Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-06-2017
Ran by Domov (administrator) on DOMOV-PC (02-06-2017 20:33:15)
Running from C:\Users\Domov\Desktop
Loaded Profiles: Domov (Available Profiles: Domov)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\runservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFTips.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\Domov\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213824 2017-05-09] (AVAST Software)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16781824 2017-05-31] (Realtek Semiconductor)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [5296416 2017-04-11] (IObit)
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\Run: [Advanced SystemCare 10] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [3920672 2017-03-30] (IObit)
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8944344 2016-09-28] (Piriform Ltd)
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-2596990379-3546878720-370041002-1001\...\MountPoints2: {e0c5d04c-5183-11e6-8db5-406186c8fb21} - E:\autorun.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2016-07-26] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-05-09] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-05-09] (AVAST Software)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{02F5A82D-96ED-423F-A352-56724C03E54C}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2596990379-3546878720-370041002-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2017-03-28] (IObit)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-04-04] (AVAST Software)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-11-01] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-04-04] (AVAST Software)
BHO-x32: IObit Surfing Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll [2016-08-03] (IObit)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-11-01] (Oracle Corporation)
BHO-x32: IObit Ads Removal -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\Adblock\Adblock.dll [2016-06-23] (IObit)
FireFox:
========
FF ProfilePath: C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383 [2017-06-02]
FF user.js: detected! => C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\user.js [2017-05-12]
FF Homepage: Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383 ->
www.google.cz
FF Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\Extensions\
ascsurfingprotectionnew@iobit.com.xpi [2016-10-18]
FF Extension: (Avast SafePrice) - C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\Extensions\
sp@avast.com.xpi [2017-05-09]
FF Extension: (Avast Online Security) - C:\Users\Domov\AppData\Roaming\Mozilla\Firefox\Profiles\zh137h2p.default-1482575516383\Extensions\
wrc@avast.com.xpi [2017-05-09]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll [2017-05-10] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll [2017-05-10] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-11-01] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-11-01] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-11-14] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-11-14] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-01] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-03-28] (Adobe Systems Inc.)
Chrome:
=======
CHR NewTab: Default -> Not-active:"chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
CHR Profile: C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default [2017-06-02]
CHR Extension: (Prezentace Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-04-12]
CHR Extension: (Dokumenty Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-04-12]
CHR Extension: (Disk Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-04-12]
CHR Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2017-05-31]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2017-05-24]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2017-05-24]
CHR Extension: (YouTube) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-04-12]
CHR Extension: (Avast SafePrice) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-05-31]
CHR Extension: (Tabulky Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-04-12]
CHR Extension: (Dokumenty Google offline) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-04-12]
CHR Extension: (Avast Online Security) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-05-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-04-12]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2017-05-24]
CHR Extension: (Gmail) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-04-12]
CHR Extension: (Chrome Media Router) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-05-17]
CHR Profile: C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2 [2017-06-02]
CHR Extension: (Disk Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-10-29]
CHR Extension: (YouTube) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-10-29]
CHR Extension: (Avast SafePrice) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-10-29]
CHR Extension: (Tabulky Google) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-10-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-10-29]
CHR Extension: (Avast Online Security) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-10-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-10-29]
CHR Extension: (Gmail) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-10-29]
CHR Extension: (Chrome Media Router) - C:\Users\Domov\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-29]
CHR HKU\S-1-5-21-2596990379-3546878720-370041002-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2596990379-3546878720-370041002-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmojkbhnkkphngknkmgccmlenfaelkd] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2596990379-3546878720-370041002-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdvancedSystemCareService10; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [462624 2017-03-21] (IObit)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7346208 2017-05-09] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [263304 2017-05-09] (AVAST Software)
S3 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft Development Team)
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [1764640 2017-04-11] (IObit)
S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [360736 2017-03-28] (IObit)
R2 LicCtrlService; C:\Windows\runservice.exe [16384 2016-10-08] () [File not signed]
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [492480 2017-03-28] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [492480 2017-03-28] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2017-03-28] (NVIDIA Corporation)
S3 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [311808 2017-05-09] (AVAST Software s.r.o.)
R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [190256 2017-05-09] (AVAST Software s.r.o.)
R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334576 2017-05-09] (AVAST Software s.r.o.)
R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [49016 2017-05-09] (AVAST Software s.r.o.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-05-09] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [32600 2017-05-09] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [128648 2017-05-09] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [101152 2017-05-09] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [75704 2017-05-09] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1007160 2017-05-09] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [569192 2017-05-09] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [158880 2017-05-13] (AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2016-07-24] (The OpenVPN Project)
R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [339696 2017-05-09] (AVAST Software)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2017-05-31] (REALiX(tm))
R1 IMFCameraProtect; C:\Windows\system32\drivers\IMFCameraProtect.sys [26272 2017-03-29] (IObit.com)
R3 IMFDownProtect; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\IMFDownProtect.sys [21360 2017-03-08] (IObit.com)
R3 IMFFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\IMFFilter.sys [22440 2016-12-22] (IObit)
R3 IMFForceDelete; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\IMFForceDelete.sys [16216 2017-03-29] (IObit.com)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-03-28] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [47552 2017-03-28] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2017-02-23] (NVIDIA Corporation)
R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34752 2016-11-03] (IObit.com)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2017-02-08] (Duplex Secure Ltd.)
U3 a73ddkof; C:\Windows\System32\Drivers\a73ddkof.sys [0 ] (Elaborate Bytes AG) <==== ATTENTION (zero byte File/Folder)
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-06-02 20:33 - 2017-06-02 20:33 - 00018677 _____ C:\Users\Domov\Desktop\FRST.txt
2017-06-02 20:32 - 2017-06-02 20:33 - 00000000 ____D C:\FRST
2017-06-02 20:31 - 2017-06-02 20:31 - 00112640 _____ (forum.viry.cz) C:\Users\Domov\Desktop\FRSTLauncher.exe
2017-06-02 20:28 - 2017-06-02 20:28 - 00112640 _____ (forum.viry.cz) C:\Users\Domov\Desktop\Nepotvrzeno 150452.crdownload
2017-06-02 20:25 - 2017-06-02 20:25 - 02433536 _____ (Farbar) C:\Users\Domov\Desktop\FRST64.exe
2017-06-02 15:08 - 2017-06-02 15:08 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-06-01 19:06 - 2017-06-01 19:06 - 00006343 _____ C:\Users\Domov\Downloads\rv certi.kb.p12
2017-05-31 19:44 - 2017-05-31 19:44 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Windows\system32\DAX3
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Windows\system32\DAX2
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\ProgramData\Audyssey Labs
2017-05-31 19:43 - 2017-05-31 19:43 - 00000000 ____D C:\Program Files\Realtek
2017-05-31 19:42 - 2017-05-31 19:42 - 72520712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2017-05-31 19:42 - 2017-05-31 19:42 - 15202032 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 09124224 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2017-05-31 19:42 - 2017-05-31 19:42 - 07172912 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 07096184 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 06264632 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2017-05-31 19:42 - 2017-05-31 19:42 - 05545512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2017-05-31 19:42 - 2017-05-31 19:42 - 05347000 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03503048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03410832 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03299816 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03203584 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03203424 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03122656 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 03014144 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2017-05-31 19:42 - 2017-05-31 19:42 - 02993720 _____ (Audyssey Labs) C:\Windows\system32\AudysseyEfx.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02830480 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02444688 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02201600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 02190976 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01965808 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01959600 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01780616 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01591056 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01516896 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOProp.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01508928 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01435136 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01382232 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01363096 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOv251.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01353824 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01337640 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaeapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01133584 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 01003504 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDHF64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00984912 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00965024 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00962128 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tosasfapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00873456 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00866088 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SEHDHF32.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00859912 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00854208 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00785608 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOvlldp.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00743960 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00727432 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00726120 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00708312 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00689880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00601136 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaemaxapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00588032 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00532376 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00514872 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00504304 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00467152 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00447720 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00447176 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\toseaeapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00445400 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00441264 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00426568 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2APIPCLL.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00416504 _____ (Harman) C:\Windows\system32\HMUI.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00387312 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00381400 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00378384 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00366120 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\HMAPO.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00362048 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00360344 _____ (Harman) C:\Windows\system32\HMClariFi.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00343704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00341144 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00341144 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00327456 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00310416 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00272712 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00258864 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00253896 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00253864 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00252872 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00231912 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00221960 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00214832 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00209528 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00203840 _____ (Harman) C:\Windows\system32\HMHVS.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00192976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00190928 _____ (Harman) C:\Windows\system32\HMEQ_Voice.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00190928 _____ (Harman) C:\Windows\system32\HMEQ.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00179592 _____ (Harman) C:\Windows\system32\HMLimiter.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00166200 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00158688 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00154360 _____ (Harman) C:\Windows\system32\HarmanAudioInterface.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00151784 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00134200 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00122320 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00118592 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00110984 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00105304 _____ C:\Windows\system32\audioLibVc.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00090912 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00088344 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00088320 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00084616 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00083624 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00075536 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2017-05-31 19:42 - 2017-05-31 19:42 - 00023688 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2017-05-31 19:37 - 2017-05-31 19:37 - 00501280 _____ (NVIDIA Corporation) C:\Windows\system32\nvusmb.exe
2017-05-31 19:37 - 2017-05-31 19:37 - 00135680 _____ (NVIDIA Corporation) C:\Windows\system32\NVCOSMB.DLL
2017-05-31 19:37 - 2017-05-31 19:37 - 00002344 _____ C:\Windows\system32\nvsmb.nvu
2017-05-31 19:35 - 2017-05-31 19:35 - 01057296 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2017-05-31 19:35 - 2017-05-31 19:35 - 00131592 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2017-05-31 19:35 - 2017-05-31 19:35 - 00127536 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2017-05-31 19:34 - 2017-05-31 19:34 - 00239720 _____ (NVIDIA Corporation) C:\Windows\system32\NVCOSMU.DLL
2017-05-31 19:34 - 2017-05-31 19:34 - 00029800 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvsmu.sys
2017-05-31 19:31 - 2017-05-31 19:31 - 00000000 ____D C:\Windows\IObit
2017-05-31 19:30 - 2017-05-31 19:44 - 00002234 _____ C:\Users\Public\Desktop\Driver Booster 4.lnk
2017-05-31 19:30 - 2017-05-31 19:31 - 00002886 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (Domov)
2017-05-31 19:30 - 2017-05-31 19:30 - 00027552 _____ (REALiX(tm)) C:\Windows\SysWOW64\Drivers\HWiNFO64A.SYS
2017-05-31 19:30 - 2017-05-31 19:30 - 00003254 _____ C:\Windows\System32\Tasks\Driver Booster Scheduler
2017-05-31 19:30 - 2017-05-31 19:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 4
2017-05-31 19:28 - 2017-05-31 19:29 - 15721672 _____ (IObit ) C:\Users\Domov\Downloads\driver_booster_setup.exe
2017-05-20 10:40 - 2017-05-20 10:40 - 00001091 _____ C:\Users\Domov\Desktop\PTE Patch.lnk
2017-05-20 10:21 - 2017-05-20 10:21 - 00000000 ____D C:\Users\Domov\Desktop\[PES16] PTE PATCH 6.0 Final Version
2017-05-20 10:11 - 2017-05-20 10:42 - 00000000 ____D C:\Program Files (x86)\Pro Evolution Soccer 2016
2017-05-20 10:11 - 2017-05-20 10:11 - 00000902 _____ C:\Users\Public\Desktop\Pro Evolution Soccer 2016.lnk
2017-05-19 09:06 - 2017-05-19 09:10 - 00000000 ____D C:\Users\Domov\Desktop\fleska
2017-05-19 08:52 - 2017-05-19 09:10 - 00000000 ____D C:\Users\Domov\Desktop\vyvolat
2017-05-18 18:14 - 2017-05-18 20:13 - 4023874727 _____ C:\Users\Domov\Desktop\[PES16] PTE PATCH 6.0 Final Version.rar
2017-05-17 20:16 - 2017-05-17 20:16 - 00000000 ____D C:\Users\Domov\Desktop\PES 2016 Update v1.03.00 3DM Crack Only (Offline)
2017-05-17 20:15 - 2017-05-17 20:16 - 11523634 _____ C:\Users\Domov\Desktop\PES 2016 Update v1.03.00 3DM Crack Only (Offline).rar
2017-05-17 19:45 - 2017-05-17 19:45 - 00000000 ____D C:\Users\Domov\AppData\Local\PTE_Patch
2017-05-17 19:05 - 2017-05-17 19:05 - 00000000 ____D C:\Users\Domov\Desktop\[PES16] PTE PATCH 2.0.part1 (1)
2017-05-16 19:17 - 2017-05-16 19:17 - 00001133 _____ C:\Users\Public\Desktop\IObit Malware Fighter.lnk
2017-05-16 19:17 - 2017-05-16 19:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter
2017-05-16 19:17 - 2017-03-29 18:05 - 00026272 _____ (IObit.com) C:\Windows\system32\Drivers\IMFCameraProtect.sys
2017-05-16 19:16 - 2017-05-16 19:16 - 00000000 ____D C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
2017-05-12 19:09 - 2017-05-20 10:09 - 00002904 _____ C:\Windows\System32\Tasks\Uninstaller_SkipUac_Domov
2017-05-12 19:09 - 2017-05-12 19:09 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk
2017-05-12 19:09 - 2017-05-12 19:09 - 00001314 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk
2017-05-12 19:09 - 2017-05-12 19:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
2017-05-12 19:08 - 2017-05-12 19:08 - 00000000 ____D C:\update
2017-05-12 18:33 - 2017-05-12 18:33 - 87785472 _____ C:\Windows\system32\config\SOFTWARE.iobit
2017-05-12 18:33 - 2017-05-12 18:33 - 05017600 _____ C:\Windows\system32\config\DEFAULT.iobit
2017-05-12 18:33 - 2017-05-12 18:33 - 00028672 _____ C:\Windows\system32\config\SAM.iobit
2017-05-12 18:33 - 2017-05-12 18:33 - 00024576 _____ C:\Windows\system32\config\SECURITY.iobit
2017-05-12 18:30 - 2017-06-02 15:42 - 00002222 _____ C:\Users\Public\Desktop\Advanced SystemCare 10.lnk
2017-05-12 18:30 - 2017-05-31 19:30 - 00000000 ____D C:\ProgramData\IObit
2017-05-12 18:30 - 2017-05-31 19:30 - 00000000 ____D C:\Program Files (x86)\IObit
2017-05-12 18:30 - 2017-05-12 18:30 - 00002820 _____ C:\Windows\System32\Tasks\ASC10_SkipUac_Domov
2017-05-12 18:30 - 2017-05-12 18:30 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled
2017-05-12 18:30 - 2017-05-12 18:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
2017-05-12 18:30 - 2017-05-12 18:30 - 00000000 ____D C:\ProgramData\{74E9F814-C737-42CC-B721-DBBC4059367A}
2017-05-12 18:27 - 2017-05-12 18:28 - 39666592 _____ (IObit ) C:\Users\Domov\Desktop\asc10-setup-aff.exe
2017-05-12 12:06 - 2017-05-12 13:40 - 00000000 ____D C:\Users\Domov\Downloads\Pro.Evolution.Soccer.2016-RELOADED
2017-05-12 12:03 - 2017-05-17 13:21 - 00000000 ____D C:\Users\Domov\AppData\Roaming\uTorrent
2017-05-12 12:03 - 2017-05-12 12:03 - 00000950 _____ C:\Users\Domov\Desktop\µTorrent.lnk
2017-05-12 12:01 - 2017-05-12 12:03 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2017-05-11 18:42 - 2017-05-11 18:42 - 00000000 ____D C:\Users\Domov\Desktop\sssssss
2017-05-09 17:59 - 2017-05-09 17:58 - 00400456 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-06-02 20:29 - 2016-11-20 11:22 - 00000000 ____D C:\Users\Domov\AppData\LocalLow\Mozilla
2017-06-02 20:29 - 2016-11-19 20:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-06-02 20:29 - 2016-10-31 20:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-06-02 19:11 - 2009-07-14 06:45 - 00017360 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-06-02 19:11 - 2009-07-14 06:45 - 00017360 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-06-02 18:25 - 2016-07-25 13:41 - 00000000 ____D C:\ProgramData\NVIDIA
2017-06-02 18:22 - 2016-10-08 19:31 - 00001377 ___SH C:\Windows\SysWOW64\mmf.sys
2017-06-02 18:22 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-06-02 15:47 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2017-06-01 18:00 - 2017-03-04 18:26 - 00004172 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2017-05-31 19:43 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2017-05-31 19:38 - 2009-07-14 17:18 - 00668866 _____ C:\Windows\system32\perfh005.dat
2017-05-31 19:38 - 2009-07-14 17:18 - 00141526 _____ C:\Windows\system32\perfc005.dat
2017-05-31 19:38 - 2009-07-14 07:13 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2017-05-31 19:34 - 2016-07-25 12:52 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-05-31 19:31 - 2016-07-26 21:47 - 00000000 ____D C:\ProgramData\ProductData
2017-05-31 19:28 - 2016-07-26 21:47 - 00000000 ____D C:\Users\Domov\AppData\LocalLow\IObit
2017-05-31 19:27 - 2016-07-26 21:47 - 00000000 ____D C:\Users\Domov\AppData\Roaming\IObit
2017-05-31 19:08 - 2017-02-07 16:31 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Seznam.cz
2017-05-31 17:58 - 2016-09-22 15:55 - 00003892 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1474552541
2017-05-30 19:35 - 2016-07-25 12:55 - 01559268 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2017-05-30 14:50 - 2016-07-25 15:33 - 00000000 ____D C:\Windows\Minidump
2017-05-30 14:50 - 2016-07-25 13:51 - 00000000 ____D C:\Users\Domov\AppData\Local\CrashDumps
2017-05-23 09:30 - 2016-07-25 12:11 - 00000000 ____D C:\Windows\system32\MRT
2017-05-23 09:27 - 2016-07-25 12:11 - 132223576 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-05-19 20:02 - 2016-07-25 17:51 - 00000000 ____D C:\Users\Domov\Downloads\Gamesky
2017-05-19 20:01 - 2016-09-15 19:52 - 00000000 ____D C:\Users\Domov\Documents\My Games
2017-05-19 20:01 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2017-05-19 08:47 - 2016-09-18 19:19 - 00000000 ___RD C:\Users\Domov\Desktop\market
2017-05-17 12:55 - 2016-12-24 12:41 - 00002155 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-05-17 12:55 - 2016-12-24 12:41 - 00002143 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-05-13 09:01 - 2016-09-22 15:53 - 00158880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2017-05-12 18:35 - 2016-08-31 12:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2017-05-12 18:35 - 2016-08-23 16:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC
2017-05-12 18:35 - 2016-08-06 12:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2017-05-12 18:35 - 2016-08-03 10:10 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks
2017-05-12 18:35 - 2016-07-29 19:59 - 00000000 ____D C:\Users\Domov\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
2017-05-12 18:35 - 2016-07-22 13:48 - 00000000 ____D C:\Windows\Panther
2017-05-12 13:55 - 2017-01-05 16:17 - 00000000 ____D C:\ProgramData\KONAMI
2017-05-12 13:55 - 2017-01-05 16:10 - 00000000 ____D C:\Users\Domov\Documents\KONAMI
2017-05-10 20:56 - 2017-04-04 18:28 - 00000000 ____D C:\AdwCleaner
2017-05-10 18:15 - 2016-12-07 22:03 - 00803320 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-05-10 18:15 - 2016-12-07 22:03 - 00144888 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-05-10 18:15 - 2016-12-07 22:03 - 00004396 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-05-10 18:15 - 2016-12-07 22:03 - 00000000 ____D C:\Windows\system32\Macromed
2017-05-10 18:15 - 2016-08-06 15:13 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-05-09 17:58 - 2016-09-22 15:53 - 00569192 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00339696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00128648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00101152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00075704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-05-09 17:58 - 2016-09-22 15:53 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-05-09 17:57 - 2016-09-22 15:55 - 00032600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2017-05-09 17:57 - 2016-09-22 15:53 - 01007160 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2017-05-09 17:56 - 2017-03-04 18:26 - 00334576 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys
2017-05-09 17:56 - 2017-03-04 18:26 - 00190256 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys
2017-05-09 17:56 - 2017-03-04 18:26 - 00049016 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys
2017-05-09 17:56 - 2017-03-04 18:25 - 00311808 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2017-05-04 18:54 - 2017-03-09 19:05 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
==================== Files in the root of some directories =======
2017-05-31 19:44 - 2017-05-31 19:44 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2017-03-16 18:07 - 2017-03-16 18:07 - 0000016 _____ () C:\ProgramData\mntemp
2017-03-16 18:07 - 2017-03-16 18:07 - 0005041 _____ () C:\ProgramData\mudtcpaz.vzs
2016-12-18 20:35 - 2017-04-10 17:04 - 0005307 _____ () C:\ProgramData\NvTelemetryContainer.log
2016-12-18 20:35 - 2017-04-10 15:08 - 0003135 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1
Some files in TEMP:
====================
2017-05-30 18:39 - 2017-05-30 18:39 - 0534528 _____ () C:\Users\Domov\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: IObit Malware Fighter (Enabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D}
AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Domov\Desktop" je 39586 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM
C:\Program Files (x86)\Origin\Origin.exe -AutoStart [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gaijin.Net Agent
"C:\Users\Domov\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotPostWindows10UpgradeReInstall
"C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\World of Warships
"C:\Games\World_of_Warships\WargamingGameUpdater.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zune Launcher
"C:\Program Files\Zune\ZuneLauncher.exe" [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================