAAAAAAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAKAAAAEAAAAAAAAAAAAAAACwAAABAAAAAAAAAAAQAAAAoAAAAQAAAAAAAAAAEAAAALAAAA --gpu-vendor-id=0x8086 --gpu-device-id=0x2a42 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2302 --gpu-driver-date=2-11-2011 --gpu-secondary-vendor-ids=0x8086 --gpu-secondary-device-ids=0x2a43 --service-request-channel-token=ACF44DADA9B9C2AC380C3879D25FA0AF --mojo-platform-channel-handle=1244 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --service-pipe-token=93DBAEDC0F2AFF38DE6F8276B3EA9281 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --enable-compositor-image-animations --service-request-channel-token=93DBAEDC0F2AFF38DE6F8276B3EA9281 --renderer-client-id=3 --mojo-platform-channel-handle=2552 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --service-pipe-token=FACEB6571552D33C9CF71D92FE0F5598 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --enable-compositor-image-animations --service-request-channel-token=FACEB6571552D33C9CF71D92FE0F5598 --renderer-client-id=4 --mojo-platform-channel-handle=2716 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --service-pipe-token=164C2BD0D86145F9BC657E3F5376077C --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --enable-compositor-image-animations --service-request-channel-token=164C2BD0D86145F9BC657E3F5376077C --renderer-client-id=5 --mojo-platform-channel-handle=2816 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --service-pipe-token=8E1CA1B61E6FB5EE85F032DD9AC45276 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --enable-compositor-image-animations --service-request-channel-token=8E1CA1B61E6FB5EE85F032DD9AC45276 --renderer-client-id=9 --mojo-platform-channel-handle=2324 /prefetch:1
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1240,12688999023791728143,1563922972716305684,131072 --service-pipe-token=131F2C10392D5F930735EF7DCA4773F7 --lang=cs --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3828 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=131F2C10392D5F930735EF7DCA4773F7 --renderer-client-id=20 --mojo-platform-channel-handle=8264 /prefetch:1
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1240,12688999023791728143,1563922972716305684,131072 --service-pipe-token=1DBC194B2A57A29DBC758B792AD5269D --lang=cs --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3828 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=1DBC194B2A57A29DBC758B792AD5269D --renderer-client-id=24 --mojo-platform-channel-handle=6312 /prefetch:1
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1240,12688999023791728143,1563922972716305684,131072 --service-pipe-token=F2FDEFB154F27A117C91E43582595154 --lang=cs --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3828 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=F2FDEFB154F27A117C91E43582595154 --renderer-client-id=25 --mojo-platform-channel-handle=3996 /prefetch:1
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1240,12688999023791728143,1563922972716305684,131072 --service-pipe-token=93F798C69985AB480475B33FE1D335F4 --lang=cs --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3828 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=93F798C69985AB480475B33FE1D335F4 --renderer-client-id=27 --mojo-platform-channel-handle=4104 /prefetch:1

"C:\Users\Ahoj\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Ahoj\AppData\Roaming\Mozilla\Firefox\Profiles\4910dvl4.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2018-02-20 938712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2018-02-20 812248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2018-03-13 245608]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-02-11 386584]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-02-11 162328]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BingSvc"=C:\Users\Ahoj\AppData\Local\Microsoft\BingSvc\BingSvc.exe [2015-11-05 144008]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2017-10-06 27832264]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2018-03-06 17074688]
"Flvto YouTube Downloader"=C:\Users\Ahoj\AppData\Local\Flvto YouTube Downloader\FlvtoYoutubeDownloader.Redesign.exe /minimize []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe [2018-03-06 17074688]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Ahoj\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Ahoj\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panasonic Device Manager for Multi-Function Station software]
C:\Program Files (x86)\Panasonic\MFStation\PCCMFSDM.exe [2010-02-02 135168]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panasonic Device Monitor Wakeup]
C:\Program Files (x86)\Panasonic\Device Monitor\dmwakeup.exe [2010-01-09 413696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panasonic IP Address Checker for Multi-Function Station software]
C:\Program Files (x86)\Panasonic\MFStation\PccChgIP.exe [2010-01-18 131072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panasonic LPD Manager]
C:\Program Files (x86)\Panasonic\MFStation\PCMFSMLM.exe [2010-01-18 151552]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panasonic PCFAX for Multi-Function Station software]
C:\Program Files (x86)\Panasonic\MFStation\KmPcFax.exe [2010-01-18 765952]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
C:\Windows\system32\igfxpers.exe [2011-02-11 417304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"SBrowserCheck"=C:\ProgramData\Avast Software\Avast\SecureBrowser\avast_browser_setup_checker.exe [2018-03-22 2482128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-02-11 272896]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2018-03-26 17:22:51 ----D---- C:\Program Files\trend micro
2018-03-26 17:22:50 ----D---- C:\rsit
2018-03-14 00:58:36 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2018-03-14 00:58:36 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2018-03-14 00:58:36 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2018-03-14 00:58:36 ----A---- C:\Windows\SYSWOW64\jscript.dll
2018-03-14 00:58:36 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2018-03-14 00:58:36 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2018-03-14 00:58:36 ----A---- C:\Windows\system32\ieetwproxystub.dll
2018-03-14 00:58:36 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2018-03-14 00:58:36 ----A---- C:\Windows\system32\ieetwcollector.exe
2018-03-14 00:58:35 ----A---- C:\Windows\SYSWOW64\wininet.dll
2018-03-14 00:58:35 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2018-03-14 00:58:35 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2018-03-14 00:58:35 ----A---- C:\Windows\SYSWOW64\ieui.dll
2018-03-14 00:58:34 ----A---- C:\Windows\system32\mshtmled.dll
2018-03-14 00:58:34 ----A---- C:\Windows\system32\jsproxy.dll
2018-03-14 00:58:34 ----A---- C:\Windows\system32\ieui.dll
2018-03-14 00:58:33 ----A---- C:\Windows\system32\mshtmlmedia.dll
2018-03-14 00:58:33 ----A---- C:\Windows\system32\jscript9diag.dll
2018-03-14 00:58:33 ----A---- C:\Windows\system32\jscript9.dll
2018-03-14 00:58:32 ----A---- C:\Windows\system32\wininet.dll
2018-03-14 00:58:32 ----A---- C:\Windows\system32\MshtmlDac.dll
2018-03-14 00:58:31 ----A---- C:\Windows\system32\mshtml.dll
2018-03-14 00:58:30 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2018-03-14 00:58:30 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2018-03-14 00:58:29 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2018-03-14 00:58:28 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2018-03-14 00:58:28 ----A---- C:\Windows\SYSWOW64\inseng.dll
2018-03-14 00:58:28 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2018-03-14 00:58:28 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2018-03-14 00:58:27 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2018-03-14 00:58:27 ----A---- C:\Windows\system32\msfeeds.dll
2018-03-14 00:58:26 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2018-03-14 00:58:26 ----A---- C:\Windows\system32\ieapfltr.dll
2018-03-14 00:58:25 ----A---- C:\Windows\system32\ieframe.dll
2018-03-14 00:58:23 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2018-03-14 00:58:23 ----A---- C:\Windows\system32\iertutil.dll
2018-03-14 00:58:22 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2018-03-14 00:58:22 ----A---- C:\Windows\system32\vbscript.dll
2018-03-14 00:58:22 ----A---- C:\Windows\system32\urlmon.dll
2018-03-14 00:58:22 ----A---- C:\Windows\system32\ntoskrnl.exe
2018-03-14 00:58:22 ----A---- C:\Windows\system32\jscript.dll
2018-03-14 00:58:21 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2018-03-14 00:58:21 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2018-03-14 00:58:21 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2018-03-14 00:58:21 ----A---- C:\Windows\system32\ieUnatt.exe
2018-03-14 00:58:20 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2018-03-14 00:58:20 ----A---- C:\Windows\system32\win32k.sys
2018-03-14 00:58:20 ----A---- C:\Windows\system32\MSVidCtl.dll
2018-03-14 00:58:19 ----A---- C:\Windows\system32\iedkcs32.dll
2018-03-14 00:58:19 ----A---- C:\Windows\system32\ie4uinit.exe
2018-03-14 00:58:19 ----A---- C:\Windows\system32\dxtrans.dll
2018-03-14 00:58:19 ----A---- C:\Windows\system32\dxtmsft.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\occache.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\msrating.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\webcheck.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\occache.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\msrating.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\msi.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\inseng.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\iernonce.dll
2018-03-14 00:58:17 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2018-03-14 00:58:17 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2018-03-14 00:58:17 ----A---- C:\Windows\SYSWOW64\msi.dll
2018-03-14 00:58:17 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2018-03-14 00:58:17 ----A---- C:\Windows\system32\zipfldr.dll
2018-03-14 00:58:17 ----A---- C:\Windows\system32\WinSCard.dll
2018-03-14 00:58:17 ----A---- C:\Windows\system32\scesrv.dll
2018-03-14 00:58:17 ----A---- C:\Windows\system32\msra.exe
2018-03-14 00:58:16 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2018-03-14 00:58:16 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2018-03-14 00:58:16 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2018-03-14 00:58:16 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2018-03-14 00:58:16 ----A---- C:\Windows\system32\TSpkg.dll
2018-03-14 00:58:16 ----A---- C:\Windows\system32\ntdll.dll
2018-03-14 00:58:16 ----A---- C:\Windows\system32\iesetup.dll
2018-03-14 00:58:16 ----A---- C:\Windows\system32\hal.dll
2018-03-14 00:58:16 ----A---- C:\Windows\system32\drivers\volmgr.sys
2018-03-14 00:58:16 ----A---- C:\Windows\system32\drivers\pci.sys
2018-03-14 00:58:16 ----A---- C:\Windows\system32\drivers\msrpc.sys
2018-03-14 00:58:16 ----A---- C:\Windows\system32\drivers\msisadrv.sys
2018-03-14 00:58:16 ----A---- C:\Windows\system32\drivers\acpi.sys
2018-03-14 00:58:15 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2018-03-14 00:58:15 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2018-03-14 00:58:15 ----A---- C:\Windows\system32\streamci.dll
2018-03-14 00:58:15 ----A---- C:\Windows\system32\msihnd.dll
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\vdrvroot.sys
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\ULIAGPKX.SYS
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\termdd.sys
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\swenum.sys
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\NV_AGP.SYS
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\mssmbios.sys
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\AGP440.sys
2018-03-14 00:58:14 ----A---- C:\Windows\system32\winload.exe
2018-03-14 00:58:14 ----A---- C:\Windows\system32\msrahc.dll
2018-03-14 00:58:14 ----A---- C:\Windows\system32\lsasrv.dll
2018-03-14 00:58:14 ----A---- C:\Windows\system32\drivers\videoprt.sys
2018-03-14 00:58:14 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2018-03-14 00:58:14 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2018-03-14 00:58:14 ----A---- C:\Windows\system32\drivers\isapnp.sys
2018-03-14 00:58:14 ----A---- C:\Windows\system32\consent.exe
2018-03-14 00:58:13 ----A---- C:\Windows\SYSWOW64\sdchange.exe
2018-03-14 00:58:13 ----A---- C:\Windows\system32\sdchange.exe
2018-03-14 00:58:13 ----A---- C:\Windows\system32\rpcrt4.dll
2018-03-14 00:58:13 ----A---- C:\Windows\system32\racpldlg.dll
2018-03-14 00:58:12 ----A---- C:\Windows\SYSWOW64\racpldlg.dll
2018-03-14 00:58:12 ----A---- C:\Windows\SYSWOW64\msra.exe
2018-03-14 00:58:12 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2018-03-14 00:58:12 ----A---- C:\Windows\SYSWOW64\certcli.dll
2018-03-14 00:58:12 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\winsrv.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\wdigest.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\schannel.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\rstrui.exe
2018-03-14 00:58:12 ----A---- C:\Windows\system32\kernel32.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\kerberos.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\drivers\wmiacpi.sys
2018-03-14 00:58:12 ----A---- C:\Windows\system32\conhost.exe
2018-03-14 00:58:12 ----A---- C:\Windows\system32\certcli.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\advapi32.dll
2018-03-14 00:58:11 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2018-03-14 00:58:11 ----A---- C:\Windows\SYSWOW64\schannel.dll
2018-03-14 00:58:11 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2018-03-14 00:58:11 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2018-03-14 00:58:11 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\srcore.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\smss.exe
2018-03-14 00:58:11 ----A---- C:\Windows\system32\rpchttp.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\ncrypt.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\msv1_0.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\KernelBase.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\drivers\errdev.sys
2018-03-14 00:58:11 ----A---- C:\Windows\system32\csrsrv.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\auditpol.exe
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\setup16.exe
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\wow64win.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\wow64.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\sspicli.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\ntvdm64.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2018-03-14 00:58:10 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2018-03-14 00:58:10 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2018-03-14 00:58:10 ----A---- C:\Windows\system32\bcrypt.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\appidsvc.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\appidapi.dll
2018-03-14 00:58:09 ----A---- C:\Windows\SYSWOW64\srclient.dll
2018-03-14 00:58:09 ----A---- C:\Windows\SYSWOW64\secur32.dll
2018-03-14 00:58:09 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2018-03-14 00:58:09 ----A---- C:\Windows\SYSWOW64\credssp.dll
2018-03-14 00:58:09 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\wow64cpu.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\sspisrv.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\srclient.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\setbcdlocale.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\secur32.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\msiexec.exe
2018-03-14 00:58:09 ----A---- C:\Windows\system32\lsass.exe
2018-03-14 00:58:09 ----A---- C:\Windows\system32\drivers\appid.sys
2018-03-14 00:58:09 ----A---- C:\Windows\system32\cryptbase.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\credssp.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2018-03-14 00:58:08 ----A---- C:\Windows\SYSWOW64\wow32.dll
2018-03-14 00:58:08 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2018-03-14 00:58:08 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2018-03-14 00:58:08 ----A---- C:\Windows\system32\authui.dll
2018-03-14 00:58:08 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2018-03-14 00:58:08 ----A---- C:\Windows\system32\apisetschema.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\user.exe
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\instnm.exe
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\authui.dll
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2018-03-14 00:58:07 ----A---- C:\Windows\system32\msobjs.dll
2018-03-14 00:58:07 ----A---- C:\Windows\system32\msaudite.dll
2018-03-14 00:58:07 ----A---- C:\Windows\system32\appinfo.dll
2018-03-14 00:58:07 ----A---- C:\Windows\system32\adtschema.dll
2018-03-14 00:58:06 ----A---- C:\Windows\SYSWOW64\tzres.dll
2018-03-14 00:58:06 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2018-03-14 00:58:06 ----A---- C:\Windows\system32\tzres.dll
2018-03-14 00:58:06 ----A---- C:\Windows\system32\msimsg.dll
2018-03-14 00:54:34 ----A---- C:\Windows\system32\generaltel.dll
2018-03-14 00:54:34 ----A---- C:\Windows\system32\devinv.dll
2018-03-14 00:54:34 ----A---- C:\Windows\system32\centel.dll
2018-03-14 00:54:34 ----A---- C:\Windows\system32\appraiser.dll
2018-03-14 00:54:34 ----A---- C:\Windows\system32\aeinv.dll
2018-03-14 00:54:33 ----A---- C:\Windows\system32\invagent.dll
2018-03-14 00:54:33 ----A---- C:\Windows\system32\CompatTelRunner.exe
2018-03-14 00:54:33 ----A---- C:\Windows\system32\aitstatic.exe
2018-03-14 00:54:33 ----A---- C:\Windows\system32\aepic.dll
2018-03-14 00:54:33 ----A---- C:\Windows\system32\acmigration.dll
2018-03-13 08:57:36 ----A---- C:\Windows\system32\aswBoot.exe
2018-02-28 13:16:59 ----D---- C:\ProgramData\SP_FT_Logs

======List of files/folders modified in the last 1 month======

2018-03-26 17:24:20 ----D---- C:\Users\Ahoj\AppData\Roaming\Skype
2018-03-26 17:24:03 ----D---- C:\Windows\Temp
2018-03-26 17:22:51 ----RD---- C:\Program Files
2018-03-26 15:42:49 ----D---- C:\Windows\System32
2018-03-26 15:42:49 ----D---- C:\Windows\inf
2018-03-26 15:42:49 ----A---- C:\Windows\system32\PerfStringBackup.INI
2018-03-26 15:41:41 ----D---- C:\Program Files (x86)\Opera
2018-03-26 15:39:09 ----D---- C:\Windows\Prefetch
2018-03-26 15:34:29 ----D---- C:\Windows\system32\config
2018-03-26 00:11:05 ----D---- C:\Users\Ahoj\AppData\Roaming\vlc
2018-03-22 01:57:44 ----SHD---- C:\System Volume Information
2018-03-14 05:21:32 ----D---- C:\Windows\rescache
2018-03-14 04:32:33 ----D---- C:\Windows\winsxs
2018-03-14 04:28:17 ----D---- C:\Windows\system32\catroot
2018-03-14 04:27:33 ----D---- C:\Windows\SYSWOW64\en-US
2018-03-14 04:27:33 ----D---- C:\Windows\SYSWOW64\cs-CZ
2018-03-14 04:27:33 ----D---- C:\Windows\SysWOW64
2018-03-14 04:27:33 ----D---- C:\Program Files\Internet Explorer
2018-03-14 04:27:33 ----D---- C:\Program Files (x86)\Internet Explorer
2018-03-14 04:27:31 ----D---- C:\Windows\system32\en-US
2018-03-14 04:27:31 ----D---- C:\Windows\system32\drivers
2018-03-14 04:27:31 ----D---- C:\Windows\system32\cs-CZ
2018-03-14 04:27:29 ----D---- C:\Windows\system32\CodeIntegrity
2018-03-14 04:27:29 ----D---- C:\Windows\system32\Boot
2018-03-14 04:27:29 ----D---- C:\Windows\system32\appraiser
2018-03-14 04:27:29 ----D---- C:\Windows\AppPatch
2018-03-14 04:27:27 ----D---- C:\Windows\system32\DriverStore
2018-03-14 04:10:26 ----SHD---- C:\Windows\Installer
2018-03-14 04:10:24 ----SHD---- C:\Config.Msi
2018-03-14 04:10:21 ----D---- C:\ProgramData\Microsoft Help
2018-03-14 04:09:37 ----D---- C:\Windows\system32\MRT
2018-03-14 04:05:40 ----AC---- C:\Windows\system32\MRT-KB890830.exe
2018-03-14 04:05:24 ----AC---- C:\Windows\system32\MRT.exe
2018-03-14 02:41:15 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2018-03-14 02:41:12 ----D---- C:\Windows\system32\Macromed
2018-03-14 02:41:11 ----D---- C:\Windows\SYSWOW64\Macromed
2018-03-14 00:44:13 ----D---- C:\Windows\system32\catroot2
2018-03-13 21:27:05 ----D---- C:\Windows\system32\Tasks
2018-03-13 20:54:47 ----D---- C:\Windows
2018-03-12 09:14:34 ----D---- C:\Windows\system32\NDF
2018-03-04 22:43:08 ----SD---- C:\Users\Ahoj\AppData\Roaming\Microsoft
2018-03-01 00:18:38 ----D---- C:\Users\Ahoj\AppData\Roaming\PhotoScape
2018-02-28 13:16:59 ----HD---- C:\ProgramData

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2018-03-13 199440]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2018-03-13 343752]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2018-03-13 57680]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2018-03-13 84368]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2018-03-13 380528]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2018-01-01 213736]
R1 aswArPot;aswArPot; C:\Windows\system32\drivers\aswArPot.sys [2018-03-13 196648]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2018-03-13 227504]
R1 aswHdsKe;aswHdsKe; C:\Windows\system32\drivers\aswHdsKe.sys [2018-03-13 215320]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-09-02 41832]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2018-03-13 110328]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2018-03-13 1026696]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2018-03-13 460520]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2018-03-13 146656]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2018-03-13 205976]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-02-11 10628640]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x64.sys [2009-08-23 56320]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2007-08-09 13680]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2018-03-13 46968]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2017-05-18 131984]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2014-03-31 58056]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2017-05-18 166288]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 wdm_usb;wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [2016-08-16 159936]
S3 WinUsb;YunOS USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2018-02-09 83984]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2018-03-13 303728]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Panasonic Local Printer Service;Panasonic Local Printer Service; C:\PROGRA~2\PANASO~1\LocalCom\lmsrvnt.exe [2010-01-09 49152]
R2 Panasonic Trap Monitor Service;Panasonic Trap Monitor Service; C:\PROGRA~2\PANASO~1\TRAPMO~1\Trapmnnt.exe [2004-02-26 69632]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2018-03-13 7556704]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-10-04 107624]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-10-03 128608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-13 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-07-18 317408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-03-14 272384]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2014-03-31 1512640]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-13 107848]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2018-02-10 116224]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2018-02-02 194000]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2016-08-23 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-10-03 52832]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]

-----------------EOF-----------------
Windows 7 64bitový (6.1,sestavení 7601)Service Pack 1
Procesor: Celeron Dual-Core CPU T3100 @1.9Ghz 1.90
Paměť ram:4GB. HDD 500GB
Avast free ,
Dokud žiješ, uč se! Nečekej, že moudrost s sebou přinese stáří.

Na průšvihy mám talent od přírody :D :frusty: :wacko: :86:

Doporučuji: :arrow: Cclener, MBAM
email:karlospatmat@seznam.cz
--------------------------------------------------------------------------------------
Dobrá nálada nevyřeší všechny tvoje problémy, ale nasere tolik lidí, že stojí za to si jí udržet.

Kodlz
Přítel fóra
Přítel fóra
Příspěvky: 780
Registrován: 30 kvě 2008 12:11

Re: Kontrola

#2 Příspěvek od Kodlz »

Ahoj,
Poprosim o vlozeni logu FRST.txt a Addition.txt z aplikace FRSTLauncher.exe (Farbar Recovery Scan Tool). Navod naleznes zde: https://forum.viry.cz/viewtopic.php?f=13&t=152707
Obsah Additional.txt muzes vlozit rovnou sem do vlakna.

karlospatmat
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 384
Registrován: 28 led 2012 23:21
Bydliště: Novosedly nad Nežárkou
Kontaktovat uživatele:

Re: Kontrola

#3 Příspěvek od karlospatmat »

Zdravím a děkuji :Logfile of random's system information tool 1.10 (written by random/random)
Run by Ahoj at 2018-03-27 15:34:50
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 161 GB (34%) free of 477 GB
Total RAM: 4061 MB (24% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:34:58, on 27.3.2018
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18939)
Boot mode: Normal

Running processes:
C:\Users\Ahoj\AppData\Local\Microsoft\BingSvc\BingSvc.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\trend micro\Ahoj.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=29530
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\RunOnce: [SBrowserCheck] "%ALLUSERSPROFILE%\Avast Software\Avast\SecureBrowser\avast_browser_setup_checker.exe" /s /run_source=av_update /runonce /cgid 101
O4 - HKCU\..\Run: [BingSvc] C:\Users\Ahoj\AppData\Local\Microsoft\BingSvc\BingSvc.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Flvto YouTube Downloader] "C:\Users\Ahoj\AppData\Local\Flvto YouTube Downloader\FlvtoYoutubeDownloader.Redesign.exe" /minimize
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Panasonic Local Printer Service - Panasonic System Networks Co., Ltd. - C:\PROGRA~2\PANASO~1\LocalCom\lmsrvnt.exe
O23 - Service: Panasonic Trap Monitor Service - Panasonic - C:\PROGRA~2\PANASO~1\TRAPMO~1\Trapmnnt.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8735 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"taskhost.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\PROGRA~2\PANASO~1\LocalCom\lmsrvnt.exe
C:\PROGRA~2\PANASO~1\TRAPMO~1\Trapmnnt.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 1168
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Users\Ahoj\AppData\Local\Microsoft\BingSvc\BingSvc.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
AvastUI.exe /nogui
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=65.0.3325.181 --initial-client-data=0x88,0x8c,0x90,0x84,0x94,0x7fef67cf1e8,0x7fef67cf1f8,0x7fef67cf208
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=1472 --on-initialized-event-handle=360 --parent-handle=384 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --gpu-preferences=KAAAAAAAAAAABwAAAQAAAAAAAAAAAGAAAQAAAAAAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAKAAAAEAAAAAAAAAAAAAAACwAAABAAAAAAAAAAAQAAAAoAAAAQAAAAAAAAAAEAAAALAAAA --gpu-vendor-id=0x8086 --gpu-device-id=0x2a42 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2302 --gpu-driver-date=2-11-2011 --gpu-secondary-vendor-ids=0x8086 --gpu-secondary-device-ids=0x2a43 --service-request-channel-token=ACF44DADA9B9C2AC380C3879D25FA0AF --mojo-platform-channel-handle=1244 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --service-pipe-token=93DBAEDC0F2AFF38DE6F8276B3EA9281 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --enable-compositor-image-animations --service-request-channel-token=93DBAEDC0F2AFF38DE6F8276B3EA9281 --renderer-client-id=3 --mojo-platform-channel-handle=2552 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --service-pipe-token=FACEB6571552D33C9CF71D92FE0F5598 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --enable-compositor-image-animations --service-request-channel-token=FACEB6571552D33C9CF71D92FE0F5598 --renderer-client-id=4 --mojo-platform-channel-handle=2716 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --service-pipe-token=164C2BD0D86145F9BC657E3F5376077C --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --enable-compositor-image-animations --service-request-channel-token=164C2BD0D86145F9BC657E3F5376077C --renderer-client-id=5 --mojo-platform-channel-handle=2816 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --service-pipe-token=8E1CA1B61E6FB5EE85F032DD9AC45276 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --enable-compositor-image-animations --service-request-channel-token=8E1CA1B61E6FB5EE85F032DD9AC45276 --renderer-client-id=9 --mojo-platform-channel-handle=2324 /prefetch:1
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --service-pipe-token=959D2431ACDBEDC36D615C0BA8451135 --lang=cs --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --enable-compositor-image-animations --service-request-channel-token=959D2431ACDBEDC36D615C0BA8451135 --renderer-client-id=23 --mojo-platform-channel-handle=4420 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1236,14021035605574766741,6984396363386956377,131072 --service-pipe-token=E616F9EE10945C471B3746D93E2E7407 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --enable-compositor-image-animations --service-request-channel-token=E616F9EE10945C471B3746D93E2E7407 --renderer-client-id=24 --mojo-platform-channel-handle=7016 /prefetch:1
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --ran-launcher --started-from-shortcut
"C:\Program Files (x86)\Opera\51.0.2830.55\opera_crashreporter.exe" --ran-launcher --started-from-shortcut --crash-reporter-parent-id=2776
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=gpu-process --field-trial-handle=1364,11506741152929982860,9009870897996882468,131072 --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3904 --gpu-preferences=GAAAAAAAAAAABwAAAQAAAAAAAAAAAGAA --gpu-vendor-id=0x8086 --gpu-device-id=0x2a42 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2302 --gpu-driver-date=2-11-2011 --gpu-secondary-vendor-ids=0x8086 --gpu-secondary-device-ids=0x2a43 --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3904 --service-request-channel-token=D7A3A9E55D7431BF37AFE29E735081B5 --mojo-platform-channel-handle=1380 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1364,11506741152929982860,9009870897996882468,131072 --service-pipe-token=CE9B4983CF191CF25BFA89D6E2AD14D3 --lang=cs --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3904 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=CE9B4983CF191CF25BFA89D6E2AD14D3 --renderer-client-id=4 --mojo-platform-channel-handle=2040 /prefetch:1
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1364,11506741152929982860,9009870897996882468,131072 --service-pipe-token=8D2739510A8B96EE363611E7C50C5C1B --lang=cs --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3904 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=8D2739510A8B96EE363611E7C50C5C1B --renderer-client-id=5 --mojo-platform-channel-handle=2256 /prefetch:1
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1364,11506741152929982860,9009870897996882468,131072 --service-pipe-token=5C0D05B175B20ACF8F2381DC4C3F9138 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3904 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=5C0D05B175B20ACF8F2381DC4C3F9138 --renderer-client-id=7 --mojo-platform-channel-handle=3744 /prefetch:1
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1364,11506741152929982860,9009870897996882468,131072 --service-pipe-token=3CCDC5440075A0A0DABAB2A9BA8B3E75 --lang=cs --extension-process --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3904 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=3CCDC5440075A0A0DABAB2A9BA8B3E75 --renderer-client-id=8 --mojo-platform-channel-handle=3864 /prefetch:1
"C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe" --type=renderer --field-trial-handle=1364,11506741152929982860,9009870897996882468,131072 --service-pipe-token=3C7D1C5C27C9668A8BF9D36D1678DE20 --lang=cs --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --with-feature:installer-pref-default-overrides-support=on --with-feature:installer-hide-from-program-and-features=off --with-feature:installer-support-x64-download=on --with-feature:installer-handle-proprietary-uris=off --crash-reporter-pid=3904 --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --enable-gpu-async-worker-context --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;0,18,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;1,18,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;2,18,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;3,18,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553;4,18,3553;5,0,3553;5,1,3553;5,2,3553;5,3,3553;5,4,3553;5,5,3553;5,6,3553;5,7,3553;5,8,3553;5,9,3553;5,10,3553;5,11,3553;5,12,3553;5,13,3553;5,14,3553;5,15,3553;5,16,3553;5,17,3553;5,18,3553;6,0,3553;6,1,3553;6,2,3553;6,3,3553;6,4,3553;6,5,3553;6,6,3553;6,7,3553;6,8,3553;6,9,3553;6,10,3553;6,11,3553;6,12,3553;6,13,3553;6,14,3553;6,15,3553;6,16,3553;6,17,3553;6,18,3553 --disable-accelerated-video-decode --service-request-channel-token=3C7D1C5C27C9668A8BF9D36D1678DE20 --renderer-client-id=12 --mojo-platform-channel-handle=6052 /prefetch:1

"C:\Program Files\AVAST Software\Avast\AvastUI.exe" --type=renderer --disable-gpu-compositing --disable-pinch --no-sandbox --primordial-pipe-token=748CD14B3C213E5467B638C2177AB7B8 --lang=en-US --lang=en-US --log-file="C:\Users\Ahoj\AppData\Roaming\AVAST Software\Avast\log\cef_log.txt" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/57.3.2987.1601 Safari/537.36 Avastium (18.2.2328)" --proxy-auto-detect --disable-webaudio --mute-audio --force-wave-audio --disable-software-rasterizer --no-sandbox --blacklist-accelerated-compositing --disable-accelerated-2d-canvas --disable-accelerated-compositing --disable-accelerated-layers --disable-accelerated-video-decode --blacklist-webgl --disable-bundled-ppapi-flash --disable-flash-3d --enable-aggressive-domstorage-flushing --enable-media-stream --allow-file-access-from-files=1 --pack_loading_disabled=1 --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --disable-webrtc-hw-vp8-encoding --disable-gpu-compositing --service-request-channel-token=748CD14B3C213E5467B638C2177AB7B8 --renderer-client-id=8 --mojo-platform-channel-handle=3844 /prefetch:1
"C:\Users\Ahoj\Desktop\FRST64.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe7_ Global\UsGthrCtrlFltPipeMssGthrPipe7 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Users\Ahoj\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Ahoj\AppData\Roaming\Mozilla\Firefox\Profiles\4910dvl4.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2018-02-20 938712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2018-02-20 812248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2018-03-13 245608]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-02-11 386584]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-02-11 162328]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BingSvc"=C:\Users\Ahoj\AppData\Local\Microsoft\BingSvc\BingSvc.exe [2015-11-05 144008]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2017-10-06 27832264]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2018-03-06 17074688]
"Flvto YouTube Downloader"=C:\Users\Ahoj\AppData\Local\Flvto YouTube Downloader\FlvtoYoutubeDownloader.Redesign.exe /minimize []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe [2018-03-06 17074688]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Ahoj\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Ahoj\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panasonic Device Manager for Multi-Function Station software]
C:\Program Files (x86)\Panasonic\MFStation\PCCMFSDM.exe [2010-02-02 135168]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panasonic Device Monitor Wakeup]
C:\Program Files (x86)\Panasonic\Device Monitor\dmwakeup.exe [2010-01-09 413696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panasonic IP Address Checker for Multi-Function Station software]
C:\Program Files (x86)\Panasonic\MFStation\PccChgIP.exe [2010-01-18 131072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panasonic LPD Manager]
C:\Program Files (x86)\Panasonic\MFStation\PCMFSMLM.exe [2010-01-18 151552]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panasonic PCFAX for Multi-Function Station software]
C:\Program Files (x86)\Panasonic\MFStation\KmPcFax.exe [2010-01-18 765952]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
C:\Windows\system32\igfxpers.exe [2011-02-11 417304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"SBrowserCheck"=C:\ProgramData\Avast Software\Avast\SecureBrowser\avast_browser_setup_checker.exe [2018-03-22 2482128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-02-11 272896]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2018-03-27 15:33:45 ----D---- C:\FRST
2018-03-26 17:22:51 ----D---- C:\Program Files\trend micro
2018-03-26 17:22:50 ----D---- C:\rsit
2018-03-14 00:58:36 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2018-03-14 00:58:36 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2018-03-14 00:58:36 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2018-03-14 00:58:36 ----A---- C:\Windows\SYSWOW64\jscript.dll
2018-03-14 00:58:36 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2018-03-14 00:58:36 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2018-03-14 00:58:36 ----A---- C:\Windows\system32\ieetwproxystub.dll
2018-03-14 00:58:36 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2018-03-14 00:58:36 ----A---- C:\Windows\system32\ieetwcollector.exe
2018-03-14 00:58:35 ----A---- C:\Windows\SYSWOW64\wininet.dll
2018-03-14 00:58:35 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2018-03-14 00:58:35 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2018-03-14 00:58:35 ----A---- C:\Windows\SYSWOW64\ieui.dll
2018-03-14 00:58:34 ----A---- C:\Windows\system32\mshtmled.dll
2018-03-14 00:58:34 ----A---- C:\Windows\system32\jsproxy.dll
2018-03-14 00:58:34 ----A---- C:\Windows\system32\ieui.dll
2018-03-14 00:58:33 ----A---- C:\Windows\system32\mshtmlmedia.dll
2018-03-14 00:58:33 ----A---- C:\Windows\system32\jscript9diag.dll
2018-03-14 00:58:33 ----A---- C:\Windows\system32\jscript9.dll
2018-03-14 00:58:32 ----A---- C:\Windows\system32\wininet.dll
2018-03-14 00:58:32 ----A---- C:\Windows\system32\MshtmlDac.dll
2018-03-14 00:58:31 ----A---- C:\Windows\system32\mshtml.dll
2018-03-14 00:58:30 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2018-03-14 00:58:30 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2018-03-14 00:58:29 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2018-03-14 00:58:28 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2018-03-14 00:58:28 ----A---- C:\Windows\SYSWOW64\inseng.dll
2018-03-14 00:58:28 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2018-03-14 00:58:28 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2018-03-14 00:58:27 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2018-03-14 00:58:27 ----A---- C:\Windows\system32\msfeeds.dll
2018-03-14 00:58:26 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2018-03-14 00:58:26 ----A---- C:\Windows\system32\ieapfltr.dll
2018-03-14 00:58:25 ----A---- C:\Windows\system32\ieframe.dll
2018-03-14 00:58:23 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2018-03-14 00:58:23 ----A---- C:\Windows\system32\iertutil.dll
2018-03-14 00:58:22 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2018-03-14 00:58:22 ----A---- C:\Windows\system32\vbscript.dll
2018-03-14 00:58:22 ----A---- C:\Windows\system32\urlmon.dll
2018-03-14 00:58:22 ----A---- C:\Windows\system32\ntoskrnl.exe
2018-03-14 00:58:22 ----A---- C:\Windows\system32\jscript.dll
2018-03-14 00:58:21 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2018-03-14 00:58:21 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2018-03-14 00:58:21 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2018-03-14 00:58:21 ----A---- C:\Windows\system32\ieUnatt.exe
2018-03-14 00:58:20 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2018-03-14 00:58:20 ----A---- C:\Windows\system32\win32k.sys
2018-03-14 00:58:20 ----A---- C:\Windows\system32\MSVidCtl.dll
2018-03-14 00:58:19 ----A---- C:\Windows\system32\iedkcs32.dll
2018-03-14 00:58:19 ----A---- C:\Windows\system32\ie4uinit.exe
2018-03-14 00:58:19 ----A---- C:\Windows\system32\dxtrans.dll
2018-03-14 00:58:19 ----A---- C:\Windows\system32\dxtmsft.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\occache.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\msrating.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2018-03-14 00:58:18 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\webcheck.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\occache.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\msrating.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\msi.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\inseng.dll
2018-03-14 00:58:18 ----A---- C:\Windows\system32\iernonce.dll
2018-03-14 00:58:17 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2018-03-14 00:58:17 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2018-03-14 00:58:17 ----A---- C:\Windows\SYSWOW64\msi.dll
2018-03-14 00:58:17 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2018-03-14 00:58:17 ----A---- C:\Windows\system32\zipfldr.dll
2018-03-14 00:58:17 ----A---- C:\Windows\system32\WinSCard.dll
2018-03-14 00:58:17 ----A---- C:\Windows\system32\scesrv.dll
2018-03-14 00:58:17 ----A---- C:\Windows\system32\msra.exe
2018-03-14 00:58:16 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2018-03-14 00:58:16 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2018-03-14 00:58:16 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2018-03-14 00:58:16 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2018-03-14 00:58:16 ----A---- C:\Windows\system32\TSpkg.dll
2018-03-14 00:58:16 ----A---- C:\Windows\system32\ntdll.dll
2018-03-14 00:58:16 ----A---- C:\Windows\system32\iesetup.dll
2018-03-14 00:58:16 ----A---- C:\Windows\system32\hal.dll
2018-03-14 00:58:16 ----A---- C:\Windows\system32\drivers\volmgr.sys
2018-03-14 00:58:16 ----A---- C:\Windows\system32\drivers\pci.sys
2018-03-14 00:58:16 ----A---- C:\Windows\system32\drivers\msrpc.sys
2018-03-14 00:58:16 ----A---- C:\Windows\system32\drivers\msisadrv.sys
2018-03-14 00:58:16 ----A---- C:\Windows\system32\drivers\acpi.sys
2018-03-14 00:58:15 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2018-03-14 00:58:15 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2018-03-14 00:58:15 ----A---- C:\Windows\system32\streamci.dll
2018-03-14 00:58:15 ----A---- C:\Windows\system32\msihnd.dll
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\vdrvroot.sys
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\ULIAGPKX.SYS
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\termdd.sys
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\swenum.sys
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\NV_AGP.SYS
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\mssmbios.sys
2018-03-14 00:58:15 ----A---- C:\Windows\system32\drivers\AGP440.sys
2018-03-14 00:58:14 ----A---- C:\Windows\system32\winload.exe
2018-03-14 00:58:14 ----A---- C:\Windows\system32\msrahc.dll
2018-03-14 00:58:14 ----A---- C:\Windows\system32\lsasrv.dll
2018-03-14 00:58:14 ----A---- C:\Windows\system32\drivers\videoprt.sys
2018-03-14 00:58:14 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2018-03-14 00:58:14 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2018-03-14 00:58:14 ----A---- C:\Windows\system32\drivers\isapnp.sys
2018-03-14 00:58:14 ----A---- C:\Windows\system32\consent.exe
2018-03-14 00:58:13 ----A---- C:\Windows\SYSWOW64\sdchange.exe
2018-03-14 00:58:13 ----A---- C:\Windows\system32\sdchange.exe
2018-03-14 00:58:13 ----A---- C:\Windows\system32\rpcrt4.dll
2018-03-14 00:58:13 ----A---- C:\Windows\system32\racpldlg.dll
2018-03-14 00:58:12 ----A---- C:\Windows\SYSWOW64\racpldlg.dll
2018-03-14 00:58:12 ----A---- C:\Windows\SYSWOW64\msra.exe
2018-03-14 00:58:12 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2018-03-14 00:58:12 ----A---- C:\Windows\SYSWOW64\certcli.dll
2018-03-14 00:58:12 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\winsrv.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\wdigest.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\schannel.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\rstrui.exe
2018-03-14 00:58:12 ----A---- C:\Windows\system32\kernel32.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\kerberos.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\drivers\wmiacpi.sys
2018-03-14 00:58:12 ----A---- C:\Windows\system32\conhost.exe
2018-03-14 00:58:12 ----A---- C:\Windows\system32\certcli.dll
2018-03-14 00:58:12 ----A---- C:\Windows\system32\advapi32.dll
2018-03-14 00:58:11 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2018-03-14 00:58:11 ----A---- C:\Windows\SYSWOW64\schannel.dll
2018-03-14 00:58:11 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2018-03-14 00:58:11 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2018-03-14 00:58:11 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\srcore.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\smss.exe
2018-03-14 00:58:11 ----A---- C:\Windows\system32\rpchttp.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\ncrypt.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\msv1_0.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\KernelBase.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\drivers\errdev.sys
2018-03-14 00:58:11 ----A---- C:\Windows\system32\csrsrv.dll
2018-03-14 00:58:11 ----A---- C:\Windows\system32\auditpol.exe
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\setup16.exe
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2018-03-14 00:58:10 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\wow64win.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\wow64.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\sspicli.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\ntvdm64.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2018-03-14 00:58:10 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2018-03-14 00:58:10 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2018-03-14 00:58:10 ----A---- C:\Windows\system32\bcrypt.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\appidsvc.dll
2018-03-14 00:58:10 ----A---- C:\Windows\system32\appidapi.dll
2018-03-14 00:58:09 ----A---- C:\Windows\SYSWOW64\srclient.dll
2018-03-14 00:58:09 ----A---- C:\Windows\SYSWOW64\secur32.dll
2018-03-14 00:58:09 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2018-03-14 00:58:09 ----A---- C:\Windows\SYSWOW64\credssp.dll
2018-03-14 00:58:09 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\wow64cpu.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\sspisrv.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\srclient.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\setbcdlocale.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\secur32.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\msiexec.exe
2018-03-14 00:58:09 ----A---- C:\Windows\system32\lsass.exe
2018-03-14 00:58:09 ----A---- C:\Windows\system32\drivers\appid.sys
2018-03-14 00:58:09 ----A---- C:\Windows\system32\cryptbase.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\credssp.dll
2018-03-14 00:58:09 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2018-03-14 00:58:08 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2018-03-14 00:58:08 ----A---- C:\Windows\SYSWOW64\wow32.dll
2018-03-14 00:58:08 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2018-03-14 00:58:08 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2018-03-14 00:58:08 ----A---- C:\Windows\system32\authui.dll
2018-03-14 00:58:08 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2018-03-14 00:58:08 ----A---- C:\Windows\system32\apisetschema.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2018-03-14 00:58:07 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\user.exe
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\instnm.exe
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\authui.dll
2018-03-14 00:58:07 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2018-03-14 00:58:07 ----A---- C:\Windows\system32\msobjs.dll
2018-03-14 00:58:07 ----A---- C:\Windows\system32\msaudite.dll
2018-03-14 00:58:07 ----A---- C:\Windows\system32\appinfo.dll
2018-03-14 00:58:07 ----A---- C:\Windows\system32\adtschema.dll
2018-03-14 00:58:06 ----A---- C:\Windows\SYSWOW64\tzres.dll
2018-03-14 00:58:06 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2018-03-14 00:58:06 ----A---- C:\Windows\system32\tzres.dll
2018-03-14 00:58:06 ----A---- C:\Windows\system32\msimsg.dll
2018-03-14 00:54:34 ----A---- C:\Windows\system32\generaltel.dll
2018-03-14 00:54:34 ----A---- C:\Windows\system32\devinv.dll
2018-03-14 00:54:34 ----A---- C:\Windows\system32\centel.dll
2018-03-14 00:54:34 ----A---- C:\Windows\system32\appraiser.dll
2018-03-14 00:54:34 ----A---- C:\Windows\system32\aeinv.dll
2018-03-14 00:54:33 ----A---- C:\Windows\system32\invagent.dll
2018-03-14 00:54:33 ----A---- C:\Windows\system32\CompatTelRunner.exe
2018-03-14 00:54:33 ----A---- C:\Windows\system32\aitstatic.exe
2018-03-14 00:54:33 ----A---- C:\Windows\system32\aepic.dll
2018-03-14 00:54:33 ----A---- C:\Windows\system32\acmigration.dll
2018-03-13 08:57:36 ----A---- C:\Windows\system32\aswBoot.exe
2018-02-28 13:16:59 ----D---- C:\ProgramData\SP_FT_Logs

======List of files/folders modified in the last 1 month======

2018-03-27 15:34:58 ----D---- C:\Windows\Prefetch
2018-03-27 15:34:24 ----D---- C:\Windows\Temp
2018-03-27 15:33:51 ----D---- C:\Windows
2018-03-27 15:33:20 ----D---- C:\Users\Ahoj\AppData\Roaming\Skype
2018-03-27 14:44:50 ----D---- C:\Windows\system32\config
2018-03-27 14:07:24 ----D---- C:\Users\Ahoj\AppData\Roaming\vlc
2018-03-26 22:46:32 ----D---- C:\Windows\System32
2018-03-26 22:46:32 ----D---- C:\Windows\inf
2018-03-26 22:46:32 ----A---- C:\Windows\system32\PerfStringBackup.INI
2018-03-26 17:22:51 ----RD---- C:\Program Files
2018-03-26 15:41:41 ----D---- C:\Program Files (x86)\Opera
2018-03-22 01:57:44 ----SHD---- C:\System Volume Information
2018-03-14 05:21:32 ----D---- C:\Windows\rescache
2018-03-14 04:32:33 ----D---- C:\Windows\winsxs
2018-03-14 04:28:17 ----D---- C:\Windows\system32\catroot
2018-03-14 04:27:33 ----D---- C:\Windows\SYSWOW64\en-US
2018-03-14 04:27:33 ----D---- C:\Windows\SYSWOW64\cs-CZ
2018-03-14 04:27:33 ----D---- C:\Windows\SysWOW64
2018-03-14 04:27:33 ----D---- C:\Program Files\Internet Explorer
2018-03-14 04:27:33 ----D---- C:\Program Files (x86)\Internet Explorer
2018-03-14 04:27:31 ----D---- C:\Windows\system32\en-US
2018-03-14 04:27:31 ----D---- C:\Windows\system32\drivers
2018-03-14 04:27:31 ----D---- C:\Windows\system32\cs-CZ
2018-03-14 04:27:29 ----D---- C:\Windows\system32\CodeIntegrity
2018-03-14 04:27:29 ----D---- C:\Windows\system32\Boot
2018-03-14 04:27:29 ----D---- C:\Windows\system32\appraiser
2018-03-14 04:27:29 ----D---- C:\Windows\AppPatch
2018-03-14 04:27:27 ----D---- C:\Windows\system32\DriverStore
2018-03-14 04:10:26 ----SHD---- C:\Windows\Installer
2018-03-14 04:10:24 ----SHD---- C:\Config.Msi
2018-03-14 04:10:21 ----D---- C:\ProgramData\Microsoft Help
2018-03-14 04:09:37 ----D---- C:\Windows\system32\MRT
2018-03-14 04:05:40 ----AC---- C:\Windows\system32\MRT-KB890830.exe
2018-03-14 04:05:24 ----AC---- C:\Windows\system32\MRT.exe
2018-03-14 02:41:15 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2018-03-14 02:41:12 ----D---- C:\Windows\system32\Macromed
2018-03-14 02:41:11 ----D---- C:\Windows\SYSWOW64\Macromed
2018-03-14 00:44:13 ----D---- C:\Windows\system32\catroot2
2018-03-13 21:27:05 ----D---- C:\Windows\system32\Tasks
2018-03-12 09:14:34 ----D---- C:\Windows\system32\NDF
2018-03-04 22:43:08 ----SD---- C:\Users\Ahoj\AppData\Roaming\Microsoft
2018-03-01 00:18:38 ----D---- C:\Users\Ahoj\AppData\Roaming\PhotoScape
2018-02-28 13:16:59 ----HD---- C:\ProgramData

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2018-03-13 199440]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2018-03-13 343752]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2018-03-13 57680]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2018-03-13 84368]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2018-03-13 380528]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2018-01-01 213736]
R1 aswArPot;aswArPot; C:\Windows\system32\drivers\aswArPot.sys [2018-03-13 196648]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2018-03-13 227504]
R1 aswHdsKe;aswHdsKe; C:\Windows\system32\drivers\aswHdsKe.sys [2018-03-13 215320]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-09-02 41832]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2018-03-13 110328]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2018-03-13 1026696]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2018-03-13 460520]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2018-03-13 146656]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-02-11 10628640]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x64.sys [2009-08-23 56320]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2007-08-09 13680]
S2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2018-03-13 205976]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2018-03-13 46968]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2017-05-18 131984]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2014-03-31 58056]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2017-05-18 166288]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 wdm_usb;wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [2016-08-16 159936]
S3 WinUsb;YunOS USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2018-02-09 83984]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2018-03-13 303728]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Panasonic Local Printer Service;Panasonic Local Printer Service; C:\PROGRA~2\PANASO~1\LocalCom\lmsrvnt.exe [2010-01-09 49152]
R2 Panasonic Trap Monitor Service;Panasonic Trap Monitor Service; C:\PROGRA~2\PANASO~1\TRAPMO~1\Trapmnnt.exe [2004-02-26 69632]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2018-03-13 7556704]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-10-04 107624]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-10-03 128608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-13 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-07-18 317408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-03-14 272384]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2014-03-31 1512640]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-13 107848]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2018-02-10 116224]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2018-02-02 194000]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2016-08-23 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-10-03 52832]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]

-----------------EOF-----------------
Windows 7 64bitový (6.1,sestavení 7601)Service Pack 1
Procesor: Celeron Dual-Core CPU T3100 @1.9Ghz 1.90
Paměť ram:4GB. HDD 500GB
Avast free ,
Dokud žiješ, uč se! Nečekej, že moudrost s sebou přinese stáří.

Na průšvihy mám talent od přírody :D :frusty: :wacko: :86:

Doporučuji: :arrow: Cclener, MBAM
email:karlospatmat@seznam.cz
--------------------------------------------------------------------------------------
Dobrá nálada nevyřeší všechny tvoje problémy, ale nasere tolik lidí, že stojí za to si jí udržet.

karlospatmat
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 384
Registrován: 28 led 2012 23:21
Bydliště: Novosedly nad Nežárkou
Kontaktovat uživatele:

Re: Kontrola

#4 Příspěvek od karlospatmat »

to první je omyl má chyba omlouvám se: 1 log : Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14.03.2018
Ran by Ahoj (administrator) on AHOJ-PC (27-03-2018 15:33:51)
Running from C:\Users\Ahoj\Desktop
Loaded Profiles: Ahoj (Available Profiles: Ahoj)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Panasonic System Networks Co., Ltd.) C:\Program Files (x86)\Panasonic\LocalCom\LMSRVNT.EXE
(Panasonic) C:\Program Files (x86)\Panasonic\TrapMonitor\Trapmnnt.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(© 2015 Microsoft Corporation) C:\Users\Ahoj\AppData\Local\Microsoft\BingSvc\BingSvc.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Opera Software) C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\51.0.2830.55\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\51.0.2830.55\opera.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [245608 2018-03-13] (AVAST Software)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\RunOnce: [SBrowserCheck] => C:\ProgramData\Avast Software\Avast\SecureBrowser\avast_browser_setup_checker.exe [2482128 2018-03-22] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1467582651-902518819-1997573368-1001\...\Run: [BingSvc] => C:\Users\Ahoj\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-05] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-1467582651-902518819-1997573368-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832264 2017-10-06] (Skype Technologies S.A.)
HKU\S-1-5-21-1467582651-902518819-1997573368-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [17074688 2018-03-06] (Piriform Ltd)
HKU\S-1-5-21-1467582651-902518819-1997573368-1001\...\Run: [Flvto YouTube Downloader] => "C:\Users\Ahoj\AppData\Local\Flvto YouTube Downloader\FlvtoYoutubeDownloader.Redesign.exe" /minimize

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{15C6241A-138E-487D-9A80-589D08ADD722}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{DA4BEA5B-4C57-443D-924F-572A5E70D663}: [DhcpNameServer] 192.168.137.129

Internet Explorer:
==================
HKU\S-1-5-21-1467582651-902518819-1997573368-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=29530
SearchScopes: HKU\S-1-5-21-1467582651-902518819-1997573368-1001 -> {2591C4A2-9BD3-40D9-B76F-E1E69771D6CF} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-1467582651-902518819-1997573368-1001 -> {4ADBD8DE-DB0A-4501-AC7D-E2481AE3C09C} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_29530
SearchScopes: HKU\S-1-5-21-1467582651-902518819-1997573368-1001 -> {4EB248E1-31C5-442B-964D-7124ACBD8D51} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_29530
SearchScopes: HKU\S-1-5-21-1467582651-902518819-1997573368-1001 -> {4F3E412D-1FD5-4843-974A-FAF882493AA4} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_29530
SearchScopes: HKU\S-1-5-21-1467582651-902518819-1997573368-1001 -> {62AF80FA-E38B-47A5-8D67-6EF81F216844} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-1467582651-902518819-1997573368-1001 -> {7245C9F2-753C-4F54-B6DB-10F658EEE769} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_29530
SearchScopes: HKU\S-1-5-21-1467582651-902518819-1997573368-1001 -> {75EEDC5A-907A-421A-8409-79E12AD0AC65} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-1467582651-902518819-1997573368-1001 -> {880EF298-227C-40B3-9FC3-B17D600071B4} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-1467582651-902518819-1997573368-1001 -> {AA84DADE-4E28-40CA-BB44-0F3226AA44FB} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_29530
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2018-02-20] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2018-02-20] (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)

FireFox:
========
FF DefaultProfile: 4910dvl4.default
FF ProfilePath: C:\Users\Ahoj\AppData\Roaming\Mozilla\Firefox\Profiles\4910dvl4.default [2018-03-27]
FF Extension: (Deník.cz) - C:\Users\Ahoj\AppData\Roaming\Mozilla\Firefox\Profiles\4910dvl4.default\Extensions\rozsireni@denik.cz.xpi [2018-02-02]
FF Extension: (Avast SafePrice) - C:\Users\Ahoj\AppData\Roaming\Mozilla\Firefox\Profiles\4910dvl4.default\Extensions\sp@avast.com.xpi [2018-01-07]
FF Extension: (Avast Online Security) - C:\Users\Ahoj\AppData\Roaming\Mozilla\Firefox\Profiles\4910dvl4.default\Extensions\wrc@avast.com.xpi [2017-11-21]
FF Extension: (Visual Bookmarks) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\vb@yandex.ru.xpi [2017-02-28] [Legacy]
FF Extension: ("Yandex Elements") - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\yasearch@yandex.ru.xpi [2017-02-28] [Legacy]
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-02-12] (Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default -> msn.com
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC ... earchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR DefaultSuggestURL: Default -> hxxp://www.bing.com/osjson.aspx?FORM=__PARAM__ ... earchTerms}
CHR Profile: C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default [2018-03-27]
CHR Extension: (Prezentace) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]
CHR Extension: (Dokumenty) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14]
CHR Extension: (Disk Google) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-13]
CHR Extension: (YouTube) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-13]
CHR Extension: (Avast Online Security (BETA)) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\daanglpcpkjjlkhcbladppjphglbigam [2018-03-26]
CHR Extension: (Deník.cz) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkijmafkbebkmogapjicaaombilieopj [2018-02-02]
CHR Extension: (Avast SafePrice) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-03-14]
CHR Extension: (Bing) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2018-03-10]
CHR Extension: (Avast SafePrice) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoadmpfijfcmokecmkgolhbaeclfage [2018-03-10]
CHR Extension: (Tabulky) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (Dokumenty Google offline) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-13]
CHR Extension: (Avast Online Security) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-03-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-24]
CHR Extension: (Gmail) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-13]
CHR Extension: (Chrome Media Router) - C:\Users\Ahoj\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-03-26]
CHR HKU\S-1-5-21-1467582651-902518819-1997573368-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fcoadmpfijfcmokecmkgolhbaeclfage] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7556704 2018-03-13] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [303728 2018-03-13] (AVAST Software)
R2 Panasonic Local Printer Service; C:\Program Files (x86)\Panasonic\LocalCom\LMSRVNT.EXE [49152 2010-01-09] (Panasonic System Networks Co., Ltd.) [File not signed]
R2 Panasonic Trap Monitor Service; C:\Program Files (x86)\Panasonic\TrapMonitor\Trapmnnt.exe [69632 2004-02-26] (Panasonic) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [196648 2018-03-13] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdrivera.sys [227504 2018-03-13] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsha.sys [199440 2018-03-13] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswbloga.sys [343752 2018-03-13] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniva.sys [57680 2018-03-13] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [215320 2018-03-13] (AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [46968 2018-03-13] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [41832 2017-09-02] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [146656 2018-03-13] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [110328 2018-03-13] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [84368 2018-03-13] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1026696 2018-03-13] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [460520 2018-03-13] (AVAST Software)
S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [205976 2018-03-13] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [380528 2018-03-13] (AVAST Software)
S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATK64AMD.sys [13680 2007-08-09] ()
S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.)
S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [159936 2016-08-16] (MBB)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-03-27 15:33 - 2018-03-27 15:36 - 000016193 _____ C:\Users\Ahoj\Desktop\FRST.txt
2018-03-27 15:33 - 2018-03-27 15:33 - 000000000 ____D C:\FRST
2018-03-27 15:32 - 2018-03-27 15:32 - 000112640 _____ (forum.viry.cz) C:\Users\Ahoj\Desktop\FRSTLauncher.exe
2018-03-27 15:30 - 2018-03-27 15:31 - 002403328 _____ (Farbar) C:\Users\Ahoj\Desktop\FRST64.exe
2018-03-26 17:22 - 2018-03-27 15:34 - 000000000 ____D C:\Program Files\trend micro
2018-03-26 17:22 - 2018-03-26 17:24 - 000000000 ____D C:\rsit
2018-03-26 17:19 - 2018-03-26 17:19 - 001222144 _____ C:\Users\Ahoj\Desktop\RSITx64.exe
2018-03-25 11:58 - 2018-03-25 13:03 - 1855578064 _____ C:\Users\Ahoj\Desktop\SuperStar 2018 - 5. díl - 24. 3. 2018.mkv
2018-03-25 11:57 - 2018-03-25 12:22 - 742115334 _____ C:\Users\Ahoj\Desktop\Zmensovani 2017 CZ dabing Downsizing BRRip.avi
2018-03-23 12:14 - 2018-03-23 12:36 - 381192514 _____ C:\Users\Ahoj\Desktop\MASH 199.divx
2018-03-17 17:45 - 2018-03-17 19:33 - 1995984311 _____ C:\Users\Ahoj\Desktop\Maxinožka.mkv
2018-03-17 17:42 - 2018-03-17 18:56 - 2210261596 _____ C:\Users\Ahoj\Desktop\Jumanji Welcome to the Jungle.2017.CZ DABING.BRRip.avi
2018-03-14 00:58 - 2018-03-09 05:39 - 005580992 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2018-03-14 00:58 - 2018-03-09 05:39 - 000708288 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2018-03-14 00:58 - 2018-03-09 05:39 - 000262336 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2018-03-14 00:58 - 2018-03-09 05:39 - 000154816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2018-03-14 00:58 - 2018-03-09 05:39 - 000095424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2018-03-14 00:58 - 2018-03-09 05:18 - 000631640 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2018-03-14 00:58 - 2018-03-09 05:14 - 004044992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2018-03-14 00:58 - 2018-03-09 05:14 - 004025536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2018-03-14 00:58 - 2018-03-09 05:09 - 001665336 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 001461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 001212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 001163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000094720 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 05:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:47 - 001314064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:43 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:38 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2018-03-14 00:58 - 2018-03-09 04:38 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2018-03-14 00:58 - 2018-03-09 04:38 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2018-03-14 00:58 - 2018-03-09 04:37 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2018-03-14 00:58 - 2018-03-09 04:34 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2018-03-14 00:58 - 2018-03-09 04:34 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2018-03-14 00:58 - 2018-03-09 04:33 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2018-03-14 00:58 - 2018-03-09 04:31 - 000160256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2018-03-14 00:58 - 2018-03-09 04:30 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2018-03-14 00:58 - 2018-03-09 04:30 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2018-03-14 00:58 - 2018-03-09 04:29 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2018-03-14 00:58 - 2018-03-09 04:29 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2018-03-14 00:58 - 2018-03-09 04:26 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2018-03-14 00:58 - 2018-03-09 04:22 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2018-03-14 00:58 - 2018-03-09 04:22 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2018-03-14 00:58 - 2018-03-09 04:22 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2018-03-14 00:58 - 2018-03-09 04:22 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2018-03-14 00:58 - 2018-03-09 04:22 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2018-03-14 00:58 - 2018-03-09 04:21 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:21 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:21 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2018-03-14 00:58 - 2018-03-09 04:21 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2018-03-14 00:58 - 2018-03-01 10:36 - 003226112 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2018-03-14 00:58 - 2018-02-22 05:28 - 000217600 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2018-03-14 00:58 - 2018-02-22 05:06 - 000134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2018-03-14 00:58 - 2018-02-18 23:34 - 000634272 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2018-03-14 00:58 - 2018-02-17 06:27 - 000395928 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2018-03-14 00:58 - 2018-02-17 05:36 - 000340088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2018-03-14 00:58 - 2018-02-16 17:51 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2018-03-14 00:58 - 2018-02-16 17:51 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2018-03-14 00:58 - 2018-02-16 17:51 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2018-03-14 00:58 - 2018-02-16 17:45 - 025742848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2018-03-14 00:58 - 2018-02-16 17:44 - 013678080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2018-03-14 00:58 - 2018-02-16 17:24 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2018-03-14 00:58 - 2018-02-16 17:24 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2018-03-14 00:58 - 2018-02-16 17:24 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2018-03-14 00:58 - 2018-02-16 17:19 - 020286976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2018-03-14 00:58 - 2018-02-16 16:37 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2018-03-14 00:58 - 2018-02-16 16:37 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2018-03-14 00:58 - 2018-02-15 17:15 - 003241472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2018-03-14 00:58 - 2018-02-15 16:57 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2018-03-14 00:58 - 2018-02-10 20:35 - 000367296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2018-03-14 00:58 - 2018-02-10 20:35 - 000334528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2018-03-14 00:58 - 2018-02-10 20:35 - 000185024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2018-03-14 00:58 - 2018-02-10 20:35 - 000122560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NV_AGP.SYS
2018-03-14 00:58 - 2018-02-10 20:35 - 000068288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2018-03-14 00:58 - 2018-02-10 20:35 - 000064192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS
2018-03-14 00:58 - 2018-02-10 20:35 - 000063168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
2018-03-14 00:58 - 2018-02-10 20:35 - 000060608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AGP440.sys
2018-03-14 00:58 - 2018-02-10 20:35 - 000036032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vdrvroot.sys
2018-03-14 00:58 - 2018-02-10 20:35 - 000031936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys
2018-03-14 00:58 - 2018-02-10 20:35 - 000023744 _____ (Microsoft Corporation) C:\Windows\system32\streamci.dll
2018-03-14 00:58 - 2018-02-10 20:35 - 000020160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys
2018-03-14 00:58 - 2018-02-10 20:35 - 000015040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys
2018-03-14 00:58 - 2018-02-10 20:35 - 000012096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys
2018-03-14 00:58 - 2018-02-10 20:23 - 002292224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2018-03-14 00:58 - 2018-02-10 20:23 - 000330240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2018-03-14 00:58 - 2018-02-10 20:23 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\racpldlg.dll
2018-03-14 00:58 - 2018-02-10 20:11 - 003665920 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2018-03-14 00:58 - 2018-02-10 20:11 - 000369664 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2018-03-14 00:58 - 2018-02-10 20:11 - 000133120 _____ (Microsoft Corporation) C:\Windows\system32\msrahc.dll
2018-03-14 00:58 - 2018-02-10 20:11 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\racpldlg.dll
2018-03-14 00:58 - 2018-02-10 19:55 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2018-03-14 00:58 - 2018-02-10 19:55 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2018-03-14 00:58 - 2018-02-10 19:40 - 002901504 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2018-03-14 00:58 - 2018-02-10 19:40 - 000577536 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2018-03-14 00:58 - 2018-02-10 19:40 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2018-03-14 00:58 - 2018-02-10 19:40 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2018-03-14 00:58 - 2018-02-10 19:40 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2018-03-14 00:58 - 2018-02-10 19:37 - 005779968 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2018-03-14 00:58 - 2018-02-10 19:36 - 000108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msra.exe
2018-03-14 00:58 - 2018-02-10 19:36 - 000040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdchange.exe
2018-03-14 00:58 - 2018-02-10 19:36 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsraLegacy.tlb
2018-03-14 00:58 - 2018-02-10 19:32 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2018-03-14 00:58 - 2018-02-10 19:31 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2018-03-14 00:58 - 2018-02-10 19:29 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2018-03-14 00:58 - 2018-02-10 19:28 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2018-03-14 00:58 - 2018-02-10 19:28 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2018-03-14 00:58 - 2018-02-10 19:27 - 000817152 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2018-03-14 00:58 - 2018-02-10 19:27 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2018-03-14 00:58 - 2018-02-10 19:26 - 000653312 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe
2018-03-14 00:58 - 2018-02-10 19:26 - 000051712 _____ (Microsoft Corporation) C:\Windows\system32\sdchange.exe
2018-03-14 00:58 - 2018-02-10 19:25 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmiacpi.sys
2018-03-14 00:58 - 2018-02-10 19:25 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\errdev.sys
2018-03-14 00:58 - 2018-02-10 19:25 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\MsraLegacy.tlb
2018-03-14 00:58 - 2018-02-10 19:22 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2018-03-14 00:58 - 2018-02-10 19:20 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2018-03-14 00:58 - 2018-02-10 19:10 - 000499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2018-03-14 00:58 - 2018-02-10 19:10 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2018-03-14 00:58 - 2018-02-10 19:10 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2018-03-14 00:58 - 2018-02-10 19:09 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2018-03-14 00:58 - 2018-02-10 19:09 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2018-03-14 00:58 - 2018-02-10 19:09 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2018-03-14 00:58 - 2018-02-10 19:09 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2018-03-14 00:58 - 2018-02-10 19:06 - 002295296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2018-03-14 00:58 - 2018-02-10 19:06 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2018-03-14 00:58 - 2018-02-10 19:03 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2018-03-14 00:58 - 2018-02-10 19:03 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2018-03-14 00:58 - 2018-02-10 19:01 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2018-03-14 00:58 - 2018-02-10 19:01 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2018-03-14 00:58 - 2018-02-10 19:00 - 000661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2018-03-14 00:58 - 2018-02-10 19:00 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2018-03-14 00:58 - 2018-02-10 19:00 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2018-03-14 00:58 - 2018-02-10 18:57 - 015281664 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2018-03-14 00:58 - 2018-02-10 18:52 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2018-03-14 00:58 - 2018-02-10 18:50 - 000807936 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2018-03-14 00:58 - 2018-02-10 18:50 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2018-03-14 00:58 - 2018-02-10 18:47 - 002134016 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2018-03-14 00:58 - 2018-02-10 18:47 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2018-03-14 00:58 - 2018-02-10 18:47 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2018-03-14 00:58 - 2018-02-10 18:47 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2018-03-14 00:58 - 2018-02-10 18:46 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2018-03-14 00:58 - 2018-02-10 18:44 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2018-03-14 00:58 - 2018-02-10 18:41 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2018-03-14 00:58 - 2018-02-10 18:40 - 004496384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2018-03-14 00:58 - 2018-02-10 18:35 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2018-03-14 00:58 - 2018-02-10 18:34 - 000694784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2018-03-14 00:58 - 2018-02-10 18:33 - 002058240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2018-03-14 00:58 - 2018-02-10 18:33 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2018-03-14 00:58 - 2018-02-10 18:23 - 001545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2018-03-14 00:58 - 2018-02-10 18:12 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2018-03-14 00:58 - 2018-02-10 18:11 - 001313792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2018-03-14 00:58 - 2018-02-10 18:09 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2018-03-14 00:58 - 2018-02-02 20:40 - 000114368 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2018-03-14 00:58 - 2018-02-02 20:29 - 002365952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2018-03-14 00:58 - 2018-02-02 20:29 - 000337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2018-03-14 00:58 - 2018-02-02 20:29 - 000025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2018-03-14 00:58 - 2018-02-02 20:28 - 001806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2018-03-14 00:58 - 2018-02-02 20:16 - 003246080 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2018-03-14 00:58 - 2018-02-02 20:16 - 000504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2018-03-14 00:58 - 2018-02-02 20:16 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2018-03-14 00:58 - 2018-02-02 20:14 - 001942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2018-03-14 00:58 - 2018-02-02 20:14 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2018-03-14 00:58 - 2018-02-02 19:46 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2018-03-14 00:58 - 2018-02-02 19:36 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2018-03-14 00:58 - 2018-01-15 21:59 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2018-03-14 00:58 - 2018-01-15 21:40 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2018-03-14 00:58 - 2018-01-12 18:40 - 000407040 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2018-03-14 00:58 - 2018-01-12 18:26 - 000308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2018-03-14 00:54 - 2018-02-13 20:17 - 000136384 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2018-03-14 00:54 - 2018-02-13 20:10 - 000655872 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2018-03-14 00:54 - 2018-02-13 16:05 - 001994752 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2018-03-14 00:54 - 2018-02-13 16:05 - 001560064 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2018-03-14 00:54 - 2018-02-13 16:05 - 000740864 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2018-03-14 00:54 - 2018-02-13 16:05 - 000600576 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2018-03-14 00:54 - 2018-02-13 16:05 - 000451072 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2018-03-14 00:54 - 2018-02-13 16:05 - 000380928 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2018-03-14 00:54 - 2018-02-13 16:05 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2018-03-14 00:54 - 2018-02-13 16:05 - 000237568 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2018-03-13 18:36 - 2018-03-13 19:14 - 1136670412 _____ C:\Users\Ahoj\Desktop\Bajkeri.2017.mkv
2018-03-13 08:57 - 2018-03-13 08:57 - 000380768 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2018-03-06 21:15 - 2018-03-06 21:21 - 201848214 _____ C:\Users\Ahoj\Desktop\MASH 198 - Cena valky.avi
2018-03-06 20:50 - 2018-03-06 20:57 - 200036150 _____ C:\Users\Ahoj\Desktop\MASH 197 - Valecna dopisovatelka.avi
2018-03-06 20:45 - 2018-03-06 20:45 - 000060491 _____ C:\Users\Ahoj\Downloads\275262982_20170430_4_MCZB.pdf
2018-03-06 20:43 - 2018-03-06 20:44 - 000039964 _____ C:\Users\Ahoj\Downloads\275262982_20170331_3_MCZB.pdf
2018-03-06 20:38 - 2018-03-06 20:38 - 000124669 _____ C:\Users\Ahoj\Downloads\0000001891176003_20170331_D_003_000_M_C.pdf
2018-02-28 13:16 - 2018-02-28 13:17 - 000000000 ____D C:\ProgramData\SP_FT_Logs
2018-02-25 22:00 - 2018-02-25 22:58 - 952873126 _____ C:\Users\Ahoj\Desktop\Milý Johne CZ by soinicmaster.avi

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-03-27 15:36 - 2016-08-13 10:29 - 000000000 ____D C:\Users\Ahoj\AppData\Roaming\Skype
2018-03-27 14:07 - 2017-07-12 20:20 - 000000000 ____D C:\Users\Ahoj\AppData\Roaming\vlc
2018-03-27 03:25 - 2009-07-14 06:45 - 000015136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-03-27 03:25 - 2009-07-14 06:45 - 000015136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-03-26 22:46 - 2009-07-14 17:18 - 000668792 _____ C:\Windows\system32\perfh005.dat
2018-03-26 22:46 - 2009-07-14 17:18 - 000141420 _____ C:\Windows\system32\perfc005.dat
2018-03-26 22:46 - 2009-07-14 07:13 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2018-03-26 22:46 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2018-03-26 15:41 - 2016-08-13 10:03 - 000000000 ____D C:\Program Files (x86)\Opera
2018-03-26 15:35 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-03-26 14:37 - 2017-10-27 16:32 - 000004128 _____ C:\Windows\System32\Tasks\CCleaner Update
2018-03-26 14:31 - 2017-03-12 00:07 - 000004168 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2018-03-22 23:58 - 2016-08-13 10:08 - 000002224 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-03-22 23:57 - 2016-08-13 10:08 - 000002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-03-20 07:43 - 2016-08-15 10:24 - 000000000 ____D C:\Users\Ahoj\Desktop\martin
2018-03-19 14:25 - 2018-02-15 17:21 - 000000000 ____D C:\Users\Ahoj\AppData\Local\ElevatedDiagnostics
2018-03-17 09:06 - 2016-08-14 12:56 - 000000000 _____ C:\Windows\SysWOW64\last.dump
2018-03-15 21:23 - 2016-08-15 09:25 - 000000000 ___RD C:\Users\Ahoj\Desktop\Terka
2018-03-14 05:21 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\rescache
2018-03-14 04:31 - 2009-07-14 06:45 - 000410384 _____ C:\Windows\system32\FNTCACHE.DAT
2018-03-14 04:27 - 2016-08-25 04:01 - 000000000 ____D C:\Windows\system32\appraiser
2018-03-14 04:09 - 2016-08-13 13:07 - 000000000 ____D C:\Windows\system32\MRT
2018-03-14 04:05 - 2017-10-11 15:16 - 130364688 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2018-03-14 04:05 - 2016-08-13 13:07 - 130364688 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2018-03-14 02:41 - 2016-08-13 11:50 - 000804352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2018-03-14 02:41 - 2016-08-13 11:50 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2018-03-14 02:41 - 2016-08-13 11:50 - 000004512 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2018-03-14 02:41 - 2016-08-13 11:50 - 000004396 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2018-03-14 02:41 - 2016-08-13 11:50 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2018-03-14 02:41 - 2016-08-13 11:50 - 000000000 ____D C:\Windows\system32\Macromed
2018-03-13 21:26 - 2016-10-01 10:50 - 000000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2018-03-13 08:57 - 2017-11-21 09:02 - 000196648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2018-03-13 08:57 - 2016-08-13 10:14 - 000205976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2018-03-13 08:57 - 2016-08-13 10:13 - 000460520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2018-03-13 08:57 - 2016-08-13 10:13 - 000380528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2018-03-13 08:57 - 2016-08-13 10:13 - 000146656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2018-03-13 08:57 - 2016-08-13 10:13 - 000110328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2018-03-13 08:57 - 2016-08-13 10:13 - 000084368 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2018-03-13 08:57 - 2016-08-13 10:13 - 000046968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2018-03-13 08:56 - 2017-12-24 12:14 - 000215320 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2018-03-13 08:56 - 2017-03-12 00:07 - 000343752 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbloga.sys
2018-03-13 08:56 - 2017-03-12 00:07 - 000227504 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2018-03-13 08:56 - 2017-03-12 00:07 - 000199440 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsha.sys
2018-03-13 08:56 - 2017-03-12 00:07 - 000057680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniva.sys
2018-03-13 08:56 - 2016-08-13 10:13 - 001026696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2018-03-12 09:14 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2018-03-11 21:17 - 2016-08-13 10:03 - 000003844 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1471075423
2018-03-04 22:43 - 2009-07-14 17:36 - 000000000 ___RD C:\Users\Public\Recorded TV
2018-03-01 00:18 - 2017-06-14 16:53 - 000000000 ____D C:\Users\Ahoj\AppData\Roaming\PhotoScape
2018-02-26 20:00 - 2016-08-13 11:54 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-03-19 14:18

==================== End of FRST.txt ============================
Windows 7 64bitový (6.1,sestavení 7601)Service Pack 1
Procesor: Celeron Dual-Core CPU T3100 @1.9Ghz 1.90
Paměť ram:4GB. HDD 500GB
Avast free ,
Dokud žiješ, uč se! Nečekej, že moudrost s sebou přinese stáří.

Na průšvihy mám talent od přírody :D :frusty: :wacko: :86:

Doporučuji: :arrow: Cclener, MBAM
email:karlospatmat@seznam.cz
--------------------------------------------------------------------------------------
Dobrá nálada nevyřeší všechny tvoje problémy, ale nasere tolik lidí, že stojí za to si jí udržet.

karlospatmat
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 384
Registrován: 28 led 2012 23:21
Bydliště: Novosedly nad Nežárkou
Kontaktovat uživatele:

Re: Kontrola

#5 Příspěvek od karlospatmat »

a zde 2 log: Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14.03.2018
Ran by Ahoj (27-03-2018 15:37:26)
Running from C:\Users\Ahoj\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2016-08-13 07:48:50)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1467582651-902518819-1997573368-500 - Administrator - Disabled)
Ahoj (S-1-5-21-1467582651-902518819-1997573368-1001 - Administrator - Enabled) => C:\Users\Ahoj
Guest (S-1-5-21-1467582651-902518819-1997573368-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1467582651-902518819-1997573368-1002 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Active@ KillDisk 10 (HKLM\...\{6A633DB7-06E4-4EF1-8FD1-7F8812C590AD}_is1) (Version: 10 - LSoft Technologies Inc)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 18.011.20038 - Adobe Systems Incorporated)
Adobe Flash Player 29 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 29.0.0.113 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 18.2.2328 - AVAST Software)
Avidemux 2.6 - 64 bits (HKLM-x32\...\Avidemux 2.6 - 64 bits (64-bit)) (Version: 2.6.12.160304 - )
Blizzard App (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
CCleaner (HKLM\...\CCleaner) (Version: 5.41 - Piriform)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
DeepSkyStacker (HKLM-x32\...\{18435829-4E75-4CD1-9796-A62DBBAE2ED7}) (Version: 3.2.0 - )
Flvto YouTube Downloader (HKLM-x32\...\Flvto YouTube Downloader) (Version: 1.0.9 - Hotger)
Google Drive (HKLM-x32\...\{9BC95947-92FD-438B-A168-C01F9A5B7292}) (Version: 2.34.7529.6838 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 65.0.3325.181 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.7.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.7.02558 - Microsoft Corporation)
Microsoft .NET Framework 4.7.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02558 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0405-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1467582651-902518819-1997573368-1001\...\OneDriveSetup.exe) (Version: 17.3.6390.0509 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 57.0.4 (x64 cs) (HKLM\...\Mozilla Firefox 57.0.4 (x64 cs)) (Version: 57.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 57.0.3 - Mozilla)
Opera Stable 46.0.2597.39 (HKLM-x32\...\Opera 46.0.2597.39) (Version: 46.0.2597.39 - Opera Software)
Opera Stable 51.0.2830.55 (HKLM-x32\...\Opera 51.0.2830.55) (Version: 51.0.2830.55 - Opera Software)
Panasonic Easy Print Utility (HKLM-x32\...\{47D884A9-7354-4034-A663-81544A68B386}) (Version: 1.00.0000 - Panasonic System Networks Co., Ltd.)
Panasonic Multi-Function Station software (HKLM-x32\...\{53DE4FAD-F853-44F3-AC39-AD2940E5DD53}) (Version: 1.00 - Panasonic System Networks Co., Ltd.)
Panasonic V1.14.00CZ Monitor zařízení (HKLM-x32\...\{5061C9FB-BA2D-4498-92B6-5459A0E2F6E3}) (Version: 1.00 - Panasonic System Networks Co., Ltd.)
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Readiris Pro 7.0 (HKLM-x32\...\{875F2DAB-3B03-11D5-AB3E-000102B0F79A}) (Version: - )
SafeZone Stable 3.55.2393.607 (HKLM-x32\...\SafeZone 3.55.2393.607) (Version: 3.55.2393.607 - Avast Software) Hidden
SafeZone Stable 4.58.2552.909 (HKLM-x32\...\SafeZone 4.58.2552.909) (Version: 4.58.2552.909 - Avast Software) Hidden
Seznam Software (HKU\S-1-5-21-1467582651-902518819-1997573368-1001\...\SeznamInstall) (Version: - Seznam.cz)
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.151 - Skype Technologies S.A.)
Ultra Video Joiner 6.3.0506 (HKLM-x32\...\Ultra Video Joiner_is1) (Version: - Aone Software)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1467582651-902518819-1997573368-1001_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\Ahoj\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\FileCoAuthLib64.dll ()
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-10] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-10] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-10] (Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-03-13] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-03-13] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-03-13] (AVAST Software)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-10] (Google)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-04] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-04] (Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-03-13] (AVAST Software)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-10] (Google)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2011-02-11] (Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-03-13] (AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-04] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-04] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00042FAB-3CCE-4140-A38A-C08599417418} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-13] (Google Inc.)
Task: {130D912E-6C93-446B-9075-DF49B9C0A7E5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-03-14] (Adobe Systems Incorporated)
Task: {13256E3B-BDF4-44F7-BA33-1E3D3E72F114} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {1B46F699-A860-409C-8014-333C27564828} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-03-13] (AVAST Software)
Task: {445B459A-39C6-48A9-BB5C-D3A6E7DC2B33} - System32\Tasks\{C5656516-EDAF-4D37-BED5-54F7B9F85781} => C:\Windows\system32\pcalua.exe -a C:\Users\Ahoj\Desktop\msmsetup.exe -d C:\Users\Ahoj\Desktop
Task: {55353B3C-7F8A-4264-9FA4-FCC790CDE700} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-13] (Google Inc.)
Task: {57F2FA63-7FF5-4581-A273-2B7EB1DA6C62} - System32\Tasks\{915F1FA5-8E52-4BAA-8D95-BE281CF4E768} => c:\program files (x86)\opera\launcher.exe [2018-03-08] (Opera Software)
Task: {586D4A02-A3C8-4CCD-AAB0-A65260734179} - System32\Tasks\SafeZone scheduled Autoupdate 1471076158 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-08-04] (Avast Software)
Task: {A26F1BA8-E35A-4FAB-8C85-CB6E794981BE} - System32\Tasks\{215F793A-6846-4689-9A76-4A9157F26AE4} => C:\Windows\system32\pcalua.exe -a C:\Users\Ahoj\Desktop\msmsetup.exe -d C:\Users\Ahoj\Desktop
Task: {A83C813E-09F3-41F4-BBAB-85D64EB759B8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated)
Task: {AB5E6DF5-EA16-4979-9352-48C28E791BB2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-03-06] (Piriform Ltd)
Task: {C400B880-0E86-44C2-A36F-BFFACA9F6752} - System32\Tasks\{9FD752FF-6538-4788-833B-13C2C2B9B5BB} => C:\Windows\system32\pcalua.exe -a D:\AUTORUN.EXE -d D:\
Task: {C4D55DBA-52F6-4586-8BB7-252A5B2BD1A3} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-01-08] (AVAST Software)
Task: {D6AB681C-862B-4610-80F1-74B36432A50B} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-03-06] (Piriform Ltd)
Task: {EE913C65-9A16-4BCD-91E3-7F93F65CE2BD} - System32\Tasks\Opera scheduled Autoupdate 1471075423 => c:\program files (x86)\opera\launcher.exe [2018-03-08] (Opera Software)
Task: {F6CFE616-5FCF-432C-B8CA-7F277314B100} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_29_0_0_113_pepper.exe [2018-03-14] (Adobe Systems Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2016-08-23 14:23 - 2016-08-23 14:23 - 000959168 _____ () C:\Users\Ahoj\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll
2018-03-06 23:58 - 2018-03-06 23:58 - 000083784 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2018-03-22 23:57 - 2018-03-20 08:00 - 004435288 _____ () C:\Program Files (x86)\Google\Chrome\Application\65.0.3325.181\libglesv2.dll
2018-03-22 23:57 - 2018-03-20 08:00 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\65.0.3325.181\libegl.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000721624 _____ () c:\Program Files\AVAST Software\Avast\x64\vaarclient.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000912088 _____ () C:\Program Files\AVAST Software\Avast\x64\ffl2.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000341720 _____ () c:\Program Files\AVAST Software\Avast\x64\StreamBack.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000326872 _____ () C:\Program Files\AVAST Software\Avast\x64\tasks_core.dll
2018-03-11 21:17 - 2018-03-11 21:17 - 097173592 _____ () C:\Program Files (x86)\Opera\51.0.2830.55\opera_browser.dll
2018-03-11 21:17 - 2018-03-11 21:17 - 004438104 _____ () C:\Program Files (x86)\Opera\51.0.2830.55\libglesv2.dll
2018-03-11 21:17 - 2018-03-11 21:17 - 000100440 _____ () C:\Program Files (x86)\Opera\51.0.2830.55\libegl.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000287960 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000280280 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll
2018-03-25 14:55 - 2018-03-25 14:55 - 005805712 _____ () C:\Program Files\AVAST Software\Avast\defs\18032500\algo.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000756952 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000172760 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000964824 _____ () C:\Program Files\AVAST Software\Avast\shepherdsync.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000475352 _____ () C:\Program Files\AVAST Software\Avast\gui_cache.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000339672 _____ () C:\Program Files\AVAST Software\Avast\streamback_avast.dll
2018-03-27 11:47 - 2018-03-27 11:47 - 005807760 _____ () C:\Program Files\AVAST Software\Avast\defs\18032700\algo.dll
2017-09-26 22:22 - 2017-09-26 22:22 - 001984000 ____R () C:\Program Files (x86)\Skype\Phone\skypert.dll
2016-08-23 14:22 - 2016-08-23 14:22 - 000679624 _____ () C:\Users\Ahoj\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\ClientTelemetry.dll
2018-03-13 08:57 - 2018-03-13 08:57 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-03-13 08:56 - 2018-03-13 08:56 - 000275160 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1467582651-902518819-1997573368-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ahoj\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: cz.seznam.software.autoupdate => "C:\Users\Ahoj\AppData\Roaming\Seznam.cz\szninstall.exe" -c
MSCONFIG\startupreg: cz.seznam.software.szndesktop => "C:\Users\Ahoj\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
MSCONFIG\startupreg: Panasonic Device Manager for Multi-Function Station software => C:\Program Files (x86)\Panasonic\MFStation\PCCMFSDM.exe
MSCONFIG\startupreg: Panasonic Device Monitor Wakeup => C:\Program Files (x86)\Panasonic\Device Monitor\dmwakeup.exe
MSCONFIG\startupreg: Panasonic IP Address Checker for Multi-Function Station software => C:\Program Files (x86)\Panasonic\MFStation\PccChgIP.exe -s10
MSCONFIG\startupreg: Panasonic LPD Manager => C:\Program Files (x86)\Panasonic\MFStation\PCMFSMLM.exe
MSCONFIG\startupreg: Panasonic PCFAX for Multi-Function Station software => C:\Program Files (x86)\Panasonic\MFStation\KmPcFax.exe -1
MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe
MSCONFIG\startupreg: seznam-listicka-distribuce => "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{ED81318F-73F5-4496-A868-81485A05E0BF}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{531FD7B5-178F-41AD-A50A-DD5E4A8DCE1A}] => (Allow) C:\PROGRA~2\PANASO~1\TRAPMO~1\Trapmnnt.exe
FirewallRules: [{1C4A7BCE-A392-47CD-B22E-836B4C82A592}] => (Allow) C:\PROGRA~2\PANASO~1\TRAPMO~1\Trapmnnt.exe
FirewallRules: [{86C18735-2E28-4B2B-A86F-C4D6CC25A9E8}] => (Allow) C:\Program Files (x86)\Panasonic\Device Monitor\DMList.exe
FirewallRules: [{81F40EBC-41CC-4586-B9B1-9270840D36FB}] => (Allow) C:\Program Files (x86)\Panasonic\Device Monitor\DMList.exe
FirewallRules: [{3B9B52E3-963F-44BC-8DB8-5BFCC6081B69}] => (Allow) C:\Windows\SysWOW64\pccmflpd.exe
FirewallRules: [{B2F16955-5093-46A7-A44E-49656932EBC0}] => (Allow) C:\Windows\SysWOW64\pccmflpd.exe
FirewallRules: [{D94B6E08-0BFB-4D64-ABEB-EFB4183D2B0E}] => (Allow) C:\Program Files (x86)\Panasonic\MFStation\PCMFSMLM.exe
FirewallRules: [{17B4A347-AC05-44C5-9CAC-BC64B1137765}] => (Allow) C:\Program Files (x86)\Panasonic\MFStation\PCMFSMLM.exe
FirewallRules: [{7D706230-9502-4BFD-8569-4DA1556B640F}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{1043D3E0-F359-4507-A1A7-0B69D43ED823}] => (Allow) LPort=2869
FirewallRules: [{E8B947E8-EFCC-408F-A2AE-0162EB624353}] => (Allow) LPort=1900
FirewallRules: [{41530B49-574A-4595-9ADF-A3EC09F667D4}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{8F22451D-FF70-48D2-B02F-87EDA5E9D287}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.596\SZBrowser.exe
FirewallRules: [{E6EA2AD9-5477-4AFF-960E-132AE69EAD40}] => (Allow) C:\Program Files (x86)\Opera\46.0.2597.32\opera.exe
FirewallRules: [{991FA341-6842-417A-B608-247D32E35789}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909\SZBrowser.exe
FirewallRules: [{03211D10-A232-4DA2-B305-C791227945F7}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909_0\SZBrowser.exe
FirewallRules: [{18D4EB03-F2A5-4D02-B75F-014868C001E6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{7670A5A2-9E7A-404D-94E1-715351E85904}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{C2640019-0572-4624-8D4F-C8FD12B121B1}] => (Allow) c:\program files (x86)\opera\51.0.2830.40\opera.exe
FirewallRules: [{AC50CC04-8FE8-41FA-832D-71C9EE75E063}] => (Allow) c:\program files (x86)\opera\51.0.2830.55\opera.exe
FirewallRules: [{43262208-7B67-43DF-B238-A713D67657C5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

08-03-2018 01:00:05 Naplánovaný kontrolní bod
14-03-2018 04:00:32 Windows Update
22-03-2018 01:57:09 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices =============

Name: Unknown Device
Description: Unknown Device
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: (Standardní hostitelský řadič USB)
Service:
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.


==================== Event log errors: =========================

Application errors:
==================
Error: (03/12/2018 04:11:41 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: CompatTelRunner.exe, verze: 10.0.17060.1019, časové razítko: 0x0206ae46
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.24024, časové razítko: 0x5a58e571
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000bf6b2
ID chybujícího procesu: 0x1898
Čas spuštění chybující aplikace: 0x01d3b9a71d6cbd66
Cesta k chybující aplikaci: C:\Windows\system32\CompatTelRunner.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\ntdll.dll
ID zprávy: b3d380b6-259a-11e8-bb97-485b394f5729

Error: (03/08/2018 05:50:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: CompatTelRunner.exe, verze: 10.0.17060.1019, časové razítko: 0x0206ae46
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.24024, časové razítko: 0x5a58e571
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000bf6b2
ID chybujícího procesu: 0x1b80
Čas spuštění chybující aplikace: 0x01d3b6903d57d82b
Cesta k chybující aplikaci: C:\Windows\system32\CompatTelRunner.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\ntdll.dll
ID zprávy: d59f2254-2283-11e8-bb97-485b394f5729

Error: (03/01/2018 05:31:42 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: CompatTelRunner.exe, verze: 10.0.17060.1019, časové razítko: 0x0206ae46
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.24024, časové razítko: 0x5a58e571
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000bf6b2
ID chybujícího procesu: 0x1198
Čas spuštění chybující aplikace: 0x01d3b10d9088f795
Cesta k chybující aplikaci: C:\Windows\system32\CompatTelRunner.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\ntdll.dll
ID zprávy: 0ea9fee9-1d01-11e8-bb97-485b394f5729

Error: (02/28/2018 01:40:59 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program POWERPNT.EXE verze 12.0.6775.5000 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 167c

Čas spuštění: 01d3b088f5f50410

Čas ukončení: 45

Cesta k aplikaci: C:\Program Files (x86)\Microsoft Office\Office12\POWERPNT.EXE

ID hlášení: 39c36186-1c7c-11e8-bb97-485b394f5729

Error: (02/25/2018 04:13:33 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: CompatTelRunner.exe, verze: 10.0.17060.1019, časové razítko: 0x0206ae46
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.24024, časové razítko: 0x5a58e571
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000bf6b2
ID chybujícího procesu: 0x1674
Čas spuštění chybující aplikace: 0x01d3addde2e5524a
Cesta k chybující aplikaci: C:\Windows\system32\CompatTelRunner.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\ntdll.dll
ID zprávy: 7a0cd05d-19d1-11e8-a88e-485b394f5729

Error: (02/23/2018 05:36:51 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: CompatTelRunner.exe, verze: 10.0.17060.1019, časové razítko: 0x0206ae46
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.24024, časové razítko: 0x5a58e571
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000bf6b2
ID chybujícího procesu: 0xf9c
Čas spuštění chybující aplikace: 0x01d3ac573d318186
Cesta k chybující aplikaci: C:\Windows\system32\CompatTelRunner.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\ntdll.dll
ID zprávy: c85c6eda-184a-11e8-a88e-485b394f5729

Error: (02/14/2018 03:59:53 PM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Sledování výkonu objektu indexování nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.

Kontext: aplikace , katalog SystemIndex

Error: (02/11/2018 07:18:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Explorer.EXE, verze: 6.1.7601.23537, časové razítko: 0x57c44efe
Název chybujícího modulu: wpdshext.dll, verze: 6.1.7601.18738, časové razítko: 0x54c9a72d
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000002bfae
ID chybujícího procesu: 0x560
Čas spuštění chybující aplikace: 0x01d3a1b0a4d66d07
Cesta k chybující aplikaci: C:\Windows\Explorer.EXE
Cesta k chybujícímu modulu: C:\Windows\system32\wpdshext.dll
ID zprávy: 963c8539-0f4f-11e8-956c-485b394f5729


System errors:
=============
Error: (03/26/2018 07:46:17 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 10. Stav interní chyby: 10

Error: (03/26/2018 03:41:02 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Windows Search přestala během spouštění reagovat.

Error: (03/26/2018 03:36:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba aswbIDSAgent neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (03/26/2018 03:36:43 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby aswbIDSAgent bylo dosaženo časového limitu (30000 ms).

Error: (03/26/2018 03:34:17 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {3FCB7074-EC9E-4AAF-9BE3-C0E356942366} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/25/2018 07:41:28 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 10. Stav interní chyby: 10

Error: (03/24/2018 07:31:26 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 10. Stav interní chyby: 10

Error: (03/24/2018 03:52:14 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.


==================== Memory info ===========================

Processor: Celeron(R) Dual-Core CPU T3100 @ 1.90GHz
Percentage of memory in use: 78%
Total physical RAM: 4061.09 MB
Available physical RAM: 888.46 MB
Total Virtual: 8120.34 MB
Available Virtual: 4887.91 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.76 GB) (Free:156.94 GB) NTFS ==>[drive with boot components (obtained from BCD)]


==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 76692CA8)
Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================
Windows 7 64bitový (6.1,sestavení 7601)Service Pack 1
Procesor: Celeron Dual-Core CPU T3100 @1.9Ghz 1.90
Paměť ram:4GB. HDD 500GB
Avast free ,
Dokud žiješ, uč se! Nečekej, že moudrost s sebou přinese stáří.

Na průšvihy mám talent od přírody :D :frusty: :wacko: :86:

Doporučuji: :arrow: Cclener, MBAM
email:karlospatmat@seznam.cz
--------------------------------------------------------------------------------------
Dobrá nálada nevyřeší všechny tvoje problémy, ale nasere tolik lidí, že stojí za to si jí udržet.

Kodlz
Přítel fóra
Přítel fóra
Příspěvky: 780
Registrován: 30 kvě 2008 12:11

Re: Kontrola

#6 Příspěvek od Kodlz »

Na plose, tam kde mas umisteny FRST vytvor TXT soubor, ktery pojmenujes fixlist.txt a do nej vloz nasledujici text:

( Spusť znovu FRST a klikni na >Fix<. Po skončení akce se objeví log, který sem zkopíruj).
start
CreateRestorePoint:

CloseProcesses:

EmptyTemp:

HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
FF Extension: ("Yandex Elements") - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\yasearch@yandex.ru.xpi [2017-02-28] [Legacy]
FF Extension: (Visual Bookmarks) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\vb@yandex.ru.xpi [2017-02-28] [Legacy]
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
CHR HomePage: Default -> msn.com
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM ... PARAM__&q={searchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR DefaultSuggestURL: Default -> hxxp://www.bing.com/osjson.aspx?FORM=__ ... M__&query={searchTerms}
Task: {00042FAB-3CCE-4140-A38A-C08599417418} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-13] (Google Inc.)
Task: {55353B3C-7F8A-4264-9FA4-FCC790CDE700} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-13] (Google Inc.)

end

karlospatmat
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 384
Registrován: 28 led 2012 23:21
Bydliště: Novosedly nad Nežárkou
Kontaktovat uživatele:

Re: Kontrola

#7 Příspěvek od karlospatmat »

Fix result of Farbar Recovery Scan Tool (x64) Version: 14.03.2018
Ran by Ahoj (28-03-2018 15:41:03) Run:1
Running from C:\Users\Ahoj\Desktop
Loaded Profiles: Ahoj (Available Profiles: Ahoj)
Boot Mode: Normal
==============================================

fixlist content:
*****************
start
CreateRestorePoint:

CloseProcesses:

EmptyTemp:

HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
FF Extension: ("Yandex Elements") - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\yasearch@yandex.ru.xpi [2017-02-28] [Legacy]
FF Extension: (Visual Bookmarks) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\vb@yandex.ru.xpi [2017-02-28] [Legacy]
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
CHR HomePage: Default -> msn.com
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM ... PARAM__&q={searchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR DefaultSuggestURL: Default -> hxxp://www.bing.com/osjson.aspx?FORM=__ ... M__&query={searchTerms}
Task: {00042FAB-3CCE-4140-A38A-C08599417418} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-13] (Google Inc.)
Task: {55353B3C-7F8A-4264-9FA4-FCC790CDE700} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-13] (Google Inc.)

end
*****************

Restore point was successfully created.
Processes closed successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Windows Defender" => removed successfully
C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\yasearch@yandex.ru.xpi => moved successfully
C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\vb@yandex.ru.xpi => moved successfully
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => removed successfully
"Chrome HomePage" => removed successfully
"Chrome DefaultSearchURL" => removed successfully
"Chrome DefaultSearchKeyword" => removed successfully
"Chrome DefaultSuggestURL" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{00042FAB-3CCE-4140-A38A-C08599417418}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{00042FAB-3CCE-4140-A38A-C08599417418}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{55353B3C-7F8A-4264-9FA4-FCC790CDE700}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{55353B3C-7F8A-4264-9FA4-FCC790CDE700}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 41778777 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 451200041 B
Edge => 0 B
Chrome => 694721827 B
Firefox => 43141106 B
Opera => 448525962 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 73072 B
Public => 0 B
ProgramData => 0 B
systemprofile => 58558607 B
systemprofile32 => 71540 B
LocalService => 132244 B
NetworkService => 66228 B
Ahoj => 41686984 B

RecycleBin => 16396776017 B
EmptyTemp: => 16.9 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 15:44:28 ====
Windows 7 64bitový (6.1,sestavení 7601)Service Pack 1
Procesor: Celeron Dual-Core CPU T3100 @1.9Ghz 1.90
Paměť ram:4GB. HDD 500GB
Avast free ,
Dokud žiješ, uč se! Nečekej, že moudrost s sebou přinese stáří.

Na průšvihy mám talent od přírody :D :frusty: :wacko: :86:

Doporučuji: :arrow: Cclener, MBAM
email:karlospatmat@seznam.cz
--------------------------------------------------------------------------------------
Dobrá nálada nevyřeší všechny tvoje problémy, ale nasere tolik lidí, že stojí za to si jí udržet.

Kodlz
Přítel fóra
Přítel fóra
Příspěvky: 780
Registrován: 30 kvě 2008 12:11

Re: Kontrola

#8 Příspěvek od Kodlz »

:arrow: Stáhni AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Ulož na plochu
Ukonči všechny programy
Klikni nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vlož.

:arrow: nasledne tento tool MBAM: http://forum.viry.cz/viewtopic.php?f=29&t=144868
-Nainstaluj,Vyber "Vlastní sken" a klikni na "Konfigurovat sken"
V okně "Konfigurace vlastního skenu" vyber všechny pevné disky a zatrhni možnost u "Hledat rootkity"
Kliknutím na Skenovat nyní začne MBAM pracovat.

-Log zkopíruj sem.

karlospatmat
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 384
Registrován: 28 led 2012 23:21
Bydliště: Novosedly nad Nežárkou
Kontaktovat uživatele:

Re: Kontrola

#9 Příspěvek od karlospatmat »

# AdwCleaner 7.0.8.0 - Logfile created on Wed Mar 28 19:19:53 2018
# Updated on 2018/08/02 by Malwarebytes
# Database: 2018-03-28.1
# Running on Windows 7 Home Premium (X64)
# Mode: scan
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

PUP.Optional.DriverPack, C:\Program Files (x86)\DriverPack Notifier
PUP.Optional.DriverPack, C:\Users\Ahoj\AppData\Roaming\DriverPack Notifier
PUP.Optional.DriverPack, C:\Users\Ahoj\AppData\Roaming\DRPSu


***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

PUP.Optional.DriverPack, [Key] - HKLM\SOFTWARE\drpsu
PUP.Optional.DriverPack, [Key] - HKU\S-1-5-21-1467582651-902518819-1997573368-1001\Software\drpsu
PUP.Optional.DriverPack, [Key] - HKCU\Software\drpsu


***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries.

***** [ Chromium (and derivatives) ] *****

PUP.Optional.Legacy, Plugin found: MSN Homepage & Bing Search Engine -

/!\ Please Reset the Chrome Synchronization before cleaning the Chrome Preferences: https://support.google.com/chrome/answer/3097271


*************************



########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ##########
Windows 7 64bitový (6.1,sestavení 7601)Service Pack 1
Procesor: Celeron Dual-Core CPU T3100 @1.9Ghz 1.90
Paměť ram:4GB. HDD 500GB
Avast free ,
Dokud žiješ, uč se! Nečekej, že moudrost s sebou přinese stáří.

Na průšvihy mám talent od přírody :D :frusty: :wacko: :86:

Doporučuji: :arrow: Cclener, MBAM
email:karlospatmat@seznam.cz
--------------------------------------------------------------------------------------
Dobrá nálada nevyřeší všechny tvoje problémy, ale nasere tolik lidí, že stojí za to si jí udržet.

karlospatmat
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 384
Registrován: 28 led 2012 23:21
Bydliště: Novosedly nad Nežárkou
Kontaktovat uživatele:

Re: Kontrola

#10 Příspěvek od karlospatmat »

tady po mazání log : # AdwCleaner 7.0.8.0 - Logfile created on Wed Mar 28 19:23:57 2018
# Updated on 2018/08/02 by Malwarebytes
# Running on Windows 7 Home Premium (X64)
# Mode: clean
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services deleted.

***** [ Folders ] *****

Deleted: C:\Program Files (x86)\DriverPack Notifier
Deleted: C:\Users\Ahoj\AppData\Roaming\DriverPack Notifier
Deleted: C:\Users\Ahoj\AppData\Roaming\DRPSu


***** [ Files ] *****

No malicious files deleted.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks deleted.

***** [ Registry ] *****

Deleted: [Key] - HKLM\SOFTWARE\drpsu
Deleted: [Key] - HKU\S-1-5-21-1467582651-902518819-1997573368-1001\Software\drpsu
Deleted: [Key] - HKCU\Software\drpsu


***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries deleted.

***** [ Chromium (and derivatives) ] *****

Plugin deleted: MSN Homepage & Bing Search Engine -


*************************

::Tracing keys deleted
::Winsock settings cleared
::Additional Actions: 0



*************************

C:/AdwCleaner/AdwCleaner[S0].txt - [1483 B] - [2018/3/28 19:19:53]


########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt ##########
Windows 7 64bitový (6.1,sestavení 7601)Service Pack 1
Procesor: Celeron Dual-Core CPU T3100 @1.9Ghz 1.90
Paměť ram:4GB. HDD 500GB
Avast free ,
Dokud žiješ, uč se! Nečekej, že moudrost s sebou přinese stáří.

Na průšvihy mám talent od přírody :D :frusty: :wacko: :86:

Doporučuji: :arrow: Cclener, MBAM
email:karlospatmat@seznam.cz
--------------------------------------------------------------------------------------
Dobrá nálada nevyřeší všechny tvoje problémy, ale nasere tolik lidí, že stojí za to si jí udržet.

Kodlz
Přítel fóra
Přítel fóra
Příspěvky: 780
Registrován: 30 kvě 2008 12:11

Re: Kontrola

#11 Příspěvek od Kodlz »

jeste log z MBAM poprosim

karlospatmat
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 384
Registrován: 28 led 2012 23:21
Bydliště: Novosedly nad Nežárkou
Kontaktovat uživatele:

Re: Kontrola

#12 Příspěvek od karlospatmat »

tady je log omlouvám se za čekání ale notebook umřel a nešlo mi jej zapnout - porucha napájení již opraveno a tu je log: Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 29.03.18
Čas skenování: 12:12
Logovací soubor: b8a086c4-3339-11e8-87b5-485b394f5729.json
Správce: Ano

-Informace o softwaru-
Verze: 3.4.4.2398
Verze komponentů: 1.0.322
Aktualizovat verzi balíku komponent: 1.0.4532
Licence: Zkušební

-Systémová informace-
OS: Windows 7 Service Pack 1
CPU: x64
Systém souborů: NTFS
Uživatel: Ahoj-PC\Ahoj

-Shrnutí skenování-
Typ skenování: Vlastní skenování
Výsledek: Dokončeno
Skenované objekty: 279580
Zjištěné hrozby: 3
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 6 hod, 2 min, 30 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Povoleno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 2
PUP.Optional.DriverPack, HKU\S-1-5-21-1467582651-902518819-1997573368-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS\ZONEMAP\DOMAINS\drp.su, Žádná uživatelská akce, [891], [472299],1.0.4532
PUP.Optional.DriverPack, HKLM\SOFTWARE\WOW6432NODE\DRPSU, Žádná uživatelská akce, [891], [472300],1.0.4532

Hodnota v registru: 1
PUP.Optional.DriverPack, HKLM\SOFTWARE\WOW6432NODE\DRPSU|CLIENTID, Žádná uživatelská akce, [891], [472300],1.0.4532

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)

Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)
Windows 7 64bitový (6.1,sestavení 7601)Service Pack 1
Procesor: Celeron Dual-Core CPU T3100 @1.9Ghz 1.90
Paměť ram:4GB. HDD 500GB
Avast free ,
Dokud žiješ, uč se! Nečekej, že moudrost s sebou přinese stáří.

Na průšvihy mám talent od přírody :D :frusty: :wacko: :86:

Doporučuji: :arrow: Cclener, MBAM
email:karlospatmat@seznam.cz
--------------------------------------------------------------------------------------
Dobrá nálada nevyřeší všechny tvoje problémy, ale nasere tolik lidí, že stojí za to si jí udržet.

Kodlz
Přítel fóra
Přítel fóra
Příspěvky: 780
Registrován: 30 kvě 2008 12:11

Re: Kontrola

#13 Příspěvek od Kodlz »

to co nasel MBAM muzes dat odstranit..
notebook vypada cisty.
muzes odinstalovat/smazat nastroje, ktere sme pouzivali. popripade procistit pc s ccleanerem.
mam take tuseni, ze zpomaleni je zpusobene spis starim pc,

karlospatmat
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 384
Registrován: 28 led 2012 23:21
Bydliště: Novosedly nad Nežárkou
Kontaktovat uživatele:

Re: Kontrola

#14 Příspěvek od karlospatmat »

Děkuji to jo odemne vše :thumbsup:
Windows 7 64bitový (6.1,sestavení 7601)Service Pack 1
Procesor: Celeron Dual-Core CPU T3100 @1.9Ghz 1.90
Paměť ram:4GB. HDD 500GB
Avast free ,
Dokud žiješ, uč se! Nečekej, že moudrost s sebou přinese stáří.

Na průšvihy mám talent od přírody :D :frusty: :wacko: :86:

Doporučuji: :arrow: Cclener, MBAM
email:karlospatmat@seznam.cz
--------------------------------------------------------------------------------------
Dobrá nálada nevyřeší všechny tvoje problémy, ale nasere tolik lidí, že stojí za to si jí udržet.

Kodlz
Přítel fóra
Přítel fóra
Příspěvky: 780
Registrován: 30 kvě 2008 12:11

Re: Kontrola

#15 Příspěvek od Kodlz »

rad jsem pomohl. :closed:

Zamčeno