Ok mám to posielam nižšie:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-06-2017 01
Ran by Zuzana (administrator) on ZUZANA-PC (16-06-2017 21:17:51)
Running from C:\Users\Zuzana\Desktop
Loaded Profiles: Zuzana (Available Profiles: Zuzana)
Platform: Windows 10 Home Version 1607 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
(Razer Inc.) D:\Razer Cortex\RzKLService.exe
(Rocket Division Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\ICM-Service.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\smartlogon.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
() C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
(ATK) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
() C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
() C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.17.420.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
() C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(© 2015 Microsoft Corporation) C:\Users\Zuzana\AppData\Local\Microsoft\BingSvc\BingSvc.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1705.1301.0_x64__8wekyb3d8bbwe\Calculator.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17042.14211.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
Failed to access process -> metin2client.bin
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.1439_none_7efe016621f50bd0\TiWorker.exe
(Microsoft Corporation) C:\Windows\System32\SystemSettingsAdminFlows.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Akamai Technologies, Inc.) C:\Users\Zuzana\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Zuzana\AppData\Local\Akamai\netsession_win.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(forum.viry.cz) C:\Users\Zuzana\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2015-10-07] (ELAN Microelectronics Corp.)
HKLM\...\Run: [ASUS WebStorage] => C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [1736704 2009-12-24] ()
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2017-01-19] (Apple Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213824 2017-05-13] (AVAST Software)
HKLM\...\Run: [MRT] => C:\WINDOWS\system32\MRT.exe [133627792 2017-06-14] (Microsoft Corporation)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [7350912 2010-02-04] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-01-05] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [amd_dc_opt] => D:\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)
HKLM-x32\...\Run: [Autodesk Desktop App] => C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [721856 2016-07-01] (Autodesk, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-03-15] (Oracle Corporation)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [1047000 2017-04-06] (DivX, LLC)
HKLM-x32\...\Run: [ZoneAlarm] => C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [145208 2017-04-14] (Check Point Software Technologies Ltd.)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <====== ATTENTION
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\Run: [BingSvc] => C:\Users\Zuzana\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-12] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Zuzana\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1283112 2016-02-02] (Autodesk, Inc.)
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\Run: [DAEMON Tools Lite Automount] => D:\DAEMON Tools Lite\DTAgent.exe [4701888 2017-02-07] (Disc Soft Ltd)
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\Run: [UXMmedia] => C:\Windows\SysWOW64\regsvr32.exe C:\Users\Zuzana\AppData\Local\Ection\krjcyjsl.dll <===== ATTENTION
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9364696 2017-03-03] (Piriform Ltd)
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\Run: [RandomMouseClicker] => C:\Users\Zuzana\AppData\Roaming\Random Mouse Clicker\RandomMouseClicker.exe [70824 2017-03-25] (MurGee.com)
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\MountPoints2: {1610ee0f-288b-11e6-a619-1c4bd60c65ca} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\MountPoints2: {dd813981-c92e-11e6-bb95-1c4bd6c58a0e} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\MountPoints2: {dd813a6e-c92e-11e6-bb95-1c4bd6c58a0e} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\MountPoints2: {eb3bf39d-cd6d-11e5-9a3c-1c4bd60c65ca} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\MountPoints2: {f0f6cde7-f68b-11e6-bba0-1c4bd6c58a0e} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\MountPoints2: {f4bdbc88-03dc-11e7-bba1-1c4bd6c58a0e} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-18\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1283112 2016-02-02] (Autodesk, Inc.)
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-05-13] (AVAST Software)
ShellIconOverlayIdentifiers: [0TheftProtectionDll] -> {3B5B973C-92A4-4855-9D3F-0F3D23332208} => -> No File
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\service\AsusWSShellExt64.dll [2009-11-26] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\service\AsusWSShellExt64.dll [2009-11-26] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2016-02-07] (Autodesk, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SRS Premium Sound.lnk [2010-04-16]
ShortcutTarget: SRS Premium Sound.lnk -> C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe (Acresso Software Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{971cec70-40b5-43ab-bc2d-a3d517d22fc4}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{9b975b26-1a3c-4e8e-b865-d389505137be}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
www.google.com
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://
www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://
www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-410513314-2793736357-1887953017-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-410513314-2793736357-1887953017-1000 -> {80733003-3383-4917-ABD7-74851716E952} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-410513314-2793736357-1887953017-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={3609AB91-3CA2-44D7-BD43-F5ED88E333A0}&mid=93f43bd0f91047cd8aad99127fa88762-f724f7d7058e5f369c0ec174fa68ea91b5d5e40b&lang=sk&ds=AVG&coid=avgtbavg&cmpid=1116tb&pr=fr&d=2015-03-10 11:59:03&v=4.3.7.452&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO: Windows Live Family Safety Browser Helper Class -> {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} -> C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08] (Microsoft Corporation)
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2010-04-16] (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2010-04-16] (Google Inc.)
BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-10-07] (Intel Security)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27] (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\ssv.dll [2017-05-18] (Oracle Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-04-16] (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2010-04-16] (Google Inc.)
BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2010-04-16] (Google Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-05-18] (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2010-04-16] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-04-16] (Google Inc.)
Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-10-07] (Intel Security)
Toolbar: HKU\S-1-5-21-410513314-2793736357-1887953017-1000 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
DPF: HKLM-x32 {C212D449-8B3C-41F2-BD9A-047BD770550F} hxxp://operation7.fiaa.eu/OPLauncher.cab
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll [2008-12-02] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll [2008-12-02] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-410513314-2793736357-1887953017-1000 -> hxxp://
www.google.com
FireFox:
========
FF DefaultProfile: qbsn0dh5.default
FF ProfilePath: C:\Users\Zuzana\AppData\Roaming\Firefox\Firefox\naweriweentcofise\Profiles\qbsn0dh5.default\Profiles\qbsn0dh5.default [not found] <==== ATTENTION
FF ProfilePath: C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\qbsn0dh5.default [2017-06-16]
FF NewTab: Mozilla\Firefox\Profiles\qbsn0dh5.default -> about:newtab
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\qbsn0dh5.default -> Google
FF DefaultSearchUrl: Mozilla\Firefox\Profiles\qbsn0dh5.default -> hxxps://
www.google.com/search?bcutc=sp-006
FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\qbsn0dh5.default -> Google
FF SearchEngineOrder.3: Mozilla\Firefox\Profiles\qbsn0dh5.default -> Bing
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\qbsn0dh5.default -> Google
FF Homepage: Mozilla\Firefox\Profiles\qbsn0dh5.default -> hxxps://
www.google.com/?bcutc=sp-006
FF Keyword.URL: Mozilla\Firefox\Profiles\qbsn0dh5.default -> hxxps://
www.google.com/search?bcutc=sp-006
FF Extension: (Avast SafePrice) - C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\qbsn0dh5.default\Extensions\
sp@avast.com.xpi [2017-06-14]
FF Extension: (Avast Online Security) - C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\qbsn0dh5.default\Extensions\
wrc@avast.com.xpi [2017-06-14]
FF Extension: (Adblock Plus) - C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\qbsn0dh5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-06-14]
FF Extension: (MONOGRAM AMR Splitter) - C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\qbsn0dh5.default\Extensions\{D7A6D34E-6F49-9829-BB70-5B2C8E33E272} [2017-04-12] [not signed]
FF Extension: (Seznam lištička) - C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\qbsn0dh5.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2017-06-14]
FF SearchPlugin: C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\qbsn0dh5.default\searchplugins\google-avast.xml [2017-06-14]
FF ProfilePath: C:\Users\Zuzana\AppData\Roaming\Firefox\Firefox\Profiles\qbsn0dh5.default [2017-06-14]
FF SearchEngineOrder.3: Firefox\Firefox\Profiles\qbsn0dh5.default -> Bing
FF Keyword.URL: Firefox\Firefox\Profiles\qbsn0dh5.default -> hxxp://
www.bing.com/search?FORM=SK2MDF&PC=SK2M&q=
FF Extension: (Slovak (SK) Language Pack) - C:\Users\Zuzana\AppData\Roaming\Firefox\Firefox\Profiles\qbsn0dh5.default\Extensions\
langpack-sk@firefox.mozilla.org.xpi [2017-05-24] [not signed]
FF Extension: (Adblock Plus) - C:\Users\Zuzana\AppData\Roaming\Firefox\Firefox\Profiles\qbsn0dh5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-06-11]
FF Extension: (Seznam lištička) - C:\Users\Zuzana\AppData\Roaming\Firefox\Firefox\Profiles\qbsn0dh5.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2017-06-11]
FF HKLM-x32\...\Thunderbird\Extensions: [
eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: (No Name) - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2015-03-10] [not signed]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\ourluckysites.xml [2017-05-26]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\wtu-secure-search.xml [2017-02-22]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2017-04-06] (DivX, LLC)
FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [2017-05-18] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-05-18] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8051.1204 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2008-12-04] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-11-14] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-11-14] (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> D:\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> D:\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.5.1 -> D:\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> D:\VLC\npvlc.dll [2017-05-24] (VideoLAN)
StartMenuInternet: FIREFOX.EXE - firefox.exe
Chrome:
=======
CHR DefaultProfile: ChromeDefaultData
CHR HomePage: ChromeDefaultData -> msn.com
CHR StartupUrls: ChromeDefaultData -> "hxxp://
www.google.com/"
CHR DefaultSearchURL: ChromeDefaultData -> hxxp://
www.mystarting123.com/search/index.php? ... earchTerms}
CHR DefaultSearchKeyword: ChromeDefaultData -> mystarting123
CHR Profile: C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2017-06-16] <==== ATTENTION
CHR Extension: (Prezentácie Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-04-03]
CHR Extension: (Dokumenty Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aohghmighlieiainnegkcijnfilokake [2017-04-03]
CHR Extension: (Disk Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-04-03]
CHR Extension: (YouTube) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-04-03]
CHR Extension: (Bing) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2017-04-03]
CHR Extension: (Tabuľky Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-04-03]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-04-03]
CHR Extension: (AdBlock) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-06-16]
CHR Extension: (Skype) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-06-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-04-03]
CHR Extension: (Gmail) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-04-03]
CHR Extension: (Chrome Media Router) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-05-12]
CHR Profile: C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Profile 1 [2017-06-16]
CHR Extension: (Prezentácie Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-27]
CHR Extension: (Dokumenty Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-27]
CHR Extension: (Disk Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-05-27]
CHR Extension: (YouTube) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-05-27]
CHR Extension: (Google Search) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-05-27]
CHR Extension: (Bing) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2015-05-27]
CHR Extension: (Tabuľky Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-27]
CHR Extension: (Bookmark Manager) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-27]
CHR Extension: (Peňaženka Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-27]
CHR Extension: (Gmail) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-27]
CHR Profile: C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\System Profile [2017-06-16]
CHR Extension: (Prezentácie Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-27]
CHR Extension: (Dokumenty Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-27]
CHR Extension: (Disk Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-05-27]
CHR Extension: (YouTube) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-05-27]
CHR Extension: (Google Search) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-05-27]
CHR Extension: (Bing) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2015-05-27]
CHR Extension: (Tabuľky Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-27]
CHR Extension: (Bookmark Manager) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-27]
CHR Extension: (Peňaženka Google) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-27]
CHR Extension: (Gmail) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-27]
CHR HKU\S-1-5-21-410513314-2793736357-1887953017-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
HKU\S-1-5-21-410513314-2793736357-1887953017-1000\...\StartMenuInternet\ChromeHTML: -> C:\Program Files (x86)\Footjane\Application\chrome.exe <==== ATTENTION
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1295376 2016-07-01] (Autodesk Inc.)
S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7346208 2017-05-13] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [263304 2017-05-13] (AVAST Software)
S4 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1362464 2016-06-20] ()
S4 Disc Soft Lite Bus Service; D:\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1471168 2017-02-07] (Disc Soft Ltd)
S4 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2015-10-07] (ELAN Microelectronics Corp.)
S3 fussvc; D:\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) [File not signed]
S4 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [192200 2016-08-26] ()
S3 IEEtwCollectorService; C:\Windows\system32\IEEtwCollector.exe [114688 2015-05-22] (Microsoft Corporation) [File not signed]
R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4470736 2017-05-09] (Malwarebytes)
S4 mitsijm2017; C:\Program Files\Autodesk\Inventor 2017\Moldflow\bin\mitsijm.exe [967456 2015-08-04] (Autodesk, Inc.)
S4 NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [774144 2006-11-10] (Nero AG) [File not signed]
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3425416 2010-03-23] (INCA Internet Co., Ltd.) [File not signed]
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2016-11-17] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2016-11-17] (NVIDIA Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2015-10-11] ()
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [202040 2015-10-31] ()
S2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [147792 2017-04-19] (Razer Inc)
S2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [183680 2017-04-14] (Razer Inc.)
R2 RzKLService; D:\Razer Cortex\RzKLService.exe [252176 2017-04-28] (Razer Inc.)
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [275968 2007-05-28] (Rocket Division Software) [File not signed]
S3 Te.Service; D:\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) [File not signed]
S4 TeamViewer; D:\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer GmbH)
S4 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [987048 2016-09-30] (McAfee, Inc.)
S4 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [16248 2016-09-30] (McAfee, Inc.)
S4 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [86864 2016-09-30] (McAfee, Inc.)
R2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [4107680 2017-04-14] (Check Point Software Technologies Ltd.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347320 2017-04-28] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103712 2017-04-28] (Microsoft Corporation)
S3 ZAPrivacyService; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [114936 2016-11-01] (Check Point Software Technologies, Ltd.)
R2 ZoneAlarm ICM Service; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ICM-Service.exe [1058616 2017-04-14] (Check Point Software Technologies Ltd.)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [311808 2017-05-13] (AVAST Software s.r.o.)
R0 aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [190256 2017-05-13] (AVAST Software s.r.o.)
R0 aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [334576 2017-05-13] (AVAST Software s.r.o.)
R0 aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [49016 2017-05-13] (AVAST Software s.r.o.)
S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [38296 2017-05-13] (AVAST Software)
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [32600 2017-05-13] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [128648 2017-05-13] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [101152 2017-05-13] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [75704 2017-05-13] (AVAST Software)
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1007160 2017-05-13] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [569192 2017-05-13] (AVAST Software)
S2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [158880 2017-05-13] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [339696 2017-05-13] (AVAST Software)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-03-25] (Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-03-25] (Disc Soft Ltd)
S3 HWHandSet; C:\WINDOWS\system32\DRIVERS\hw_quusbmdm.sys [223232 2016-02-16] (Huawei Technologies Co., Ltd.)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2016-05-25] (Huawei Technologies Co., Ltd.)
R3 kbfiltr; C:\WINDOWS\System32\drivers\kbfiltr.sys [15416 2009-07-20] ( )
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [252832 2017-06-16] (Malwarebytes)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R2 npf; C:\WINDOWS\system32\drivers\npf.sys [36600 2015-08-21] (Riverbed Technology, Inc.)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2016-11-17] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [46016 2016-11-17] (NVIDIA Corporation)
R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [137840 2016-10-08] (Razer, Inc.)
R3 SNP2UVC; C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [1799680 2009-08-12] ()
S0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [871408 2010-09-30] (Duplex Secure Ltd.)
R1 Vsdatant; C:\WINDOWS\System32\drivers\vsdatant.sys [461240 2017-04-13] (Check Point Software Technologies Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
S1 hczxsorb; \??\C:\WINDOWS\system32\drivers\hczxsorb.sys [X]
S1 hsqbsivj; \??\C:\WINDOWS\system32\drivers\hsqbsivj.sys [X]
U3 idsvc; no ImagePath
U3 iswSvc; no ImagePath
S1 qiirgyep; \??\C:\WINDOWS\system32\drivers\qiirgyep.sys [X]
S1 rkvmxbap; \??\C:\WINDOWS\system32\drivers\rkvmxbap.sys [X]
U2 snare; no ImagePath
S1 wezlxbpq; \??\C:\WINDOWS\system32\drivers\wezlxbpq.sys [X]
U3 wpcsvc; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-06-16 21:17 - 2017-06-16 21:19 - 00035626 _____ C:\Users\Zuzana\Desktop\FRST.txt
2017-06-16 21:16 - 2017-06-16 21:17 - 00000000 ____D C:\FRST
2017-06-16 21:16 - 2017-06-16 21:16 - 00112640 _____ (forum.viry.cz) C:\Users\Zuzana\Desktop\FRSTLauncher.exe
2017-06-16 21:10 - 2017-06-16 21:10 - 02438656 _____ (Farbar) C:\Users\Zuzana\Desktop\FRST64.exe
2017-06-16 17:08 - 2017-06-16 18:25 - 00000000 ____D C:\Users\Zuzana\AppData\Roaming\WiperSoft
2017-06-16 17:08 - 2017-06-16 17:08 - 00023032 _____ (Wiper Software) C:\WINDOWS\system32\wiperrm.exe
2017-06-16 17:08 - 2017-06-16 17:08 - 00000813 _____ C:\Users\Zuzana\Desktop\WiperSoft.lnk
2017-06-16 17:08 - 2017-06-16 17:08 - 00000000 ____D C:\Program Files\WiperSoft
2017-06-16 17:01 - 2017-06-16 17:01 - 01979944 _____ (WiperSoft) C:\Users\Zuzana\Downloads\WiperSoft-installer.exe
2017-06-15 19:00 - 2017-06-15 19:00 - 00000000 ____D C:\Users\Zuzana\Desktop\Alex
2017-06-15 16:13 - 2017-06-15 16:13 - 00000000 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts
2017-06-15 15:43 - 2017-06-15 15:46 - 00441296 _____ C:\WINDOWS\system32\Drivers\vsconfig.xml
2017-06-15 15:42 - 2017-06-15 15:42 - 00000778 _____ C:\Users\Public\Desktop\ZoneAlarm Security.lnk
2017-06-15 15:42 - 2017-06-15 15:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Check Point
2017-06-15 15:42 - 2017-06-15 15:42 - 00000000 ____D C:\Program Files (x86)\CheckPoint
2017-06-15 15:41 - 2017-06-15 15:41 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-06-15 15:41 - 2017-06-15 15:41 - 00000000 ____D C:\ProgramData\CheckPoint
2017-06-14 22:06 - 2017-06-14 22:06 - 00000000 ___SD C:\WINDOWS\UpdateAssistantV2
2017-06-14 17:07 - 2017-06-14 18:00 - 05984464 _____ (Check Point Software Technologies Ltd.) C:\Users\Zuzana\Downloads\zafwSetupWeb_151_504_17269.exe
2017-06-14 16:42 - 2017-06-14 16:42 - 00188312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMChameleon.sys
2017-06-14 16:41 - 2017-06-14 16:41 - 00113592 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2017-06-14 16:41 - 2017-06-14 16:41 - 00093600 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2017-06-14 16:40 - 2017-06-16 16:49 - 00252832 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2017-06-14 16:40 - 2017-06-14 16:40 - 00044960 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2017-06-14 16:40 - 2017-06-14 16:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-06-14 16:40 - 2017-06-14 16:40 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-06-14 16:40 - 2017-05-25 11:58 - 00077376 _____ C:\WINDOWS\system32\Drivers\mbae64.sys
2017-06-14 16:39 - 2017-06-14 16:39 - 64232976 _____ (Malwarebytes ) C:\Users\Zuzana\Downloads\mb3-setup-consumer-3.1.2.1733-1.0.141-1.0.2092.exe
2017-06-14 11:20 - 2017-06-14 15:53 - 00001555 _____ C:\Users\Zuzana\Desktop\firefox – odkaz.lnk
2017-06-14 09:56 - 2017-06-03 12:50 - 00315744 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2017-06-14 09:56 - 2017-06-03 12:16 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-06-14 09:56 - 2017-06-03 12:06 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2017-06-14 09:56 - 2017-06-03 11:58 - 00340832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2017-06-14 09:56 - 2017-06-03 11:55 - 00780640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-06-14 09:56 - 2017-06-03 11:54 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-06-14 09:56 - 2017-06-03 11:52 - 01021784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2017-06-14 09:56 - 2017-06-03 11:52 - 00607072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2017-06-14 09:56 - 2017-06-03 11:52 - 00111968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2017-06-14 09:56 - 2017-06-03 11:50 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2017-06-14 09:56 - 2017-06-03 11:50 - 00381792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2017-06-14 09:56 - 2017-06-03 11:49 - 20967840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2017-06-14 09:56 - 2017-06-03 11:44 - 01412640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-06-14 09:56 - 2017-06-03 11:44 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-06-14 09:56 - 2017-06-03 11:39 - 05686272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2017-06-14 09:56 - 2017-06-03 11:33 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2017-06-14 09:56 - 2017-06-03 11:32 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-06-14 09:56 - 2017-06-03 11:31 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2017-06-14 09:56 - 2017-06-03 11:31 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2017-06-14 09:56 - 2017-06-03 11:28 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2017-06-14 09:56 - 2017-06-03 11:28 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edputil.dll
2017-06-14 09:56 - 2017-06-03 11:26 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-06-14 09:56 - 2017-06-03 11:26 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBrokerUI.dll
2017-06-14 09:56 - 2017-06-03 11:22 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2017-06-14 09:56 - 2017-06-03 11:22 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcorehc.dll
2017-06-14 09:56 - 2017-06-03 11:22 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tcpipcfg.dll
2017-06-14 09:56 - 2017-06-03 11:20 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2017-06-14 09:56 - 2017-06-03 11:19 - 01164288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe
2017-06-14 09:56 - 2017-06-03 11:16 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2017-06-14 09:56 - 2017-06-03 11:15 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2017-06-14 09:56 - 2017-06-03 11:15 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2017-06-14 09:56 - 2017-06-03 11:14 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2017-06-14 09:56 - 2017-06-03 11:12 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdProxy.dll
2017-06-14 09:56 - 2017-06-03 11:08 - 02643968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2017-06-14 09:56 - 2017-06-03 11:08 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2017-06-14 09:56 - 2017-06-03 11:07 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-06-14 09:56 - 2017-06-03 11:05 - 01883648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2017-06-14 09:56 - 2017-06-03 11:05 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hnetcfg.dll
2017-06-14 09:56 - 2017-06-03 11:04 - 02006528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2017-06-14 09:56 - 2017-06-03 11:04 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2017-06-14 09:56 - 2017-06-03 11:03 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2017-06-14 09:56 - 2017-06-03 11:02 - 02997760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-06-14 09:56 - 2017-06-03 10:54 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2017-06-14 09:56 - 2017-06-03 10:52 - 03403264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2017-06-14 09:56 - 2017-06-03 10:50 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2017-06-14 09:56 - 2017-06-03 10:49 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2017-06-14 09:56 - 2017-06-03 10:48 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-06-14 09:56 - 2017-06-03 10:40 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2017-06-14 09:56 - 2017-03-04 08:16 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2017-06-14 09:56 - 2016-09-07 06:53 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2017-06-14 09:55 - 2017-06-03 12:50 - 00192856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2017-06-14 09:55 - 2017-06-03 12:14 - 01564512 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2017-06-14 09:55 - 2017-06-03 12:14 - 01214816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2017-06-14 09:55 - 2017-06-03 12:14 - 00629088 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2017-06-14 09:55 - 2017-06-03 12:14 - 00544096 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2017-06-14 09:55 - 2017-06-03 12:14 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2017-06-14 09:55 - 2017-06-03 12:14 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2017-06-14 09:55 - 2017-06-03 12:14 - 00334176 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2017-06-14 09:55 - 2017-06-03 12:14 - 00233824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2017-06-14 09:55 - 2017-06-03 12:14 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2017-06-14 09:55 - 2017-06-03 12:14 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2017-06-14 09:55 - 2017-06-03 12:14 - 00096608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2017-06-14 09:55 - 2017-06-03 12:14 - 00034648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2017-06-14 09:55 - 2017-06-03 12:11 - 01706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2017-06-14 09:55 - 2017-06-03 12:11 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2017-06-14 09:55 - 2017-06-03 12:09 - 02213760 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2017-06-14 09:55 - 2017-06-03 12:08 - 07783256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-06-14 09:55 - 2017-06-03 12:01 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2017-06-14 09:55 - 2017-06-03 11:59 - 01181024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2017-06-14 09:55 - 2017-06-03 11:59 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2017-06-14 09:55 - 2017-06-03 11:59 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2017-06-14 09:55 - 2017-06-03 11:53 - 00404824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2017-06-14 09:55 - 2017-06-03 11:51 - 02187104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-06-14 09:55 - 2017-06-03 11:51 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2017-06-14 09:55 - 2017-06-03 11:49 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-06-14 09:55 - 2017-06-03 11:49 - 00509280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2017-06-14 09:55 - 2017-06-03 11:48 - 01112416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2017-06-14 09:55 - 2017-06-03 11:48 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2017-06-14 09:55 - 2017-06-03 11:48 - 00989024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2017-06-14 09:55 - 2017-06-03 11:48 - 00857952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2017-06-14 09:55 - 2017-06-03 11:48 - 00148832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2017-06-14 09:55 - 2017-06-03 11:45 - 22220864 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2017-06-14 09:55 - 2017-06-03 11:44 - 01600624 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2017-06-14 09:55 - 2017-06-03 11:40 - 01566552 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-06-14 09:55 - 2017-06-03 11:40 - 00628552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-06-14 09:55 - 2017-06-03 11:39 - 02532192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2017-06-14 09:55 - 2017-06-03 11:39 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2017-06-14 09:55 - 2017-06-03 11:23 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2017-06-14 09:55 - 2017-06-03 11:22 - 07217152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-06-14 09:55 - 2017-06-03 11:18 - 22569984 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-06-14 09:55 - 2017-06-03 11:16 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-06-14 09:55 - 2017-06-03 11:16 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-06-14 09:55 - 2017-06-03 11:15 - 19414016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-06-14 09:55 - 2017-06-03 11:15 - 18364928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-06-14 09:55 - 2017-06-03 11:15 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2017-06-14 09:55 - 2017-06-03 11:14 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2017-06-14 09:55 - 2017-06-03 11:14 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2017-06-14 09:55 - 2017-06-03 11:14 - 00045056 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2017-06-14 09:55 - 2017-06-03 11:11 - 00353792 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2017-06-14 09:55 - 2017-06-03 11:10 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-06-14 09:55 - 2017-06-03 11:10 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll
2017-06-14 09:55 - 2017-06-03 11:10 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBrokerUI.dll
2017-06-14 09:55 - 2017-06-03 11:09 - 00489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2017-06-14 09:55 - 2017-06-03 11:09 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcorehc.dll
2017-06-14 09:55 - 2017-06-03 11:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2017-06-14 09:55 - 2017-06-03 11:08 - 12187648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2017-06-14 09:55 - 2017-06-03 11:08 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2017-06-14 09:55 - 2017-06-03 11:08 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-06-14 09:55 - 2017-06-03 11:08 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2017-06-14 09:55 - 2017-06-03 11:07 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2017-06-14 09:55 - 2017-06-03 11:07 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\HNetCfgClient.dll
2017-06-14 09:55 - 2017-06-03 11:06 - 03664384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-06-14 09:55 - 2017-06-03 11:06 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2017-06-14 09:55 - 2017-06-03 11:04 - 06042624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-06-14 09:55 - 2017-06-03 11:03 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2017-06-14 09:55 - 2017-06-03 11:01 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2017-06-14 09:55 - 2017-06-03 11:00 - 23677440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-06-14 09:55 - 2017-06-03 10:58 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2017-06-14 09:55 - 2017-06-03 10:56 - 13091840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2017-06-14 09:55 - 2017-06-03 10:53 - 08125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-06-14 09:55 - 2017-06-03 10:52 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-06-14 09:55 - 2017-06-03 10:52 - 00975872 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2017-06-14 09:55 - 2017-06-03 10:52 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2017-06-14 09:55 - 2017-06-03 10:51 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
2017-06-14 09:55 - 2017-06-03 10:51 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2017-06-14 09:55 - 2017-06-03 10:50 - 04744704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-06-14 09:55 - 2017-06-03 10:49 - 03615744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-06-14 09:55 - 2017-06-03 10:49 - 02691072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-06-14 09:55 - 2017-06-03 10:49 - 02475520 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2017-06-14 09:55 - 2017-06-03 10:49 - 02318848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-06-14 09:55 - 2017-06-03 10:49 - 01845248 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2017-06-14 09:55 - 2017-06-03 10:49 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-06-14 09:55 - 2017-06-03 10:49 - 00351744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetcfg.dll
2017-06-14 09:55 - 2017-06-03 10:48 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-06-14 09:55 - 2017-06-03 10:48 - 01131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2017-06-14 09:55 - 2017-06-03 10:48 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2017-06-14 09:55 - 2017-06-03 10:46 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2017-06-14 09:55 - 2017-06-03 08:08 - 00080078 _____ C:\WINDOWS\system32\normidna.nls
2017-06-14 09:55 - 2017-05-25 07:56 - 00038752 _____ (Microsoft Corporation) C:\WINDOWS\system32\OOBEUpdater.exe
2017-06-14 09:55 - 2017-03-04 08:22 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2017-06-14 09:55 - 2017-03-04 08:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2017-06-14 09:55 - 2017-03-04 08:16 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2017-06-13 20:45 - 2017-06-13 20:45 - 00000000 ____D C:\WINDOWS\pss
2017-06-13 20:30 - 2016-10-08 08:56 - 00137840 _____ (Razer, Inc.) C:\WINDOWS\system32\Drivers\rzpnk.sys
2017-06-13 20:29 - 2017-06-13 20:30 - 00000000 ____D C:\Program Files (x86)\Razer
2017-06-13 20:29 - 2017-06-13 20:29 - 00000687 _____ C:\Users\Zuzana\Desktop\Razer Cortex.lnk
2017-06-13 20:29 - 2017-06-13 20:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2017-06-13 20:26 - 2017-06-13 20:27 - 160951800 _____ (Razer Inc. ) C:\Users\Zuzana\Downloads\RazerCortexSetup_8.1.7.463.exe
2017-06-12 16:00 - 2017-06-12 16:00 - 06754944 _____ (ESET spol. s r.o.) C:\Users\Zuzana\Downloads\esetonlinescanner_enu.exe
2017-06-12 15:50 - 2017-06-12 15:50 - 00000000 ____D C:\Program Files (x86)\GUM7D8E.tmp
2017-06-12 15:43 - 2017-06-12 15:44 - 01130328 _____ (Google Inc.) C:\Users\Zuzana\Downloads\ChromeSetup.exe
2017-06-12 15:36 - 2017-06-12 15:36 - 00260724 _____ C:\cc_20170612_153602 (navrat 2).reg
2017-06-11 12:38 - 2017-06-11 12:38 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys
2017-06-08 19:07 - 2017-06-08 19:07 - 00001294 _____ C:\Users\Zuzana\Desktop\Launcher – odkaz.lnk
2017-06-08 12:27 - 2017-06-08 12:32 - 00000000 ____D C:\Users\Zuzana\AppData\Local\FreeReign
2017-06-08 12:27 - 2017-06-08 12:27 - 00000000 ____D C:\Users\Zuzana\Documents\FreeReign
2017-06-03 12:33 - 2017-06-03 12:33 - 00345680 _____ (MurGee.com ) C:\Users\Zuzana\Downloads\setup.exe
2017-06-03 12:33 - 2017-06-03 12:33 - 00001156 _____ C:\Users\Zuzana\Desktop\Random Mouse Clicker.lnk
2017-06-03 12:33 - 2017-06-03 12:33 - 00000000 ____D C:\Users\Zuzana\AppData\Roaming\Random Mouse Clicker
2017-06-03 12:33 - 2017-06-03 12:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Random Mouse Clicker
2017-06-03 12:29 - 2017-06-03 12:29 - 00000633 _____ C:\Users\Public\Desktop\ReMouse Micro.lnk
2017-06-03 12:29 - 2017-06-03 12:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReMouse Micro
2017-06-03 12:28 - 2017-06-03 12:29 - 00996192 _____ (AutomaticSolution Software ) C:\Users\Zuzana\Downloads\ReMouseMicro-Setup.exe
2017-06-01 13:39 - 2017-06-12 15:48 - 00000000 ____D C:\Users\Zuzana\AppData\Local\glory
2017-06-01 13:37 - 2017-06-01 13:37 - 00000000 ____D C:\Program Files (x86)\{5FFA5FA0-680F-4CAE-A3F5-3F6C5394088D}
2017-06-01 10:01 - 2017-06-01 10:01 - 00000000 ____D C:\Users\Public\Documents\chrome
2017-05-27 13:37 - 2017-05-27 13:37 - 00000000 ____D C:\Program Files (x86)\{D8A8AF45-45C1-40FF-ABD8-1A76AC4E629F}
2017-05-25 20:05 - 2017-05-25 20:05 - 00000000 ____D C:\Users\Zuzana\AppData\LocalLow\U-Play online
2017-05-25 19:57 - 2017-05-25 19:57 - 00000000 ____D C:\Users\Public\Documents\Steam
2017-05-25 19:53 - 2017-05-25 19:53 - 00000000 ____D C:\Users\Zuzana\Documents\U-Play online
2017-05-25 18:15 - 2017-05-25 18:15 - 00000630 _____ C:\Users\Zuzana\Desktop\Youtubers Life.lnk
2017-05-25 11:51 - 2017-06-14 17:21 - 00000000 ____D C:\Users\Zuzana\AppData\Local\background_fault
2017-05-24 11:39 - 2017-06-14 17:52 - 00000000 ____D C:\Program Files (x86)\Firefox
2017-05-21 15:09 - 2017-06-03 12:29 - 00000000 ____D C:\Users\Zuzana\Documents\AutomaticSolution Software
2017-05-19 14:22 - 2017-05-19 14:22 - 00003708 _____ C:\WINDOWS\System32\Tasks\DivXUpdate
2017-05-19 14:20 - 2017-05-19 14:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
2017-05-19 14:07 - 2017-05-19 14:07 - 00000000 ____D C:\Users\Zuzana\AppData\Local\AVAST Software
2017-05-18 18:51 - 2017-05-18 18:51 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2017-05-18 18:51 - 2017-05-18 18:51 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2017-05-18 18:37 - 2017-05-19 07:27 - 00000000 ____D C:\Program Files (x86)\{A8A21A63-F187-4F9F-8458-6B6E350032F8}
2017-05-18 13:37 - 2017-05-19 07:27 - 00000000 ____D C:\Program Files (x86)\{34E62A34-3D22-4002-ACE1-AE6A0085677D}
2017-05-17 10:49 - 2017-05-24 11:37 - 00000000 _____ C:\WINDOWS\SysWOW64\1111
2017-05-17 10:49 - 2017-05-17 10:49 - 00000000 ____D C:\Program Files (x86)\Default Company Name
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-06-16 19:30 - 2016-09-19 19:04 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-06-16 19:03 - 2016-10-31 10:59 - 00000000 ____D C:\Users\Zuzana\AppData\Local\Akamai
2017-06-16 16:13 - 2017-03-17 17:01 - 00000000 ____D C:\Users\Zuzana\AppData\LocalLow\Mozilla
2017-06-16 14:09 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-06-16 14:09 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-06-16 14:01 - 2016-09-19 19:06 - 00000000 ____D C:\ProgramData\NVIDIA
2017-06-16 13:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\rescache
2017-06-15 21:47 - 2016-10-16 19:23 - 00004200 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{86DBA17E-8F69-46B2-BE50-6DD413D2A89D}
2017-06-15 16:19 - 2017-01-15 21:36 - 00000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin
2017-06-15 15:54 - 2016-10-02 08:51 - 00734174 _____ C:\WINDOWS\system32\perfh01B.dat
2017-06-15 15:54 - 2016-10-02 08:51 - 00220106 _____ C:\WINDOWS\system32\perfc01B.dat
2017-06-15 15:54 - 2016-09-19 19:09 - 02405494 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-06-15 15:46 - 2016-09-19 19:32 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-06-15 15:43 - 2016-07-16 13:45 - 00000000 ____D C:\WINDOWS\INF
2017-06-15 15:36 - 2016-09-19 19:36 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-06-14 22:09 - 2016-09-19 19:03 - 00458632 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-06-14 22:08 - 2016-07-16 08:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2017-06-14 22:08 - 2015-03-10 16:23 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2017-06-14 22:08 - 2015-03-10 16:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2017-06-14 22:06 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-06-14 22:06 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser
2017-06-14 22:06 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
2017-06-14 21:55 - 2017-05-16 13:38 - 00000000 ____D C:\Program Files (x86)\MIO
2017-06-14 21:55 - 2017-04-13 12:01 - 00000000 ____D C:\Users\Zuzana\AppData\Local\SNARE
2017-06-14 17:54 - 2017-04-15 19:01 - 00002300 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-06-14 17:52 - 2017-04-07 08:39 - 00000000 ____D C:\Users\Zuzana\AppData\Local\AMD
2017-06-14 17:19 - 2017-03-28 13:54 - 00000000 ____D C:\Users\Zuzana\AppData\Roaming\Elex-tech
2017-06-14 17:14 - 2015-09-17 15:34 - 00000000 ____D C:\Users\Zuzana\Desktop\skola
2017-06-14 16:31 - 2015-11-24 08:25 - 00000000 ____D C:\Users\Zuzana\AppData\Local\CrashDumps
2017-06-14 15:53 - 2017-03-17 16:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-06-14 11:24 - 2015-06-24 17:07 - 00000000 ____D C:\Users\Zuzana\AppData\Local\Razer
2017-06-14 10:33 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-06-14 10:17 - 2015-03-10 16:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2017-06-14 10:07 - 2015-03-10 16:04 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-06-14 10:07 - 2010-07-31 15:47 - 133627792 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-06-14 08:40 - 2017-03-28 13:52 - 00000023 _____ C:\Users\Public\Documents\temp.dat
2017-06-13 20:54 - 2015-05-31 19:26 - 00000000 ____D C:\Users\Zuzana\AppData\Local\NVIDIA Corporation
2017-06-13 20:42 - 2016-04-03 12:25 - 00000199 _____ C:\Users\Zuzana\Desktop\Counter-Strike Global Offensive.url
2017-06-13 20:35 - 2015-05-31 19:25 - 00000000 ____D C:\Users\Zuzana\AppData\Local\NVIDIA
2017-06-13 20:34 - 2016-09-19 19:06 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2017-06-13 20:33 - 2016-09-19 19:05 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-06-13 20:33 - 2015-05-31 19:22 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-06-13 20:31 - 2015-06-24 17:02 - 00000000 ____D C:\ProgramData\Razer
2017-06-13 19:34 - 2017-03-28 13:52 - 00000000 _____ C:\Users\Public\Documents\report.dat
2017-06-12 15:40 - 2017-03-25 13:36 - 00000000 ____D C:\Users\Zuzana\AppData\Roaming\DAEMON Tools Lite
2017-06-12 15:40 - 2010-08-15 13:23 - 00000000 ____D C:\Users\Zuzana\AppData\Roaming\TeamViewer
2017-06-12 15:39 - 2016-09-21 14:07 - 00000000 ____D C:\WINDOWS\Minidump
2017-06-11 13:51 - 2010-10-27 15:19 - 00000000 ____D C:\Users\Zuzana\AppData\Local\ElevatedDiagnostics
2017-06-10 22:39 - 2016-09-19 19:10 - 00000000 ____D C:\Users\Zuzana
2017-06-10 22:16 - 2017-05-16 13:38 - 00000000 ____D C:\ProgramData\BIT
2017-06-10 15:10 - 2015-03-20 19:24 - 00000000 ____D C:\Users\Zuzana\AppData\Roaming\vlc
2017-06-10 11:40 - 2010-07-29 12:11 - 00000000 ____D C:\ProgramData\Skype
2017-06-10 11:39 - 2015-03-15 11:56 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-06-06 20:21 - 2010-07-29 12:11 - 00000000 ____D C:\Users\Zuzana\AppData\Roaming\Skype
2017-06-04 08:27 - 2010-04-16 06:28 - 00003096 _____ C:\WINDOWS\system32\AutoRunFilter.ini
2017-06-03 21:29 - 2015-03-20 19:23 - 00000533 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-06-03 08:36 - 2016-07-16 13:49 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-06-03 08:36 - 2016-07-16 13:49 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-06-02 14:34 - 2017-05-16 13:37 - 00000000 ____D C:\Program Files\MK
2017-05-31 15:42 - 2017-05-13 15:41 - 00004044 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1494682877
2017-05-31 15:42 - 2017-05-13 15:41 - 00001090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2017-05-29 14:25 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2017-05-27 15:33 - 2015-05-23 12:50 - 00002071 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-05-23 08:24 - 2017-03-28 13:49 - 00000000 _____ C:\WINDOWS\SysWOW64\1
2017-05-19 16:06 - 2010-09-13 13:11 - 00000000 ____D C:\Users\Zuzana\AppData\Roaming\DivX
2017-05-19 14:57 - 2010-09-13 13:06 - 00000000 ____D C:\ProgramData\DivX
2017-05-19 14:22 - 2010-09-13 13:07 - 00000000 ____D C:\Program Files (x86)\DivX
2017-05-19 14:21 - 2010-09-13 13:10 - 00000000 ____D C:\Program Files\DivX
2017-05-19 13:21 - 2017-03-28 13:54 - 00000000 ____D C:\Program Files (x86)\Elex-tech
2017-05-18 19:05 - 2015-05-22 18:13 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2017-05-18 19:05 - 2015-05-22 18:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-05-18 19:05 - 2015-05-22 18:12 - 00000000 ____D C:\Program Files (x86)\Java
2017-05-18 18:52 - 2010-08-06 20:23 - 00000000 ____D C:\Users\Zuzana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-05-18 18:52 - 2010-08-06 20:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-05-18 18:52 - 2010-08-06 20:23 - 00000000 ____D C:\Program Files (x86)\WinRAR
2017-05-18 18:51 - 2010-07-25 10:27 - 00000000 ____D C:\Users\Zuzana\AppData\Roaming\Adobe
2017-05-18 18:51 - 2010-04-16 05:54 - 00000000 ____D C:\Program Files (x86)\Adobe
2017-05-18 18:50 - 2010-08-20 17:13 - 00000000 ____D C:\Users\Zuzana\AppData\Local\Adobe
==================== Files in the root of some directories =======
2016-06-14 17:16 - 2016-06-16 16:02 - 0000098 _____ () C:\Users\Zuzana\AppData\Roaming\LauncherSettings_live.cfg
2016-06-14 17:03 - 2016-06-14 17:03 - 0010309 _____ () C:\Users\Zuzana\AppData\Roaming\TheHunterSettings_live.bin
2016-06-14 14:38 - 2016-06-14 17:32 - 0000039 _____ () C:\Users\Zuzana\AppData\Roaming\TheHunterSettings_steam_live.cfg
2016-05-26 15:47 - 2016-05-26 16:04 - 0004608 _____ () C:\Users\Zuzana\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-05-01 22:58 - 2015-05-01 22:58 - 0000000 ___SH () C:\Users\Zuzana\AppData\Local\LumaEmu
2015-06-09 18:10 - 2015-06-09 18:10 - 0000017 _____ () C:\Users\Zuzana\AppData\Local\resmon.resmoncfg
2010-04-16 06:10 - 2009-12-24 14:38 - 0131368 _____ () C:\ProgramData\FullRemove.exe
2010-04-16 05:53 - 2010-04-16 05:54 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2010-04-16 05:53 - 2010-04-16 05:53 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Zuzana\Desktop" je 5061 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector
C:\Windows\AsScrPro.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate
"C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
==================== End Of Log ==============================