FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 28-04-2021
Ran by Comp (administrator) on MAIN-HOME-PC (MICRO-STAR INTERNATIONAL CO.,LTD MS-7529) (06-05-2021 14:29:36)
Running from C:\Users\Maminka\Desktop
Loaded Profiles: Maminka & Comp
Platform: Microsoft Windows 10 Home Version 20H2 19042.928 (X86) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ArcSoft, Inc. -> ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(ArcSoft, Inc. -> ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Invincea, Inc. -> Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe
(Lespeed Technology Ltd. -> WiseCleaner.COM) [File not signed] C:\Program Files\Wise\Wise Auto Shutdown\WiseAutoShutdown.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\NisSrv.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <9>
(Opera Software AS -> Opera Software) C:\Users\Maminka\AppData\Local\Programs\Opera\assistant\browser_assistant.exe <2>
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectMonitor.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectUI.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(voidtools -> voidtools) C:\Program Files\Everything\Everything.exe <2>
0 C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2103.17603.0_x86__8wekyb3d8bbwe\Cortana.exe
0 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21022.215.0_x86__8wekyb3d8bbwe\YourPhone.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [6707744 2008-12-26] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [Skytel] => C:\Program Files\Realtek\Audio\HDA\Skytel.exe [1833504 2008-12-26] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
HKLM\...\Run: [PAC7302_Monitor] => C:\WINDOWS\PixArt\PAC7302\Monitor.exe [319488 2006-11-03] (Microsoft Windows Hardware Compatibility Publisher -> PixArt Imaging Incorporation)
HKLM\...\Run: [ArcSoft Connection Service] => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft, Inc. -> ArcSoft Inc.)
HKLM\...\Run: [AMP WinOFF] => c:\program files\amp winoff\winoff_admin.exe [120320 2016-11-04] (Alberto Martínez Pérez) [File not signed]
HKLM\...\Run: [Reflect UI] => C:\Program Files\Macrium\Common\ReflectUI.exe [4511712 2019-06-05] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [1710880 2019-02-04] (voidtools -> voidtools)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKU\S-1-5-21-438729375-2292271272-1643045957-1003\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [2665624 2019-02-05] (Invincea, Inc. -> Sandboxie Holdings, LLC)
HKU\S-1-5-21-438729375-2292271272-1643045957-1003\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-438729375-2292271272-1643045957-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-438729375-2292271272-1643045957-1004\...\Run: [Avast Browser] => C:\Users\Maminka\AppData\Local\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserUpdateCore.exe
HKU\S-1-5-21-438729375-2292271272-1643045957-1004\...\Run: [Opera Browser Assistant] => C:\Users\Maminka\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3154456 2020-11-25] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-438729375-2292271272-1643045957-1004\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-438729375-2292271272-1643045957-1004\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-438729375-2292271272-1643045957-1006\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-438729375-2292271272-1643045957-1006\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-438729375-2292271272-1643045957-1007\...\Run: [IPLA!] => C:\Program Files\ipla\ipla.exe [18603096 2020-02-28] (Cyfrowy Polsat S.A. -> Cyfrowy Polsat S.A.)
HKU\S-1-5-21-438729375-2292271272-1643045957-1007\...\Run: [Windows Shutdown Assistant] => C:\Program Files\Apowersoft\Windows Shutdown Assistant\Windows Shutdown Assistant.exe [2566992 2016-11-26] (APOWERSOFT LIMITED -> Apowersoft)
HKU\S-1-5-21-438729375-2292271272-1643045957-1007\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-438729375-2292271272-1643045957-1007\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-438729375-2292271272-1643045957-1007\Software\Policies\...\system: [disablecmd] 0
HKU\S-1-5-21-438729375-2292271272-1643045957-1011\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-438729375-2292271272-1643045957-1011\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKLM\...\Windows NT x86\Print Processors\hpzppwn7: C:\Windows\System32\spool\prtprocs\W32X86\hpzppWN7.dll [90624 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\LIDIL hpzllwn7: C:\WINDOWS\system32\hpzllwn7.dll [37888 2009-07-14] (Microsoft Windows -> Hewlett-Packard Company)
HKLM\...\Print\Monitors\PDFCreator: C:\WINDOWS\system32\pdfcmnnt.dll [116224 2001-10-28] () [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\90.0.4430.93\Installer\chrmstp.exe [2021-05-04] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
AppInit_DLLs: C:\Windows\System32\guard32.dll => No File
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WiseAutoShutdown.exe – zástupce.lnk [2016-08-11]
ShortcutTarget: WiseAutoShutdown.exe – zástupce.lnk -> C:\Program Files\Wise\Wise Auto Shutdown\WiseAutoShutdown.exe (Lespeed Technology Ltd. -> WiseCleaner.COM) [File not signed]
Startup: C:\Users\Comp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk [2015-08-16]
ShortcutTarget: MagicDisc.lnk -> C:\Program Files\MagicDisc\MagicDisc.exe (MagicISO, Inc.) [File not signed]
Startup: C:\Users\Comp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2011-01-17]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe () [File not signed]
Startup: C:\Users\Karlíček\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2011-08-13] ()
Startup: C:\Users\Karlíček\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SystemExplorerDisabled [2011-08-24] ()
Startup: C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2011-07-14]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe () [File not signed]
Startup: C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ReIcon.lnk [2019-06-20]
ShortcutTarget: ReIcon.lnk -> C:\ProgramData\ReIcon\ReIcon.exe (Sordum Software ->
www.sordum.org) [File not signed]
Startup: C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WiseAutoShutdown.exe – zástupce.lnk [2016-07-22]
ShortcutTarget: WiseAutoShutdown.exe – zástupce.lnk -> C:\Program Files\Wise\Wise Auto Shutdown\WiseAutoShutdown.exe (Lespeed Technology Ltd. -> WiseCleaner.COM) [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
GroupPolicyUsers\S-1-5-21-438729375-2292271272-1643045957-1006\User: Restriction <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {015242DB-2F89-4EBD-8FDF-6BD803962AF1} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe
Task: {01A02A3B-F5CF-4060-B603-9DB9E97726E0} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {05D5BDAC-A502-41DC-843B-CF7DC12519A9} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {0B6A283E-9D3C-43D2-A858-C23455E817E0} - \User_Feed_Synchronization-{F6CE3E0C-74CC-46CF-8C45-DE2FE86C5794} -> No File <==== ATTENTION
Task: {0C078A32-ACEF-4254-8C09-403C0DCD927D} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {0DF62F0D-CB25-452A-90B1-3BE4AB6632E4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe)
Task: {10D35043-6050-486C-A622-F3A0BE2354CA} - System32\Tasks\GoogleUpdateTaskMachineCore1d5ff07347049de => C:\Program Files\Google\Update\GoogleUpdate.exe [154440 2016-07-12] (Google Inc -> Google Inc.)
Task: {18934300-EBAE-442F-89D4-A7FCE2F9D735} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> No File <==== ATTENTION
Task: {18DFFA26-3033-4BF3-B01B-DECC20D7966B} - System32\Tasks\SafeZone scheduled Autoupdate 1495997204 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe
Task: {195E46F2-1FFD-4E38-948F-8A8D4E3421E9} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-438729375-2292271272-1643045957-1003Core => C:\Users\Karlíček\AppData\Local\Facebook\Update\FacebookUpdate.exe [137536 2011-08-04] (Facebook, Inc. -> Facebook Inc.)
Task: {19AC77B2-FB2A-4F4B-9CA6-3A4AAA3B9780} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [282800 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {1E78C6BE-B0EA-4925-9497-3661BCC27FF6} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
Task: {1ED0DF46-3514-4EEA-A0BE-17E8565693AC} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {249109C3-27C3-47D5-AFAD-0B86AE985523} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {24FA84A0-E087-48EC-BC51-2B9C4C815D78} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {260B3ED2-B82A-4142-9270-8CE3627D4AB2} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-438729375-2292271272-1643045957-1003UA => C:\Users\Karlíček\AppData\Local\Facebook\Update\FacebookUpdate.exe [137536 2011-08-04] (Facebook, Inc. -> Facebook Inc.)
Task: {2B1FE9CB-695A-48F5-B056-E20CCCB31480} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {33D3B1F4-CABC-4E39-8515-8DA45E152008} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\MpCmdRun.exe [502456 2021-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {34A72D6B-A250-45E7-82E1-163F152D961A} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} C:\Program Files\Windows Live\SOXE\wlsoxe.dll [179584 2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {3551C8B2-42C6-49A4-8270-16C427C30739} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_32_0_0_465_pepper.exe [1499704 2020-12-08] (Adobe Inc. -> Adobe)
Task: {367F930A-A3DB-4112-B1F1-50E92A171C88} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {3849242C-32A4-4BF6-8920-21C7ABCBA81F} - System32\Tasks\{54EC03B7-AFE8-4202-8DEC-647233106BC8} => C:\Windows\system32\pcalua.exe -a D:\Network\Realtek\giga\setup.exe -d D:\Network\Realtek\giga
Task: {3B6A652E-170D-4CD8-A005-E46BB90382A3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\MpCmdRun.exe [502456 2021-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {495E5763-59D0-4345-888C-EAAFA8890868} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {4C0FACD6-1E96-4695-8494-43AAC947D2C7} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-438729375-2292271272-1643045957-1003 => C:\Users\Comp\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task: {506791CB-50F0-41D5-B3F0-F5E446708C23} - System32\Tasks\{31DDBD37-5DB7-4030-8064-10B0CAA806C3} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
Task: {5537E4DE-8C56-469D-B3D5-243FE98B1047} - System32\Tasks\hibernace => C:\Windows\System32\shutdown.exe [23552 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
Task: {5644836C-B191-496E-A5FE-8FDEFBF417CC} - System32\Tasks\{E15BCA64-7FA9-4477-9AE5-4312FB16ECCD} => C:\Users\Karlíček\Documents\My Completed Downloads\Portable Programs\IM's\PidginPortable\PidginPortable.exe
Task: {5813F2CC-E3A9-4FCE-9F9A-70A2A874820F} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {5D48026B-AF3D-44A9-BCA1-C97321C3932A} - System32\Tasks\GoogleUpdateTaskMachineUA1d5ff0734b56ec5 => C:\Program Files\Google\Update\GoogleUpdate.exe [154440 2016-07-12] (Google Inc -> Google Inc.)
Task: {5E958D49-305D-4448-8EB5-D9D864B7E79B} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {5F4F897B-B0CE-4828-9090-F5B5D196E166} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {62981A1A-B20F-44BB-AB42-82FBEB428CBE} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION
Task: {63964FE2-D964-4AA3-8EA9-7F398B160F82} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {6550E7AA-9883-4D45-ACCC-98B774C0BA8A} - System32\Tasks\Wise Auto Shutdown Task.job => C:\Program Files\Wise\Wise Auto Shutdown\WiseAutoShutdown.exe [2105872 2017-04-13] (Lespeed Technology Ltd. -> WiseCleaner.COM) [File not signed]
Task: {6AC715AE-BEBD-46F7-BBB9-B935C4BB5B82} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {6D4ACAAF-9FC4-4BA4-A882-17A2E351F847} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\MpCmdRun.exe [502456 2021-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6E24FBDE-F099-4764-A196-DA75F21850AF} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {6F48DD67-5E4E-426C-8356-59D1E94CACA9} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {73ED9B17-01AC-4003-B5A8-C311469EA34E} - System32\Tasks\{CAC467AD-BA1D-49B2-8A8D-1B352D6EADCE} => "c:\program files\mozilla firefox\firefox.exe"
https://www.skype.com/go/downloading?so ... rror=12040
Task: {751FF52F-9341-401F-AB6E-38615B80DDED} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {7CA8241D-FFA2-4917-BABC-A3E152FA47BD} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {7E30EFDB-2AF0-4FFD-981B-B5D652F930E7} - System32\Tasks\Opera scheduled Autoupdate 1375252152 => C:\Users\Maminka\AppData\Local\Programs\Opera\launcher.exe [1596568 2021-04-26] (Opera Software AS -> Opera Software)
Task: {80B5D156-FB47-491B-87B2-4CF63E5FB411} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {8645CF15-736A-481C-872F-3DB682F6E636} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {883C1EF1-F845-4B48-BA9B-6F312BB8ACDD} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {89AF9E6D-02B9-48DF-9409-502D36DA7A7A} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-08] (Adobe Inc. -> Adobe)
Task: {8C01AA03-E6FB-489F-AA99-A642331A0F83} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {8E40374D-17C7-4BC1-B2DE-7EFC96B336BF} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {935DE609-F220-40F3-8CBD-E9B44720B742} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {A7948FFA-2DA2-4F40-86B8-558E381DBF21} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {A79B4017-AD29-4A3E-A50D-ACD33CA96227} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {A7C54477-069E-43CD-A580-DF067FA4D12D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-438729375-2292271272-1643045957-1003Core => C:\Users\Karlíček\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2010-07-29] (Google Inc -> Google Inc.)
Task: {AA88399F-D4AF-4D5C-8D13-11A24193D9BD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [154440 2016-07-12] (Google Inc -> Google Inc.)
Task: {AC7EA363-4AF6-42EE-82AC-0C74AB25E008} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {AD2FD4C0-D899-4026-8572-12B16F86723D} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {AE5FBBF7-B757-4CCB-9F1B-A696BC58B586} - System32\Tasks\OneDrive Standalone Update Task v2 => C:\Users\Comp\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task: {AFAE27B5-5A37-4AA1-ADFD-49FDCC68652A} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-438729375-2292271272-1643045957-1004 => C:\Users\Comp\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task: {B8988841-0F94-424D-9FB3-667961196B58} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {B8E8B954-C42C-4542-A57A-1466504BFF28} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\MpCmdRun.exe [502456 2021-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BD16A4EE-F9EC-44A3-BFAC-C4028FCAB40A} - System32\Tasks\{0EEC141E-753D-47FF-90FD-89DBD7AF9C16} => "c:\program files\mozilla firefox\firefox.exe"
https://www.skype.com/go/downloading?so ... rror=12040
Task: {BFF70B1C-6A24-4ABF-AF73-190FADA754F2} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {C04D2E67-E8A3-42F0-9DD5-A2EBE4EA8240} - System32\Tasks\WiseCleaner\WASSkipUAC => C:\Program Files\Wise\Wise Auto Shutdown\WiseAutoShutdown.exe [2105872 2017-04-13] (Lespeed Technology Ltd. -> WiseCleaner.COM) [File not signed]
Task: {C3B2E8E9-2725-4CDE-934A-43BAF780D90F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {C5599F6A-4F0D-483F-986A-00D82EF60110} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C5925743-D8D2-4BAD-B946-4F5280409621} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [282800 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {C86B9A99-54EF-49CB-9CE2-593C72C1D26F} - System32\Tasks\{BAB4145C-E88F-4A66-819C-2BE60CDC7AD3} => "c:\program files\mozilla firefox\firefox.exe"
http://ui.skype.com/ui/0/5.1.0.112.259/ ... adedefault
Task: {CA43540F-9B84-4677-BD6C-A0A84FD54F4C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {CC1EE004-12D3-4192-A6FF-4EF178F5FF36} - System32\Tasks\{ACE7A557-8088-40F3-914A-358B1A8996BE} => C:\Program Files\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Software Sarl -> Skype Technologies S.A.)
Task: {CF743BEF-1921-49AB-98D5-C3390F6DC961} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {D001CFFF-1324-4A99-AA4A-1D853F3FCF9A} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [642544 2021-04-28] (Mozilla Corporation -> Mozilla Foundation)
Task: {D06E5AFB-13BA-4766-92D3-B31850A7D85A} - System32\Tasks\{DD90D3CF-2969-4A94-800E-8C9D9455F1A2} => "c:\program files\mozilla firefox\firefox.exe"
http://ui.skype.com/ui/0/5.1.0.112.259/ ... adyoffered
Task: {D7969268-B43F-4B73-8054-98E4F89030EC} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-438729375-2292271272-1643045957-1003UA => C:\Users\Karlíček\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2010-07-29] (Google Inc -> Google Inc.)
Task: {D88FC983-0258-4DD7-97CA-47BDF27A81E2} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {DA891CFC-6C6E-4350-A6A9-23373A95F72F} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1051864 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {E23E02EB-5F77-441D-A7C3-DA6412071E8F} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {E28D5973-CFB8-4EC9-AB5B-DA444FF12971} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Flash Player NPAPI Notifier" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\Adobe Flash Player PPAPI Notifier" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\Adobe Flash Player Updater" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore1d5ff07347049de" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA1d5ff0734b56ec5" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineCore" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineCore1d72c01217d5f68" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineUA" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\OneDrive Standalone Update Task v2" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(12): schtasks.exe -> /Change /TN "\OneDrive Standalone Update Task-S-1-5-21-438729375-2292271272-1643045957-1003" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(13): schtasks.exe -> /Change /TN "\OneDrive Standalone Update Task-S-1-5-21-438729375-2292271272-1643045957-1004" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(14): schtasks.exe -> /Change /TN "\Opera scheduled assistant Autoupdate 1581104545" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(15): schtasks.exe -> /Change /TN "\Opera scheduled Autoupdate 1375252152" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(16): schtasks.exe -> /Change /TN "\PostponeDeviceSetupToast_S-1-5-21-438729375-2292271272-1643045957-1004_0" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(17): schtasks.exe -> /Change /TN "\User_Feed_Synchronization-{F7262D93-127A-4F3F-92C3-929FCF75FC8B}" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(18): schtasks.exe -> /Change /TN "\Wise Auto Shutdown Task" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(19): schtasks.exe -> /Change /TN "\Wise Auto Shutdown Task.job" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(20): schtasks.exe -> /Change /TN "\{0EEC141E-753D-47FF-90FD-89DBD7AF9C16}" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(21): schtasks.exe -> /Change /TN "\{31DDBD37-5DB7-4030-8064-10B0CAA806C3}" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(22): schtasks.exe -> /Change /TN "\{44133E25-8CA6-44B6-B401-C336A0E15969}" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(23): schtasks.exe -> /Change /TN "\{ACE7A557-8088-40F3-914A-358B1A8996BE}" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(24): schtasks.exe -> /Change /TN "\{CAC467AD-BA1D-49B2-8A8D-1B352D6EADCE}" /ENABLE
Task: {E54921C2-D731-48AA-A72B-FFA53F491A76} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(25): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE
Task: {E6CCF2EB-A756-47AB-9A8D-CDD8BFF501C5} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {E79B2998-8F63-451A-A56D-26EDC0A5098A} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB}
Task: {ED61A1AC-76F0-4B3C-9370-154671EBD304} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {EF77B54C-DF4B-48F8-92D4-7ACE9B153E41} - System32\Tasks\Opera scheduled assistant Autoupdate 1581104545 => C:\Users\Maminka\AppData\Local\Programs\Opera\launcher.exe [1596568 2021-04-26] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Maminka\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {F0526EEA-83C5-43E9-9690-4F11B141E044} - System32\Tasks\{44133E25-8CA6-44B6-B401-C336A0E15969} => "C:\Program Files\Internet Explorer\iexplore.exe"
http://ui.skype.com/ui/0/7.22.0.109/cs/ ... rogressBar
Task: {F0E52D99-A829-4587-8E6B-D2CA78493BCB} - \CCleanerSkipUAC -> No File <==== ATTENTION
Task: {F2069893-8E7D-44C5-81FC-2924A3B04DCB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [154440 2016-07-12] (Google Inc -> Google Inc.)
Task: {F234F8D5-661F-4AF6-9ED2-815A17E68BB1} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F3D19692-0FB0-410D-BD9C-7A2044FEB8FD} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {F560D2F4-E214-459A-A698-DCB19E07FE7B} - System32\Tasks\Wise Auto Shutdown Task => C:\Program Files\Wise\Wise Auto Shutdown\WiseAutoShutdown.exe [2105872 2017-04-13] (Lespeed Technology Ltd. -> WiseCleaner.COM) [File not signed]
Task: {F75ABFF9-C1C0-4426-97EA-72DE2D60DFCA} - System32\Tasks\Microsoft\Windows\rempl\shell => C:\Program Files\rempl\sedlauncher.exe
Task: {FADFDA32-09F5-4390-BE58-20FC563B4C65} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Users\Maminka\AppData\Local\AVAST Software\Browser\Application\AvastBrowser.exe
Task: {FB0D1C66-59FD-4653-92C3-253D5F56C008} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {FD98795F-7464-4D8B-B206-ED9C90C93F6C} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {FD9C5D81-FFD1-4958-B2B6-D5EFCEDB7A2A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe
Task: {FF387E74-DC30-4AD1-BE15-ACD9A5DDB5B4} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\Wise Auto Shutdown Task.job => C:\Program Files\Wise\Wise Auto Shutdown\WiseAutoShutdown.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.38 213.46.172.39
Tcpip\..\Interfaces\{8175a705-23af-461d-b23d-c7c59cd11b6f}: [DhcpNameServer] 213.46.172.38 213.46.172.39
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\Comp\AppData\Local\Microsoft\Edge\User Data\Default [2021-05-04]
FireFox:
========
FF DefaultProfile: fd93r2bu.default-1383898885237
FF ProfilePath: C:\Users\Comp\AppData\Roaming\Mozilla\Firefox\Profiles\fd93r2bu.default-1383898885237 [2021-05-04]
FF Extension: (Mozilla Archive Format) - C:\Users\Comp\AppData\Roaming\Mozilla\Firefox\Profiles\fd93r2bu.default-1383898885237\Extensions\{7f57cf46-4467-4c2d-adfa-0cba7c507e54}.xpi [2016-02-25] [Legacy]
FF Extension: (No Name) - C:\Users\Comp\AppData\Roaming\Mozilla\Firefox\Profiles\fd93r2bu.default-1383898885237\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2020-06-06]
FF Extension: (Skype Click to Call) - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2021-04-28] [Legacy] [not signed]
FF HKLM\...\Firefox\Extensions: [
smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: (HP Smart Web Printing) - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-07-26] [Legacy] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-08] (Adobe Inc. -> )
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1217157.dll [2015-02-05] (Adobe Systems, Inc.) [File not signed]
FF Plugin: @checkpoint.com/FFApi -> C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll [No File]
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-01-11] (Foxit Corporation -> Foxit Corporation)
FF Plugin: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2013-10-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2013-10-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 -> C:\Program Files\Yahoo!\Shared\npYState.dll [2010-06-01] (Yahoo! Inc. -> Yahoo! Inc.)
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-19] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @pages.tvunetworks.com/WebPlayer -> C:\Windows\system32\TVUAx\npTVUAx.dll [2010-04-23] (TVU networks -> TVU networks)
FF Plugin: @real.com/nppl3260;version=6.0.12.450 -> C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll [2010-02-15] (RealNetworks, Inc. -> RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.448 -> C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll [2010-02-15] (RealNetworks, Inc.) [File not signed]
FF Plugin: @veetle.com/veetlePlayerPlugin,version=0.9.18 -> C:\Program Files\Veetle\Player\npvlc.dll [2010-09-21] (Veetle Inc. -> Veetle Inc)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN -> VideoLAN)
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1003: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Karlíček\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2011-08-11] (Skype Technologies SA -> Skype Limited)
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1003: @talk.google.com/GoogleTalkPlugin -> C:\Users\Karlíček\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2011-07-21] (Google Inc -> Google)
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1003: @talk.google.com/O3DPlugin -> C:\Users\Karlíček\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll [2011-07-21] (Google Inc -> )
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1003: @tools.google.com/Google Update;version=3 -> C:\Users\Karlíček\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll [2011-07-31] (Google Inc -> Google Inc.)
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1003: @tools.google.com/Google Update;version=9 -> C:\Users\Karlíček\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll [2011-07-31] (Google Inc -> Google Inc.)
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1003: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Karlíček\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1003: @xenocode.com/Spoon Plugin 3.26 -> C:\Users\Karlíček\AppData\Local\Spoon\3.26.0.6\npMozillaSpoonPlugin.dll [No File]
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1004: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Maminka\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-08-11] (Unity Technologies SF -> Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1004: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Users\Maminka\AppData\Local\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [No File]
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1004: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Users\Maminka\AppData\Local\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [No File]
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1004: SkypePlugin -> C:\Users\Maminka\AppData\Local\SkypePlugin\7.31.0.56\npGatewayNpapi.dll [2017-02-03] (Microsoft Corporation -> Skype Technologies S.A.)
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1006: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Návštěvník\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-05] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-438729375-2292271272-1643045957-1007: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Comp\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2013-10-03] (Unity Technologies ApS -> Unity Technologies ApS)
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [fpgkjhpjldibdbbppfcabadmpfenkdfe] - <no Path/update_url>
Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-438729375-2292271272-1643045957-1003) Opera - "C:\Users\Karlíček\Documents\My Completed Downloads\Portable Programs\Web Browsers\Opera.exe"
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2012-07-11] (SuperAdBlocker.com -> SUPERAntiSpyware.com) [File not signed]
R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft, Inc. -> ArcSoft Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe)
R2 Everything; C:\Program Files\Everything\Everything.exe [1710880 2019-02-04] (voidtools -> voidtools)
S4 HotspotShieldService; C:\Program Files\Hotspot Shield\bin\openvpnas.exe [247808 2010-07-27] () [File not signed]
R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [694784 2009-09-20] (Hewlett-Packard Co.) [File not signed]
S4 HssTrayService; C:\Program Files\Hotspot Shield\bin\HssTrayService.EXE [57640 2010-07-27] (AnchorFree Inc -> ) [File not signed]
S4 HssWd; C:\Program Files\Hotspot Shield\bin\hsswd.exe [322608 2010-06-23] (AnchorFree Inc -> ) [File not signed]
R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [4293488 2019-06-05] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [5247944 2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44544 2008-12-03] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2008-12-03] (Hewlett-Packard) [File not signed]
S3 rpcapd; C:\Program Files\WinPcap\rpcapd.exe [117264 2009-10-20] (CACE Technologies, Inc. -> CACE Technologies, Inc.)
R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [261272 2019-02-05] (Invincea, Inc. -> Sandboxie Holdings, LLC)
S4 uhssvc; C:\Program Files\Microsoft Update Health Tools\uhssvc.exe [263504 2021-03-23] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\NisSrv.exe [1716720 2021-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\MsMpEng.exe [87648 2021-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ampa; C:\WINDOWS\system32\ampa.sys [17008 2016-07-25] (ChengDu AoMei Tech Co., Ltd -> ) [File not signed]
R0 giveio; C:\WINDOWS\System32\giveio.sys [5248 1996-04-03] () [File not signed]
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [17352 2019-02-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 mcdbus; C:\WINDOWS\System32\drivers\mcdbus.sys [116736 2009-02-24] (MagicISO, Inc.) [File not signed]
R3 MpKsl034728a5; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{8F543AC9-C333-437A-9E55-F4DF9BBAA2D6}\MpKslDrv.sys [52448 2021-05-06] (Microsoft Windows -> Microsoft Corporation)
R2 NPF; C:\WINDOWS\System32\drivers\npf.sys [50704 2009-10-20] (CACE Technologies, Inc. -> CACE Technologies, Inc.)
R3 PAC7302; C:\WINDOWS\system32\DRIVERS\PAC7302.SYS [457984 2007-09-10] (Microsoft Windows Hardware Compatibility Publisher -> PixArt Imaging Inc.)
S3 PcaSp60; C:\WINDOWS\system32\DRIVERS\PcaSp60.sys [28672 2010-09-07] (PRINTING COMMUNICATIONS ASSOCIATES, INC -> Printing Communications Assoc., Inc. (PCAUSA))
R0 pssnap; C:\WINDOWS\System32\DRIVERS\pssnap.sys [16016 2015-10-12] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider)
R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [562176 2019-12-07] (Microsoft Windows -> Realtek)
S3 RTL8169; C:\WINDOWS\System32\DRIVERS\Rtlh86.sys [133120 2008-10-03] (Realtek Corporation) [File not signed]
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [193656 2019-02-04] (Invincea, Inc. -> Sandboxie Holdings, LLC)
R0 speedfan; C:\WINDOWS\System32\speedfan.sys [24184 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 tap0901; C:\WINDOWS\System32\DRIVERS\tap0901.sys [25216 2010-02-25] (OpenVPN, Inc. -> The OpenVPN Project)
R3 taphss; C:\WINDOWS\System32\drivers\taphss.sys [32768 2010-06-16] (AnchorFree Inc -> AnchorFree Inc)
R1 VBoxNetAdp; C:\WINDOWS\System32\DRIVERS\VBoxNetAdp6.sys [98704 2016-02-25] (Oracle Corporation -> Oracle Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [39328 2021-05-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [327904 2021-05-04] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53496 2021-05-04] (Microsoft Windows -> Microsoft Corporation)
U3 aspnet_state; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-06 14:29 - 2021-05-06 14:32 - 000045920 _____ C:\Users\Maminka\Desktop\FRST.txt
2021-05-06 14:28 - 2021-05-05 09:36 - 002010624 _____ (Farbar) C:\Users\Maminka\Desktop\FRST.exe
2021-05-06 11:25 - 2021-05-06 11:31 - 000000000 ____D C:\AdwCleaner
2021-05-06 11:24 - 2021-05-06 11:23 - 008534696 _____ (Malwarebytes) C:\Users\Maminka\Desktop\adwcleaner_8.2.exe
2021-05-05 09:40 - 2021-05-06 14:31 - 000000000 ____D C:\FRST
2021-05-04 11:33 - 2021-05-04 11:33 - 012612600 _____ (AVAST Software) C:\Users\Comp\Downloads\avastclear.exe
2021-05-04 11:17 - 2021-05-04 11:17 - 012612600 _____ (AVAST Software) C:\Users\Maminka\Downloads\avastclear.exe
2021-05-03 12:31 - 2021-05-03 12:31 - 000002621 _____ C:\Users\Maminka\Downloads\smime.p7s
2021-04-28 13:41 - 2021-05-04 11:39 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-04-15 22:37 - 2021-05-04 11:44 - 000003478 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d72c01217d5f68
2021-04-15 15:14 - 2021-04-15 15:14 - 001434336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-04-14 12:30 - 2021-04-14 12:30 - 000000000 ____D C:\WINDOWS\PCHEALTH
2021-04-10 14:10 - 2021-04-10 14:10 - 000218258 _____ C:\Users\Maminka\Downloads\prilohy_178365.zip
2021-04-08 10:35 - 2021-04-08 10:36 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
2021-04-08 01:57 - 2021-04-08 01:57 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-04-08 01:55 - 2021-04-08 01:55 - 000000020 ___SH C:\Users\Comp\ntuser.ini
2021-04-08 01:48 - 2021-04-08 01:48 - 000000020 ___SH C:\Users\Maminka\ntuser.ini
2021-04-08 01:44 - 2021-05-06 11:37 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-04-08 01:44 - 2021-05-05 14:23 - 000004208 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{F7262D93-127A-4F3F-92C3-929FCF75FC8B}
2021-04-08 01:44 - 2021-05-04 11:48 - 000004204 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1375252152
2021-04-08 01:44 - 2021-05-04 11:47 - 000003376 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-438729375-2292271272-1643045957-1004
2021-04-08 01:44 - 2021-05-04 11:44 - 000003572 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-04-08 01:44 - 2021-05-04 11:40 - 000003770 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1581104545
2021-04-08 01:44 - 2021-05-04 11:40 - 000003276 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-04-08 01:44 - 2021-05-04 11:40 - 000003104 _____ C:\WINDOWS\system32\Tasks\Wise Auto Shutdown Task.job
2021-04-08 01:44 - 2021-05-04 11:40 - 000002856 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-438729375-2292271272-1643045957-1003
2021-04-08 01:44 - 2021-05-04 11:40 - 000002770 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task v2
2021-04-08 01:44 - 2021-05-04 11:40 - 000002504 _____ C:\WINDOWS\system32\Tasks\Wise Auto Shutdown Task
2021-04-08 01:44 - 2021-05-04 11:40 - 000002352 _____ C:\WINDOWS\system32\Tasks\{31DDBD37-5DB7-4030-8064-10B0CAA806C3}
2021-04-08 01:44 - 2021-05-04 11:40 - 000002286 _____ C:\WINDOWS\system32\Tasks\{CAC467AD-BA1D-49B2-8A8D-1B352D6EADCE}
2021-04-08 01:44 - 2021-05-04 11:40 - 000002286 _____ C:\WINDOWS\system32\Tasks\{0EEC141E-753D-47FF-90FD-89DBD7AF9C16}
2021-04-08 01:44 - 2021-05-04 11:40 - 000002230 _____ C:\WINDOWS\system32\Tasks\{44133E25-8CA6-44B6-B401-C336A0E15969}
2021-04-08 01:44 - 2021-05-04 11:40 - 000002012 _____ C:\WINDOWS\system32\Tasks\{ACE7A557-8088-40F3-914A-358B1A8996BE}
2021-04-08 01:44 - 2021-05-04 11:39 - 000003816 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier
2021-04-08 01:44 - 2021-05-04 11:39 - 000003648 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier
2021-04-08 01:44 - 2021-05-04 11:39 - 000003418 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA1d5ff0734b56ec5
2021-04-08 01:44 - 2021-05-04 11:39 - 000003406 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater
2021-04-08 01:44 - 2021-05-04 11:39 - 000003390 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-04-08 01:44 - 2021-05-04 11:39 - 000003194 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d5ff07347049de
2021-04-08 01:44 - 2021-05-04 11:39 - 000003166 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-04-08 01:44 - 2021-05-04 10:14 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-04-08 01:44 - 2021-04-22 18:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2021-04-08 01:44 - 2021-04-08 01:46 - 000003546 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-438729375-2292271272-1643045957-1003UA
2021-04-08 01:44 - 2021-04-08 01:46 - 000003274 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-438729375-2292271272-1643045957-1003Core
2021-04-08 01:44 - 2021-04-08 01:46 - 000003236 _____ C:\WINDOWS\system32\Tasks\Avast Secure Browser Heartbeat Task (Hourly)
2021-04-08 01:44 - 2021-04-08 01:46 - 000002490 _____ C:\WINDOWS\system32\Tasks\{BAB4145C-E88F-4A66-819C-2BE60CDC7AD3}
2021-04-08 01:44 - 2021-04-08 01:46 - 000002482 _____ C:\WINDOWS\system32\Tasks\{DD90D3CF-2969-4A94-800E-8C9D9455F1A2}
2021-04-08 01:44 - 2021-04-08 01:46 - 000002138 _____ C:\WINDOWS\system32\Tasks\SidebarExecute
2021-04-08 01:44 - 2021-04-08 01:45 - 000003512 _____ C:\WINDOWS\system32\Tasks\FacebookUpdateTaskUserS-1-5-21-438729375-2292271272-1643045957-1003UA
2021-04-08 01:44 - 2021-04-08 01:45 - 000003270 _____ C:\WINDOWS\system32\Tasks\FacebookUpdateTaskUserS-1-5-21-438729375-2292271272-1643045957-1003Core
2021-04-08 01:44 - 2021-04-08 01:45 - 000002734 _____ C:\WINDOWS\system32\Tasks\hibernace
2021-04-08 01:44 - 2021-04-08 01:44 - 000003424 _____ C:\WINDOWS\system32\Tasks\SafeZone scheduled Autoupdate 1495997204
2021-04-08 01:44 - 2021-04-08 01:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\WPD
2021-04-08 01:44 - 2021-04-08 01:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\WiseCleaner
2021-04-08 01:44 - 2021-04-08 01:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\OfficeSoftwareProtectionPlatform
2021-04-08 01:44 - 2021-04-08 01:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-04-08 01:44 - 2021-04-08 01:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\moje úlohy
2021-04-08 01:44 - 2017-05-28 19:33 - 000000000 _____ C:\WINDOWS\system32\Tasks\CIS_{81EFDD93-DBBE-415B-BE6E-49B9664E3E82}
2021-04-08 01:44 - 2010-08-06 14:49 - 000003080 _____ C:\WINDOWS\system32\Tasks\{E15BCA64-7FA9-4477-9AE5-4312FB16ECCD}
2021-04-08 01:44 - 2010-07-15 18:23 - 000003102 _____ C:\WINDOWS\system32\Tasks\{54EC03B7-AFE8-4202-8DEC-647233106BC8}
2021-04-08 01:39 - 2021-04-08 01:44 - 000026673 _____ C:\WINDOWS\diagwrn.xml
2021-04-08 01:39 - 2021-04-08 01:44 - 000026673 _____ C:\WINDOWS\diagerr.xml
2021-04-08 01:31 - 2021-04-08 01:47 - 000000000 ____D C:\Windows.old
2021-04-08 01:20 - 2021-04-08 01:31 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2021-04-08 01:20 - 2021-04-08 01:20 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines
2021-04-08 01:10 - 2021-04-08 01:19 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-04-08 01:10 - 2021-04-08 01:10 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-04-08 01:05 - 2021-04-08 01:05 - 000000000 ____D C:\ProgramData\ssh
2021-04-08 00:58 - 2021-05-06 11:45 - 003355582 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-04-08 00:56 - 2021-04-08 00:56 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-04-08 00:56 - 2021-04-08 00:56 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-04-08 00:56 - 2021-04-08 00:56 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-04-08 00:56 - 2021-04-08 00:56 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-04-08 00:56 - 2021-04-08 00:56 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-04-08 00:56 - 2021-04-08 00:56 - 000036160 _____ C:\WINDOWS\system32\HvSocket.dll
2021-04-08 00:55 - 2021-04-08 00:55 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-04-08 00:55 - 2021-04-08 00:55 - 000941568 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-04-08 00:55 - 2021-04-08 00:55 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-04-08 00:55 - 2021-04-08 00:55 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-04-08 00:55 - 2021-04-08 00:55 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-04-08 00:55 - 2021-04-08 00:55 - 000053760 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-04-08 00:54 - 2021-04-08 00:54 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-04-08 00:54 - 2021-04-08 00:54 - 001797120 _____ C:\WINDOWS\system32\dwmscene.dll
2021-04-08 00:54 - 2021-04-08 00:54 - 001128520 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-04-08 00:54 - 2021-04-08 00:54 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-04-08 00:54 - 2021-04-08 00:54 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-04-08 00:54 - 2021-04-08 00:54 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-04-08 00:54 - 2021-04-08 00:54 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-04-08 00:54 - 2021-04-08 00:54 - 000266240 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-04-08 00:54 - 2021-04-08 00:54 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-04-08 00:54 - 2021-04-08 00:54 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-04-08 00:54 - 2021-04-08 00:54 - 000162304 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-04-08 00:54 - 2021-04-08 00:54 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-04-08 00:54 - 2021-04-08 00:54 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-04-08 00:54 - 2021-04-08 00:54 - 000045056 _____ C:\WINDOWS\system32\runexehelper.exe
2021-04-08 00:54 - 2021-04-08 00:54 - 000039936 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-04-08 00:53 - 2021-04-08 00:53 - 001333760 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-04-08 00:53 - 2021-04-08 00:53 - 000611952 _____ C:\WINDOWS\system32\TextShaping.dll
2021-04-08 00:53 - 2021-04-08 00:53 - 000455680 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-04-08 00:53 - 2021-04-08 00:53 - 000235520 _____ C:\WINDOWS\system32\HeatCore.dll
2021-04-08 00:53 - 2021-04-08 00:53 - 000118784 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-04-08 00:53 - 2021-04-08 00:53 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-04-08 00:53 - 2021-04-08 00:53 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-04-08 00:52 - 2021-04-08 00:52 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-04-08 00:52 - 2021-04-08 00:52 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-04-08 00:52 - 2021-04-08 00:52 - 000330752 _____ C:\WINDOWS\system32\ssdm.dll
2021-04-08 00:52 - 2021-04-08 00:52 - 000240640 _____ C:\WINDOWS\system32\CoreMas.dll
2021-04-08 00:52 - 2021-04-08 00:52 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-04-08 00:52 - 2021-04-08 00:52 - 000148480 _____ C:\WINDOWS\system32\IHDS.dll
2021-04-08 00:52 - 2021-04-08 00:52 - 000128000 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-04-08 00:52 - 2021-04-08 00:52 - 000057344 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-04-08 00:52 - 2021-04-08 00:52 - 000047472 _____ C:\WINDOWS\system32\umpdc.dll
2021-04-08 00:52 - 2021-04-08 00:52 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-04-08 00:52 - 2021-04-08 00:52 - 000010752 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-04-08 00:39 - 2019-04-18 19:49 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml
2021-04-08 00:38 - 2021-05-06 11:45 - 000723958 _____ C:\WINDOWS\system32\perfh019.dat
2021-04-08 00:38 - 2021-05-06 11:45 - 000143432 _____ C:\WINDOWS\system32\perfc019.dat
2021-04-08 00:38 - 2021-05-04 11:47 - 000002417 _____ C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-08 00:38 - 2021-04-08 01:55 - 000000000 ____D C:\Users\Comp
2021-04-08 00:38 - 2021-04-08 01:48 - 000000000 ____D C:\Users\Maminka
2021-04-08 00:38 - 2021-04-08 01:39 - 000000000 ____D C:\Users\Karlíček
2021-04-08 00:38 - 2021-04-08 01:23 - 000000000 ____D C:\Users\Návštěvník
2021-04-08 00:38 - 2021-04-08 01:18 - 000000000 ____D C:\Users\Karol
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\Šablony
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\Soubory cookie
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\Poslední
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\Okolní tiskárny
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\Okolní síť
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\Nabídka Start
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\Dokumenty
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\Documents\Obrázky
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\Documents\Hudba
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\Documents\Filmy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Návštěvník\AppData\Local\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\Šablony
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\Soubory cookie
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\Poslední
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\Okolní tiskárny
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\Okolní síť
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\Nabídka Start
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\Dokumenty
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\Documents\Obrázky
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\Documents\Hudba
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\Documents\Filmy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Maminka\AppData\Local\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\Šablony
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\Soubory cookie
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\Poslední
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\Okolní tiskárny
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\Okolní síť
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\Nabídka Start
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\Dokumenty
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\Documents\Obrázky
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\Documents\Hudba
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\Documents\Filmy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karol\AppData\Local\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\Šablony
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\Soubory cookie
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\Poslední
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\Okolní tiskárny
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\Okolní síť
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\Nabídka Start
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\Dokumenty
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\Documents\Obrázky
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\Documents\Hudba
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\Documents\Filmy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Karlíček\AppData\Local\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\Šablony
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\Soubory cookie
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\Poslední
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\Okolní tiskárny
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\Okolní síť
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\Nabídka Start
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\Dokumenty
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\Documents\Obrázky
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\Documents\Hudba
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\Documents\Filmy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Guest\AppData\Local\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\Šablony
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\Soubory cookie
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\Poslední
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\Okolní tiskárny
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\Okolní síť
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\Nabídka Start
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\Dokumenty
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\Documents\Obrázky
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\Documents\Hudba
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\Documents\Filmy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-04-08 00:38 - 2021-04-08 00:38 - 000000000 _SHDL C:\Users\Comp\AppData\Local\Data aplikací
2021-04-08 00:38 - 2021-04-08 00:37 - 000340720 _____ C:\WINDOWS\system32\perfi019.dat
2021-04-08 00:38 - 2021-04-08 00:37 - 000041686 _____ C:\WINDOWS\system32\perfd019.dat
2021-04-08 00:38 - 2019-12-07 08:08 - 000001105 _____ C:\Users\Návštěvník\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-08 00:38 - 2019-12-07 08:08 - 000001105 _____ C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-08 00:38 - 2019-12-07 08:08 - 000001105 _____ C:\Users\Karlíček\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-08 00:38 - 2019-12-07 08:08 - 000001105 _____ C:\Users\Comp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-08 00:37 - 2021-04-08 00:58 - 000000000 ____D C:\Users\Guest
2021-04-08 00:37 - 2021-04-08 00:37 - 000000000 ____D C:\WINDOWS\system32\ru
2021-04-08 00:37 - 2019-12-07 08:08 - 000001105 _____ C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-08 00:33 - 2021-04-15 22:32 - 000461504 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-04-08 00:33 - 2021-04-08 00:35 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-04-08 00:32 - 2021-04-08 00:32 - 000008192 ___SH C:\DumpStack.log.tmp
2021-04-08 00:26 - 2021-05-06 11:45 - 000738240 _____ C:\WINDOWS\system32\perfh015.dat
2021-04-08 00:26 - 2021-05-06 11:45 - 000144162 _____ C:\WINDOWS\system32\perfc015.dat
2021-04-08 00:26 - 2021-04-08 00:26 - 000343212 _____ C:\WINDOWS\system32\perfi015.dat
2021-04-08 00:26 - 2021-04-08 00:26 - 000041370 _____ C:\WINDOWS\system32\perfd015.dat
2021-04-08 00:26 - 2021-04-08 00:26 - 000000000 ____D C:\WINDOWS\system32\pl
2021-04-06 16:21 - 2021-04-08 01:49 - 000000000 ___DC C:\WINDOWS\Panther
2021-04-06 16:20 - 2021-04-06 16:20 - 000000000 ___HD C:\$WinREAgent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-06 13:27 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-05-06 13:25 - 2019-12-07 08:12 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-05-06 11:45 - 2019-12-07 14:21 - 000682184 _____ C:\WINDOWS\system32\perfh005.dat
2021-05-06 11:45 - 2019-12-07 14:21 - 000137000 _____ C:\WINDOWS\system32\perfc005.dat
2021-05-06 11:45 - 2019-12-07 08:10 - 000000000 ____D C:\WINDOWS\INF
2021-05-06 11:41 - 2012-05-10 13:56 - 000000000 ____D C:\ProgramData\Mozilla
2021-05-06 11:40 - 2016-11-19 14:04 - 000000000 ____D C:\Users\Maminka\AppData\LocalLow\Mozilla
2021-05-06 11:37 - 2016-07-04 09:27 - 000000426 _____ C:\WINDOWS\Tasks\Wise Auto Shutdown Task.job
2021-05-06 11:36 - 2019-12-07 08:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2021-05-06 11:31 - 2011-10-04 20:25 - 000000000 ____D C:\Users\Comp\AppData\LocalLow\Yahoo!
2021-05-06 11:31 - 2011-10-04 20:24 - 000000000 ____D C:\Users\Comp\AppData\Roaming\Yahoo!
2021-05-06 11:31 - 2011-02-11 07:51 - 000000000 ____D C:\Users\Maminka\AppData\Roaming\Yahoo!
2021-05-06 11:31 - 2011-02-11 07:51 - 000000000 ____D C:\Users\Maminka\AppData\LocalLow\Yahoo!
2021-05-06 11:31 - 2011-01-06 12:54 - 000000000 ____D C:\Users\Karlíček\AppData\LocalLow\Yahoo!
2021-05-06 11:31 - 2010-09-29 22:04 - 000000000 ____D C:\Users\Karlíček\AppData\Roaming\Yahoo!
2021-05-06 11:31 - 2010-09-29 22:01 - 000000000 ____D C:\Program Files\Yahoo!
2021-05-04 13:03 - 2011-08-26 11:12 - 000000000 ____D C:\Program Files\JDownloader
2021-05-04 12:21 - 2019-04-24 20:04 - 000000000 ____D C:\Users\Maminka\AppData\Local\AVAST Software
2021-05-04 12:21 - 2017-05-28 20:45 - 000000000 ____D C:\Users\Maminka\AppData\Roaming\AVAST Software
2021-05-04 11:55 - 2018-05-15 23:23 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-05-04 11:52 - 2019-12-07 08:12 - 000000000 ___HD C:\Program Files\WindowsApps
2021-05-04 11:51 - 2020-10-29 01:17 - 000002389 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-05-04 11:51 - 2020-10-29 01:17 - 000002227 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-05-04 11:49 - 2016-07-12 11:28 - 000002254 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-05-04 11:48 - 2017-06-30 19:38 - 000001445 _____ C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2021-05-04 11:47 - 2016-07-05 20:43 - 000000000 ___RD C:\Users\Maminka\OneDrive
2021-05-04 11:39 - 2012-05-10 13:56 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2021-05-04 11:39 - 2011-09-26 20:43 - 000000000 ____D C:\ProgramData\AVAST Software
2021-05-04 11:35 - 2017-05-28 20:05 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2021-05-04 11:33 - 2017-05-28 19:12 - 000000000 ____D C:\Users\Comp\AppData\LocalLow\Mozilla
2021-05-04 11:31 - 2011-03-26 15:23 - 000001117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-04-30 11:28 - 2020-10-24 21:27 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-04-29 12:52 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-04-22 10:46 - 2019-06-19 15:31 - 000000000 ____D C:\Users\Maminka\AppData\Roaming\Everything
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\SystemResources
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\setup
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\Provisioning
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-04-15 22:27 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-04-15 15:30 - 2019-12-07 08:03 - 000000000 ____D C:\WINDOWS\servicing
2021-04-15 15:30 - 2019-12-07 08:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-04-15 15:14 - 2010-07-15 14:40 - 000414044 __RSH C:\bootmgr
2021-04-14 15:46 - 2013-08-15 03:09 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-04-14 15:30 - 2010-07-15 17:45 - 128249400 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-04-14 15:29 - 2013-06-06 14:02 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2021-04-14 15:21 - 2009-07-14 04:04 - 000000786 _____ C:\WINDOWS\win.ini
2021-04-14 12:30 - 2019-12-07 08:12 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2021-04-09 22:19 - 2015-07-26 09:22 - 000000270 __RSH C:\ProgramData\ntuser.pol
2021-04-09 15:49 - 2019-03-20 15:12 - 000000000 ____D C:\Users\Maminka\Desktop\DANUTA
2021-04-08 10:29 - 2020-01-25 18:57 - 000647560 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2021-04-08 10:06 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\appcompat
2021-04-08 10:05 - 2017-12-23 05:12 - 000000000 ____D C:\Users\Maminka\AppData\Local\Packages
2021-04-08 02:08 - 2019-12-07 08:12 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-04-08 01:51 - 2018-08-09 17:47 - 000000000 ____D C:\ProgramData\Packages
2021-04-08 01:51 - 2017-12-23 09:15 - 000000000 ___RD C:\Users\Maminka\3D Objects
2021-04-08 01:51 - 2016-04-27 06:30 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-04-08 01:46 - 2019-12-07 08:12 - 000000000 ____D C:\Program Files\Windows NT
2021-04-08 01:45 - 2019-12-07 08:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-04-08 01:44 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\Registration
2021-04-08 01:44 - 2019-12-07 08:12 - 000000000 ____D C:\ProgramData\USOPrivate
2021-04-08 01:44 - 2019-12-07 08:12 - 000000000 ____D C:\Program Files\Windows Defender
2021-04-08 01:32 - 2019-12-07 08:12 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-04-08 01:32 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-04-08 01:32 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\spool
2021-04-08 01:32 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-04-08 01:32 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\Macromed
2021-04-08 01:32 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\IME
2021-04-08 01:32 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\System
2021-04-08 01:32 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\schemas
2021-04-08 01:32 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\ServiceState
2021-04-08 01:32 - 2019-03-19 04:46 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-04-08 01:32 - 2017-04-11 14:57 - 000000000 ____D C:\WINDOWS\PixArt
2021-04-08 01:32 - 2016-04-27 06:18 - 000000000 ____D C:\WINDOWS\ShellNew
2021-04-08 01:32 - 2014-11-20 19:15 - 000000000 ____D C:\WINDOWS\system32\vbox
2021-04-08 01:32 - 2011-10-19 20:44 - 000000000 ____D C:\WINDOWS\system32\TVUAx
2021-04-08 01:32 - 2011-02-25 15:23 - 000000000 ____D C:\WINDOWS\system32\SPReview
2021-04-08 01:32 - 2011-02-25 15:22 - 000000000 ____D C:\WINDOWS\system32\EventProviders
2021-04-08 01:32 - 2010-07-27 01:06 - 000000000 ____D C:\WINDOWS\system32\Lang
2021-04-08 01:32 - 2010-07-15 16:38 - 000000000 ____D C:\WINDOWS\system32\Adobe
2021-04-08 01:31 - 2019-12-07 08:14 - 000000000 ____D C:\WINDOWS\Setup
2021-04-08 01:31 - 2019-12-07 08:12 - 000000000 __SHD C:\Program Files\Windows Sidebar
2021-04-08 01:31 - 2019-12-07 08:12 - 000000000 ____D C:\Program Files\Common Files\System
2021-04-08 01:31 - 2019-06-19 09:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2021-04-08 01:31 - 2019-06-18 11:28 - 000000000 ____D C:\Program Files\UNP
2021-04-08 01:31 - 2019-04-14 10:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie
2021-04-08 01:31 - 2018-12-30 12:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mobile Upgrade S 4.5.9
2021-04-08 01:31 - 2018-09-15 07:10 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2021-04-08 01:31 - 2017-10-05 15:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2021-04-08 01:31 - 2017-04-11 14:57 - 000000000 ____D C:\Program Files\Realtek
2021-04-08 01:31 - 2016-11-04 16:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMP WinOFF
2021-04-08 01:31 - 2016-10-13 17:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ONE TOUCH Upgrade S 2.8.5
2021-04-08 01:31 - 2016-08-10 20:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2021-04-08 01:31 - 2016-07-25 12:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant Standard Edition 6.0
2021-04-08 01:31 - 2016-07-05 14:44 - 000000000 ____D C:\Program Files\MSBuild
2021-04-08 01:31 - 2016-05-08 09:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Auto Shutdown
2021-04-08 01:31 - 2015-08-16 09:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Windows AIK
2021-04-08 01:31 - 2015-08-14 13:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI PE Builder 1.4
2021-04-08 01:31 - 2015-07-29 09:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn
2021-04-08 01:31 - 2015-06-06 17:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alcatel onetouch Manager
2021-04-08 01:31 - 2015-06-06 16:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ONE TOUCH Upgrade S 2.8.0
2021-04-08 01:31 - 2014-08-29 11:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2021-04-08 01:31 - 2013-10-21 21:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2021-04-08 01:31 - 2013-04-02 18:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect
2021-04-08 01:31 - 2013-04-02 18:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft WebCam Companion 3
2021-04-08 01:31 - 2013-04-02 18:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC VGA Camer@ Plus
2021-04-08 01:31 - 2013-03-27 11:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan
2021-04-08 01:31 - 2013-03-21 16:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2021-04-08 01:31 - 2012-10-13 18:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ipla
2021-04-08 01:31 - 2012-10-02 12:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2021-04-08 01:31 - 2012-07-15 14:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Klavaro
2021-04-08 01:31 - 2012-07-02 11:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-04-08 01:31 - 2012-04-04 17:46 - 000000000 ____D C:\WINDOWS\cs
2021-04-08 01:31 - 2012-01-10 16:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenWith.org Desktop Tool
2021-04-08 01:31 - 2011-11-24 22:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASuite
2021-04-08 01:31 - 2011-10-04 20:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger
2021-04-08 01:31 - 2011-08-28 11:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I-Doser Premium
2021-04-08 01:31 - 2011-08-24 13:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eyeQ
2021-04-08 01:31 - 2011-08-21 12:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Neuro-Programmer 3
2021-04-08 01:31 - 2011-07-20 21:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\All Ten Fingers
2021-04-08 01:31 - 2011-07-18 21:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FacebookDiscovery
2021-04-08 01:31 - 2011-05-04 21:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SopCast
2021-04-08 01:31 - 2011-04-30 14:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SuperMemo Extreme English!
2021-04-08 01:31 - 2011-04-29 13:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LanguageNow! V7
2021-04-08 01:31 - 2011-04-11 13:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vocaboly
2021-04-08 01:31 - 2011-04-06 11:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InfoTag Magic
2021-04-08 01:31 - 2011-04-05 12:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TapinRadio 1.34
2021-04-08 01:31 - 2011-03-31 16:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free HTTP Sniffer
2021-04-08 01:31 - 2011-03-23 14:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XviD
2021-04-08 01:31 - 2011-02-23 22:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Windows SDK v7.1
2021-04-08 01:31 - 2011-02-15 15:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Task Coach
2021-04-08 01:31 - 2011-02-02 15:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free MP3 Joiner
2021-04-08 01:31 - 2011-01-13 22:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\1Time
2021-04-08 01:31 - 2010-12-29 14:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fwink
2021-04-08 01:31 - 2010-11-23 11:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMind
2021-04-08 01:31 - 2010-09-07 10:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ziepod+
2021-04-08 01:31 - 2010-08-01 13:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield
2021-04-08 01:31 - 2010-07-28 15:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speedlingua Professional Individual
2021-04-08 01:31 - 2010-07-26 12:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
2021-04-08 01:31 - 2010-07-26 10:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2021-04-08 01:31 - 2010-07-23 19:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TELL ME MORE Performance
2021-04-08 01:31 - 2010-07-22 18:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SuperMemo UX
2021-04-08 01:31 - 2010-07-18 21:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicDisc
2021-04-08 01:31 - 2010-07-17 14:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2021-04-08 01:31 - 2010-07-15 20:34 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.2
2021-04-08 01:31 - 2010-07-15 19:23 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2021-04-08 01:31 - 2010-07-15 18:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webcam 1200
2021-04-08 01:31 - 2010-07-15 18:18 - 000000000 ____D C:\Program Files\Intel
2021-04-08 01:31 - 2009-07-14 04:37 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicyUsers
2021-04-08 01:31 - 2009-07-14 04:37 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2021-04-08 01:30 - 2019-12-07 08:12 - 000000000 __RHD C:\Users\Public\Libraries
2021-04-08 01:25 - 2016-07-05 14:44 - 000021592 _____ C:\WINDOWS\system32\emptyregdb.dat
2021-04-08 01:24 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\Media
2021-04-08 01:22 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\MUI
2021-04-08 01:22 - 2016-07-05 14:44 - 000000000 ____D C:\WINDOWS\system32\XPSViewer
2021-04-08 01:21 - 2016-07-05 14:44 - 000000000 ____D C:\WINDOWS\system32\BestPractices
2021-04-08 01:20 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\Resources
2021-04-08 01:20 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\Help
2021-04-08 01:20 - 2019-06-19 12:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macrium
2021-04-08 01:20 - 2016-11-26 11:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft
2021-04-08 01:20 - 2016-07-05 14:44 - 000000000 ____D C:\Program Files\Reference Assemblies
2021-04-08 01:20 - 2013-06-06 15:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMODO
2021-04-08 01:20 - 2012-07-05 21:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility
2021-04-08 01:20 - 2011-01-13 14:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2021-04-08 01:20 - 2010-08-04 11:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rosetta Stone
2021-04-08 01:20 - 2010-07-28 13:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Alternative
2021-04-08 01:20 - 2010-07-26 12:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StreamingStar
2021-04-08 01:20 - 2009-07-14 06:52 - 000000000 ____D C:\Program Files\Microsoft Games
2021-04-08 01:05 - 2019-12-07 14:23 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugins
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\Com
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\IME
2021-04-08 01:05 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-04-08 01:03 - 2019-12-07 14:23 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-04-08 01:03 - 2019-12-07 14:23 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-04-08 00:50 - 2019-06-19 12:59 - 000000000 ____D C:\Users\Comp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything
2021-04-08 00:50 - 2019-03-29 10:36 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-04-08 00:50 - 2012-07-02 11:22 - 000000000 ____D C:\Users\Comp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-04-08 00:50 - 2012-05-08 20:46 - 000000000 ____D C:\Users\Comp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MemoryLifter
2021-04-08 00:50 - 2012-02-18 16:15 - 000000000 ____D C:\Users\Karlíček\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Task List Guru
2021-04-08 00:50 - 2012-01-19 15:46 - 000000000 ____D C:\Users\Karlíček\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RSS Bandit
2021-04-08 00:50 - 2011-12-02 13:05 - 000000000 ____D C:\Users\Karlíček\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\KeyFreeze
2021-04-08 00:50 - 2011-10-07 21:40 - 000000000 ____D C:\Users\Comp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MultiSkypeLauncher
2021-04-08 00:50 - 2011-07-19 10:36 - 000000000 ____D C:\Users\Comp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
2021-04-08 00:50 - 2011-05-15 20:41 - 000000000 ____D C:\Users\Comp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StreamTorrent 1.0
2021-04-08 00:50 - 2011-04-29 12:18 - 000000000 ____D C:\Users\Karlíček\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCS WinVisible
2021-04-08 00:50 - 2011-03-16 16:36 - 000000000 ____D C:\Users\Karlíček\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOICEbook Shelf Volume 1
2021-04-08 00:50 - 2011-01-18 21:19 - 000000000 ____D C:\Users\Karlíček\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Talk
2021-04-08 00:46 - 2017-12-23 05:11 - 000000000 ____D C:\Users\Návštěvník\AppData\Local\Packages
2021-04-08 00:45 - 2017-12-23 05:17 - 000000000 ____D C:\Users\Comp\AppData\Local\Packages
2021-04-08 00:43 - 2019-04-14 09:47 - 000000000 ____D C:\Users\Karlíček\AppData\Local\Packages
2021-04-08 00:43 - 2011-03-05 17:53 - 000000000 ____D C:\Users\Karlíček\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Digsby
2021-04-08 00:39 - 2019-12-07 14:22 - 000000000 ____D C:\WINDOWS\OCR
2021-04-08 00:38 - 2019-12-07 14:21 - 000000000 ____D C:\WINDOWS\system32\winrm
2021-04-08 00:38 - 2019-12-07 14:21 - 000000000 ____D C:\WINDOWS\system32\WCN
2021-04-08 00:38 - 2019-12-07 14:21 - 000000000 ____D C:\WINDOWS\system32\slmgr
2021-04-08 00:37 - 2019-12-07 14:21 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2021-04-08 00:37 - 2019-12-07 08:12 - 000000000 ___SD C:\WINDOWS\system32\dsc
2021-04-08 00:35 - 2017-04-11 14:57 - 000000000 ____D C:\WINDOWS\system32\RTCOM
2021-04-07 23:09 - 2010-07-15 14:40 - 000008192 __RSH C:\BOOTSECT.BAK
==================== Files in the root of some directories ========
2011-12-02 13:28 - 2011-12-02 13:28 - 000000308 _____ () C:\Program Files\KeyFreeze.appref-ms
2011-03-02 15:12 - 2011-03-02 15:13 - 000000990 ___SH () C:\Users\Comp\AppData\Roaming\systemfl.$dk
2011-11-27 12:00 - 2011-11-27 12:00 - 000007623 _____ () C:\Users\Comp\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================