Stránka 1 z 1

problém přejmenovane soubory

Napsal: 16 říj 2017 19:56
od tomX
Zdravím,
dnes se mi do rukou dostal notebook od známého. Říká, že z ničeho nic se mu přejmenovaly fotky a přiřadil se jim i mně neznámý formát asasin,nový název souboru vypadá takto: "AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.asasin".
Prohledal jsem počítač a na žádný nechtěný program jsem nenarazil, zkoušel jsem program fileassassin a ten to taky neumí odemknout. Proto prosím koukněte na logy, jestli za to nemůže nějaké svinstvo a ne neumětelství majitele:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-10-2017
Ran by asusPC (administrator) on ASUS (16-10-2017 20:44:49)
Running from C:\Users\asusPC\Downloads
Loaded Profiles: asusPC (Available Profiles: asusPC)
Platform: Windows 8.1 Connected (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: "C:\Users\asusPC\AppData\Roaming\Seznam Browser\Seznam.cz.exe" -surl="%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSPanel.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\ASUSWSLoader.exe [63272 2014-12-04] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [134784 2014-02-25] (Qualcomm®Atheros®)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9292504 2016-12-21] (Piriform Ltd)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [World of Tanks] => C:\Games\World_of_Tanks\WargamingGameUpdater.exe [3135752 2017-02-28] (Wargaming.net)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [World of Warships] => C:\Games\World_of_Warships\WargamingGameUpdater.exe [3136264 2017-09-19] (Wargaming.net)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 81.200.55.118 81.200.55.34
Tcpip\..\Interfaces\{322AFC4A-7605-4483-BF59-06C281C35B75}: [DhcpNameServer] 93.91.240.101 93.91.240.254 192.168.1.1
Tcpip\..\Interfaces\{5CC5D8E4-0FDC-450F-8547-9DC26EBC170D}: [DhcpNameServer] 81.200.55.118 81.200.55.34

Internet Explorer:
==================
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
BHO-x32: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)

FireFox:
========
FF ProfilePath: C:\Users\asusPC\AppData\Roaming\Mozilla\Firefox\Profiles\aIa3snDH.default [2017-10-11]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2017-07-20]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)

Chrome:
=======
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=C214CZ885D20160821&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Profile: C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default [2017-10-16]
CHR Extension: (Prezentace) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]
CHR Extension: (Dokumenty) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14]
CHR Extension: (Disk Google) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-15]
CHR Extension: (YouTube) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-15]
CHR Extension: (Avira Password Manager) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2017-10-11]
CHR Extension: (Tabulky) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2017-10-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-21]
CHR Extension: (AdBlock) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-10-09]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-30]
CHR Extension: (Gmail) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-03]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1128432 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [490968 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [490968 2017-10-12] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1525240 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe [71168 2014-12-04] (ASUS Cloud Corporation) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-02-25] (Windows (R) Win 7 DDK provider) [File not signed]
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [404816 2017-09-13] (Avira Operations GmbH & Co. KG)
R2 AviraUpdaterService; C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [102304 2017-08-31] (Avira Operations GmbH & Co. KG)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel(R) Corporation)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [590880 2017-09-06] (McAfee, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2014-02-25] (Atheros) [File not signed]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3892224 2014-03-06] (Qualcomm Atheros Communications, Inc.)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [71952 2014-03-31] (ASUS Corporation)
R0 avdevprot; C:\Windows\System32\DRIVERS\avdevprot.sys [60920 2017-06-17] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [176224 2017-10-04] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [167464 2017-09-14] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [44488 2017-03-22] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [88488 2017-03-22] (Avira Operations GmbH & Co. KG)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-02-25] (Qualcomm Atheros)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [31232 2013-11-11] (Intel Corporation)
R3 iaioi2c; C:\Windows\System32\drivers\iaioi2ce.sys [67584 2013-11-11] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
R0 MBI; C:\Windows\System32\drivers\MBI.sys [29464 2013-10-28] (Intel Corporation)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [111608 2017-02-14] (McAfee, Inc.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation)
S3 e1edc438-f640-4184-a443-d2a7c37a01dc; \??\F:\WTP\bin\690b33e1-0462-4e84-9bea-c7552b45432a.sys [X]
U0 msahci; system32\drivers\msahci.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-16 20:44 - 2017-10-16 20:45 - 000014918 _____ C:\Users\asusPC\Downloads\FRST.txt
2017-10-16 20:44 - 2017-10-16 20:44 - 000000000 ____D C:\FRST
2017-10-16 20:42 - 2017-10-16 20:42 - 002401792 _____ (Farbar) C:\Users\asusPC\Downloads\FRST64.exe
2017-10-16 20:35 - 2017-10-16 20:35 - 004987672 _____ (Ghisler Software GmbH) C:\Users\asusPC\Downloads\tcmd900ax64.exe
2017-10-16 20:35 - 2017-10-16 20:35 - 000000656 _____ C:\Users\asusPC\Desktop\Total Commander 64 bit.lnk
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\GHISLER
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Local\GHISLER
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\totalcmd
2017-10-16 19:57 - 2017-10-16 20:43 - 000000000 ____D C:\Program Files (x86)\FileASSASSIN
2017-10-16 19:56 - 2017-10-16 19:56 - 000167034 _____ C:\Users\asusPC\Downloads\fileassassin-setup-1.06.exe
2017-10-13 21:21 - 2017-10-13 21:21 - 000060161 _____ C:\Users\asusPC\Desktop\MiniPenzion Olomouc _Na Vyhlídce_ - Ubytování Olomouc.html
2017-10-13 21:21 - 2017-10-13 21:21 - 000000000 ____D C:\Users\asusPC\Desktop\MiniPenzion Olomouc _Na Vyhlídce_ - Ubytování Olomouc_files
2017-10-12 18:25 - 2017-10-12 18:25 - 000000844 _____ C:\Users\asusPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
2017-10-12 18:25 - 2017-10-12 18:25 - 000000796 _____ C:\Users\asusPC\Desktop\Start Tor Browser.lnk
2017-10-12 18:25 - 2017-10-12 18:25 - 000000000 ____D C:\Users\asusPC\Desktop\Tor Browser
2017-10-12 18:08 - 2017-10-12 18:08 - 000046706 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.rar
2017-10-12 18:04 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-67431E01-A89AFDEB3398.asasin
2017-10-12 18:04 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-67431E01-A89AFDEB3398 (1).asasin
2017-10-12 18:00 - 2017-10-12 18:00 - 013438432 _____ (ASUS Cloud Corporation) C:\Users\asusPC\Downloads\WebStorageSyncAgent2.2.17.591.exe
2017-10-12 17:58 - 2017-10-12 17:58 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Seznam Browser-e11754c0-5e40-494f-b134-eec0f8ff22cb
2017-10-11 20:52 - 2017-10-10 20:42 - 006484804 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0FBC7CE8-AA3B0446DB5C (1).asasin
2017-10-11 20:25 - 2017-10-10 21:05 - 005923652 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-2E70026E-5D3EEDFA1AFC.asasin
2017-10-11 20:10 - 2017-10-11 20:10 - 000000912 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2017-10-11 20:09 - 2017-10-11 20:10 - 000000000 ____D C:\Program Files\GIMP 2
2017-10-11 20:05 - 2017-10-10 20:42 - 006484804 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0FBC7CE8-AA3B0446DB5C.asasin
2017-10-11 20:01 - 2017-10-16 20:34 - 000000093 _____ C:\Users\asusPC\AppData\Roaming\sp_data.sys
2017-10-11 19:04 - 2017-10-11 19:04 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Seznam Browser-0cc6966c-6902-423b-b0c1-974e14a7928c
2017-10-11 19:02 - 2017-10-11 19:02 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Mozilla
2017-10-11 18:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C68329EA-C584B6D50393.asasin
2017-10-11 18:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C68329EA-C584B6D50393 (1).asasin
2017-10-11 18:26 - 2017-10-11 18:26 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2017-10-11 17:10 - 2017-09-14 21:30 - 007439704 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-10-11 17:10 - 2017-09-14 03:18 - 001384216 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2017-10-11 17:10 - 2017-09-14 03:14 - 001124384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2017-10-11 17:10 - 2017-09-09 20:53 - 022361864 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-10-11 17:10 - 2017-09-09 19:55 - 019790760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-10-11 17:10 - 2017-09-09 18:10 - 003631616 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-10-11 17:10 - 2017-09-09 17:49 - 002749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2017-10-11 17:10 - 2017-09-09 17:47 - 014466560 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2017-10-11 17:10 - 2017-09-09 17:21 - 012879360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-10-11 17:10 - 2017-09-09 05:50 - 002013016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2017-10-11 17:10 - 2017-09-09 05:50 - 001364552 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-10-11 17:10 - 2017-09-08 20:21 - 004168192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-10-11 17:10 - 2017-09-07 23:15 - 002902528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-10-11 17:10 - 2017-09-07 23:08 - 025729536 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-10-11 17:10 - 2017-09-07 22:40 - 005982208 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-10-11 17:10 - 2017-09-07 21:44 - 015262720 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-10-11 17:10 - 2017-09-07 21:40 - 003240960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-10-11 17:10 - 2017-09-07 21:27 - 001548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-10-11 17:10 - 2017-09-07 21:10 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-10-11 17:10 - 2017-09-07 21:04 - 020267008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-10-11 17:10 - 2017-09-07 21:03 - 002292736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-10-11 17:10 - 2017-09-07 20:58 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-10-11 17:10 - 2017-09-07 20:29 - 004547072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-10-11 17:10 - 2017-09-07 20:17 - 013677568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-10-11 17:10 - 2017-09-07 20:01 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-10-11 17:10 - 2017-09-07 19:57 - 001316864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-10-11 17:10 - 2017-08-11 04:20 - 001436672 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-10-11 17:09 - 2017-09-14 21:30 - 001737600 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-10-11 17:09 - 2017-09-14 21:29 - 001502000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-10-11 17:09 - 2017-09-13 15:32 - 000445952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2017-10-11 17:09 - 2017-09-13 15:31 - 000445952 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2017-10-11 17:09 - 2017-09-13 15:27 - 000384000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
2017-10-11 17:09 - 2017-09-09 19:38 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll
2017-10-11 17:09 - 2017-09-08 20:15 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2017-10-11 17:09 - 2017-09-08 19:39 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2017-10-11 17:09 - 2017-09-08 18:57 - 001084928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-10-11 17:09 - 2017-09-07 23:33 - 000686592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-10-11 17:09 - 2017-09-07 23:33 - 000415744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-10-11 17:09 - 2017-09-07 23:32 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-10-11 17:09 - 2017-09-07 23:32 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-10-11 17:09 - 2017-09-07 23:17 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-10-11 17:09 - 2017-09-07 23:17 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-10-11 17:09 - 2017-09-07 23:00 - 000817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-10-11 17:09 - 2017-09-07 22:32 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-10-11 17:09 - 2017-09-07 22:31 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2017-10-11 17:09 - 2017-09-07 22:29 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-10-11 17:09 - 2017-09-07 22:21 - 001033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2017-10-11 17:09 - 2017-09-07 22:13 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-10-11 17:09 - 2017-09-07 22:11 - 000380416 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-10-11 17:09 - 2017-09-07 22:10 - 000807936 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-10-11 17:09 - 2017-09-07 22:10 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-10-11 17:09 - 2017-09-07 22:08 - 002134528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-10-11 17:09 - 2017-09-07 22:08 - 000656896 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2017-10-11 17:09 - 2017-09-07 21:54 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2017-10-11 17:09 - 2017-09-07 21:17 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-10-11 17:09 - 2017-09-07 21:09 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-10-11 17:09 - 2017-09-07 20:39 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-10-11 17:09 - 2017-09-07 20:38 - 000128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2017-10-11 17:09 - 2017-09-07 20:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-10-11 17:09 - 2017-09-07 20:33 - 000880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2017-10-11 17:09 - 2017-09-07 20:29 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-10-11 17:09 - 2017-09-07 20:27 - 000331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-10-11 17:09 - 2017-09-07 20:26 - 000694784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-10-11 17:09 - 2017-09-07 20:25 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-10-11 17:09 - 2017-09-07 20:24 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2017-10-11 17:09 - 2017-09-07 19:57 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-10-11 17:09 - 2017-08-13 21:48 - 000202592 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2017-10-11 17:09 - 2017-08-13 19:52 - 000174944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2017-10-11 17:09 - 2017-08-13 19:10 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2017-10-11 17:09 - 2017-08-13 18:33 - 000252416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2017-10-11 17:09 - 2017-08-11 04:54 - 000445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-10-11 17:09 - 2017-08-11 04:22 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-10-11 17:09 - 2017-08-11 04:16 - 000275968 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll
2017-10-11 17:09 - 2017-08-11 03:57 - 000180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll
2017-10-11 17:09 - 2017-08-06 23:50 - 001080320 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2017-10-11 17:09 - 2017-08-06 23:20 - 000542720 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2017-10-11 17:09 - 2017-08-06 23:13 - 000713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2017-10-11 17:09 - 2017-08-06 09:08 - 000561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2017-10-11 17:09 - 2017-08-02 04:19 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2017-10-11 17:09 - 2017-08-01 10:25 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2017-10-10 20:56 - 2017-10-10 20:56 - 000262980 _____ C:\Users\Public\AIEAQWZW-F61G-KZC0-EA6B7D08-5FE9B4BE3C47.asasin
2017-10-10 20:56 - 2017-10-10 20:56 - 000008387 ____C C:\Users\Public\asasin-d042.htm
2017-10-10 20:51 - 2017-10-10 20:51 - 000046595 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.asasin
2017-10-10 20:44 - 2017-10-10 20:44 - 2310479016 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-2940A816-011991EF6300.asasin
2017-10-10 20:29 - 2017-10-10 20:29 - 260758688 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-1A0B435E-0B75F8B4631E.asasin
2017-10-10 20:29 - 2017-10-10 20:29 - 260510266 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D555A7A4-26C8BD8F83A3.asasin
2017-10-10 20:28 - 2017-10-10 20:28 - 478469622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-B0AFFF7D-E141E9D5DB08.asasin
2017-10-10 20:28 - 2017-10-10 20:28 - 260458514 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-BA81E978-DB9267F30E02.asasin
2017-10-10 20:25 - 2017-10-10 20:25 - 502556704 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-6555B24F-5A9C61C8DB65.asasin
2017-10-10 20:25 - 2017-10-10 20:25 - 485265838 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-45BB885A-6C4E9810D2AF.asasin
2017-10-10 20:23 - 2017-10-10 20:23 - 851565340 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-88E022C0-4F086181BFF8.asasin
2017-10-10 20:18 - 2017-10-10 20:18 - 309045714 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-AB087A3B-065416C02003.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 089211716 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-FA72D884-D1C05E110191.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 088826692 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-4050052A-AA22ECF05D89.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 013749760 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-ADEA8632-A4E10A9C4433.asasin
2017-10-10 20:11 - 2017-10-10 20:11 - 043784988 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-69F61F69-339C9F4979D6.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 018469700 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D57BA12E-111972A99E33.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 018469700 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D40E72A6-4D5CBAFB8698.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-A0BA3FF6-7267F3A0F027.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-6D767C4B-832A3434492D.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-65F78230-6E5BBF8DFBA8.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-3DFC1C8A-5CC8A037D697.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003922173 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-FDC23295-508F65B1F6EE.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003922173 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-4195A501-F94707AD73A8.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003842342 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C1CF6F97-D16A826E0DE1.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003842342 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-29FC5FF0-D976A2B733CC.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003421987 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-76E00416-C9F49830A66D.asasin
2017-10-10 20:04 - 2017-10-10 20:04 - 009027055 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-EA235E78-D473D6085F14.asasin
2017-10-10 20:04 - 2017-10-10 20:04 - 008413103 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-F4AA99D1-9AF3E17281D8.asasin
2017-10-10 20:02 - 2017-10-10 20:02 - 004587608 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-96D60EDA-9F4061D4AA63.asasin
2017-10-10 20:02 - 2017-10-10 20:02 - 002515522 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-B781493F-8B88F43F8F20.asasin
2017-10-10 19:56 - 2017-10-10 19:56 - 003906655 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-395298EB-A062D3C5058F.asasin
2017-10-10 19:55 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Desktop\pokus 1.asasin
2017-10-10 19:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Desktop\pokus 1 (2).asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000008387 ____C C:\ProgramData\asasin-5477.htm
2017-10-10 19:50 - 2017-10-10 19:50 - 000001092 _____ C:\ProgramData\AIEAQWZW-F61G-KZC0-204340C4-C19636FE4096.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000000939 _____ C:\ProgramData\AIEAQWZW-F61G-KZC0-69962ACF-374D7F483013.asasin
2017-10-10 19:49 - 2017-10-12 16:14 - 000050166 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-BE51FDD4-73086C71E788.7p
2017-10-10 19:49 - 2017-10-10 19:49 - 004763460 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-5626676F-69D6B577D42D.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 001336645 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-DEF7FA75-618DB36294FB.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 001336645 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-74E34AFD-F5F13324D7D0.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000925998 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D2F18EC0-29547CC3FBDF.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000896650 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-9C325403-F13A0B660F4B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000370113 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C5C2DFC2-238EE22796C0.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000152485 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-74EAC23A-72D4DE7E564B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-12DD66CE-82D1C72BC1E8.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-11E40086-DE1C451DF9C8.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-10206629-8B5EC4D83D4F.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000057316 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-8D59FCB4-99EF00F7958E.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000039791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-BF7DB4AE-9B84E56EBE6A.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000030400 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0861B6CD-CE93DEC5D2DD.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000020376 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-DBF1AA39-A0BB2778589B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000018524 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0328222D-3CF3F9BEBDC2.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000011512 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-3BE4D554-890F3E0376BA.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000011512 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-085ABF7D-B7C53F3194AB.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000008387 ____C C:\Users\asusPC\Downloads\asasin-1604.htm
2017-10-10 19:49 - 2017-10-10 19:49 - 000008387 ____C C:\Users\asusPC\Desktop\asasin-b2b9.htm
2017-10-10 19:49 - 2017-10-10 19:49 - 000006950 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-AF94F2A7-C698585FC9CA.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000006950 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-30A60D12-ECADED8C56D3.asasin
2017-10-04 19:08 - 2017-10-04 19:08 - 000000000 ____D C:\Users\asusPC\Desktop\Nová složka (2)
2017-10-04 19:05 - 2017-10-04 19:05 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet (2).exe
2017-10-04 19:05 - 2017-10-04 19:05 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet (1).exe
2017-10-04 19:04 - 2017-10-04 19:04 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet.exe
2017-10-04 01:57 - 2017-10-04 01:57 - 000003292 _____ C:\Windows\System32\Tasks\Avira_Antivirus_Systray
2017-09-28 17:05 - 2017-09-28 17:05 - 000003122 _____ C:\Windows\System32\Tasks\Avira SystrayStartTrigger
2017-09-28 17:05 - 2017-09-28 17:05 - 000001134 _____ C:\Users\Public\Desktop\Avira.lnk
2017-09-25 09:52 - 2017-10-10 20:51 - 000000000 ____D C:\Users\asusPC\Desktop\iZUŠ _ Přihláška do ZUŠ_files

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-16 20:40 - 2016-08-08 08:09 - 000003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-530502146-3304040069-2869220945-1001
2017-10-16 19:33 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2017-10-16 19:05 - 2016-08-12 13:18 - 000003958 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{44B9CC47-EEB0-452A-B671-6DAAE07AF0AD}
2017-10-15 19:50 - 2016-09-04 13:23 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\vlc
2017-10-15 12:50 - 2016-09-04 13:23 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\dvdcss
2017-10-15 12:00 - 2016-09-13 18:20 - 000003480 _____ C:\Windows\System32\Tasks\ASUS Live Update1
2017-10-15 12:00 - 2016-09-02 19:00 - 000003470 _____ C:\Windows\System32\Tasks\ASUS Live Update2
2017-10-12 19:31 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\rescache
2017-10-12 18:35 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-10-12 18:34 - 2013-08-22 16:44 - 000362520 _____ C:\Windows\system32\FNTCACHE.DAT
2017-10-12 18:31 - 2013-08-22 17:36 - 000000000 ___RD C:\Windows\ToastData
2017-10-12 18:31 - 2013-08-22 17:20 - 000000000 ____D C:\Windows\CbsTemp
2017-10-12 18:11 - 2016-08-15 14:56 - 000001084 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-10-12 18:02 - 2016-08-21 20:41 - 000000000 ____D C:\Users\asusPC\AppData\Local\CrashDumps
2017-10-12 18:02 - 2016-08-15 15:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-10-12 16:14 - 2016-08-08 08:02 - 000000000 ____D C:\Users\asusPC
2017-10-11 19:04 - 2016-08-15 15:13 - 000000000 ____D C:\ProgramData\Avira
2017-10-11 19:04 - 2016-08-15 15:13 - 000000000 ____D C:\Program Files (x86)\Avira
2017-10-11 18:43 - 2015-04-26 19:44 - 000740822 _____ C:\Windows\system32\perfh005.dat
2017-10-11 18:43 - 2015-04-26 19:44 - 000151948 _____ C:\Windows\system32\perfc005.dat
2017-10-11 18:43 - 2014-11-21 01:09 - 001748728 _____ C:\Windows\system32\PerfStringBackup.INI
2017-10-11 18:31 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2017-10-11 18:30 - 2016-08-21 23:13 - 000000000 ____D C:\Windows\system32\MRT
2017-10-11 18:26 - 2016-08-21 23:13 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-10-10 20:56 - 2017-01-11 21:59 - 000000000 ____D C:\Users\asusPC\Desktop\bradavice
2017-10-10 20:51 - 2017-06-14 11:38 - 000000000 ____D C:\Users\asusPC\Desktop\E SHOP OUTDOOR SPORT - Bufo Outdoor Sport_files
2017-10-10 20:45 - 2016-10-03 13:07 - 000000000 ____D C:\Users\asusPC\Desktop\filmy pohadky
2017-10-10 20:45 - 2016-08-05 15:20 - 000000000 ____D C:\ProgramData\Qualcomm Atheros
2017-10-10 20:45 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\ASUS WebStorage
2017-10-10 20:44 - 2016-08-08 08:05 - 000000000 ____D C:\ProgramData\USBChargerPlus
2017-10-10 20:44 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\WebStorage
2017-10-10 20:31 - 2017-07-31 21:45 - 000000000 ____D C:\Users\asusPC\Desktop\navigace
2017-10-10 20:30 - 2016-10-10 13:05 - 000000000 ____D C:\Users\asusPC\Desktop\OVEČKA SHAUN
2017-10-10 20:16 - 2016-10-10 13:27 - 000000000 ____D C:\Users\asusPC\Desktop\hudba
2017-10-10 20:00 - 2016-10-03 20:23 - 000000000 ____D C:\Users\asusPC\Desktop\k vyvoláí
2017-10-10 19:53 - 2015-04-26 12:02 - 000000000 ____D C:\ProgramData\ASUSLogos
2017-10-10 19:49 - 2017-06-29 22:00 - 000000000 ____D C:\Users\asusPC\Downloads\Nová složka
2017-10-10 19:49 - 2016-10-03 13:10 - 000000000 ____D C:\Users\asusPC\Desktop\fotky
2017-10-04 20:35 - 2017-04-26 21:20 - 000135680 ___SH C:\Users\asusPC\Downloads\Thumbs.db
2017-10-04 01:56 - 2016-08-15 15:13 - 000176224 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2017-10-01 20:22 - 2016-08-05 15:28 - 000000000 ____D C:\Program Files (x86)\McAfee
2017-09-28 17:05 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\Package Cache
2017-09-27 18:04 - 2016-08-15 14:53 - 000002217 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-09-27 18:04 - 2016-08-15 14:53 - 000002205 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-09-22 16:50 - 2013-08-22 17:36 - 000000000 ___HD C:\Program Files\WindowsApps
2017-09-22 16:50 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\AppReadiness

==================== Files in the root of some directories =======

2017-10-11 20:01 - 2017-10-16 20:34 - 000000093 _____ () C:\Users\asusPC\AppData\Roaming\sp_data.sys
2017-10-10 19:50 - 2017-10-10 19:50 - 000001092 _____ () C:\ProgramData\AIEAQWZW-F61G-KZC0-204340C4-C19636FE4096.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000000939 _____ () C:\ProgramData\AIEAQWZW-F61G-KZC0-69962ACF-374D7F483013.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000008387 ____C () C:\ProgramData\asasin-5477.htm
2016-08-05 15:14 - 2016-08-05 15:14 - 000000000 ____H () C:\ProgramData\DP45977C.lfl
2015-04-26 12:02 - 2012-09-07 13:40 - 000000256 _____ () C:\ProgramData\SetStretch.cmd
2015-04-26 12:02 - 2009-07-22 12:04 - 000024576 _____ () C:\ProgramData\SetStretch.exe
2015-04-26 12:02 - 2012-09-07 13:37 - 000000103 _____ () C:\ProgramData\SetStretch.VBS

Some files in TEMP:
====================
2017-10-12 18:10 - 2017-10-12 18:10 - 030950664 _____ () C:\Users\asusPC\AppData\Local\Temp\vlc-2.2.6-win32.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-10-15 09:09

==================== End of FRST.txt ============================

S díky TK

Re: problém přejmenovane soubory

Napsal: 16 říj 2017 20:06
od Rudy
Zdravím!
Fileassasin to neodemkne, pouze smaže. A to asi nechcete. problém je v tom, že vám nějaký šmejd ty soubory zakryptoval. My vám můžeme PC vyčistit od šmejdů, ale soubory neodemkneme. K tomu je třeba přímý přístup do PC a to nemáme právně ošetřeno. Musíte se obrátit na naš kolegy zde: https://neslape.cz/?utm_campaign=neslap ... ium=banner . Půjde to jen v případě, pokud je k dispozici dekryptovací klíč. Pokud chcete PC vyčistit, spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: problém přejmenovane soubory

Napsal: 17 říj 2017 05:58
od tomX
děkuji za radu, vkládám log z adwcleanu:
# AdwCleaner 7.0.3.1 - Logfile created on Tue Oct 17 04:54:50 2017
# Updated on 2017/29/09 by Malwarebytes
# Running on Windows 8.1 Connected (X64)
# Mode: clean
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services deleted.

***** [ Folders ] *****

No malicious folders deleted.

***** [ Files ] *****

No malicious files deleted.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks deleted.

***** [ Registry ] *****

Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\akcniceny.cz
Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ceskedalnice.cz
Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\cloudfront.net
Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ostatni-stavebnice.heureka.cz
Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.akcniceny.cz
Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.ceskedalnice.cz
Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\zbozi.akcniceny.cz


***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries deleted.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries deleted.

*************************

::Tracing keys deleted
::Winsock settings cleared
::Additional Actions: 0



*************************

C:/AdwCleaner/AdwCleaner[S0].txt - [1710 B] - [2017/10/17 4:51:44]


########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt ##########

Re: problém přejmenovane soubory

Napsal: 17 říj 2017 16:55
od Rudy
Dejte nový log FRST.

Re: problém přejmenovane soubory

Napsal: 17 říj 2017 17:29
od tomX
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-10-2017
Ran by asusPC (administrator) on ASUS (17-10-2017 18:25:12)
Running from C:\Users\asusPC\Downloads
Loaded Profiles: asusPC (Available Profiles: asusPC)
Platform: Windows 8.1 Connected (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: "C:\Users\asusPC\AppData\Roaming\Seznam Browser\Seznam.cz.exe" -surl="%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\ASUSWSLoader.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Ghisler Software GmbH) C:\totalcmd\TOTALCMD64.EXE
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\ielowutil.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\ASUSWSLoader.exe [63272 2014-12-04] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [134784 2014-02-25] (Qualcomm®Atheros®)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9292504 2016-12-21] (Piriform Ltd)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [World of Tanks] => C:\Games\World_of_Tanks\WargamingGameUpdater.exe [3135752 2017-02-28] (Wargaming.net)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [World of Warships] => C:\Games\World_of_Warships\WargamingGameUpdater.exe [3136264 2017-09-19] (Wargaming.net)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 81.200.55.118 81.200.55.34
Tcpip\..\Interfaces\{5CC5D8E4-0FDC-450F-8547-9DC26EBC170D}: [DhcpNameServer] 81.200.55.118 81.200.55.34

Internet Explorer:
==================
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
BHO-x32: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)

FireFox:
========
FF ProfilePath: C:\Users\asusPC\AppData\Roaming\Mozilla\Firefox\Profiles\aIa3snDH.default [2017-10-11]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2017-07-20]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)

Chrome:
=======
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=C214CZ885D20160821&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Profile: C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default [2017-10-17]
CHR Extension: (Prezentace) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]
CHR Extension: (Dokumenty) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14]
CHR Extension: (Disk Google) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-15]
CHR Extension: (YouTube) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-15]
CHR Extension: (Avira Password Manager) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2017-10-11]
CHR Extension: (Tabulky) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2017-10-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-21]
CHR Extension: (AdBlock) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-10-09]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-30]
CHR Extension: (Gmail) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-03]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1128432 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [490968 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [490968 2017-10-12] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1525240 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe [71168 2014-12-04] (ASUS Cloud Corporation) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-02-25] (Windows (R) Win 7 DDK provider) [File not signed]
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [404816 2017-09-13] (Avira Operations GmbH & Co. KG)
R2 AviraUpdaterService; C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [102304 2017-08-31] (Avira Operations GmbH & Co. KG)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel(R) Corporation)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [590880 2017-09-06] (McAfee, Inc.)
S2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\Sh4Service.exe [889016 2017-10-17] (Enigma Software Group USA, LLC.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2014-02-25] (Atheros) [File not signed]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3892224 2014-03-06] (Qualcomm Atheros Communications, Inc.)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [71952 2014-03-31] (ASUS Corporation)
R0 avdevprot; C:\Windows\System32\DRIVERS\avdevprot.sys [60920 2017-06-17] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [176224 2017-10-04] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [167464 2017-09-14] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [44488 2017-03-22] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [88488 2017-03-22] (Avira Operations GmbH & Co. KG)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-02-25] (Qualcomm Atheros)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [15920 2017-10-17] (Enigma Software Group USA, LLC.)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2017-10-17] ()
R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [31232 2013-11-11] (Intel Corporation)
R3 iaioi2c; C:\Windows\System32\drivers\iaioi2ce.sys [67584 2013-11-11] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
R0 MBI; C:\Windows\System32\drivers\MBI.sys [29464 2013-10-28] (Intel Corporation)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [111608 2017-02-14] (McAfee, Inc.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation)
S3 e1edc438-f640-4184-a443-d2a7c37a01dc; \??\F:\WTP\bin\690b33e1-0462-4e84-9bea-c7552b45432a.sys [X]
U0 msahci; system32\drivers\msahci.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-17 09:32 - 2017-10-17 09:37 - 000000000 _RSHD C:\ProgramData\Key-Base
2017-10-17 09:32 - 2017-10-17 09:32 - 000001349 _____ C:\Users\asusPC\Desktop\Stellar Phoenix Windows Data Recovery.lnk
2017-10-17 09:32 - 2017-10-17 09:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stellar Phoenix Windows Data Recovery
2017-10-17 09:32 - 2017-10-17 09:32 - 000000000 ____D C:\ProgramData\{A4CDC72B-2036-DBEA-7306-39760E470D85}
2017-10-17 09:31 - 2017-10-17 09:32 - 000000000 ____D C:\Program Files (x86)\Stellar Phoenix Windows Data Recovery
2017-10-17 09:31 - 2017-10-17 09:31 - 016260568 _____ (Stellar Information Technology Pvt Ltd. ) C:\Users\asusPC\Downloads\StellarPhoenixWindowsDataRecovery-Free.exe
2017-10-17 08:22 - 2017-10-17 08:22 - 000000000 _____ C:\autoexec.bat
2017-10-17 08:21 - 2017-10-17 08:21 - 000003322 _____ C:\Windows\System32\Tasks\SpyHunter4Startup
2017-10-17 08:21 - 2017-10-17 08:21 - 000001105 _____ C:\Users\asusPC\Desktop\SpyHunter.lnk
2017-10-17 08:21 - 2017-10-17 08:21 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Enigma Software Group
2017-10-17 08:21 - 2017-10-17 08:21 - 000000000 ____D C:\sh4ldr
2017-10-17 08:20 - 2017-10-17 08:20 - 000022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys
2017-10-17 08:20 - 2017-10-17 08:20 - 000000000 ____D C:\Program Files\Enigma Software Group
2017-10-17 07:36 - 2017-10-17 07:36 - 005189808 _____ (Enigma Software Group USA, LLC.) C:\Users\asusPC\Downloads\SpyHunter-Installer.exe
2017-10-17 06:49 - 2017-10-17 06:51 - 000000000 ____D C:\AdwCleaner
2017-10-17 06:48 - 2017-10-17 06:49 - 008250832 _____ (Malwarebytes) C:\Users\asusPC\Downloads\adwcleaner_7.0.3.1.exe
2017-10-16 20:46 - 2017-10-16 20:47 - 000022560 _____ C:\Users\asusPC\Downloads\Addition.txt
2017-10-16 20:44 - 2017-10-17 18:26 - 000016009 _____ C:\Users\asusPC\Downloads\FRST.txt
2017-10-16 20:44 - 2017-10-17 18:25 - 000000000 ____D C:\FRST
2017-10-16 20:42 - 2017-10-16 20:42 - 002401792 _____ (Farbar) C:\Users\asusPC\Downloads\FRST64.exe
2017-10-16 20:35 - 2017-10-16 20:35 - 004987672 _____ (Ghisler Software GmbH) C:\Users\asusPC\Downloads\tcmd900ax64.exe
2017-10-16 20:35 - 2017-10-16 20:35 - 000000656 _____ C:\Users\asusPC\Desktop\Total Commander 64 bit.lnk
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\GHISLER
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Local\GHISLER
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\totalcmd
2017-10-16 19:57 - 2017-10-16 20:43 - 000000000 ____D C:\Program Files (x86)\FileASSASSIN
2017-10-16 19:56 - 2017-10-16 19:56 - 000167034 _____ C:\Users\asusPC\Downloads\fileassassin-setup-1.06.exe
2017-10-13 21:21 - 2017-10-13 21:21 - 000060161 _____ C:\Users\asusPC\Desktop\MiniPenzion Olomouc _Na Vyhlídce_ - Ubytování Olomouc.html
2017-10-13 21:21 - 2017-10-13 21:21 - 000000000 ____D C:\Users\asusPC\Desktop\MiniPenzion Olomouc _Na Vyhlídce_ - Ubytování Olomouc_files
2017-10-12 18:25 - 2017-10-12 18:25 - 000000844 _____ C:\Users\asusPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
2017-10-12 18:25 - 2017-10-12 18:25 - 000000796 _____ C:\Users\asusPC\Desktop\Start Tor Browser.lnk
2017-10-12 18:25 - 2017-10-12 18:25 - 000000000 ____D C:\Users\asusPC\Desktop\Tor Browser
2017-10-12 18:08 - 2017-10-12 18:08 - 000046706 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.rar
2017-10-12 18:04 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-67431E01-A89AFDEB3398.asasin
2017-10-12 18:04 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-67431E01-A89AFDEB3398 (1).asasin
2017-10-12 18:00 - 2017-10-12 18:00 - 013438432 _____ (ASUS Cloud Corporation) C:\Users\asusPC\Downloads\WebStorageSyncAgent2.2.17.591.exe
2017-10-12 17:58 - 2017-10-12 17:58 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Seznam Browser-e11754c0-5e40-494f-b134-eec0f8ff22cb
2017-10-11 20:52 - 2017-10-10 20:42 - 006484804 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0FBC7CE8-AA3B0446DB5C (1).asasin
2017-10-11 20:25 - 2017-10-10 21:05 - 005923652 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-2E70026E-5D3EEDFA1AFC.asasin
2017-10-11 20:10 - 2017-10-11 20:10 - 000000912 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2017-10-11 20:09 - 2017-10-11 20:10 - 000000000 ____D C:\Program Files\GIMP 2
2017-10-11 20:05 - 2017-10-10 20:42 - 006484804 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0FBC7CE8-AA3B0446DB5C.asasin
2017-10-11 20:01 - 2017-10-17 18:22 - 000000093 _____ C:\Users\asusPC\AppData\Roaming\sp_data.sys
2017-10-11 19:04 - 2017-10-11 19:04 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Seznam Browser-0cc6966c-6902-423b-b0c1-974e14a7928c
2017-10-11 19:02 - 2017-10-11 19:02 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Mozilla
2017-10-11 18:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C68329EA-C584B6D50393.asasin
2017-10-11 18:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C68329EA-C584B6D50393 (1).asasin
2017-10-11 18:26 - 2017-10-11 18:26 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2017-10-11 17:10 - 2017-09-14 21:30 - 007439704 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-10-11 17:10 - 2017-09-14 03:18 - 001384216 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2017-10-11 17:10 - 2017-09-14 03:14 - 001124384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2017-10-11 17:10 - 2017-09-09 20:53 - 022361864 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-10-11 17:10 - 2017-09-09 19:55 - 019790760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-10-11 17:10 - 2017-09-09 18:10 - 003631616 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-10-11 17:10 - 2017-09-09 17:49 - 002749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2017-10-11 17:10 - 2017-09-09 17:47 - 014466560 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2017-10-11 17:10 - 2017-09-09 17:21 - 012879360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-10-11 17:10 - 2017-09-09 05:50 - 002013016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2017-10-11 17:10 - 2017-09-09 05:50 - 001364552 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-10-11 17:10 - 2017-09-08 20:21 - 004168192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-10-11 17:10 - 2017-09-07 23:15 - 002902528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-10-11 17:10 - 2017-09-07 23:08 - 025729536 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-10-11 17:10 - 2017-09-07 22:40 - 005982208 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-10-11 17:10 - 2017-09-07 21:44 - 015262720 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-10-11 17:10 - 2017-09-07 21:40 - 003240960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-10-11 17:10 - 2017-09-07 21:27 - 001548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-10-11 17:10 - 2017-09-07 21:10 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-10-11 17:10 - 2017-09-07 21:04 - 020267008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-10-11 17:10 - 2017-09-07 21:03 - 002292736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-10-11 17:10 - 2017-09-07 20:58 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-10-11 17:10 - 2017-09-07 20:29 - 004547072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-10-11 17:10 - 2017-09-07 20:17 - 013677568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-10-11 17:10 - 2017-09-07 20:01 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-10-11 17:10 - 2017-09-07 19:57 - 001316864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-10-11 17:10 - 2017-08-11 04:20 - 001436672 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-10-11 17:09 - 2017-09-14 21:30 - 001737600 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-10-11 17:09 - 2017-09-14 21:29 - 001502000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-10-11 17:09 - 2017-09-13 15:32 - 000445952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2017-10-11 17:09 - 2017-09-13 15:31 - 000445952 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2017-10-11 17:09 - 2017-09-13 15:27 - 000384000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
2017-10-11 17:09 - 2017-09-09 19:38 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll
2017-10-11 17:09 - 2017-09-08 20:15 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2017-10-11 17:09 - 2017-09-08 19:39 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2017-10-11 17:09 - 2017-09-08 18:57 - 001084928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-10-11 17:09 - 2017-09-07 23:33 - 000686592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-10-11 17:09 - 2017-09-07 23:33 - 000415744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-10-11 17:09 - 2017-09-07 23:32 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-10-11 17:09 - 2017-09-07 23:32 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-10-11 17:09 - 2017-09-07 23:17 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-10-11 17:09 - 2017-09-07 23:17 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-10-11 17:09 - 2017-09-07 23:00 - 000817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-10-11 17:09 - 2017-09-07 22:32 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-10-11 17:09 - 2017-09-07 22:31 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2017-10-11 17:09 - 2017-09-07 22:29 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-10-11 17:09 - 2017-09-07 22:21 - 001033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2017-10-11 17:09 - 2017-09-07 22:13 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-10-11 17:09 - 2017-09-07 22:11 - 000380416 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-10-11 17:09 - 2017-09-07 22:10 - 000807936 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-10-11 17:09 - 2017-09-07 22:10 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-10-11 17:09 - 2017-09-07 22:08 - 002134528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-10-11 17:09 - 2017-09-07 22:08 - 000656896 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2017-10-11 17:09 - 2017-09-07 21:54 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2017-10-11 17:09 - 2017-09-07 21:17 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-10-11 17:09 - 2017-09-07 21:09 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-10-11 17:09 - 2017-09-07 20:39 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-10-11 17:09 - 2017-09-07 20:38 - 000128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2017-10-11 17:09 - 2017-09-07 20:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-10-11 17:09 - 2017-09-07 20:33 - 000880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2017-10-11 17:09 - 2017-09-07 20:29 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-10-11 17:09 - 2017-09-07 20:27 - 000331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-10-11 17:09 - 2017-09-07 20:26 - 000694784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-10-11 17:09 - 2017-09-07 20:25 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-10-11 17:09 - 2017-09-07 20:24 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2017-10-11 17:09 - 2017-09-07 19:57 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-10-11 17:09 - 2017-08-13 21:48 - 000202592 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2017-10-11 17:09 - 2017-08-13 19:52 - 000174944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2017-10-11 17:09 - 2017-08-13 19:10 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2017-10-11 17:09 - 2017-08-13 18:33 - 000252416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2017-10-11 17:09 - 2017-08-11 04:54 - 000445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-10-11 17:09 - 2017-08-11 04:22 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-10-11 17:09 - 2017-08-11 04:16 - 000275968 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll
2017-10-11 17:09 - 2017-08-11 03:57 - 000180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll
2017-10-11 17:09 - 2017-08-06 23:50 - 001080320 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2017-10-11 17:09 - 2017-08-06 23:20 - 000542720 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2017-10-11 17:09 - 2017-08-06 23:13 - 000713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2017-10-11 17:09 - 2017-08-06 09:08 - 000561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2017-10-11 17:09 - 2017-08-02 04:19 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2017-10-11 17:09 - 2017-08-01 10:25 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2017-10-10 20:56 - 2017-10-10 20:56 - 000262980 _____ C:\Users\Public\AIEAQWZW-F61G-KZC0-EA6B7D08-5FE9B4BE3C47.asasin
2017-10-10 20:56 - 2017-10-10 20:56 - 000008387 ____C C:\Users\Public\asasin-d042.htm
2017-10-10 20:51 - 2017-10-10 20:51 - 000046595 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.asasin
2017-10-10 20:44 - 2017-10-10 20:44 - 2310479016 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-2940A816-011991EF6300.asasin
2017-10-10 20:29 - 2017-10-10 20:29 - 260758688 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-1A0B435E-0B75F8B4631E.asasin
2017-10-10 20:29 - 2017-10-10 20:29 - 260510266 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D555A7A4-26C8BD8F83A3.asasin
2017-10-10 20:28 - 2017-10-10 20:28 - 478469622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-B0AFFF7D-E141E9D5DB08.asasin
2017-10-10 20:28 - 2017-10-10 20:28 - 260458514 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-BA81E978-DB9267F30E02.asasin
2017-10-10 20:25 - 2017-10-10 20:25 - 502556704 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-6555B24F-5A9C61C8DB65.asasin
2017-10-10 20:25 - 2017-10-10 20:25 - 485265838 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-45BB885A-6C4E9810D2AF.asasin
2017-10-10 20:23 - 2017-10-10 20:23 - 851565340 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-88E022C0-4F086181BFF8.asasin
2017-10-10 20:18 - 2017-10-10 20:18 - 309045714 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-AB087A3B-065416C02003.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 089211716 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-FA72D884-D1C05E110191.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 088826692 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-4050052A-AA22ECF05D89.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 013749760 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-ADEA8632-A4E10A9C4433.asasin
2017-10-10 20:11 - 2017-10-10 20:11 - 043784988 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-69F61F69-339C9F4979D6.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 018469700 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D57BA12E-111972A99E33.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 018469700 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D40E72A6-4D5CBAFB8698.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-A0BA3FF6-7267F3A0F027.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-6D767C4B-832A3434492D.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-65F78230-6E5BBF8DFBA8.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-3DFC1C8A-5CC8A037D697.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003922173 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-FDC23295-508F65B1F6EE.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003922173 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-4195A501-F94707AD73A8.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003842342 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C1CF6F97-D16A826E0DE1.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003842342 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-29FC5FF0-D976A2B733CC.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003421987 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-76E00416-C9F49830A66D.asasin
2017-10-10 20:04 - 2017-10-10 20:04 - 009027055 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-EA235E78-D473D6085F14.asasin
2017-10-10 20:04 - 2017-10-10 20:04 - 008413103 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-F4AA99D1-9AF3E17281D8.asasin
2017-10-10 20:02 - 2017-10-10 20:02 - 004587608 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-96D60EDA-9F4061D4AA63.asasin
2017-10-10 20:02 - 2017-10-10 20:02 - 002515522 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-B781493F-8B88F43F8F20.asasin
2017-10-10 19:56 - 2017-10-10 19:56 - 003906655 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-395298EB-A062D3C5058F.asasin
2017-10-10 19:55 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Desktop\pokus 1.asasin
2017-10-10 19:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Desktop\pokus 1 (2).asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000008387 ____C C:\ProgramData\asasin-5477.htm
2017-10-10 19:50 - 2017-10-10 19:50 - 000001092 _____ C:\ProgramData\AIEAQWZW-F61G-KZC0-204340C4-C19636FE4096.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000000939 _____ C:\ProgramData\AIEAQWZW-F61G-KZC0-69962ACF-374D7F483013.asasin
2017-10-10 19:49 - 2017-10-12 16:14 - 000050166 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-BE51FDD4-73086C71E788.7p
2017-10-10 19:49 - 2017-10-10 19:49 - 004763460 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-5626676F-69D6B577D42D.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 001336645 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-DEF7FA75-618DB36294FB.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 001336645 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-74E34AFD-F5F13324D7D0.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000925998 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D2F18EC0-29547CC3FBDF.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000896650 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-9C325403-F13A0B660F4B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000370113 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C5C2DFC2-238EE22796C0.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000152485 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-74EAC23A-72D4DE7E564B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-12DD66CE-82D1C72BC1E8.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-11E40086-DE1C451DF9C8.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-10206629-8B5EC4D83D4F.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000057316 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-8D59FCB4-99EF00F7958E.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000039791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-BF7DB4AE-9B84E56EBE6A.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000030400 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0861B6CD-CE93DEC5D2DD.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000020376 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-DBF1AA39-A0BB2778589B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000018524 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0328222D-3CF3F9BEBDC2.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000011512 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-3BE4D554-890F3E0376BA.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000011512 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-085ABF7D-B7C53F3194AB.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000008387 ____C C:\Users\asusPC\Downloads\asasin-1604.htm
2017-10-10 19:49 - 2017-10-10 19:49 - 000008387 ____C C:\Users\asusPC\Desktop\asasin-b2b9.htm
2017-10-10 19:49 - 2017-10-10 19:49 - 000006950 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-AF94F2A7-C698585FC9CA.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000006950 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-30A60D12-ECADED8C56D3.asasin
2017-10-04 19:08 - 2017-10-04 19:08 - 000000000 ____D C:\Users\asusPC\Desktop\Nová složka (2)
2017-10-04 19:05 - 2017-10-04 19:05 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet (2).exe
2017-10-04 19:05 - 2017-10-04 19:05 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet (1).exe
2017-10-04 19:04 - 2017-10-04 19:04 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet.exe
2017-10-04 01:57 - 2017-10-04 01:57 - 000003292 _____ C:\Windows\System32\Tasks\Avira_Antivirus_Systray
2017-09-28 17:05 - 2017-09-28 17:05 - 000003122 _____ C:\Windows\System32\Tasks\Avira SystrayStartTrigger
2017-09-28 17:05 - 2017-09-28 17:05 - 000001134 _____ C:\Users\Public\Desktop\Avira.lnk
2017-09-25 09:52 - 2017-10-10 20:51 - 000000000 ____D C:\Users\asusPC\Desktop\iZUŠ _ Přihláška do ZUŠ_files

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-17 18:26 - 2016-08-12 13:18 - 000003958 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{44B9CC47-EEB0-452A-B671-6DAAE07AF0AD}
2017-10-17 18:25 - 2016-09-13 18:20 - 000003480 _____ C:\Windows\System32\Tasks\ASUS Live Update1
2017-10-17 18:25 - 2016-09-02 19:00 - 000003470 _____ C:\Windows\System32\Tasks\ASUS Live Update2
2017-10-17 09:37 - 2016-08-08 08:09 - 000003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-530502146-3304040069-2869220945-1001
2017-10-17 08:21 - 2016-08-08 08:02 - 000000000 ____D C:\Users\asusPC
2017-10-17 06:56 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-10-16 19:33 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2017-10-15 19:50 - 2016-09-04 13:23 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\vlc
2017-10-15 12:50 - 2016-09-04 13:23 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\dvdcss
2017-10-12 19:31 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\rescache
2017-10-12 18:34 - 2013-08-22 16:44 - 000362520 _____ C:\Windows\system32\FNTCACHE.DAT
2017-10-12 18:31 - 2013-08-22 17:36 - 000000000 ___RD C:\Windows\ToastData
2017-10-12 18:31 - 2013-08-22 17:20 - 000000000 ____D C:\Windows\CbsTemp
2017-10-12 18:11 - 2016-08-15 14:56 - 000001084 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-10-12 18:02 - 2016-08-21 20:41 - 000000000 ____D C:\Users\asusPC\AppData\Local\CrashDumps
2017-10-12 18:02 - 2016-08-15 15:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-10-11 19:04 - 2016-08-15 15:13 - 000000000 ____D C:\ProgramData\Avira
2017-10-11 19:04 - 2016-08-15 15:13 - 000000000 ____D C:\Program Files (x86)\Avira
2017-10-11 18:43 - 2015-04-26 19:44 - 000740822 _____ C:\Windows\system32\perfh005.dat
2017-10-11 18:43 - 2015-04-26 19:44 - 000151948 _____ C:\Windows\system32\perfc005.dat
2017-10-11 18:43 - 2014-11-21 01:09 - 001748728 _____ C:\Windows\system32\PerfStringBackup.INI
2017-10-11 18:31 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2017-10-11 18:30 - 2016-08-21 23:13 - 000000000 ____D C:\Windows\system32\MRT
2017-10-11 18:26 - 2016-08-21 23:13 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-10-10 20:56 - 2017-01-11 21:59 - 000000000 ____D C:\Users\asusPC\Desktop\bradavice
2017-10-10 20:51 - 2017-06-14 11:38 - 000000000 ____D C:\Users\asusPC\Desktop\E SHOP OUTDOOR SPORT - Bufo Outdoor Sport_files
2017-10-10 20:45 - 2016-10-03 13:07 - 000000000 ____D C:\Users\asusPC\Desktop\filmy pohadky
2017-10-10 20:45 - 2016-08-05 15:20 - 000000000 ____D C:\ProgramData\Qualcomm Atheros
2017-10-10 20:45 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\ASUS WebStorage
2017-10-10 20:44 - 2016-08-08 08:05 - 000000000 ____D C:\ProgramData\USBChargerPlus
2017-10-10 20:44 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\WebStorage
2017-10-10 20:31 - 2017-07-31 21:45 - 000000000 ____D C:\Users\asusPC\Desktop\navigace
2017-10-10 20:30 - 2016-10-10 13:05 - 000000000 ____D C:\Users\asusPC\Desktop\OVEČKA SHAUN
2017-10-10 20:16 - 2016-10-10 13:27 - 000000000 ____D C:\Users\asusPC\Desktop\hudba
2017-10-10 20:00 - 2016-10-03 20:23 - 000000000 ____D C:\Users\asusPC\Desktop\k vyvoláí
2017-10-10 19:53 - 2015-04-26 12:02 - 000000000 ____D C:\ProgramData\ASUSLogos
2017-10-10 19:49 - 2017-06-29 22:00 - 000000000 ____D C:\Users\asusPC\Downloads\Nová složka
2017-10-10 19:49 - 2016-10-03 13:10 - 000000000 ____D C:\Users\asusPC\Desktop\fotky
2017-10-04 20:35 - 2017-04-26 21:20 - 000135680 ___SH C:\Users\asusPC\Downloads\Thumbs.db
2017-10-04 01:56 - 2016-08-15 15:13 - 000176224 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2017-10-01 20:22 - 2016-08-05 15:28 - 000000000 ____D C:\Program Files (x86)\McAfee
2017-09-28 17:05 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\Package Cache
2017-09-27 18:04 - 2016-08-15 14:53 - 000002217 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-09-27 18:04 - 2016-08-15 14:53 - 000002205 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-09-22 16:50 - 2013-08-22 17:36 - 000000000 ___HD C:\Program Files\WindowsApps
2017-09-22 16:50 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\AppReadiness

==================== Files in the root of some directories =======

2017-10-11 20:01 - 2017-10-17 18:22 - 000000093 _____ () C:\Users\asusPC\AppData\Roaming\sp_data.sys
2017-10-10 19:50 - 2017-10-10 19:50 - 000001092 _____ () C:\ProgramData\AIEAQWZW-F61G-KZC0-204340C4-C19636FE4096.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000000939 _____ () C:\ProgramData\AIEAQWZW-F61G-KZC0-69962ACF-374D7F483013.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000008387 ____C () C:\ProgramData\asasin-5477.htm
2016-08-05 15:14 - 2016-08-05 15:14 - 000000000 ____H () C:\ProgramData\DP45977C.lfl
2015-04-26 12:02 - 2012-09-07 13:40 - 000000256 _____ () C:\ProgramData\SetStretch.cmd
2015-04-26 12:02 - 2009-07-22 12:04 - 000024576 _____ () C:\ProgramData\SetStretch.exe
2015-04-26 12:02 - 2012-09-07 13:37 - 000000103 _____ () C:\ProgramData\SetStretch.VBS

Some files in TEMP:
====================
2017-10-12 18:10 - 2017-10-12 18:10 - 030950664 _____ () C:\Users\asusPC\AppData\Local\Temp\vlc-2.2.6-win32.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-10-15 09:09

==================== End of FRST.txt ============================

Re: problém přejmenovane soubory

Napsal: 17 říj 2017 18:26
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
S3 e1edc438-f640-4184-a443-d2a7c37a01dc; \??\F:\WTP\bin\690b33e1-0462-4e84-9bea-c7552b45432a.sys [X]
C:\ProgramData\DP45977C.lfl
C:\ProgramData\SetStretch.VBS
C:\Users\asusPC\AppData\Local\Temp

EmptyTemp:
End
Uložte do C:\Users\asusPC\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: problém přejmenovane soubory

Napsal: 17 říj 2017 19:35
od tomX
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-10-2017
Ran by asusPC (administrator) on ASUS (17-10-2017 20:29:18)
Running from C:\Users\asusPC\Downloads
Loaded Profiles: asusPC (Available Profiles: asusPC)
Platform: Windows 8.1 Connected (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: "C:\Users\asusPC\AppData\Roaming\Seznam Browser\Seznam.cz.exe" -surl="%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
() C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\ASUSWSLoader.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\ASUSWSLoader.exe [63272 2014-12-04] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [134784 2014-02-25] (Qualcomm®Atheros®)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9292504 2016-12-21] (Piriform Ltd)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [World of Tanks] => C:\Games\World_of_Tanks\WargamingGameUpdater.exe [3135752 2017-02-28] (Wargaming.net)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [World of Warships] => C:\Games\World_of_Warships\WargamingGameUpdater.exe [3136264 2017-09-19] (Wargaming.net)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 81.200.55.118 81.200.55.34
Tcpip\..\Interfaces\{5CC5D8E4-0FDC-450F-8547-9DC26EBC170D}: [DhcpNameServer] 81.200.55.118 81.200.55.34

Internet Explorer:
==================
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
BHO-x32: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)

FireFox:
========
FF ProfilePath: C:\Users\asusPC\AppData\Roaming\Mozilla\Firefox\Profiles\aIa3snDH.default [2017-10-11]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2017-07-20]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)

Chrome:
=======
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=C214CZ885D20160821&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Profile: C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default [2017-10-17]
CHR Extension: (Prezentace) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]
CHR Extension: (Dokumenty) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14]
CHR Extension: (Disk Google) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-15]
CHR Extension: (YouTube) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-15]
CHR Extension: (Avira Password Manager) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2017-10-11]
CHR Extension: (Tabulky) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2017-10-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-21]
CHR Extension: (AdBlock) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-10-09]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-30]
CHR Extension: (Gmail) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-03]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1128432 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [490968 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [490968 2017-10-12] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1525240 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe [71168 2014-12-04] (ASUS Cloud Corporation) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-02-25] (Windows (R) Win 7 DDK provider) [File not signed]
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [404816 2017-09-13] (Avira Operations GmbH & Co. KG)
R2 AviraUpdaterService; C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [102304 2017-08-31] (Avira Operations GmbH & Co. KG)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel(R) Corporation)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [590880 2017-09-06] (McAfee, Inc.)
S2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\Sh4Service.exe [889016 2017-10-17] (Enigma Software Group USA, LLC.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2014-02-25] (Atheros) [File not signed]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3892224 2014-03-06] (Qualcomm Atheros Communications, Inc.)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [71952 2014-03-31] (ASUS Corporation)
R0 avdevprot; C:\Windows\System32\DRIVERS\avdevprot.sys [60920 2017-06-17] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [176224 2017-10-04] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [167464 2017-09-14] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [44488 2017-03-22] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [88488 2017-03-22] (Avira Operations GmbH & Co. KG)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-02-25] (Qualcomm Atheros)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [15920 2017-10-17] (Enigma Software Group USA, LLC.)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2017-10-17] ()
R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [31232 2013-11-11] (Intel Corporation)
R3 iaioi2c; C:\Windows\System32\drivers\iaioi2ce.sys [67584 2013-11-11] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
R0 MBI; C:\Windows\System32\drivers\MBI.sys [29464 2013-10-28] (Intel Corporation)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [111608 2017-02-14] (McAfee, Inc.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation)
U0 msahci; system32\drivers\msahci.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-17 20:24 - 2017-10-17 20:25 - 000002248 _____ C:\Users\asusPC\Downloads\Fixlog.txt
2017-10-17 09:32 - 2017-10-17 09:37 - 000000000 _RSHD C:\ProgramData\Key-Base
2017-10-17 09:32 - 2017-10-17 09:32 - 000001349 _____ C:\Users\asusPC\Desktop\Stellar Phoenix Windows Data Recovery.lnk
2017-10-17 09:32 - 2017-10-17 09:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stellar Phoenix Windows Data Recovery
2017-10-17 09:32 - 2017-10-17 09:32 - 000000000 ____D C:\ProgramData\{A4CDC72B-2036-DBEA-7306-39760E470D85}
2017-10-17 09:31 - 2017-10-17 09:32 - 000000000 ____D C:\Program Files (x86)\Stellar Phoenix Windows Data Recovery
2017-10-17 09:31 - 2017-10-17 09:31 - 016260568 _____ (Stellar Information Technology Pvt Ltd. ) C:\Users\asusPC\Downloads\StellarPhoenixWindowsDataRecovery-Free.exe
2017-10-17 08:22 - 2017-10-17 08:22 - 000000000 _____ C:\autoexec.bat
2017-10-17 08:21 - 2017-10-17 08:21 - 000003322 _____ C:\Windows\System32\Tasks\SpyHunter4Startup
2017-10-17 08:21 - 2017-10-17 08:21 - 000001105 _____ C:\Users\asusPC\Desktop\SpyHunter.lnk
2017-10-17 08:21 - 2017-10-17 08:21 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Enigma Software Group
2017-10-17 08:21 - 2017-10-17 08:21 - 000000000 ____D C:\sh4ldr
2017-10-17 08:20 - 2017-10-17 08:20 - 000022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys
2017-10-17 08:20 - 2017-10-17 08:20 - 000000000 ____D C:\Program Files\Enigma Software Group
2017-10-17 07:36 - 2017-10-17 07:36 - 005189808 _____ (Enigma Software Group USA, LLC.) C:\Users\asusPC\Downloads\SpyHunter-Installer.exe
2017-10-17 06:49 - 2017-10-17 06:51 - 000000000 ____D C:\AdwCleaner
2017-10-17 06:48 - 2017-10-17 06:49 - 008250832 _____ (Malwarebytes) C:\Users\asusPC\Downloads\adwcleaner_7.0.3.1.exe
2017-10-16 20:46 - 2017-10-17 18:28 - 000023744 _____ C:\Users\asusPC\Downloads\Addition.txt
2017-10-16 20:44 - 2017-10-17 20:30 - 000015335 _____ C:\Users\asusPC\Downloads\FRST.txt
2017-10-16 20:44 - 2017-10-17 20:29 - 000000000 ____D C:\FRST
2017-10-16 20:42 - 2017-10-16 20:42 - 002401792 _____ (Farbar) C:\Users\asusPC\Downloads\FRST64.exe
2017-10-16 20:35 - 2017-10-16 20:35 - 004987672 _____ (Ghisler Software GmbH) C:\Users\asusPC\Downloads\tcmd900ax64.exe
2017-10-16 20:35 - 2017-10-16 20:35 - 000000656 _____ C:\Users\asusPC\Desktop\Total Commander 64 bit.lnk
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\GHISLER
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Local\GHISLER
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\totalcmd
2017-10-16 19:57 - 2017-10-16 20:43 - 000000000 ____D C:\Program Files (x86)\FileASSASSIN
2017-10-16 19:56 - 2017-10-16 19:56 - 000167034 _____ C:\Users\asusPC\Downloads\fileassassin-setup-1.06.exe
2017-10-13 21:21 - 2017-10-13 21:21 - 000060161 _____ C:\Users\asusPC\Desktop\MiniPenzion Olomouc _Na Vyhlídce_ - Ubytování Olomouc.html
2017-10-13 21:21 - 2017-10-13 21:21 - 000000000 ____D C:\Users\asusPC\Desktop\MiniPenzion Olomouc _Na Vyhlídce_ - Ubytování Olomouc_files
2017-10-12 18:25 - 2017-10-12 18:25 - 000000844 _____ C:\Users\asusPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
2017-10-12 18:25 - 2017-10-12 18:25 - 000000796 _____ C:\Users\asusPC\Desktop\Start Tor Browser.lnk
2017-10-12 18:25 - 2017-10-12 18:25 - 000000000 ____D C:\Users\asusPC\Desktop\Tor Browser
2017-10-12 18:08 - 2017-10-12 18:08 - 000046706 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.rar
2017-10-12 18:04 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-67431E01-A89AFDEB3398.asasin
2017-10-12 18:04 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-67431E01-A89AFDEB3398 (1).asasin
2017-10-12 18:00 - 2017-10-12 18:00 - 013438432 _____ (ASUS Cloud Corporation) C:\Users\asusPC\Downloads\WebStorageSyncAgent2.2.17.591.exe
2017-10-12 17:58 - 2017-10-12 17:58 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Seznam Browser-e11754c0-5e40-494f-b134-eec0f8ff22cb
2017-10-11 20:52 - 2017-10-10 20:42 - 006484804 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0FBC7CE8-AA3B0446DB5C (1).asasin
2017-10-11 20:25 - 2017-10-10 21:05 - 005923652 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-2E70026E-5D3EEDFA1AFC.asasin
2017-10-11 20:10 - 2017-10-11 20:10 - 000000912 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2017-10-11 20:09 - 2017-10-11 20:10 - 000000000 ____D C:\Program Files\GIMP 2
2017-10-11 20:05 - 2017-10-10 20:42 - 006484804 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0FBC7CE8-AA3B0446DB5C.asasin
2017-10-11 20:01 - 2017-10-17 20:27 - 000000093 _____ C:\Users\asusPC\AppData\Roaming\sp_data.sys
2017-10-11 19:04 - 2017-10-11 19:04 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Seznam Browser-0cc6966c-6902-423b-b0c1-974e14a7928c
2017-10-11 19:02 - 2017-10-11 19:02 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Mozilla
2017-10-11 18:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C68329EA-C584B6D50393.asasin
2017-10-11 18:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C68329EA-C584B6D50393 (1).asasin
2017-10-11 18:26 - 2017-10-11 18:26 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2017-10-11 17:10 - 2017-09-14 21:30 - 007439704 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-10-11 17:10 - 2017-09-14 03:18 - 001384216 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2017-10-11 17:10 - 2017-09-14 03:14 - 001124384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2017-10-11 17:10 - 2017-09-09 20:53 - 022361864 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-10-11 17:10 - 2017-09-09 19:55 - 019790760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-10-11 17:10 - 2017-09-09 18:10 - 003631616 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-10-11 17:10 - 2017-09-09 17:49 - 002749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2017-10-11 17:10 - 2017-09-09 17:47 - 014466560 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2017-10-11 17:10 - 2017-09-09 17:21 - 012879360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-10-11 17:10 - 2017-09-09 05:50 - 002013016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2017-10-11 17:10 - 2017-09-09 05:50 - 001364552 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-10-11 17:10 - 2017-09-08 20:21 - 004168192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-10-11 17:10 - 2017-09-07 23:15 - 002902528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-10-11 17:10 - 2017-09-07 23:08 - 025729536 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-10-11 17:10 - 2017-09-07 22:40 - 005982208 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-10-11 17:10 - 2017-09-07 21:44 - 015262720 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-10-11 17:10 - 2017-09-07 21:40 - 003240960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-10-11 17:10 - 2017-09-07 21:27 - 001548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-10-11 17:10 - 2017-09-07 21:10 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-10-11 17:10 - 2017-09-07 21:04 - 020267008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-10-11 17:10 - 2017-09-07 21:03 - 002292736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-10-11 17:10 - 2017-09-07 20:58 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-10-11 17:10 - 2017-09-07 20:29 - 004547072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-10-11 17:10 - 2017-09-07 20:17 - 013677568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-10-11 17:10 - 2017-09-07 20:01 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-10-11 17:10 - 2017-09-07 19:57 - 001316864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-10-11 17:10 - 2017-08-11 04:20 - 001436672 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-10-11 17:09 - 2017-09-14 21:30 - 001737600 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-10-11 17:09 - 2017-09-14 21:29 - 001502000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-10-11 17:09 - 2017-09-13 15:32 - 000445952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2017-10-11 17:09 - 2017-09-13 15:31 - 000445952 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2017-10-11 17:09 - 2017-09-13 15:27 - 000384000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
2017-10-11 17:09 - 2017-09-09 19:38 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll
2017-10-11 17:09 - 2017-09-08 20:15 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2017-10-11 17:09 - 2017-09-08 19:39 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2017-10-11 17:09 - 2017-09-08 18:57 - 001084928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-10-11 17:09 - 2017-09-07 23:33 - 000686592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-10-11 17:09 - 2017-09-07 23:33 - 000415744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-10-11 17:09 - 2017-09-07 23:32 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-10-11 17:09 - 2017-09-07 23:32 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-10-11 17:09 - 2017-09-07 23:17 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-10-11 17:09 - 2017-09-07 23:17 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-10-11 17:09 - 2017-09-07 23:00 - 000817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-10-11 17:09 - 2017-09-07 22:32 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-10-11 17:09 - 2017-09-07 22:31 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2017-10-11 17:09 - 2017-09-07 22:29 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-10-11 17:09 - 2017-09-07 22:21 - 001033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2017-10-11 17:09 - 2017-09-07 22:13 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-10-11 17:09 - 2017-09-07 22:11 - 000380416 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-10-11 17:09 - 2017-09-07 22:10 - 000807936 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-10-11 17:09 - 2017-09-07 22:10 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-10-11 17:09 - 2017-09-07 22:08 - 002134528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-10-11 17:09 - 2017-09-07 22:08 - 000656896 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2017-10-11 17:09 - 2017-09-07 21:54 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2017-10-11 17:09 - 2017-09-07 21:17 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-10-11 17:09 - 2017-09-07 21:09 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-10-11 17:09 - 2017-09-07 20:39 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-10-11 17:09 - 2017-09-07 20:38 - 000128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2017-10-11 17:09 - 2017-09-07 20:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-10-11 17:09 - 2017-09-07 20:33 - 000880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2017-10-11 17:09 - 2017-09-07 20:29 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-10-11 17:09 - 2017-09-07 20:27 - 000331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-10-11 17:09 - 2017-09-07 20:26 - 000694784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-10-11 17:09 - 2017-09-07 20:25 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-10-11 17:09 - 2017-09-07 20:24 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2017-10-11 17:09 - 2017-09-07 19:57 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-10-11 17:09 - 2017-08-13 21:48 - 000202592 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2017-10-11 17:09 - 2017-08-13 19:52 - 000174944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2017-10-11 17:09 - 2017-08-13 19:10 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2017-10-11 17:09 - 2017-08-13 18:33 - 000252416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2017-10-11 17:09 - 2017-08-11 04:54 - 000445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-10-11 17:09 - 2017-08-11 04:22 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-10-11 17:09 - 2017-08-11 04:16 - 000275968 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll
2017-10-11 17:09 - 2017-08-11 03:57 - 000180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll
2017-10-11 17:09 - 2017-08-06 23:50 - 001080320 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2017-10-11 17:09 - 2017-08-06 23:20 - 000542720 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2017-10-11 17:09 - 2017-08-06 23:13 - 000713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2017-10-11 17:09 - 2017-08-06 09:08 - 000561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2017-10-11 17:09 - 2017-08-02 04:19 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2017-10-11 17:09 - 2017-08-01 10:25 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2017-10-10 20:56 - 2017-10-10 20:56 - 000262980 _____ C:\Users\Public\AIEAQWZW-F61G-KZC0-EA6B7D08-5FE9B4BE3C47.asasin
2017-10-10 20:56 - 2017-10-10 20:56 - 000008387 ____C C:\Users\Public\asasin-d042.htm
2017-10-10 20:51 - 2017-10-10 20:51 - 000046595 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.asasin
2017-10-10 20:44 - 2017-10-10 20:44 - 2310479016 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-2940A816-011991EF6300.asasin
2017-10-10 20:29 - 2017-10-10 20:29 - 260758688 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-1A0B435E-0B75F8B4631E.asasin
2017-10-10 20:29 - 2017-10-10 20:29 - 260510266 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D555A7A4-26C8BD8F83A3.asasin
2017-10-10 20:28 - 2017-10-10 20:28 - 478469622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-B0AFFF7D-E141E9D5DB08.asasin
2017-10-10 20:28 - 2017-10-10 20:28 - 260458514 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-BA81E978-DB9267F30E02.asasin
2017-10-10 20:25 - 2017-10-10 20:25 - 502556704 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-6555B24F-5A9C61C8DB65.asasin
2017-10-10 20:25 - 2017-10-10 20:25 - 485265838 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-45BB885A-6C4E9810D2AF.asasin
2017-10-10 20:23 - 2017-10-10 20:23 - 851565340 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-88E022C0-4F086181BFF8.asasin
2017-10-10 20:18 - 2017-10-10 20:18 - 309045714 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-AB087A3B-065416C02003.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 089211716 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-FA72D884-D1C05E110191.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 088826692 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-4050052A-AA22ECF05D89.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 013749760 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-ADEA8632-A4E10A9C4433.asasin
2017-10-10 20:11 - 2017-10-10 20:11 - 043784988 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-69F61F69-339C9F4979D6.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 018469700 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D57BA12E-111972A99E33.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 018469700 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D40E72A6-4D5CBAFB8698.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-A0BA3FF6-7267F3A0F027.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-6D767C4B-832A3434492D.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-65F78230-6E5BBF8DFBA8.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-3DFC1C8A-5CC8A037D697.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003922173 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-FDC23295-508F65B1F6EE.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003922173 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-4195A501-F94707AD73A8.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003842342 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C1CF6F97-D16A826E0DE1.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003842342 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-29FC5FF0-D976A2B733CC.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003421987 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-76E00416-C9F49830A66D.asasin
2017-10-10 20:04 - 2017-10-10 20:04 - 009027055 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-EA235E78-D473D6085F14.asasin
2017-10-10 20:04 - 2017-10-10 20:04 - 008413103 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-F4AA99D1-9AF3E17281D8.asasin
2017-10-10 20:02 - 2017-10-10 20:02 - 004587608 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-96D60EDA-9F4061D4AA63.asasin
2017-10-10 20:02 - 2017-10-10 20:02 - 002515522 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-B781493F-8B88F43F8F20.asasin
2017-10-10 19:56 - 2017-10-10 19:56 - 003906655 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-395298EB-A062D3C5058F.asasin
2017-10-10 19:55 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Desktop\pokus 1.asasin
2017-10-10 19:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Desktop\pokus 1 (2).asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000008387 ____C C:\ProgramData\asasin-5477.htm
2017-10-10 19:50 - 2017-10-10 19:50 - 000001092 _____ C:\ProgramData\AIEAQWZW-F61G-KZC0-204340C4-C19636FE4096.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000000939 _____ C:\ProgramData\AIEAQWZW-F61G-KZC0-69962ACF-374D7F483013.asasin
2017-10-10 19:49 - 2017-10-12 16:14 - 000050166 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-BE51FDD4-73086C71E788.7p
2017-10-10 19:49 - 2017-10-10 19:49 - 004763460 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-5626676F-69D6B577D42D.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 001336645 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-DEF7FA75-618DB36294FB.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 001336645 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-74E34AFD-F5F13324D7D0.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000925998 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D2F18EC0-29547CC3FBDF.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000896650 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-9C325403-F13A0B660F4B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000370113 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C5C2DFC2-238EE22796C0.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000152485 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-74EAC23A-72D4DE7E564B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-12DD66CE-82D1C72BC1E8.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-11E40086-DE1C451DF9C8.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-10206629-8B5EC4D83D4F.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000057316 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-8D59FCB4-99EF00F7958E.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000039791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-BF7DB4AE-9B84E56EBE6A.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000030400 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0861B6CD-CE93DEC5D2DD.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000020376 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-DBF1AA39-A0BB2778589B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000018524 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0328222D-3CF3F9BEBDC2.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000011512 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-3BE4D554-890F3E0376BA.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000011512 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-085ABF7D-B7C53F3194AB.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000008387 ____C C:\Users\asusPC\Downloads\asasin-1604.htm
2017-10-10 19:49 - 2017-10-10 19:49 - 000008387 ____C C:\Users\asusPC\Desktop\asasin-b2b9.htm
2017-10-10 19:49 - 2017-10-10 19:49 - 000006950 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-AF94F2A7-C698585FC9CA.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000006950 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-30A60D12-ECADED8C56D3.asasin
2017-10-04 19:08 - 2017-10-04 19:08 - 000000000 ____D C:\Users\asusPC\Desktop\Nová složka (2)
2017-10-04 19:05 - 2017-10-04 19:05 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet (2).exe
2017-10-04 19:05 - 2017-10-04 19:05 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet (1).exe
2017-10-04 19:04 - 2017-10-04 19:04 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet.exe
2017-10-04 01:57 - 2017-10-04 01:57 - 000003292 _____ C:\Windows\System32\Tasks\Avira_Antivirus_Systray
2017-09-28 17:05 - 2017-09-28 17:05 - 000003122 _____ C:\Windows\System32\Tasks\Avira SystrayStartTrigger
2017-09-28 17:05 - 2017-09-28 17:05 - 000001134 _____ C:\Users\Public\Desktop\Avira.lnk
2017-09-25 09:52 - 2017-10-10 20:51 - 000000000 ____D C:\Users\asusPC\Desktop\iZUŠ _ Přihláška do ZUŠ_files

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-17 20:30 - 2016-09-13 18:20 - 000003480 _____ C:\Windows\System32\Tasks\ASUS Live Update1
2017-10-17 20:30 - 2016-09-02 19:00 - 000003470 _____ C:\Windows\System32\Tasks\ASUS Live Update2
2017-10-17 20:26 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-10-17 18:27 - 2016-08-08 08:09 - 000003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-530502146-3304040069-2869220945-1001
2017-10-17 18:26 - 2016-08-12 13:18 - 000003958 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{44B9CC47-EEB0-452A-B671-6DAAE07AF0AD}
2017-10-17 08:21 - 2016-08-08 08:02 - 000000000 ____D C:\Users\asusPC
2017-10-16 19:33 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2017-10-15 19:50 - 2016-09-04 13:23 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\vlc
2017-10-15 12:50 - 2016-09-04 13:23 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\dvdcss
2017-10-12 19:31 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\rescache
2017-10-12 18:34 - 2013-08-22 16:44 - 000362520 _____ C:\Windows\system32\FNTCACHE.DAT
2017-10-12 18:31 - 2013-08-22 17:36 - 000000000 ___RD C:\Windows\ToastData
2017-10-12 18:31 - 2013-08-22 17:20 - 000000000 ____D C:\Windows\CbsTemp
2017-10-12 18:11 - 2016-08-15 14:56 - 000001084 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-10-12 18:02 - 2016-08-21 20:41 - 000000000 ____D C:\Users\asusPC\AppData\Local\CrashDumps
2017-10-12 18:02 - 2016-08-15 15:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-10-11 19:04 - 2016-08-15 15:13 - 000000000 ____D C:\ProgramData\Avira
2017-10-11 19:04 - 2016-08-15 15:13 - 000000000 ____D C:\Program Files (x86)\Avira
2017-10-11 18:43 - 2015-04-26 19:44 - 000740822 _____ C:\Windows\system32\perfh005.dat
2017-10-11 18:43 - 2015-04-26 19:44 - 000151948 _____ C:\Windows\system32\perfc005.dat
2017-10-11 18:43 - 2014-11-21 01:09 - 001748728 _____ C:\Windows\system32\PerfStringBackup.INI
2017-10-11 18:31 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2017-10-11 18:30 - 2016-08-21 23:13 - 000000000 ____D C:\Windows\system32\MRT
2017-10-11 18:26 - 2016-08-21 23:13 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-10-10 20:56 - 2017-01-11 21:59 - 000000000 ____D C:\Users\asusPC\Desktop\bradavice
2017-10-10 20:51 - 2017-06-14 11:38 - 000000000 ____D C:\Users\asusPC\Desktop\E SHOP OUTDOOR SPORT - Bufo Outdoor Sport_files
2017-10-10 20:45 - 2016-10-03 13:07 - 000000000 ____D C:\Users\asusPC\Desktop\filmy pohadky
2017-10-10 20:45 - 2016-08-05 15:20 - 000000000 ____D C:\ProgramData\Qualcomm Atheros
2017-10-10 20:45 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\ASUS WebStorage
2017-10-10 20:44 - 2016-08-08 08:05 - 000000000 ____D C:\ProgramData\USBChargerPlus
2017-10-10 20:44 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\WebStorage
2017-10-10 20:31 - 2017-07-31 21:45 - 000000000 ____D C:\Users\asusPC\Desktop\navigace
2017-10-10 20:30 - 2016-10-10 13:05 - 000000000 ____D C:\Users\asusPC\Desktop\OVEČKA SHAUN
2017-10-10 20:16 - 2016-10-10 13:27 - 000000000 ____D C:\Users\asusPC\Desktop\hudba
2017-10-10 20:00 - 2016-10-03 20:23 - 000000000 ____D C:\Users\asusPC\Desktop\k vyvoláí
2017-10-10 19:53 - 2015-04-26 12:02 - 000000000 ____D C:\ProgramData\ASUSLogos
2017-10-10 19:49 - 2017-06-29 22:00 - 000000000 ____D C:\Users\asusPC\Downloads\Nová složka
2017-10-10 19:49 - 2016-10-03 13:10 - 000000000 ____D C:\Users\asusPC\Desktop\fotky
2017-10-04 20:35 - 2017-04-26 21:20 - 000135680 ___SH C:\Users\asusPC\Downloads\Thumbs.db
2017-10-04 01:56 - 2016-08-15 15:13 - 000176224 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2017-10-01 20:22 - 2016-08-05 15:28 - 000000000 ____D C:\Program Files (x86)\McAfee
2017-09-28 17:05 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\Package Cache
2017-09-27 18:04 - 2016-08-15 14:53 - 000002217 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-09-27 18:04 - 2016-08-15 14:53 - 000002205 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-09-22 16:50 - 2013-08-22 17:36 - 000000000 ___HD C:\Program Files\WindowsApps
2017-09-22 16:50 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\AppReadiness

==================== Files in the root of some directories =======

2017-10-11 20:01 - 2017-10-17 20:27 - 000000093 _____ () C:\Users\asusPC\AppData\Roaming\sp_data.sys
2017-10-10 19:50 - 2017-10-10 19:50 - 000001092 _____ () C:\ProgramData\AIEAQWZW-F61G-KZC0-204340C4-C19636FE4096.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000000939 _____ () C:\ProgramData\AIEAQWZW-F61G-KZC0-69962ACF-374D7F483013.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000008387 ____C () C:\ProgramData\asasin-5477.htm
2015-04-26 12:02 - 2012-09-07 13:40 - 000000256 _____ () C:\ProgramData\SetStretch.cmd
2015-04-26 12:02 - 2009-07-22 12:04 - 000024576 _____ () C:\ProgramData\SetStretch.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-10-15 09:09

==================== End of FRST.txt ============================

Re: problém přejmenovane soubory

Napsal: 17 říj 2017 19:51
od Rudy
Smazáno. Log je již OK.

Re: problém přejmenovane soubory

Napsal: 18 říj 2017 18:22
od tomX
Děkuji vám za pomoc teď jen ty zašifrované soubory...
Snažím se najít decryptor, ale to je už není, jak jste říkal, ve vaší kompetenci :)
ještě jednou Vám děkuji

Re: problém přejmenovane soubory

Napsal: 18 říj 2017 18:55
od Rudy
OK. Pokud ho nenajdete, poradí vám na výše uvedeném odkazu. Nemáte zač!