Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventivní kontrolu logu. Díky .

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
mmmzzz
Návštěvník
Návštěvník
Příspěvky: 63
Registrován: 21 bře 2010 07:14

Prosím o preventivní kontrolu logu. Díky .

#1 Příspěvek od mmmzzz »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-03-2023
Ran by marti (administrator) on DESKTOP-8VOP8FR (Hewlett-Packard p6521cs-m) (04-03-2023 12:05:50)
Running from C:\Portableapps\PortableApps\FRST64
Loaded Profiles: marti
Platform: Microsoft Windows 10 Home Version 21H2 19044.2604 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe <5>
(C:\Portableapps\PortableApps\PortableApps.com\PortableAppsPlatform.exe ->) (Rare Ideas, LLC -> PortableApps.com) C:\Portableapps\PortableApps\RevoUninstallerPortable\RevoUninstallerPortable.exe <2>
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(C:\Program Files\AVG\Antivirus\AVGSvc.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (SARL ACLAP -> Node.js) [File not signed] C:\Program Files\net.downloadhelper.coapp\bin\net.downloadhelper.coapp-win-64.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD64.EXE
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(explorer.exe ->) (VideoLAN -> VideoLAN) C:\Program Files\VideoLAN\VLC\vlc.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <10>
(nvvsvc.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files\Java\jre1.8.0_361\bin\javaw.exe
(Rare Ideas, LLC -> PortableApps.com) C:\Portableapps\PortableApps\PortableApps.com\PortableAppsPlatform.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\afwServ.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\avgToolsSvc.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\wsc_proxy.exe
(services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe
(services.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome Remote Desktop\111.0.5563.12\remoting_host.exe <2>
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2>
(services.exe ->) (philandro Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe <3>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23012.167.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(VS Revo Group Ltd. -> VS Revo Group) C:\Portableapps\PortableApps\RevoUninstallerPortable\App\RevoUninstaller\x64\RevoUn.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19572536 2022-12-19] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [252856 2022-12-16] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711288 2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe [52571928 2023-02-16] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe [52571928 2023-02-16] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-909500843-76453422-3379895302-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe [52571928 2023-02-16] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-909500843-76453422-3379895302-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38966072 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-909500843-76453422-3379895302-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-909500843-76453422-3379895302-1001\...\MountPoints2: {1a21ebfe-9d74-11e8-9923-806e6f6e6963} - "F:\startdvd.exe"
HKU\S-1-5-21-909500843-76453422-3379895302-1001\...\MountPoints2: {1a21ec04-9d74-11e8-9923-806e6f6e6963} - "M:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-909500843-76453422-3379895302-1001\...\MountPoints2: {2ebf689c-81eb-11ed-9da4-001a7dda7111} - "H:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-909500843-76453422-3379895302-1001\...\MountPoints2: {b25ce089-4a56-11eb-9c1b-001a7dda7111} - "H:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-909500843-76453422-3379895302-1001\...\MountPoints2: {d46568e7-445d-11ea-9b19-001a7dda7111} - "L:\HiSuiteDownLoader.exe"
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\71.0.3.0\GoogleDriveFS.exe [52571928 2023-02-16] (Google LLC -> Google, Inc.)
HKLM\...\Windows x64\Print Processors\shj2mPC: C:\Windows\System32\spool\prtprocs\x64\shj2mpc.dll [91216 2022-01-24] (联想图像(天津)科技有限公司 -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\HP BA11 Status Monitor: C:\WINDOWS\system32\hpinkstsBA11LM.dll [331664 2012-06-12] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\...\Print\Monitors\shj2m Langmon: C:\WINDOWS\system32\shj2mlm.dll [44264 2019-03-31] (联想图像(天津)科技有限公司 -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{48F69C39-1356-4A7B-A899-70E3539D4982}] -> C:\Program Files (x86)\AVG\Browser\Application\109.0.19987.121\Installer\chrmstp.exe [2023-02-07] (AVG Technologies USA, LLC -> AVG Technologies)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.178\Installer\chrmstp.exe [2023-02-28] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2023-01-16]
ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {012B2F58-2212-4758-A564-DBA74086E185} - System32\Tasks\iTop Christmas Task (One-Time) => C:\Program Files (x86)\iTop VPN\Pub\itopxmas.exe /vpn (No File)
Task: {086E5BF6-49B3-4DA3-8106-8D735A60F248} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [142216 2023-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {0AE9067C-3D70-4491-B0F5-B1CFBE266441} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [933352 2023-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {15601068-A644-424F-A898-13F8961F5863} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-08-11] (Google Inc -> Google Inc.)
Task: {1784D6A2-0E17-42D0-8B65-18BFF17C23FE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-08-11] (Google Inc -> Google Inc.)
Task: {23C0B8D6-243E-499A-B80A-FFEBCBB93A6E} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23709624 2023-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {26886712-812F-48CB-98CE-9A73CE7A7414} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [64408 2023-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {2F30A6E1-A4BC-41AD-82B8-12A5E550CD35} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8519680 2023-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {36227EEB-4515-4C0A-BDA3-E26A93C5270B} - System32\Tasks\AVGUpdateTaskMachineCore => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {57041CF2-BB00-4D6E-AA53-78CE44297EAC} - System32\Tasks\Driver Booster SkipUAC (marti) => C:\Program Files (x86)\IObit\Driver Booster\10.2.0\DriverBooster.exe [9010648 2023-01-09] (IObit CO., LTD -> IObit)
Task: {73A5ED2E-FC2B-4A41-ABA4-49FA94B12B22} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23709624 2023-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {833A0450-DF87-4712-8DFB-663BB02082BC} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [4990904 2022-12-16] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
Task: {88AE53BB-F7F6-45C9-8970-5DCB9E1E8044} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2332088 2023-01-30] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {9427C60D-909D-465C-A4E4-51D1870308C9} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703544 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "0aadb7e4-1ad8-4f1f-b936-6e1a1dcfe210" --version "6.09.10300" --silent
Task: {976FEE88-9BAB-4061-8BBC-4CDDDA493035} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2023-02-08] (Piriform Software Ltd -> Piriform)
Task: {9984CF99-D1AB-4490-BA76-D07A36560C3D} - System32\Tasks\AVGUpdateTaskMachineUA => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {A020924D-F7E2-4B62-A22B-6D0F8B10E584} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8519680 2023-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {A2BED3FC-AEEE-4496-BEF1-C9987C5750F2} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [142216 2023-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {AC720F10-815D-4F54-A236-3FC1283E00A2} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [674720 2023-03-02] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {AEC4FB71-3197-4A79-AB5B-611AB2FADA47} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe [5253864 2023-02-15] (Microsoft Windows -> Microsoft Corporation)
Task: {AF7144CD-4889-4297-94E5-0A2EE5D4F1BA} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [716704 2023-03-02] (Mozilla Corporation -> Mozilla Foundation)
Task: {B3D3674D-A914-4336-A4D8-1564F78A98B6} - System32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3260976 2023-01-26] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {C73B90AF-8BA0-407A-9394-4083886F7135} - System32\Tasks\CCleanerSkipUAC - marti => C:\Program Files\CCleaner\CCleaner.exe [32631096 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {D332BC6C-CF91-4F30-9B43-2609E14BBCC6} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [3854464 2023-02-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {D5FB62FB-12DB-4B5F-83CF-A852B03B2EDC} - System32\Tasks\AVG Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3260976 2023-01-26] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {D89136DA-81C6-4AF7-B5ED-BE5996D554A1} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711288 2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
Task: {FB148B73-3B83-4C4B-A32F-2A00D3B95811} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\10.2.0\AutoUpdate.exe [2516968 2022-12-26] (IObit CO., LTD -> IObit)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [152864 2010-05-18] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [193824 2010-05-18] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{e62b3bb6-bf1d-4b4b-bf4e-179c945db085}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default [2023-02-05]
Edge Extension: (Avira Safe Shopping) - C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caiblelclndcckfafdaggpephhgfpoip [2022-04-16]
Edge Extension: (Avira Password Manager) - C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emgfgdclgfeldebanedpihppahgngnle [2022-12-16]
Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip]
Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle]

FireFox:
========
FF DefaultProfile: 7927ltx3.default-1540227861642
FF ProfilePath: C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\h2oul36n.default-release [2023-02-23]
FF user.js: detected! => C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\h2oul36n.default-release\user.js [2022-07-24]
FF Homepage: Mozilla\Firefox\Profiles\h2oul36n.default-release -> hxxps://www.google.com/
FF SearchPlugin: C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\h2oul36n.default-release\searchplugins\mybingsearch.xml [2022-01-28]
FF ProfilePath: C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\7927ltx3.default-1540227861642 [2023-03-04]
FF user.js: detected! => C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\7927ltx3.default-1540227861642\user.js [2022-07-24]
FF DownloadDir: E:\Downloads
FF Homepage: Mozilla\Firefox\Profiles\7927ltx3.default-1540227861642 -> hxxps://www.seznam.cz/
FF Extension: (Save as PDF) - C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\7927ltx3.default-1540227861642\Extensions\save-as-pdf-ff@pdfcrowd.com.xpi [2022-12-17]
FF Extension: (Gesturefy) - C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\7927ltx3.default-1540227861642\Extensions\{506e023c-7f2b-40a3-8066-bc5deb40aebe}.xpi [2022-10-20]
FF Extension: (Copy/Paste and Save tabs list) - C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\7927ltx3.default-1540227861642\Extensions\{a596357b-5d1f-4e04-ba81-4013c6d7d34e}.xpi [2022-01-28]
FF Extension: (Video DownloadHelper) - C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\7927ltx3.default-1540227861642\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2022-12-09]
FF Extension: (No Name) - C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\7927ltx3.default-1540227861642\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2023-02-10]
FF Extension: (DownThemAll!) - C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\7927ltx3.default-1540227861642\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2023-03-01]
FF SearchPlugin: C:\Users\marti\AppData\Roaming\Mozilla\Firefox\Profiles\7927ltx3.default-1540227861642\searchplugins\mybingsearch.xml [2022-01-28]
FF Plugin: @java.com/DTPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\dtplugin\npDeployJava1.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\plugin2\npjp2.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-01-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-08-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-01-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)

Chrome:
=======
CHR Profile: C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default [2023-03-01]
CHR Notifications: Default -> hxxps://www.youtube.com
CHR Extension: (Překladač Google) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-03-12]
CHR Extension: (Avira Password Manager) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2023-02-18]
CHR Extension: (Videostream for Google Chromecast™) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnciopoikihiagdjbjpnocolokfelagl [2021-06-01]
CHR Extension: (Google+) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlppkpafhbajpcmmoheippocdidnckmm [2018-08-11]
CHR Extension: (Legacy MindMup (discontinued)) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnenaecjcgeppfpaokiifokeieopppej [2018-08-11]
CHR Extension: (Box) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejnkaeblpdcamcioiiabclakabcbjmbl [2018-08-11]
CHR Extension: (Avira Browser Safety) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2022-10-31]
CHR Extension: (Dokumenty Google offline) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-02-01]
CHR Extension: (Atavi bookmarks) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfephclnnkjfkfnmmcjampphpfgijgae [2018-08-11]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2023-02-24]
CHR Extension: (Chrome Remote Desktop) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2022-12-11]
CHR Extension: (Dropbox) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2018-08-11]
CHR Extension: (CrxMouse Chrome™ Gestures) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlgkpaicikihijadgifklkbpdajbkhjo [2022-12-11]
CHR Extension: (uExport - Export Youtube Playlist) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\lejaffghgmobbadpemdfahpemdppddmf [2022-01-29]
CHR Extension: (Spouštěč aplikací pro Disk (od Googlu)) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-02-01]
CHR Extension: (Video DownloadHelper) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2022-10-15]
CHR Extension: (Mapy Google) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2018-08-11]
CHR Extension: (AVG SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2022-09-05]
CHR Extension: (OneDrive) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk [2018-08-11]
CHR Extension: (Save to Pocket) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2022-11-10]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-01]
CHR Extension: (Picasa) - C:\Users\marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2018-08-11]
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKU\S-1-5-21-909500843-76453422-3379895302-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [4021320 2023-01-16] (philandro Software GmbH -> AnyDesk Software GmbH)
S2 avg; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [634296 2022-12-16] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Firewall; C:\Program Files\AVG\Antivirus\afwServ.exe [2111416 2022-12-16] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Tools; C:\Program Files\AVG\Antivirus\avgToolsSvc.exe [634296 2022-12-16] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [8578488 2022-12-20] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgm; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
S3 AVGSecureBrowserElevationService; C:\Program Files (x86)\AVG\Browser\Application\109.0.19987.121\elevation_service.exe [1802856 2023-01-26] (AVG Technologies USA, LLC -> AVG Technologies)
R2 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [109480 2021-05-31] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\111.0.5563.12\remoting_host.exe [74520 2023-02-02] (Google LLC -> Google LLC)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12126112 2023-02-20] (Microsoft Corporation -> Microsoft Corporation)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2358800 2022-05-20] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
S3 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [File not signed]
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8967840 2023-02-20] (Malwarebytes Inc. -> Malwarebytes)
S3 nebula; C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe [4490376 2020-09-18] (Logitech Inc -> Logitech)
S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [21312 2020-10-16] (Microsoft Windows -> Microsoft Corporation)
S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182392 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [15508280 2023-02-24] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 TeraCopyService; C:\Program Files\TeraCopy\TeraCopyService.exe [112944 2020-08-15] (Code Sector -> )
S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [805224 2023-01-11] (Oracle Corporation -> Oracle and/or its affiliates)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WO_LiveService2; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 19\LiveTunerService.exe [307936 2022-01-14] (Ashampoo GmbH & Co. KG -> )
S3 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.231\WsAppService.exe [493792 2017-10-24] (Wondershare Technology Co.,Ltd -> Wondershare)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AmUStor; C:\WINDOWS\system32\drivers\AmUStorU.sys [135296 2022-12-19] (Alcorlink Corp. -> )
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R3 AVER_H193; C:\WINDOWS\system32\drivers\AVer888RC_64.sys [543616 2009-11-13] (Microsoft Windows Hardware Compatibility Publisher -> AVerMedia TECHNOLOGIES, Inc.)
R1 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [229200 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdriver.sys [391312 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsh.sys [297872 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniv.sys [96504 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R0 avgElam; C:\WINDOWS\System32\drivers\avgElam.sys [25064 2022-10-14] (Microsoft Windows Early Launch Anti-malware Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\WINDOWS\System32\drivers\avgKbd.sys [39640 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [267968 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgNetHub; C:\WINDOWS\System32\drivers\avgNetHub.sys [555600 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [105288 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [80456 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [852080 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [695544 2023-02-01] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [212720 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [318544 2022-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
S3 cpuz145; no ImagePath
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 DSI_SiUSBXp_3_1; C:\WINDOWS\system32\drivers\DSI_SiUSBXp_3_1.sys [16384 2007-09-06] (Silicon Laboratories) [File not signed]
R1 googledrivefs31092; C:\WINDOWS\System32\DRIVERS\googledrivefs31092.sys [384600 2023-01-30] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 HPMoA407; C:\WINDOWS\System32\drivers\HPMoA407.sys [25088 2011-10-31] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard.)
R3 HPubA407; C:\WINDOWS\System32\Drivers\HPubA407.sys [18944 2012-06-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard.)
R2 LiveTuner2PM; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 19\LiveTuner64.sys [24200 2022-01-28] (Ashampoo GmbH & Co. KG -> )
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2023-02-23] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2023-02-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2023-02-20] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 MDA_NTDRV; C:\WINDOWS\system32\MDA_NTDRV.sys [21208 2018-09-02] (北京铠信神州科技有限责任公司 -> )
R3 pikbd; C:\WINDOWS\System32\drivers\pikbd.sys [26088 2016-04-09] (Christian Gulden -> Christian Gulden)
R3 pimou; C:\WINDOWS\System32\drivers\pimou.sys [24600 2015-09-13] (Christian Gulden -> Christian Gulden)
S3 ssudcdf; C:\WINDOWS\System32\drivers\ssudcdf.sys [36608 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64912 2018-03-02] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated)
S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43640 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2019-04-21] (Shenzhen Wondershare Information Technology Co., Ltd. -> Apple, Inc.)
S3 usbscan; C:\WINDOWS\System32\drivers\usbscan.sys [49152 2020-08-31] (Microsoft Corporation) [File not signed]
R3 VBoxNetAdp; C:\WINDOWS\System32\drivers\VBoxNetAdp6.sys [254616 2023-01-11] (Oracle Corporation -> Oracle and/or its affiliates)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [265488 2023-01-11] (Oracle Corporation -> Oracle and/or its affiliates)
R1 VBoxSup; C:\WINDOWS\system32\DRIVERS\VBoxSup.sys [1061392 2023-01-11] (Oracle Corporation -> Oracle and/or its affiliates)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2020-12-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [429296 2020-12-21] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-21] (Microsoft Windows -> Microsoft Corporation)
S3 AscFileFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\drivers\win10_amd64\AscFileFilter.sys [X]
S3 AscRegistryFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\drivers\win10_amd64\AscRegistryFilter.sys [X]
U3 aswbdisk; no ImagePath
S3 cpuz152; \??\C:\WINDOWS\temp\cpuz152\cpuz152_x64.sys [X]
S3 iobit_monitor_server2021; \??\C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\drivers\Monitor_win10_x64.sys [X]
S1 netfilter2; system32\drivers\netfilter2.sys [X]
U3 SARPSvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-03-01 16:17 - 2023-03-04 05:32 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2023-03-01 16:17 - 2023-03-01 16:17 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2023-03-01 16:17 - 2023-03-01 16:17 - 000003470 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2023-02-23 05:25 - 2023-02-23 05:25 - 000000000 ____D C:\Users\marti\AppData\Local\mbam
2023-02-23 05:17 - 2023-02-23 05:17 - 000003306 _____ C:\WINDOWS\system32\Tasks\Driver Booster SkipUAC (marti)
2023-02-23 05:17 - 2023-02-23 05:17 - 000003180 _____ C:\WINDOWS\system32\Tasks\Driver Booster Update
2023-02-23 05:17 - 2023-02-23 05:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 10
2023-02-20 18:16 - 2023-02-20 18:16 - 000002003 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2023-02-20 18:15 - 2023-02-20 18:15 - 000000000 ____D C:\ProgramData\Malwarebytes
2023-02-20 18:15 - 2023-02-20 18:15 - 000000000 ____D C:\Program Files\Malwarebytes
2023-02-20 18:12 - 2023-02-20 18:12 - 000446152 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-02-19 06:57 - 2023-01-09 09:10 - 000195232 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2023-02-15 17:14 - 2023-02-15 17:14 - 000000000 ___HD C:\$WinREAgent
2023-02-15 06:17 - 2023-03-04 05:31 - 000000000 ____D C:\Program Files\Mozilla Firefox
2023-02-02 17:54 - 2023-02-17 17:38 - 000002850 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-909500843-76453422-3379895302-1001
2023-02-02 17:54 - 2023-02-02 17:54 - 000002422 _____ C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-03-04 12:06 - 2022-12-16 17:36 - 000000000 ____D C:\FRST
2023-03-04 12:04 - 2018-08-11 16:04 - 000000000 ____D C:\Users\marti\AppData\LocalLow\Mozilla
2023-03-04 12:04 - 2018-08-11 14:49 - 000000000 ____D C:\Program Files (x86)\Google
2023-03-04 12:02 - 2020-08-31 21:02 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-03-04 12:02 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-03-04 08:51 - 2020-11-25 11:25 - 000000000 ____D C:\Users\marti\AppData\Roaming\TeraCopy
2023-03-04 07:25 - 2021-02-09 16:23 - 000000000 ____D C:\Users\marti\AppData\Roaming\vlc
2023-03-04 06:19 - 2018-08-11 14:44 - 000000000 ____D C:\Users\marti\AppData\Local\Packages
2023-03-04 06:18 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Registration
2023-03-04 05:43 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-03-04 05:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-03-04 05:35 - 2021-01-30 09:34 - 000000000 ____D C:\Program Files\CCleaner
2023-03-04 05:32 - 2022-07-26 16:33 - 000008192 ___SH C:\DumpStack.log.tmp
2023-03-04 05:32 - 2020-12-21 20:50 - 000000000 ____D C:\ProgramData\AVG
2023-03-04 05:32 - 2020-08-31 21:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-03-04 05:32 - 2018-08-12 11:34 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2023-03-04 05:31 - 2018-08-11 16:04 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2023-03-03 22:08 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2023-03-02 22:09 - 2018-08-11 19:23 - 000000000 ____D C:\Users\marti\.VirtualBox
2023-03-02 18:58 - 2019-01-30 20:14 - 000000000 ____D C:\ProgramData\VirtualBox
2023-03-02 18:53 - 2022-12-16 12:14 - 000004266 _____ C:\WINDOWS\system32\Tasks\Antivirus Emergency Update
2023-03-02 05:59 - 2021-10-08 05:17 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2023-03-01 16:18 - 2018-09-27 18:06 - 000000000 ____D C:\Users\marti\AppData\Local\CrashDumps
2023-03-01 16:17 - 2022-06-05 05:07 - 000002248 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - marti
2023-02-28 16:34 - 2020-08-10 04:47 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-02-28 16:34 - 2018-08-11 14:50 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-02-26 21:32 - 2018-09-08 11:39 - 000000000 ____D C:\Users\marti\AppData\Roaming\foobar2000
2023-02-25 21:02 - 2018-08-12 11:35 - 000000000 ____D C:\Users\marti\AppData\Roaming\TeamViewer
2023-02-24 21:46 - 2019-04-23 05:09 - 000000000 ____D C:\Users\marti\AppData\Roaming\XnViewMP
2023-02-23 05:42 - 2018-12-16 13:49 - 000000000 ____D C:\Users\marti\AppData\Roaming\crostream
2023-02-23 05:25 - 2020-12-23 16:35 - 000000000 ____D C:\Users\marti\AppData\Roaming\IObit
2023-02-23 05:17 - 2020-12-23 16:36 - 000000000 ____D C:\ProgramData\ProductData
2023-02-20 18:21 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2023-02-20 18:20 - 2018-08-11 16:11 - 000000000 ____D C:\Program Files\Microsoft Office
2023-02-20 18:15 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2023-02-19 06:57 - 2022-02-01 16:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2023-02-19 06:57 - 2020-12-24 16:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2023-02-19 06:57 - 2020-12-24 16:47 - 000000000 ____D C:\Program Files\Java
2023-02-17 17:38 - 2022-12-27 16:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software
2023-02-17 17:38 - 2022-12-19 17:25 - 000002700 _____ C:\WINDOWS\system32\Tasks\iTop Christmas Task (One-Time)
2023-02-17 17:38 - 2022-02-15 21:26 - 000002584 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2023-02-17 17:38 - 2021-12-14 17:58 - 000003054 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-909500843-76453422-3379895302-1001
2023-02-17 17:38 - 2020-08-31 21:13 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-02-17 17:38 - 2020-08-31 21:13 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2023-02-17 17:38 - 2020-08-31 21:13 - 000003344 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-02-17 17:38 - 2020-08-31 21:13 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2023-02-17 17:38 - 2020-08-31 21:13 - 000003094 _____ C:\WINDOWS\system32\Tasks\Java Platform SE Auto Updater
2023-02-16 20:56 - 2022-12-19 16:55 - 000000000 ____D C:\Program Files\SecureAge
2023-02-16 20:05 - 2021-09-22 17:27 - 000002031 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2023-02-16 19:51 - 2020-08-31 21:14 - 001847486 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-02-16 19:51 - 2019-12-07 15:41 - 000779128 _____ C:\WINDOWS\system32\perfh005.dat
2023-02-16 19:51 - 2019-12-07 15:41 - 000168364 _____ C:\WINDOWS\system32\perfc005.dat
2023-02-15 22:49 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-02-15 22:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2023-02-15 22:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-02-15 22:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2023-02-15 22:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-02-15 22:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2023-02-15 22:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-02-15 21:36 - 2018-09-11 17:18 - 000000000 ____D C:\Users\marti\AppData\Local\ElevatedDiagnostics
2023-02-15 17:29 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-02-15 17:25 - 2020-08-31 21:05 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-02-15 17:13 - 2018-08-11 16:13 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-02-15 17:08 - 2018-08-11 16:13 - 149955784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-02-07 16:20 - 2022-01-04 17:51 - 000002381 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Secure Browser.lnk
2023-02-05 17:01 - 2018-11-03 13:57 - 000000000 ____D C:\Users\marti\AppData\Roaming\XnView

==================== Files in the root of some directories ========

2020-03-18 13:55 - 2020-03-18 13:55 - 000000017 _____ () C:\Users\marti\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118199
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o preventivní kontrolu logu. Díky .

#2 Příspěvek od Rudy »

Zdravím!
Ke kompletní kontrole potřebuji ještě log Addition. Je v souboru addition.txt v C:\Portableapps\PortableApps\FRST64.Děliko.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět