Ntb Lenovo spomaleny
Napsal: 16 kvě 2017 15:30
Dobry den.
Prosim o kontrolu s win 10.
Dakujem.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-05-2017
Ran by risos (administrator) on DESKTOP-0PNNP6Q (16-05-2017 16:11:57)
Running from C:\Users\risos\Downloads
Loaded Profiles: risos (Available Profiles: risos)
Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidMonitorSvc.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\Locator.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
() C:\Windows\System32\igfxTray.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avpui.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksdeui.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.15.597.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
() C:\Program Files (x86)\Lenovo\System Update\SUService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.1051_none_7f2bf7ea21d201b2\TiWorker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
() C:\Program Files\Realtek\Audio\HDA\FMAPP.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-04] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3742112 2015-07-29] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [9308416 2015-06-02] (Realtek semiconductor)
HKLM-x32\...\RunOnce: [removesu] => cmd.exe /c rd /s /q "C:\Program Files (x86)\Lenovo\tvsuinstaller"
HKU\S-1-5-21-1861439330-3910277769-2388807214-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9292504 2016-12-21] (Piriform Ltd)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
Startup: C:\Users\risos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2017-04-03]
ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\risos\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{25111e46-57e3-4b7e-9fd7-3789ae3c87dc}: [DhcpNameServer] 192.168.100.1
Tcpip\..\Interfaces\{28c1d306-3b56-450e-8384-0bcdb970f26c}: [DhcpNameServer] 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{49965f8a-6c62-4f1e-b17c-b0c0447eb193}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{92ac0113-b99c-4a0a-b9a8-7d6143a94391}: [DhcpNameServer] 192.168.43.1
Internet Explorer:
==================
BHO: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2017-01-17] (AO Kaspersky Lab)
BHO-x32: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\IEExt\ie_plugin.dll [2017-01-17] (AO Kaspersky Lab)
Toolbar: HKLM - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2017-01-17] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\IEExt\ie_plugin.dll [2017-01-17] (AO Kaspersky Lab)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi [2017-01-17]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
Chrome:
=======
CHR HomePage: Default -> hxxps://www.google.sk/?gws_rd=ssl
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.google.com/"
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default [2017-05-16]
CHR Extension: (Google Slides) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-12-15]
CHR Extension: (Google Docs) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-12-15]
CHR Extension: (Google Drive) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-12-15]
CHR Extension: (internet Download Manager For Chrome) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\blhjobkfabeopalncconblmakfcllmhk [2017-03-31]
CHR Extension: (YouTube) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-12-15]
CHR Extension: (Adblock Plus) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-03-22]
CHR Extension: (Tampermonkey) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2017-05-16]
CHR Extension: (Invite All (for Facebook)) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\eopekjehpibhfpjjcokfmhcaeiclddih [2016-12-15]
CHR Extension: (Google Sheets) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-12-15]
CHR Extension: (Kaspersky Protection) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhoibnponjcgjgcnfacekaijdbbplhib [2017-01-29]
CHR Extension: (Google Docs Offline) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-15]
CHR Extension: (Helium Backup) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpglbgbpeobllokpmeagpoagjbfknanl [2016-12-25]
CHR Extension: (Chrome Web Store Payments) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09]
CHR Extension: (Gmail) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-15]
CHR Extension: (Chrome Media Router) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-05-16]
CHR HKLM\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib
CHR HKLM-x32\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ApHidMonitorService; C:\Program Files\Apoint2K\HidMonitorSvc.exe [90440 2015-11-08] (Alps Electric Co., Ltd.)
R2 AVP17.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe [241544 2016-06-28] (AO Kaspersky Lab)
S2 CCSDK; C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe [688992 2017-02-27] (Lenovo)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [135072 2015-07-29] (ELAN Microelectronics Corp.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373744 2016-11-02] (Intel Corporation)
S3 klvssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\vssbridge64.exe [77328 2016-06-28] (AO Kaspersky Lab)
R2 KSDE1.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [241544 2016-06-28] (AO Kaspersky Lab)
S3 LSC.Services.SystemService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [273544 2016-12-07] (Lenovo)
S2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [458176 2016-12-29] (NVIDIA Corporation)
R3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [23416 2017-05-09] ()
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10888944 2017-04-25] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2017-03-28] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2017-03-28] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [58368 2011-11-04] (http://www.winchiphead.com)
R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [238936 2016-06-10] (AO Kaspersky Lab)
S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 ETDSMBus; C:\WINDOWS\system32\DRIVERS\ETDSMBus.sys [30808 2015-07-29] (ELAN Microelectronic Corp.)
S3 ewsercd; C:\WINDOWS\System32\drivers\ewsercd.sys [112896 2015-05-16] (Huawei Technologies Co., Ltd.)
S3 ISCT; C:\WINDOWS\System32\drivers\ISCTD64.sys [46568 2013-08-02] ()
R0 kl1; C:\WINDOWS\System32\DRIVERS\kl1.sys [554416 2016-06-02] (AO Kaspersky Lab)
R0 klbackupdisk; C:\WINDOWS\System32\DRIVERS\klbackupdisk.sys [63920 2016-06-08] (AO Kaspersky Lab)
R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [86352 2016-06-15] (AO Kaspersky Lab)
R2 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [78216 2016-06-01] (AO Kaspersky Lab)
S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [28792 2016-03-31] (AO Kaspersky Lab)
R3 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [197336 2017-04-13] (AO Kaspersky Lab)
R1 klhk; C:\WINDOWS\System32\drivers\klhk.sys [509728 2017-03-13] (AO Kaspersky Lab)
R3 klids; C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\klids.sys [182360 2017-02-14] (AO Kaspersky Lab)
R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [1018592 2017-04-13] (AO Kaspersky Lab)
R1 KLIM6; C:\WINDOWS\system32\DRIVERS\klim6.sys [57424 2017-01-17] (AO Kaspersky Lab)
R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [52136 2016-05-19] (AO Kaspersky Lab)
R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [45488 2016-06-01] (AO Kaspersky Lab)
S3 kltap; C:\WINDOWS\System32\drivers\kltap.sys [52152 2016-06-07] (The OpenVPN Project)
R0 klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [229288 2017-04-19] (AO Kaspersky Lab)
R3 klupd_klif_kimul; C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys [87584 2017-04-14] (AO Kaspersky Lab)
R3 klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [251664 2017-04-19] (AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [112912 2017-04-19] (AO Kaspersky Lab)
R3 klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [173144 2017-04-19] (AO Kaspersky Lab)
R1 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [85320 2016-06-18] (AO Kaspersky Lab)
R1 Klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [136416 2017-03-13] (AO Kaspersky Lab)
R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [199392 2017-03-13] (AO Kaspersky Lab)
R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-20] (Intel Corporation)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvltwu.inf_amd64_0221ce4ec0827f74\nvlddmkm.sys [14190520 2017-01-17] (NVIDIA Corporation)
S3 RT-USB; C:\WINDOWS\system32\drivers\RT-USB64.SYS [70984 2010-06-16] (Ross-Tech LLC)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek )
R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3057920 2015-06-02] (Realtek Semiconductor Corp.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-05-16 16:11 - 2017-05-16 16:16 - 00016293 ____C C:\Users\risos\Downloads\FRST.txt
2017-05-16 16:10 - 2017-05-16 16:11 - 00000000 ___DC C:\FRST
2017-05-16 16:07 - 2017-05-16 16:08 - 02429952 ____C (Farbar) C:\Users\risos\Downloads\FRST64.exe
2017-05-16 15:05 - 2017-05-16 15:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools
2017-05-16 15:05 - 2017-05-16 15:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2017-05-16 14:57 - 2017-05-16 14:59 - 00000000 ___DC C:\Users\risos\Documents\NFS Most Wanted
2017-05-16 14:57 - 2017-05-16 14:57 - 00000000 __HDC C:\OneDriveTemp
2017-05-12 10:48 - 2017-05-12 10:48 - 00000000 ___DC C:\Users\risos\Downloads\Vlčí mládě 1.série
2017-05-12 10:47 - 2017-05-12 10:47 - 00020861 ____C C:\Users\risos\Downloads\[CzT]Vlci_mlade_Teen_Wolf_1_serie_CZ_TVRip_.torrent
2017-05-11 16:32 - 2017-05-11 22:44 - 00000000 ___DC C:\Users\risos\Downloads\Split.2016.BRRip.XviD.AC3.CZ-Sof0kleZ
2017-05-11 16:31 - 2017-05-11 16:31 - 00015930 ____C C:\Users\risos\Downloads\[CzT]Rozpolceny_Split_2016_CZ_.torrent
2017-05-11 14:05 - 2017-05-11 14:05 - 00000868 ____C C:\Users\Public\Desktop\Internet Explorer.lnk
2017-05-09 12:27 - 2017-05-09 12:27 - 00000000 ___HC C:\Users\risos\Documents\Default.rdp
2017-05-08 15:01 - 2017-05-08 15:01 - 06921836 ____C C:\Users\risos\Downloads\78887.mp4
2017-05-08 14:56 - 2017-05-08 14:56 - 02353429 ____C C:\Users\risos\Downloads\VID-20170312-WA0000.mp4
2017-05-04 15:31 - 2017-05-08 12:15 - 00000000 ___DC C:\Users\risos\Documents\TrackmaniaTurbo
2017-05-03 11:14 - 2017-05-03 11:14 - 00000000 ___DC C:\Users\risos\Desktop\Tor Browser
2017-05-03 11:13 - 2017-05-03 11:13 - 50881720 ____C C:\Users\risos\Downloads\torbrowser-install-6.5.2_en-US.exe
2017-05-03 10:56 - 2017-05-11 14:04 - 00000000 ____D C:\Users\risos\AppData\Local\eMule
2017-05-03 10:56 - 2017-05-11 14:04 - 00000000 ____D C:\ProgramData\eMule
2017-05-03 10:56 - 2017-05-03 10:56 - 00000000 ___DC C:\Users\risos\Downloads\eMule
2017-05-03 10:55 - 2017-05-03 10:55 - 03389035 ____C C:\Users\risos\Downloads\eMule0.50a-Installer.exe
2017-04-26 22:06 - 2017-04-26 22:06 - 00003240 _____ C:\WINDOWS\System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}
2017-04-26 22:02 - 2017-04-26 22:03 - 00000000 ___DC C:\Users\risos\Downloads\hoc03
2017-04-26 22:02 - 2017-04-26 22:02 - 00029291 ____C C:\Users\risos\Downloads\[CzT]Domek_z_karet_House_of_Cards_3_serie_WebRip_720p_.torrent
2017-04-26 22:01 - 2017-04-26 22:07 - 00000000 ___DC C:\Users\risos\Downloads\Dům z karet II
2017-04-26 22:00 - 2017-04-26 22:00 - 00032101 ____C C:\Users\risos\Downloads\[CzT]Domek_z_karet_House_of_Cards_2_serie_CZ_EN_TvRip_1080p_.torrent
2017-04-26 21:57 - 2017-04-26 22:15 - 1743378432 ___RC C:\Users\risos\Downloads\The Reader - Předčítač.avi
2017-04-26 21:57 - 2017-04-26 21:57 - 00000000 ___DC C:\Users\risos\Downloads\Paulette.2012.BRRip.XviD.CZ-TreZzoR
2017-04-26 21:56 - 2017-04-26 21:56 - 00014750 ____C C:\Users\risos\Downloads\[CzT]Hasisbaba_Paulette_2012_CZ_.torrent
2017-04-26 21:53 - 2017-04-26 22:08 - 1616535621 ____C C:\Users\risos\Downloads\Až-na-dno-_-Low-Down-2014,-CZ-tit.mkv
2017-04-26 21:51 - 2017-04-26 21:51 - 00000000 ____D C:\Users\risos\AppData\Roaming\Google
2017-04-26 17:14 - 2017-04-26 17:14 - 00017113 ____C C:\Users\risos\Downloads\[CzT]Predcitac_The_Reader_2008_CZ_.torrent
2017-04-25 20:13 - 2017-04-25 20:14 - 00000000 ___DC C:\Users\risos\Downloads\2011 - Chillerama
2017-04-25 20:13 - 2017-04-25 20:13 - 00016610 ____C C:\Users\risos\Downloads\[CzT]Prehlidka_desu_Chillerama_2011_.torrent
2017-04-24 15:46 - 2017-04-24 15:46 - 04418708 ____C C:\Users\risos\Downloads\video-0-02-05-25796e9617fca2da601b0033da6d73f1355dbf0b94a62cc54ae181848623217e-V.mp4
2017-04-23 20:11 - 2017-04-23 20:12 - 00000000 ___DC C:\Users\risos\Downloads\2000 - Terror Tract
2017-04-23 20:11 - 2017-04-23 20:11 - 00017374 ____C C:\Users\risos\Downloads\[CzT]Dum_v_kraji_hruzy_Terror_Tract_2000_.torrent
2017-04-22 23:05 - 2017-04-22 23:21 - 1429508096 ___RC C:\Users\risos\Downloads\Las.Brujas.de.Zugarramurdi.2013.BRRip.XviD.AC3.CZ-Ex.avi
2017-04-22 23:05 - 2017-04-22 23:05 - 00014139 ____C C:\Users\risos\Downloads\[CzT]Carodejnice_Las_Brujas_de_Zugarramurdi_2013_CZ_.torrent
2017-04-22 23:04 - 2017-04-22 23:18 - 1258307368 ___RC C:\Users\risos\Downloads\Ďábelský dům.avi
2017-04-22 23:04 - 2017-04-22 23:04 - 00012484 ____C C:\Users\risos\Downloads\[CzT]Dabelsky_dum_The_Diabolical_2015_CZ_TVRip_720p_.torrent
2017-04-19 23:00 - 2017-04-19 23:10 - 1250720826 ____C C:\Users\risos\Downloads\Neviditelné-děti---All-the-Invisible-Children-2005,-SK-tit.avi
2017-04-19 22:38 - 2017-04-19 22:38 - 00014456 ____C C:\Users\risos\Downloads\[CzT]Neviditelne_deti_All_the_Invisible_Children.torrent
2017-04-19 21:52 - 2017-04-19 23:26 - 1564921856 ____C C:\Users\risos\Downloads\Puberta-%2F-Нежный-возраст-2000,-RU.avi
2017-04-19 21:03 - 2017-04-19 21:03 - 00017438 ____C C:\Users\risos\Downloads\[CzT]Zuzana_Navarova_Ivan_Gutierrez_Sklenena_Vrba_1999_.torrent
2017-04-19 21:00 - 2017-04-23 10:37 - 00000000 ___DC C:\Users\risos\Downloads\Navarová, Nerez, Neřež
2017-04-19 20:59 - 2017-04-19 20:59 - 00049276 ____C C:\Users\risos\Downloads\[CzT]Zuzana_Navarova_Nerez_Nerez_Koa_1986_2009_.torrent
2017-04-19 20:42 - 2017-04-19 20:43 - 00000000 ___DC C:\Users\risos\Downloads\Kendra's Obsession
2017-04-19 19:06 - 2017-04-19 19:06 - 00012955 ____C C:\Users\risos\Downloads\[CzT]Kendra_s_Obsession_2017_.torrent
2017-04-19 17:49 - 2017-04-19 17:49 - 09424009 ____C C:\Users\risos\Downloads\VID-20161011-WA0016.mp4
2017-04-19 17:12 - 2017-04-19 17:13 - 03078939 ____C C:\Users\risos\Downloads\VID-20161126-WA0003.mp4
2017-04-19 16:45 - 2017-04-19 16:45 - 02268676 ____C C:\Users\risos\Downloads\Nu011Bco_pro_pobavenu00ED.ppsx
2017-04-19 15:17 - 2017-04-19 15:17 - 00251664 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klark.sys
2017-04-19 15:16 - 2017-04-19 15:16 - 00229288 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_arkmon.sys
2017-04-19 15:16 - 2017-04-19 15:16 - 00173144 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_mark.sys
2017-04-19 15:16 - 2017-04-19 15:16 - 00112912 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klbg.sys
2017-04-19 14:22 - 2017-04-19 14:27 - 00000193 ____C C:\Users\risos\Desktop\New Text Document.txt
2017-04-17 20:56 - 2017-04-17 21:01 - 781357056 ___RC C:\Users\risos\Downloads\LOL.avi
2017-04-17 20:56 - 2017-04-17 20:56 - 00015476 ____C C:\Users\risos\Downloads\[CzT]LOL_LOL_Laughing_Out_Loud_2012_.torrent
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-05-16 15:59 - 2016-07-16 13:45 - 00000000 ____D C:\WINDOWS\INF
2017-05-16 15:55 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2017-05-16 15:51 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-05-16 15:27 - 2016-12-24 03:49 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-05-16 15:20 - 2017-01-17 22:16 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2017-05-16 15:12 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-05-16 15:12 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-05-16 15:06 - 2017-02-04 21:10 - 00000000 ____D C:\WINDOWS\System32\Tasks\TVT
2017-05-16 15:05 - 2017-02-04 20:43 - 00000000 ____D C:\Program Files (x86)\Lenovo
2017-05-16 15:00 - 2017-02-04 20:43 - 00000000 ____D C:\ProgramData\Lenovo
2017-05-16 14:57 - 2016-12-24 04:01 - 00000000 ____D C:\Users\risos
2017-05-16 14:57 - 2016-12-14 23:55 - 00000000 __RDC C:\Users\risos\OneDrive
2017-05-16 14:56 - 2016-12-24 03:55 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-05-16 14:56 - 2016-12-14 23:52 - 00000000 _SHDC C:\Users\risos\IntelGraphicsProfiles
2017-05-12 13:25 - 2016-12-15 17:55 - 00000000 ___DC C:\Users\risos\AppData\Roaming\uTorrent
2017-05-12 00:26 - 2016-12-15 17:49 - 00000000 ___DC C:\Users\risos\AppData\Local\Ubisoft Game Launcher
2017-05-11 14:05 - 2017-03-01 17:18 - 00000880 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-05-11 14:05 - 2016-12-15 00:06 - 00001052 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-05-11 14:05 - 2016-12-15 00:06 - 00001040 ____C C:\Users\Public\Desktop\Google Chrome.lnk
2017-05-11 11:10 - 2016-12-16 18:58 - 00000000 ___DC C:\WINDOWS\system32\MRT
2017-05-11 11:06 - 2016-12-16 18:57 - 156335152 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-05-11 10:47 - 2017-02-13 23:54 - 00001029 ____C C:\Users\risos\Desktop\PotPlayer 64 bit.lnk
2017-05-09 12:26 - 2016-12-14 23:52 - 00000000 ___DC C:\Users\risos\AppData\Local\Packages
2017-05-08 12:23 - 2016-12-21 00:29 - 00000000 ___DC C:\Program Files (x86)\TeamViewer
2017-05-06 16:49 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser
2017-05-02 17:35 - 2017-01-24 16:58 - 00000000 ___DC C:\Users\risos\Desktop\fotky galaxyS6
2017-05-02 11:46 - 2017-01-17 15:01 - 00001051 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk
2017-05-02 11:46 - 2017-01-17 15:01 - 00001039 ____C C:\Users\Public\Desktop\TeamViewer 12.lnk
2017-04-29 02:59 - 2017-03-20 17:26 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-04-29 02:59 - 2017-03-20 17:26 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-04-28 16:36 - 2016-12-24 04:17 - 00003416 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-04-28 16:36 - 2016-12-24 04:17 - 00003292 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-04-26 22:06 - 2017-01-17 22:16 - 00000000 ____D C:\Program Files\Common Files\AV
2017-04-26 21:56 - 2017-02-14 00:20 - 00930510 _____ C:\WINDOWS\system32\perfh005.dat
2017-04-26 21:56 - 2017-02-14 00:20 - 00205074 _____ C:\WINDOWS\system32\perfc005.dat
2017-04-26 21:56 - 2016-12-12 18:27 - 02518266 ____C C:\WINDOWS\system32\PerfStringBackup.INI
2017-04-26 21:50 - 2016-12-24 04:17 - 00000006 ___HC C:\WINDOWS\Tasks\SA.DAT
2017-04-26 21:50 - 2016-12-24 03:56 - 00000000 ____D C:\ProgramData\NVIDIA
2017-04-20 00:26 - 2016-07-16 08:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI
==================== Files in the root of some directories =======
2016-12-24 03:57 - 2016-12-24 03:57 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-05-16 15:40
==================== End of FRST.txt ============================
Prosim o kontrolu s win 10.
Dakujem.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-05-2017
Ran by risos (administrator) on DESKTOP-0PNNP6Q (16-05-2017 16:11:57)
Running from C:\Users\risos\Downloads
Loaded Profiles: risos (Available Profiles: risos)
Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidMonitorSvc.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\Locator.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
() C:\Windows\System32\igfxTray.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avpui.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksdeui.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.15.597.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
() C:\Program Files (x86)\Lenovo\System Update\SUService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.1051_none_7f2bf7ea21d201b2\TiWorker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
() C:\Program Files\Realtek\Audio\HDA\FMAPP.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-04] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3742112 2015-07-29] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [9308416 2015-06-02] (Realtek semiconductor)
HKLM-x32\...\RunOnce: [removesu] => cmd.exe /c rd /s /q "C:\Program Files (x86)\Lenovo\tvsuinstaller"
HKU\S-1-5-21-1861439330-3910277769-2388807214-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9292504 2016-12-21] (Piriform Ltd)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
Startup: C:\Users\risos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2017-04-03]
ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\risos\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{25111e46-57e3-4b7e-9fd7-3789ae3c87dc}: [DhcpNameServer] 192.168.100.1
Tcpip\..\Interfaces\{28c1d306-3b56-450e-8384-0bcdb970f26c}: [DhcpNameServer] 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{49965f8a-6c62-4f1e-b17c-b0c0447eb193}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{92ac0113-b99c-4a0a-b9a8-7d6143a94391}: [DhcpNameServer] 192.168.43.1
Internet Explorer:
==================
BHO: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2017-01-17] (AO Kaspersky Lab)
BHO-x32: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\IEExt\ie_plugin.dll [2017-01-17] (AO Kaspersky Lab)
Toolbar: HKLM - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2017-01-17] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\IEExt\ie_plugin.dll [2017-01-17] (AO Kaspersky Lab)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi [2017-01-17]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
Chrome:
=======
CHR HomePage: Default -> hxxps://www.google.sk/?gws_rd=ssl
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.google.com/"
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default [2017-05-16]
CHR Extension: (Google Slides) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-12-15]
CHR Extension: (Google Docs) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-12-15]
CHR Extension: (Google Drive) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-12-15]
CHR Extension: (internet Download Manager For Chrome) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\blhjobkfabeopalncconblmakfcllmhk [2017-03-31]
CHR Extension: (YouTube) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-12-15]
CHR Extension: (Adblock Plus) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-03-22]
CHR Extension: (Tampermonkey) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2017-05-16]
CHR Extension: (Invite All (for Facebook)) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\eopekjehpibhfpjjcokfmhcaeiclddih [2016-12-15]
CHR Extension: (Google Sheets) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-12-15]
CHR Extension: (Kaspersky Protection) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhoibnponjcgjgcnfacekaijdbbplhib [2017-01-29]
CHR Extension: (Google Docs Offline) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-15]
CHR Extension: (Helium Backup) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpglbgbpeobllokpmeagpoagjbfknanl [2016-12-25]
CHR Extension: (Chrome Web Store Payments) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09]
CHR Extension: (Gmail) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-15]
CHR Extension: (Chrome Media Router) - C:\Users\risos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-05-16]
CHR HKLM\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib
CHR HKLM-x32\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ApHidMonitorService; C:\Program Files\Apoint2K\HidMonitorSvc.exe [90440 2015-11-08] (Alps Electric Co., Ltd.)
R2 AVP17.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe [241544 2016-06-28] (AO Kaspersky Lab)
S2 CCSDK; C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe [688992 2017-02-27] (Lenovo)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [135072 2015-07-29] (ELAN Microelectronics Corp.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373744 2016-11-02] (Intel Corporation)
S3 klvssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\vssbridge64.exe [77328 2016-06-28] (AO Kaspersky Lab)
R2 KSDE1.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [241544 2016-06-28] (AO Kaspersky Lab)
S3 LSC.Services.SystemService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [273544 2016-12-07] (Lenovo)
S2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [458176 2016-12-29] (NVIDIA Corporation)
R3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [23416 2017-05-09] ()
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10888944 2017-04-25] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2017-03-28] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2017-03-28] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [58368 2011-11-04] (http://www.winchiphead.com)
R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [238936 2016-06-10] (AO Kaspersky Lab)
S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 ETDSMBus; C:\WINDOWS\system32\DRIVERS\ETDSMBus.sys [30808 2015-07-29] (ELAN Microelectronic Corp.)
S3 ewsercd; C:\WINDOWS\System32\drivers\ewsercd.sys [112896 2015-05-16] (Huawei Technologies Co., Ltd.)
S3 ISCT; C:\WINDOWS\System32\drivers\ISCTD64.sys [46568 2013-08-02] ()
R0 kl1; C:\WINDOWS\System32\DRIVERS\kl1.sys [554416 2016-06-02] (AO Kaspersky Lab)
R0 klbackupdisk; C:\WINDOWS\System32\DRIVERS\klbackupdisk.sys [63920 2016-06-08] (AO Kaspersky Lab)
R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [86352 2016-06-15] (AO Kaspersky Lab)
R2 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [78216 2016-06-01] (AO Kaspersky Lab)
S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [28792 2016-03-31] (AO Kaspersky Lab)
R3 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [197336 2017-04-13] (AO Kaspersky Lab)
R1 klhk; C:\WINDOWS\System32\drivers\klhk.sys [509728 2017-03-13] (AO Kaspersky Lab)
R3 klids; C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\klids.sys [182360 2017-02-14] (AO Kaspersky Lab)
R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [1018592 2017-04-13] (AO Kaspersky Lab)
R1 KLIM6; C:\WINDOWS\system32\DRIVERS\klim6.sys [57424 2017-01-17] (AO Kaspersky Lab)
R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [52136 2016-05-19] (AO Kaspersky Lab)
R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [45488 2016-06-01] (AO Kaspersky Lab)
S3 kltap; C:\WINDOWS\System32\drivers\kltap.sys [52152 2016-06-07] (The OpenVPN Project)
R0 klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [229288 2017-04-19] (AO Kaspersky Lab)
R3 klupd_klif_kimul; C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys [87584 2017-04-14] (AO Kaspersky Lab)
R3 klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [251664 2017-04-19] (AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [112912 2017-04-19] (AO Kaspersky Lab)
R3 klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [173144 2017-04-19] (AO Kaspersky Lab)
R1 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [85320 2016-06-18] (AO Kaspersky Lab)
R1 Klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [136416 2017-03-13] (AO Kaspersky Lab)
R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [199392 2017-03-13] (AO Kaspersky Lab)
R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-20] (Intel Corporation)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvltwu.inf_amd64_0221ce4ec0827f74\nvlddmkm.sys [14190520 2017-01-17] (NVIDIA Corporation)
S3 RT-USB; C:\WINDOWS\system32\drivers\RT-USB64.SYS [70984 2010-06-16] (Ross-Tech LLC)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek )
R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3057920 2015-06-02] (Realtek Semiconductor Corp.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-05-16 16:11 - 2017-05-16 16:16 - 00016293 ____C C:\Users\risos\Downloads\FRST.txt
2017-05-16 16:10 - 2017-05-16 16:11 - 00000000 ___DC C:\FRST
2017-05-16 16:07 - 2017-05-16 16:08 - 02429952 ____C (Farbar) C:\Users\risos\Downloads\FRST64.exe
2017-05-16 15:05 - 2017-05-16 15:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools
2017-05-16 15:05 - 2017-05-16 15:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2017-05-16 14:57 - 2017-05-16 14:59 - 00000000 ___DC C:\Users\risos\Documents\NFS Most Wanted
2017-05-16 14:57 - 2017-05-16 14:57 - 00000000 __HDC C:\OneDriveTemp
2017-05-12 10:48 - 2017-05-12 10:48 - 00000000 ___DC C:\Users\risos\Downloads\Vlčí mládě 1.série
2017-05-12 10:47 - 2017-05-12 10:47 - 00020861 ____C C:\Users\risos\Downloads\[CzT]Vlci_mlade_Teen_Wolf_1_serie_CZ_TVRip_.torrent
2017-05-11 16:32 - 2017-05-11 22:44 - 00000000 ___DC C:\Users\risos\Downloads\Split.2016.BRRip.XviD.AC3.CZ-Sof0kleZ
2017-05-11 16:31 - 2017-05-11 16:31 - 00015930 ____C C:\Users\risos\Downloads\[CzT]Rozpolceny_Split_2016_CZ_.torrent
2017-05-11 14:05 - 2017-05-11 14:05 - 00000868 ____C C:\Users\Public\Desktop\Internet Explorer.lnk
2017-05-09 12:27 - 2017-05-09 12:27 - 00000000 ___HC C:\Users\risos\Documents\Default.rdp
2017-05-08 15:01 - 2017-05-08 15:01 - 06921836 ____C C:\Users\risos\Downloads\78887.mp4
2017-05-08 14:56 - 2017-05-08 14:56 - 02353429 ____C C:\Users\risos\Downloads\VID-20170312-WA0000.mp4
2017-05-04 15:31 - 2017-05-08 12:15 - 00000000 ___DC C:\Users\risos\Documents\TrackmaniaTurbo
2017-05-03 11:14 - 2017-05-03 11:14 - 00000000 ___DC C:\Users\risos\Desktop\Tor Browser
2017-05-03 11:13 - 2017-05-03 11:13 - 50881720 ____C C:\Users\risos\Downloads\torbrowser-install-6.5.2_en-US.exe
2017-05-03 10:56 - 2017-05-11 14:04 - 00000000 ____D C:\Users\risos\AppData\Local\eMule
2017-05-03 10:56 - 2017-05-11 14:04 - 00000000 ____D C:\ProgramData\eMule
2017-05-03 10:56 - 2017-05-03 10:56 - 00000000 ___DC C:\Users\risos\Downloads\eMule
2017-05-03 10:55 - 2017-05-03 10:55 - 03389035 ____C C:\Users\risos\Downloads\eMule0.50a-Installer.exe
2017-04-26 22:06 - 2017-04-26 22:06 - 00003240 _____ C:\WINDOWS\System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}
2017-04-26 22:02 - 2017-04-26 22:03 - 00000000 ___DC C:\Users\risos\Downloads\hoc03
2017-04-26 22:02 - 2017-04-26 22:02 - 00029291 ____C C:\Users\risos\Downloads\[CzT]Domek_z_karet_House_of_Cards_3_serie_WebRip_720p_.torrent
2017-04-26 22:01 - 2017-04-26 22:07 - 00000000 ___DC C:\Users\risos\Downloads\Dům z karet II
2017-04-26 22:00 - 2017-04-26 22:00 - 00032101 ____C C:\Users\risos\Downloads\[CzT]Domek_z_karet_House_of_Cards_2_serie_CZ_EN_TvRip_1080p_.torrent
2017-04-26 21:57 - 2017-04-26 22:15 - 1743378432 ___RC C:\Users\risos\Downloads\The Reader - Předčítač.avi
2017-04-26 21:57 - 2017-04-26 21:57 - 00000000 ___DC C:\Users\risos\Downloads\Paulette.2012.BRRip.XviD.CZ-TreZzoR
2017-04-26 21:56 - 2017-04-26 21:56 - 00014750 ____C C:\Users\risos\Downloads\[CzT]Hasisbaba_Paulette_2012_CZ_.torrent
2017-04-26 21:53 - 2017-04-26 22:08 - 1616535621 ____C C:\Users\risos\Downloads\Až-na-dno-_-Low-Down-2014,-CZ-tit.mkv
2017-04-26 21:51 - 2017-04-26 21:51 - 00000000 ____D C:\Users\risos\AppData\Roaming\Google
2017-04-26 17:14 - 2017-04-26 17:14 - 00017113 ____C C:\Users\risos\Downloads\[CzT]Predcitac_The_Reader_2008_CZ_.torrent
2017-04-25 20:13 - 2017-04-25 20:14 - 00000000 ___DC C:\Users\risos\Downloads\2011 - Chillerama
2017-04-25 20:13 - 2017-04-25 20:13 - 00016610 ____C C:\Users\risos\Downloads\[CzT]Prehlidka_desu_Chillerama_2011_.torrent
2017-04-24 15:46 - 2017-04-24 15:46 - 04418708 ____C C:\Users\risos\Downloads\video-0-02-05-25796e9617fca2da601b0033da6d73f1355dbf0b94a62cc54ae181848623217e-V.mp4
2017-04-23 20:11 - 2017-04-23 20:12 - 00000000 ___DC C:\Users\risos\Downloads\2000 - Terror Tract
2017-04-23 20:11 - 2017-04-23 20:11 - 00017374 ____C C:\Users\risos\Downloads\[CzT]Dum_v_kraji_hruzy_Terror_Tract_2000_.torrent
2017-04-22 23:05 - 2017-04-22 23:21 - 1429508096 ___RC C:\Users\risos\Downloads\Las.Brujas.de.Zugarramurdi.2013.BRRip.XviD.AC3.CZ-Ex.avi
2017-04-22 23:05 - 2017-04-22 23:05 - 00014139 ____C C:\Users\risos\Downloads\[CzT]Carodejnice_Las_Brujas_de_Zugarramurdi_2013_CZ_.torrent
2017-04-22 23:04 - 2017-04-22 23:18 - 1258307368 ___RC C:\Users\risos\Downloads\Ďábelský dům.avi
2017-04-22 23:04 - 2017-04-22 23:04 - 00012484 ____C C:\Users\risos\Downloads\[CzT]Dabelsky_dum_The_Diabolical_2015_CZ_TVRip_720p_.torrent
2017-04-19 23:00 - 2017-04-19 23:10 - 1250720826 ____C C:\Users\risos\Downloads\Neviditelné-děti---All-the-Invisible-Children-2005,-SK-tit.avi
2017-04-19 22:38 - 2017-04-19 22:38 - 00014456 ____C C:\Users\risos\Downloads\[CzT]Neviditelne_deti_All_the_Invisible_Children.torrent
2017-04-19 21:52 - 2017-04-19 23:26 - 1564921856 ____C C:\Users\risos\Downloads\Puberta-%2F-Нежный-возраст-2000,-RU.avi
2017-04-19 21:03 - 2017-04-19 21:03 - 00017438 ____C C:\Users\risos\Downloads\[CzT]Zuzana_Navarova_Ivan_Gutierrez_Sklenena_Vrba_1999_.torrent
2017-04-19 21:00 - 2017-04-23 10:37 - 00000000 ___DC C:\Users\risos\Downloads\Navarová, Nerez, Neřež
2017-04-19 20:59 - 2017-04-19 20:59 - 00049276 ____C C:\Users\risos\Downloads\[CzT]Zuzana_Navarova_Nerez_Nerez_Koa_1986_2009_.torrent
2017-04-19 20:42 - 2017-04-19 20:43 - 00000000 ___DC C:\Users\risos\Downloads\Kendra's Obsession
2017-04-19 19:06 - 2017-04-19 19:06 - 00012955 ____C C:\Users\risos\Downloads\[CzT]Kendra_s_Obsession_2017_.torrent
2017-04-19 17:49 - 2017-04-19 17:49 - 09424009 ____C C:\Users\risos\Downloads\VID-20161011-WA0016.mp4
2017-04-19 17:12 - 2017-04-19 17:13 - 03078939 ____C C:\Users\risos\Downloads\VID-20161126-WA0003.mp4
2017-04-19 16:45 - 2017-04-19 16:45 - 02268676 ____C C:\Users\risos\Downloads\Nu011Bco_pro_pobavenu00ED.ppsx
2017-04-19 15:17 - 2017-04-19 15:17 - 00251664 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klark.sys
2017-04-19 15:16 - 2017-04-19 15:16 - 00229288 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_arkmon.sys
2017-04-19 15:16 - 2017-04-19 15:16 - 00173144 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_mark.sys
2017-04-19 15:16 - 2017-04-19 15:16 - 00112912 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klbg.sys
2017-04-19 14:22 - 2017-04-19 14:27 - 00000193 ____C C:\Users\risos\Desktop\New Text Document.txt
2017-04-17 20:56 - 2017-04-17 21:01 - 781357056 ___RC C:\Users\risos\Downloads\LOL.avi
2017-04-17 20:56 - 2017-04-17 20:56 - 00015476 ____C C:\Users\risos\Downloads\[CzT]LOL_LOL_Laughing_Out_Loud_2012_.torrent
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-05-16 15:59 - 2016-07-16 13:45 - 00000000 ____D C:\WINDOWS\INF
2017-05-16 15:55 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2017-05-16 15:51 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-05-16 15:27 - 2016-12-24 03:49 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-05-16 15:20 - 2017-01-17 22:16 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2017-05-16 15:12 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-05-16 15:12 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-05-16 15:06 - 2017-02-04 21:10 - 00000000 ____D C:\WINDOWS\System32\Tasks\TVT
2017-05-16 15:05 - 2017-02-04 20:43 - 00000000 ____D C:\Program Files (x86)\Lenovo
2017-05-16 15:00 - 2017-02-04 20:43 - 00000000 ____D C:\ProgramData\Lenovo
2017-05-16 14:57 - 2016-12-24 04:01 - 00000000 ____D C:\Users\risos
2017-05-16 14:57 - 2016-12-14 23:55 - 00000000 __RDC C:\Users\risos\OneDrive
2017-05-16 14:56 - 2016-12-24 03:55 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-05-16 14:56 - 2016-12-14 23:52 - 00000000 _SHDC C:\Users\risos\IntelGraphicsProfiles
2017-05-12 13:25 - 2016-12-15 17:55 - 00000000 ___DC C:\Users\risos\AppData\Roaming\uTorrent
2017-05-12 00:26 - 2016-12-15 17:49 - 00000000 ___DC C:\Users\risos\AppData\Local\Ubisoft Game Launcher
2017-05-11 14:05 - 2017-03-01 17:18 - 00000880 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-05-11 14:05 - 2016-12-15 00:06 - 00001052 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-05-11 14:05 - 2016-12-15 00:06 - 00001040 ____C C:\Users\Public\Desktop\Google Chrome.lnk
2017-05-11 11:10 - 2016-12-16 18:58 - 00000000 ___DC C:\WINDOWS\system32\MRT
2017-05-11 11:06 - 2016-12-16 18:57 - 156335152 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-05-11 10:47 - 2017-02-13 23:54 - 00001029 ____C C:\Users\risos\Desktop\PotPlayer 64 bit.lnk
2017-05-09 12:26 - 2016-12-14 23:52 - 00000000 ___DC C:\Users\risos\AppData\Local\Packages
2017-05-08 12:23 - 2016-12-21 00:29 - 00000000 ___DC C:\Program Files (x86)\TeamViewer
2017-05-06 16:49 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser
2017-05-02 17:35 - 2017-01-24 16:58 - 00000000 ___DC C:\Users\risos\Desktop\fotky galaxyS6
2017-05-02 11:46 - 2017-01-17 15:01 - 00001051 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk
2017-05-02 11:46 - 2017-01-17 15:01 - 00001039 ____C C:\Users\Public\Desktop\TeamViewer 12.lnk
2017-04-29 02:59 - 2017-03-20 17:26 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-04-29 02:59 - 2017-03-20 17:26 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-04-28 16:36 - 2016-12-24 04:17 - 00003416 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-04-28 16:36 - 2016-12-24 04:17 - 00003292 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-04-26 22:06 - 2017-01-17 22:16 - 00000000 ____D C:\Program Files\Common Files\AV
2017-04-26 21:56 - 2017-02-14 00:20 - 00930510 _____ C:\WINDOWS\system32\perfh005.dat
2017-04-26 21:56 - 2017-02-14 00:20 - 00205074 _____ C:\WINDOWS\system32\perfc005.dat
2017-04-26 21:56 - 2016-12-12 18:27 - 02518266 ____C C:\WINDOWS\system32\PerfStringBackup.INI
2017-04-26 21:50 - 2016-12-24 04:17 - 00000006 ___HC C:\WINDOWS\Tasks\SA.DAT
2017-04-26 21:50 - 2016-12-24 03:56 - 00000000 ____D C:\ProgramData\NVIDIA
2017-04-20 00:26 - 2016-07-16 08:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI
==================== Files in the root of some directories =======
2016-12-24 03:57 - 2016-12-24 03:57 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-05-16 15:40
==================== End of FRST.txt ============================