problém přejmenovane soubory
Napsal: 16 říj 2017 19:56
Zdravím,
dnes se mi do rukou dostal notebook od známého. Říká, že z ničeho nic se mu přejmenovaly fotky a přiřadil se jim i mně neznámý formát asasin,nový název souboru vypadá takto: "AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.asasin".
Prohledal jsem počítač a na žádný nechtěný program jsem nenarazil, zkoušel jsem program fileassassin a ten to taky neumí odemknout. Proto prosím koukněte na logy, jestli za to nemůže nějaké svinstvo a ne neumětelství majitele:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-10-2017
Ran by asusPC (administrator) on ASUS (16-10-2017 20:44:49)
Running from C:\Users\asusPC\Downloads
Loaded Profiles: asusPC (Available Profiles: asusPC)
Platform: Windows 8.1 Connected (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: "C:\Users\asusPC\AppData\Roaming\Seznam Browser\Seznam.cz.exe" -surl="%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSPanel.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\ASUSWSLoader.exe [63272 2014-12-04] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [134784 2014-02-25] (Qualcomm®Atheros®)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9292504 2016-12-21] (Piriform Ltd)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [World of Tanks] => C:\Games\World_of_Tanks\WargamingGameUpdater.exe [3135752 2017-02-28] (Wargaming.net)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [World of Warships] => C:\Games\World_of_Warships\WargamingGameUpdater.exe [3136264 2017-09-19] (Wargaming.net)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 81.200.55.118 81.200.55.34
Tcpip\..\Interfaces\{322AFC4A-7605-4483-BF59-06C281C35B75}: [DhcpNameServer] 93.91.240.101 93.91.240.254 192.168.1.1
Tcpip\..\Interfaces\{5CC5D8E4-0FDC-450F-8547-9DC26EBC170D}: [DhcpNameServer] 81.200.55.118 81.200.55.34
Internet Explorer:
==================
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
BHO-x32: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
FireFox:
========
FF ProfilePath: C:\Users\asusPC\AppData\Roaming\Mozilla\Firefox\Profiles\aIa3snDH.default [2017-10-11]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2017-07-20]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
Chrome:
=======
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=C214CZ885D20160821&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Profile: C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default [2017-10-16]
CHR Extension: (Prezentace) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]
CHR Extension: (Dokumenty) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14]
CHR Extension: (Disk Google) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-15]
CHR Extension: (YouTube) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-15]
CHR Extension: (Avira Password Manager) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2017-10-11]
CHR Extension: (Tabulky) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2017-10-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-21]
CHR Extension: (AdBlock) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-10-09]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-30]
CHR Extension: (Gmail) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-03]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1128432 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [490968 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [490968 2017-10-12] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1525240 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe [71168 2014-12-04] (ASUS Cloud Corporation) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-02-25] (Windows (R) Win 7 DDK provider) [File not signed]
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [404816 2017-09-13] (Avira Operations GmbH & Co. KG)
R2 AviraUpdaterService; C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [102304 2017-08-31] (Avira Operations GmbH & Co. KG)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel(R) Corporation)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [590880 2017-09-06] (McAfee, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2014-02-25] (Atheros) [File not signed]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3892224 2014-03-06] (Qualcomm Atheros Communications, Inc.)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [71952 2014-03-31] (ASUS Corporation)
R0 avdevprot; C:\Windows\System32\DRIVERS\avdevprot.sys [60920 2017-06-17] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [176224 2017-10-04] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [167464 2017-09-14] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [44488 2017-03-22] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [88488 2017-03-22] (Avira Operations GmbH & Co. KG)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-02-25] (Qualcomm Atheros)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [31232 2013-11-11] (Intel Corporation)
R3 iaioi2c; C:\Windows\System32\drivers\iaioi2ce.sys [67584 2013-11-11] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
R0 MBI; C:\Windows\System32\drivers\MBI.sys [29464 2013-10-28] (Intel Corporation)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [111608 2017-02-14] (McAfee, Inc.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation)
S3 e1edc438-f640-4184-a443-d2a7c37a01dc; \??\F:\WTP\bin\690b33e1-0462-4e84-9bea-c7552b45432a.sys [X]
U0 msahci; system32\drivers\msahci.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-10-16 20:44 - 2017-10-16 20:45 - 000014918 _____ C:\Users\asusPC\Downloads\FRST.txt
2017-10-16 20:44 - 2017-10-16 20:44 - 000000000 ____D C:\FRST
2017-10-16 20:42 - 2017-10-16 20:42 - 002401792 _____ (Farbar) C:\Users\asusPC\Downloads\FRST64.exe
2017-10-16 20:35 - 2017-10-16 20:35 - 004987672 _____ (Ghisler Software GmbH) C:\Users\asusPC\Downloads\tcmd900ax64.exe
2017-10-16 20:35 - 2017-10-16 20:35 - 000000656 _____ C:\Users\asusPC\Desktop\Total Commander 64 bit.lnk
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\GHISLER
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Local\GHISLER
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\totalcmd
2017-10-16 19:57 - 2017-10-16 20:43 - 000000000 ____D C:\Program Files (x86)\FileASSASSIN
2017-10-16 19:56 - 2017-10-16 19:56 - 000167034 _____ C:\Users\asusPC\Downloads\fileassassin-setup-1.06.exe
2017-10-13 21:21 - 2017-10-13 21:21 - 000060161 _____ C:\Users\asusPC\Desktop\MiniPenzion Olomouc _Na Vyhlídce_ - Ubytování Olomouc.html
2017-10-13 21:21 - 2017-10-13 21:21 - 000000000 ____D C:\Users\asusPC\Desktop\MiniPenzion Olomouc _Na Vyhlídce_ - Ubytování Olomouc_files
2017-10-12 18:25 - 2017-10-12 18:25 - 000000844 _____ C:\Users\asusPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
2017-10-12 18:25 - 2017-10-12 18:25 - 000000796 _____ C:\Users\asusPC\Desktop\Start Tor Browser.lnk
2017-10-12 18:25 - 2017-10-12 18:25 - 000000000 ____D C:\Users\asusPC\Desktop\Tor Browser
2017-10-12 18:08 - 2017-10-12 18:08 - 000046706 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.rar
2017-10-12 18:04 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-67431E01-A89AFDEB3398.asasin
2017-10-12 18:04 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-67431E01-A89AFDEB3398 (1).asasin
2017-10-12 18:00 - 2017-10-12 18:00 - 013438432 _____ (ASUS Cloud Corporation) C:\Users\asusPC\Downloads\WebStorageSyncAgent2.2.17.591.exe
2017-10-12 17:58 - 2017-10-12 17:58 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Seznam Browser-e11754c0-5e40-494f-b134-eec0f8ff22cb
2017-10-11 20:52 - 2017-10-10 20:42 - 006484804 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0FBC7CE8-AA3B0446DB5C (1).asasin
2017-10-11 20:25 - 2017-10-10 21:05 - 005923652 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-2E70026E-5D3EEDFA1AFC.asasin
2017-10-11 20:10 - 2017-10-11 20:10 - 000000912 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2017-10-11 20:09 - 2017-10-11 20:10 - 000000000 ____D C:\Program Files\GIMP 2
2017-10-11 20:05 - 2017-10-10 20:42 - 006484804 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0FBC7CE8-AA3B0446DB5C.asasin
2017-10-11 20:01 - 2017-10-16 20:34 - 000000093 _____ C:\Users\asusPC\AppData\Roaming\sp_data.sys
2017-10-11 19:04 - 2017-10-11 19:04 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Seznam Browser-0cc6966c-6902-423b-b0c1-974e14a7928c
2017-10-11 19:02 - 2017-10-11 19:02 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Mozilla
2017-10-11 18:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C68329EA-C584B6D50393.asasin
2017-10-11 18:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C68329EA-C584B6D50393 (1).asasin
2017-10-11 18:26 - 2017-10-11 18:26 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2017-10-11 17:10 - 2017-09-14 21:30 - 007439704 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-10-11 17:10 - 2017-09-14 03:18 - 001384216 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2017-10-11 17:10 - 2017-09-14 03:14 - 001124384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2017-10-11 17:10 - 2017-09-09 20:53 - 022361864 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-10-11 17:10 - 2017-09-09 19:55 - 019790760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-10-11 17:10 - 2017-09-09 18:10 - 003631616 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-10-11 17:10 - 2017-09-09 17:49 - 002749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2017-10-11 17:10 - 2017-09-09 17:47 - 014466560 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2017-10-11 17:10 - 2017-09-09 17:21 - 012879360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-10-11 17:10 - 2017-09-09 05:50 - 002013016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2017-10-11 17:10 - 2017-09-09 05:50 - 001364552 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-10-11 17:10 - 2017-09-08 20:21 - 004168192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-10-11 17:10 - 2017-09-07 23:15 - 002902528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-10-11 17:10 - 2017-09-07 23:08 - 025729536 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-10-11 17:10 - 2017-09-07 22:40 - 005982208 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-10-11 17:10 - 2017-09-07 21:44 - 015262720 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-10-11 17:10 - 2017-09-07 21:40 - 003240960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-10-11 17:10 - 2017-09-07 21:27 - 001548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-10-11 17:10 - 2017-09-07 21:10 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-10-11 17:10 - 2017-09-07 21:04 - 020267008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-10-11 17:10 - 2017-09-07 21:03 - 002292736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-10-11 17:10 - 2017-09-07 20:58 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-10-11 17:10 - 2017-09-07 20:29 - 004547072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-10-11 17:10 - 2017-09-07 20:17 - 013677568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-10-11 17:10 - 2017-09-07 20:01 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-10-11 17:10 - 2017-09-07 19:57 - 001316864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-10-11 17:10 - 2017-08-11 04:20 - 001436672 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-10-11 17:09 - 2017-09-14 21:30 - 001737600 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-10-11 17:09 - 2017-09-14 21:29 - 001502000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-10-11 17:09 - 2017-09-13 15:32 - 000445952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2017-10-11 17:09 - 2017-09-13 15:31 - 000445952 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2017-10-11 17:09 - 2017-09-13 15:27 - 000384000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
2017-10-11 17:09 - 2017-09-09 19:38 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll
2017-10-11 17:09 - 2017-09-08 20:15 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2017-10-11 17:09 - 2017-09-08 19:39 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2017-10-11 17:09 - 2017-09-08 18:57 - 001084928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-10-11 17:09 - 2017-09-07 23:33 - 000686592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-10-11 17:09 - 2017-09-07 23:33 - 000415744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-10-11 17:09 - 2017-09-07 23:32 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-10-11 17:09 - 2017-09-07 23:32 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-10-11 17:09 - 2017-09-07 23:17 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-10-11 17:09 - 2017-09-07 23:17 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-10-11 17:09 - 2017-09-07 23:00 - 000817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-10-11 17:09 - 2017-09-07 22:32 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-10-11 17:09 - 2017-09-07 22:31 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2017-10-11 17:09 - 2017-09-07 22:29 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-10-11 17:09 - 2017-09-07 22:21 - 001033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2017-10-11 17:09 - 2017-09-07 22:13 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-10-11 17:09 - 2017-09-07 22:11 - 000380416 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-10-11 17:09 - 2017-09-07 22:10 - 000807936 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-10-11 17:09 - 2017-09-07 22:10 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-10-11 17:09 - 2017-09-07 22:08 - 002134528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-10-11 17:09 - 2017-09-07 22:08 - 000656896 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2017-10-11 17:09 - 2017-09-07 21:54 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2017-10-11 17:09 - 2017-09-07 21:17 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-10-11 17:09 - 2017-09-07 21:09 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-10-11 17:09 - 2017-09-07 20:39 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-10-11 17:09 - 2017-09-07 20:38 - 000128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2017-10-11 17:09 - 2017-09-07 20:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-10-11 17:09 - 2017-09-07 20:33 - 000880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2017-10-11 17:09 - 2017-09-07 20:29 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-10-11 17:09 - 2017-09-07 20:27 - 000331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-10-11 17:09 - 2017-09-07 20:26 - 000694784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-10-11 17:09 - 2017-09-07 20:25 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-10-11 17:09 - 2017-09-07 20:24 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2017-10-11 17:09 - 2017-09-07 19:57 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-10-11 17:09 - 2017-08-13 21:48 - 000202592 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2017-10-11 17:09 - 2017-08-13 19:52 - 000174944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2017-10-11 17:09 - 2017-08-13 19:10 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2017-10-11 17:09 - 2017-08-13 18:33 - 000252416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2017-10-11 17:09 - 2017-08-11 04:54 - 000445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-10-11 17:09 - 2017-08-11 04:22 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-10-11 17:09 - 2017-08-11 04:16 - 000275968 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll
2017-10-11 17:09 - 2017-08-11 03:57 - 000180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll
2017-10-11 17:09 - 2017-08-06 23:50 - 001080320 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2017-10-11 17:09 - 2017-08-06 23:20 - 000542720 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2017-10-11 17:09 - 2017-08-06 23:13 - 000713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2017-10-11 17:09 - 2017-08-06 09:08 - 000561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2017-10-11 17:09 - 2017-08-02 04:19 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2017-10-11 17:09 - 2017-08-01 10:25 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2017-10-10 20:56 - 2017-10-10 20:56 - 000262980 _____ C:\Users\Public\AIEAQWZW-F61G-KZC0-EA6B7D08-5FE9B4BE3C47.asasin
2017-10-10 20:56 - 2017-10-10 20:56 - 000008387 ____C C:\Users\Public\asasin-d042.htm
2017-10-10 20:51 - 2017-10-10 20:51 - 000046595 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.asasin
2017-10-10 20:44 - 2017-10-10 20:44 - 2310479016 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-2940A816-011991EF6300.asasin
2017-10-10 20:29 - 2017-10-10 20:29 - 260758688 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-1A0B435E-0B75F8B4631E.asasin
2017-10-10 20:29 - 2017-10-10 20:29 - 260510266 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D555A7A4-26C8BD8F83A3.asasin
2017-10-10 20:28 - 2017-10-10 20:28 - 478469622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-B0AFFF7D-E141E9D5DB08.asasin
2017-10-10 20:28 - 2017-10-10 20:28 - 260458514 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-BA81E978-DB9267F30E02.asasin
2017-10-10 20:25 - 2017-10-10 20:25 - 502556704 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-6555B24F-5A9C61C8DB65.asasin
2017-10-10 20:25 - 2017-10-10 20:25 - 485265838 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-45BB885A-6C4E9810D2AF.asasin
2017-10-10 20:23 - 2017-10-10 20:23 - 851565340 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-88E022C0-4F086181BFF8.asasin
2017-10-10 20:18 - 2017-10-10 20:18 - 309045714 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-AB087A3B-065416C02003.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 089211716 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-FA72D884-D1C05E110191.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 088826692 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-4050052A-AA22ECF05D89.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 013749760 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-ADEA8632-A4E10A9C4433.asasin
2017-10-10 20:11 - 2017-10-10 20:11 - 043784988 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-69F61F69-339C9F4979D6.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 018469700 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D57BA12E-111972A99E33.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 018469700 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D40E72A6-4D5CBAFB8698.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-A0BA3FF6-7267F3A0F027.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-6D767C4B-832A3434492D.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-65F78230-6E5BBF8DFBA8.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-3DFC1C8A-5CC8A037D697.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003922173 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-FDC23295-508F65B1F6EE.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003922173 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-4195A501-F94707AD73A8.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003842342 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C1CF6F97-D16A826E0DE1.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003842342 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-29FC5FF0-D976A2B733CC.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003421987 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-76E00416-C9F49830A66D.asasin
2017-10-10 20:04 - 2017-10-10 20:04 - 009027055 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-EA235E78-D473D6085F14.asasin
2017-10-10 20:04 - 2017-10-10 20:04 - 008413103 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-F4AA99D1-9AF3E17281D8.asasin
2017-10-10 20:02 - 2017-10-10 20:02 - 004587608 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-96D60EDA-9F4061D4AA63.asasin
2017-10-10 20:02 - 2017-10-10 20:02 - 002515522 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-B781493F-8B88F43F8F20.asasin
2017-10-10 19:56 - 2017-10-10 19:56 - 003906655 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-395298EB-A062D3C5058F.asasin
2017-10-10 19:55 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Desktop\pokus 1.asasin
2017-10-10 19:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Desktop\pokus 1 (2).asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000008387 ____C C:\ProgramData\asasin-5477.htm
2017-10-10 19:50 - 2017-10-10 19:50 - 000001092 _____ C:\ProgramData\AIEAQWZW-F61G-KZC0-204340C4-C19636FE4096.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000000939 _____ C:\ProgramData\AIEAQWZW-F61G-KZC0-69962ACF-374D7F483013.asasin
2017-10-10 19:49 - 2017-10-12 16:14 - 000050166 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-BE51FDD4-73086C71E788.7p
2017-10-10 19:49 - 2017-10-10 19:49 - 004763460 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-5626676F-69D6B577D42D.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 001336645 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-DEF7FA75-618DB36294FB.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 001336645 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-74E34AFD-F5F13324D7D0.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000925998 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D2F18EC0-29547CC3FBDF.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000896650 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-9C325403-F13A0B660F4B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000370113 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C5C2DFC2-238EE22796C0.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000152485 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-74EAC23A-72D4DE7E564B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-12DD66CE-82D1C72BC1E8.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-11E40086-DE1C451DF9C8.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-10206629-8B5EC4D83D4F.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000057316 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-8D59FCB4-99EF00F7958E.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000039791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-BF7DB4AE-9B84E56EBE6A.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000030400 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0861B6CD-CE93DEC5D2DD.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000020376 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-DBF1AA39-A0BB2778589B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000018524 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0328222D-3CF3F9BEBDC2.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000011512 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-3BE4D554-890F3E0376BA.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000011512 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-085ABF7D-B7C53F3194AB.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000008387 ____C C:\Users\asusPC\Downloads\asasin-1604.htm
2017-10-10 19:49 - 2017-10-10 19:49 - 000008387 ____C C:\Users\asusPC\Desktop\asasin-b2b9.htm
2017-10-10 19:49 - 2017-10-10 19:49 - 000006950 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-AF94F2A7-C698585FC9CA.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000006950 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-30A60D12-ECADED8C56D3.asasin
2017-10-04 19:08 - 2017-10-04 19:08 - 000000000 ____D C:\Users\asusPC\Desktop\Nová složka (2)
2017-10-04 19:05 - 2017-10-04 19:05 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet (2).exe
2017-10-04 19:05 - 2017-10-04 19:05 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet (1).exe
2017-10-04 19:04 - 2017-10-04 19:04 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet.exe
2017-10-04 01:57 - 2017-10-04 01:57 - 000003292 _____ C:\Windows\System32\Tasks\Avira_Antivirus_Systray
2017-09-28 17:05 - 2017-09-28 17:05 - 000003122 _____ C:\Windows\System32\Tasks\Avira SystrayStartTrigger
2017-09-28 17:05 - 2017-09-28 17:05 - 000001134 _____ C:\Users\Public\Desktop\Avira.lnk
2017-09-25 09:52 - 2017-10-10 20:51 - 000000000 ____D C:\Users\asusPC\Desktop\iZUŠ _ Přihláška do ZUŠ_files
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-10-16 20:40 - 2016-08-08 08:09 - 000003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-530502146-3304040069-2869220945-1001
2017-10-16 19:33 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2017-10-16 19:05 - 2016-08-12 13:18 - 000003958 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{44B9CC47-EEB0-452A-B671-6DAAE07AF0AD}
2017-10-15 19:50 - 2016-09-04 13:23 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\vlc
2017-10-15 12:50 - 2016-09-04 13:23 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\dvdcss
2017-10-15 12:00 - 2016-09-13 18:20 - 000003480 _____ C:\Windows\System32\Tasks\ASUS Live Update1
2017-10-15 12:00 - 2016-09-02 19:00 - 000003470 _____ C:\Windows\System32\Tasks\ASUS Live Update2
2017-10-12 19:31 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\rescache
2017-10-12 18:35 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-10-12 18:34 - 2013-08-22 16:44 - 000362520 _____ C:\Windows\system32\FNTCACHE.DAT
2017-10-12 18:31 - 2013-08-22 17:36 - 000000000 ___RD C:\Windows\ToastData
2017-10-12 18:31 - 2013-08-22 17:20 - 000000000 ____D C:\Windows\CbsTemp
2017-10-12 18:11 - 2016-08-15 14:56 - 000001084 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-10-12 18:02 - 2016-08-21 20:41 - 000000000 ____D C:\Users\asusPC\AppData\Local\CrashDumps
2017-10-12 18:02 - 2016-08-15 15:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-10-12 16:14 - 2016-08-08 08:02 - 000000000 ____D C:\Users\asusPC
2017-10-11 19:04 - 2016-08-15 15:13 - 000000000 ____D C:\ProgramData\Avira
2017-10-11 19:04 - 2016-08-15 15:13 - 000000000 ____D C:\Program Files (x86)\Avira
2017-10-11 18:43 - 2015-04-26 19:44 - 000740822 _____ C:\Windows\system32\perfh005.dat
2017-10-11 18:43 - 2015-04-26 19:44 - 000151948 _____ C:\Windows\system32\perfc005.dat
2017-10-11 18:43 - 2014-11-21 01:09 - 001748728 _____ C:\Windows\system32\PerfStringBackup.INI
2017-10-11 18:31 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2017-10-11 18:30 - 2016-08-21 23:13 - 000000000 ____D C:\Windows\system32\MRT
2017-10-11 18:26 - 2016-08-21 23:13 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-10-10 20:56 - 2017-01-11 21:59 - 000000000 ____D C:\Users\asusPC\Desktop\bradavice
2017-10-10 20:51 - 2017-06-14 11:38 - 000000000 ____D C:\Users\asusPC\Desktop\E SHOP OUTDOOR SPORT - Bufo Outdoor Sport_files
2017-10-10 20:45 - 2016-10-03 13:07 - 000000000 ____D C:\Users\asusPC\Desktop\filmy pohadky
2017-10-10 20:45 - 2016-08-05 15:20 - 000000000 ____D C:\ProgramData\Qualcomm Atheros
2017-10-10 20:45 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\ASUS WebStorage
2017-10-10 20:44 - 2016-08-08 08:05 - 000000000 ____D C:\ProgramData\USBChargerPlus
2017-10-10 20:44 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\WebStorage
2017-10-10 20:31 - 2017-07-31 21:45 - 000000000 ____D C:\Users\asusPC\Desktop\navigace
2017-10-10 20:30 - 2016-10-10 13:05 - 000000000 ____D C:\Users\asusPC\Desktop\OVEČKA SHAUN
2017-10-10 20:16 - 2016-10-10 13:27 - 000000000 ____D C:\Users\asusPC\Desktop\hudba
2017-10-10 20:00 - 2016-10-03 20:23 - 000000000 ____D C:\Users\asusPC\Desktop\k vyvoláí
2017-10-10 19:53 - 2015-04-26 12:02 - 000000000 ____D C:\ProgramData\ASUSLogos
2017-10-10 19:49 - 2017-06-29 22:00 - 000000000 ____D C:\Users\asusPC\Downloads\Nová složka
2017-10-10 19:49 - 2016-10-03 13:10 - 000000000 ____D C:\Users\asusPC\Desktop\fotky
2017-10-04 20:35 - 2017-04-26 21:20 - 000135680 ___SH C:\Users\asusPC\Downloads\Thumbs.db
2017-10-04 01:56 - 2016-08-15 15:13 - 000176224 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2017-10-01 20:22 - 2016-08-05 15:28 - 000000000 ____D C:\Program Files (x86)\McAfee
2017-09-28 17:05 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\Package Cache
2017-09-27 18:04 - 2016-08-15 14:53 - 000002217 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-09-27 18:04 - 2016-08-15 14:53 - 000002205 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-09-22 16:50 - 2013-08-22 17:36 - 000000000 ___HD C:\Program Files\WindowsApps
2017-09-22 16:50 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\AppReadiness
==================== Files in the root of some directories =======
2017-10-11 20:01 - 2017-10-16 20:34 - 000000093 _____ () C:\Users\asusPC\AppData\Roaming\sp_data.sys
2017-10-10 19:50 - 2017-10-10 19:50 - 000001092 _____ () C:\ProgramData\AIEAQWZW-F61G-KZC0-204340C4-C19636FE4096.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000000939 _____ () C:\ProgramData\AIEAQWZW-F61G-KZC0-69962ACF-374D7F483013.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000008387 ____C () C:\ProgramData\asasin-5477.htm
2016-08-05 15:14 - 2016-08-05 15:14 - 000000000 ____H () C:\ProgramData\DP45977C.lfl
2015-04-26 12:02 - 2012-09-07 13:40 - 000000256 _____ () C:\ProgramData\SetStretch.cmd
2015-04-26 12:02 - 2009-07-22 12:04 - 000024576 _____ () C:\ProgramData\SetStretch.exe
2015-04-26 12:02 - 2012-09-07 13:37 - 000000103 _____ () C:\ProgramData\SetStretch.VBS
Some files in TEMP:
====================
2017-10-12 18:10 - 2017-10-12 18:10 - 030950664 _____ () C:\Users\asusPC\AppData\Local\Temp\vlc-2.2.6-win32.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-10-15 09:09
==================== End of FRST.txt ============================
S díky TK
dnes se mi do rukou dostal notebook od známého. Říká, že z ničeho nic se mu přejmenovaly fotky a přiřadil se jim i mně neznámý formát asasin,nový název souboru vypadá takto: "AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.asasin".
Prohledal jsem počítač a na žádný nechtěný program jsem nenarazil, zkoušel jsem program fileassassin a ten to taky neumí odemknout. Proto prosím koukněte na logy, jestli za to nemůže nějaké svinstvo a ne neumětelství majitele:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-10-2017
Ran by asusPC (administrator) on ASUS (16-10-2017 20:44:49)
Running from C:\Users\asusPC\Downloads
Loaded Profiles: asusPC (Available Profiles: asusPC)
Platform: Windows 8.1 Connected (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: "C:\Users\asusPC\AppData\Roaming\Seznam Browser\Seznam.cz.exe" -surl="%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSPanel.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\ASUSWSLoader.exe [63272 2014-12-04] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [134784 2014-02-25] (Qualcomm®Atheros®)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9292504 2016-12-21] (Piriform Ltd)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [World of Tanks] => C:\Games\World_of_Tanks\WargamingGameUpdater.exe [3135752 2017-02-28] (Wargaming.net)
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\...\Run: [World of Warships] => C:\Games\World_of_Warships\WargamingGameUpdater.exe [3136264 2017-09-19] (Wargaming.net)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 81.200.55.118 81.200.55.34
Tcpip\..\Interfaces\{322AFC4A-7605-4483-BF59-06C281C35B75}: [DhcpNameServer] 93.91.240.101 93.91.240.254 192.168.1.1
Tcpip\..\Interfaces\{5CC5D8E4-0FDC-450F-8547-9DC26EBC170D}: [DhcpNameServer] 81.200.55.118 81.200.55.34
Internet Explorer:
==================
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
HKU\S-1-5-21-530502146-3304040069-2869220945-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
BHO-x32: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
FireFox:
========
FF ProfilePath: C:\Users\asusPC\AppData\Roaming\Mozilla\Firefox\Profiles\aIa3snDH.default [2017-10-11]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2017-07-20]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
Chrome:
=======
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=C214CZ885D20160821&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Profile: C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default [2017-10-16]
CHR Extension: (Prezentace) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]
CHR Extension: (Dokumenty) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14]
CHR Extension: (Disk Google) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-15]
CHR Extension: (YouTube) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-15]
CHR Extension: (Avira Password Manager) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2017-10-11]
CHR Extension: (Tabulky) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2017-10-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-21]
CHR Extension: (AdBlock) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-10-09]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-30]
CHR Extension: (Gmail) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\asusPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-03]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1128432 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [490968 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [490968 2017-10-12] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1525240 2017-10-12] (Avira Operations GmbH & Co. KG)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe [71168 2014-12-04] (ASUS Cloud Corporation) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-02-25] (Windows (R) Win 7 DDK provider) [File not signed]
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [404816 2017-09-13] (Avira Operations GmbH & Co. KG)
R2 AviraUpdaterService; C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [102304 2017-08-31] (Avira Operations GmbH & Co. KG)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel(R) Corporation)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [590880 2017-09-06] (McAfee, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2014-02-25] (Atheros) [File not signed]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3892224 2014-03-06] (Qualcomm Atheros Communications, Inc.)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [71952 2014-03-31] (ASUS Corporation)
R0 avdevprot; C:\Windows\System32\DRIVERS\avdevprot.sys [60920 2017-06-17] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [176224 2017-10-04] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [167464 2017-09-14] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [44488 2017-03-22] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [88488 2017-03-22] (Avira Operations GmbH & Co. KG)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-02-25] (Qualcomm Atheros)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [31232 2013-11-11] (Intel Corporation)
R3 iaioi2c; C:\Windows\System32\drivers\iaioi2ce.sys [67584 2013-11-11] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
R0 MBI; C:\Windows\System32\drivers\MBI.sys [29464 2013-10-28] (Intel Corporation)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [111608 2017-02-14] (McAfee, Inc.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation)
S3 e1edc438-f640-4184-a443-d2a7c37a01dc; \??\F:\WTP\bin\690b33e1-0462-4e84-9bea-c7552b45432a.sys [X]
U0 msahci; system32\drivers\msahci.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-10-16 20:44 - 2017-10-16 20:45 - 000014918 _____ C:\Users\asusPC\Downloads\FRST.txt
2017-10-16 20:44 - 2017-10-16 20:44 - 000000000 ____D C:\FRST
2017-10-16 20:42 - 2017-10-16 20:42 - 002401792 _____ (Farbar) C:\Users\asusPC\Downloads\FRST64.exe
2017-10-16 20:35 - 2017-10-16 20:35 - 004987672 _____ (Ghisler Software GmbH) C:\Users\asusPC\Downloads\tcmd900ax64.exe
2017-10-16 20:35 - 2017-10-16 20:35 - 000000656 _____ C:\Users\asusPC\Desktop\Total Commander 64 bit.lnk
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\GHISLER
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\Users\asusPC\AppData\Local\GHISLER
2017-10-16 20:35 - 2017-10-16 20:35 - 000000000 ____D C:\totalcmd
2017-10-16 19:57 - 2017-10-16 20:43 - 000000000 ____D C:\Program Files (x86)\FileASSASSIN
2017-10-16 19:56 - 2017-10-16 19:56 - 000167034 _____ C:\Users\asusPC\Downloads\fileassassin-setup-1.06.exe
2017-10-13 21:21 - 2017-10-13 21:21 - 000060161 _____ C:\Users\asusPC\Desktop\MiniPenzion Olomouc _Na Vyhlídce_ - Ubytování Olomouc.html
2017-10-13 21:21 - 2017-10-13 21:21 - 000000000 ____D C:\Users\asusPC\Desktop\MiniPenzion Olomouc _Na Vyhlídce_ - Ubytování Olomouc_files
2017-10-12 18:25 - 2017-10-12 18:25 - 000000844 _____ C:\Users\asusPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
2017-10-12 18:25 - 2017-10-12 18:25 - 000000796 _____ C:\Users\asusPC\Desktop\Start Tor Browser.lnk
2017-10-12 18:25 - 2017-10-12 18:25 - 000000000 ____D C:\Users\asusPC\Desktop\Tor Browser
2017-10-12 18:08 - 2017-10-12 18:08 - 000046706 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.rar
2017-10-12 18:04 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-67431E01-A89AFDEB3398.asasin
2017-10-12 18:04 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-67431E01-A89AFDEB3398 (1).asasin
2017-10-12 18:00 - 2017-10-12 18:00 - 013438432 _____ (ASUS Cloud Corporation) C:\Users\asusPC\Downloads\WebStorageSyncAgent2.2.17.591.exe
2017-10-12 17:58 - 2017-10-12 17:58 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Seznam Browser-e11754c0-5e40-494f-b134-eec0f8ff22cb
2017-10-11 20:52 - 2017-10-10 20:42 - 006484804 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0FBC7CE8-AA3B0446DB5C (1).asasin
2017-10-11 20:25 - 2017-10-10 21:05 - 005923652 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-2E70026E-5D3EEDFA1AFC.asasin
2017-10-11 20:10 - 2017-10-11 20:10 - 000000912 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2017-10-11 20:09 - 2017-10-11 20:10 - 000000000 ____D C:\Program Files\GIMP 2
2017-10-11 20:05 - 2017-10-10 20:42 - 006484804 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0FBC7CE8-AA3B0446DB5C.asasin
2017-10-11 20:01 - 2017-10-16 20:34 - 000000093 _____ C:\Users\asusPC\AppData\Roaming\sp_data.sys
2017-10-11 19:04 - 2017-10-11 19:04 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Seznam Browser-0cc6966c-6902-423b-b0c1-974e14a7928c
2017-10-11 19:02 - 2017-10-11 19:02 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\Mozilla
2017-10-11 18:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C68329EA-C584B6D50393.asasin
2017-10-11 18:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C68329EA-C584B6D50393 (1).asasin
2017-10-11 18:26 - 2017-10-11 18:26 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2017-10-11 17:10 - 2017-09-14 21:30 - 007439704 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-10-11 17:10 - 2017-09-14 03:18 - 001384216 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2017-10-11 17:10 - 2017-09-14 03:14 - 001124384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2017-10-11 17:10 - 2017-09-09 20:53 - 022361864 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-10-11 17:10 - 2017-09-09 19:55 - 019790760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-10-11 17:10 - 2017-09-09 18:10 - 003631616 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-10-11 17:10 - 2017-09-09 17:49 - 002749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2017-10-11 17:10 - 2017-09-09 17:47 - 014466560 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2017-10-11 17:10 - 2017-09-09 17:21 - 012879360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-10-11 17:10 - 2017-09-09 05:50 - 002013016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2017-10-11 17:10 - 2017-09-09 05:50 - 001364552 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-10-11 17:10 - 2017-09-08 20:21 - 004168192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-10-11 17:10 - 2017-09-07 23:15 - 002902528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-10-11 17:10 - 2017-09-07 23:08 - 025729536 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-10-11 17:10 - 2017-09-07 22:40 - 005982208 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-10-11 17:10 - 2017-09-07 21:44 - 015262720 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-10-11 17:10 - 2017-09-07 21:40 - 003240960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-10-11 17:10 - 2017-09-07 21:27 - 001548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-10-11 17:10 - 2017-09-07 21:10 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-10-11 17:10 - 2017-09-07 21:04 - 020267008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-10-11 17:10 - 2017-09-07 21:03 - 002292736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-10-11 17:10 - 2017-09-07 20:58 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-10-11 17:10 - 2017-09-07 20:29 - 004547072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-10-11 17:10 - 2017-09-07 20:17 - 013677568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-10-11 17:10 - 2017-09-07 20:01 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-10-11 17:10 - 2017-09-07 19:57 - 001316864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-10-11 17:10 - 2017-08-11 04:20 - 001436672 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-10-11 17:09 - 2017-09-14 21:30 - 001737600 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-10-11 17:09 - 2017-09-14 21:29 - 001502000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-10-11 17:09 - 2017-09-13 15:32 - 000445952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2017-10-11 17:09 - 2017-09-13 15:31 - 000445952 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2017-10-11 17:09 - 2017-09-13 15:27 - 000384000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
2017-10-11 17:09 - 2017-09-09 19:38 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2017-10-11 17:09 - 2017-09-09 15:13 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll
2017-10-11 17:09 - 2017-09-08 20:15 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2017-10-11 17:09 - 2017-09-08 19:39 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2017-10-11 17:09 - 2017-09-08 18:57 - 001084928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-10-11 17:09 - 2017-09-07 23:33 - 000686592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-10-11 17:09 - 2017-09-07 23:33 - 000415744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-10-11 17:09 - 2017-09-07 23:32 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-10-11 17:09 - 2017-09-07 23:32 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-10-11 17:09 - 2017-09-07 23:17 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-10-11 17:09 - 2017-09-07 23:17 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-10-11 17:09 - 2017-09-07 23:00 - 000817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-10-11 17:09 - 2017-09-07 22:32 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-10-11 17:09 - 2017-09-07 22:31 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2017-10-11 17:09 - 2017-09-07 22:29 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-10-11 17:09 - 2017-09-07 22:21 - 001033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2017-10-11 17:09 - 2017-09-07 22:13 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-10-11 17:09 - 2017-09-07 22:11 - 000380416 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-10-11 17:09 - 2017-09-07 22:10 - 000807936 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-10-11 17:09 - 2017-09-07 22:10 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-10-11 17:09 - 2017-09-07 22:08 - 002134528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-10-11 17:09 - 2017-09-07 22:08 - 000656896 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2017-10-11 17:09 - 2017-09-07 21:54 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2017-10-11 17:09 - 2017-09-07 21:17 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-10-11 17:09 - 2017-09-07 21:09 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-10-11 17:09 - 2017-09-07 20:39 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-10-11 17:09 - 2017-09-07 20:38 - 000128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2017-10-11 17:09 - 2017-09-07 20:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-10-11 17:09 - 2017-09-07 20:33 - 000880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2017-10-11 17:09 - 2017-09-07 20:29 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-10-11 17:09 - 2017-09-07 20:27 - 000331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-10-11 17:09 - 2017-09-07 20:26 - 000694784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-10-11 17:09 - 2017-09-07 20:25 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-10-11 17:09 - 2017-09-07 20:24 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2017-10-11 17:09 - 2017-09-07 19:57 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-10-11 17:09 - 2017-08-13 21:48 - 000202592 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2017-10-11 17:09 - 2017-08-13 19:52 - 000174944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2017-10-11 17:09 - 2017-08-13 19:10 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2017-10-11 17:09 - 2017-08-13 18:33 - 000252416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2017-10-11 17:09 - 2017-08-11 04:54 - 000445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-10-11 17:09 - 2017-08-11 04:22 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-10-11 17:09 - 2017-08-11 04:16 - 000275968 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll
2017-10-11 17:09 - 2017-08-11 03:57 - 000180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll
2017-10-11 17:09 - 2017-08-06 23:50 - 001080320 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2017-10-11 17:09 - 2017-08-06 23:20 - 000542720 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2017-10-11 17:09 - 2017-08-06 23:13 - 000713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2017-10-11 17:09 - 2017-08-06 09:08 - 000561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2017-10-11 17:09 - 2017-08-02 04:19 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2017-10-11 17:09 - 2017-08-01 10:25 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2017-10-10 20:56 - 2017-10-10 20:56 - 000262980 _____ C:\Users\Public\AIEAQWZW-F61G-KZC0-EA6B7D08-5FE9B4BE3C47.asasin
2017-10-10 20:56 - 2017-10-10 20:56 - 000008387 ____C C:\Users\Public\asasin-d042.htm
2017-10-10 20:51 - 2017-10-10 20:51 - 000046595 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-FCE4B23E-38926494409D.asasin
2017-10-10 20:44 - 2017-10-10 20:44 - 2310479016 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-2940A816-011991EF6300.asasin
2017-10-10 20:29 - 2017-10-10 20:29 - 260758688 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-1A0B435E-0B75F8B4631E.asasin
2017-10-10 20:29 - 2017-10-10 20:29 - 260510266 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D555A7A4-26C8BD8F83A3.asasin
2017-10-10 20:28 - 2017-10-10 20:28 - 478469622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-B0AFFF7D-E141E9D5DB08.asasin
2017-10-10 20:28 - 2017-10-10 20:28 - 260458514 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-BA81E978-DB9267F30E02.asasin
2017-10-10 20:25 - 2017-10-10 20:25 - 502556704 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-6555B24F-5A9C61C8DB65.asasin
2017-10-10 20:25 - 2017-10-10 20:25 - 485265838 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-45BB885A-6C4E9810D2AF.asasin
2017-10-10 20:23 - 2017-10-10 20:23 - 851565340 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-88E022C0-4F086181BFF8.asasin
2017-10-10 20:18 - 2017-10-10 20:18 - 309045714 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-AB087A3B-065416C02003.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 089211716 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-FA72D884-D1C05E110191.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 088826692 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-4050052A-AA22ECF05D89.asasin
2017-10-10 20:16 - 2017-10-10 20:16 - 013749760 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-ADEA8632-A4E10A9C4433.asasin
2017-10-10 20:11 - 2017-10-10 20:11 - 043784988 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-69F61F69-339C9F4979D6.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 018469700 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D57BA12E-111972A99E33.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 018469700 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D40E72A6-4D5CBAFB8698.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-A0BA3FF6-7267F3A0F027.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-6D767C4B-832A3434492D.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-65F78230-6E5BBF8DFBA8.asasin
2017-10-10 20:08 - 2017-10-10 20:08 - 010940859 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-3DFC1C8A-5CC8A037D697.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003922173 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-FDC23295-508F65B1F6EE.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003922173 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-4195A501-F94707AD73A8.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003842342 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C1CF6F97-D16A826E0DE1.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003842342 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-29FC5FF0-D976A2B733CC.asasin
2017-10-10 20:07 - 2017-10-10 20:07 - 003421987 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-76E00416-C9F49830A66D.asasin
2017-10-10 20:04 - 2017-10-10 20:04 - 009027055 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-EA235E78-D473D6085F14.asasin
2017-10-10 20:04 - 2017-10-10 20:04 - 008413103 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-F4AA99D1-9AF3E17281D8.asasin
2017-10-10 20:02 - 2017-10-10 20:02 - 004587608 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-96D60EDA-9F4061D4AA63.asasin
2017-10-10 20:02 - 2017-10-10 20:02 - 002515522 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-B781493F-8B88F43F8F20.asasin
2017-10-10 19:56 - 2017-10-10 19:56 - 003906655 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-395298EB-A062D3C5058F.asasin
2017-10-10 19:55 - 2017-10-10 19:55 - 003117791 _____ C:\Users\asusPC\Desktop\pokus 1.asasin
2017-10-10 19:55 - 2017-10-10 19:55 - 002882506 _____ C:\Users\asusPC\Desktop\pokus 1 (2).asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000008387 ____C C:\ProgramData\asasin-5477.htm
2017-10-10 19:50 - 2017-10-10 19:50 - 000001092 _____ C:\ProgramData\AIEAQWZW-F61G-KZC0-204340C4-C19636FE4096.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000000939 _____ C:\ProgramData\AIEAQWZW-F61G-KZC0-69962ACF-374D7F483013.asasin
2017-10-10 19:49 - 2017-10-12 16:14 - 000050166 _____ C:\Users\asusPC\Desktop\AIEAQWZW-F61G-KZC0-BE51FDD4-73086C71E788.7p
2017-10-10 19:49 - 2017-10-10 19:49 - 004763460 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-5626676F-69D6B577D42D.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 001336645 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-DEF7FA75-618DB36294FB.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 001336645 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-74E34AFD-F5F13324D7D0.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000925998 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-D2F18EC0-29547CC3FBDF.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000896650 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-9C325403-F13A0B660F4B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000370113 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-C5C2DFC2-238EE22796C0.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000152485 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-74EAC23A-72D4DE7E564B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-12DD66CE-82D1C72BC1E8.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-11E40086-DE1C451DF9C8.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000074622 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-10206629-8B5EC4D83D4F.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000057316 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-8D59FCB4-99EF00F7958E.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000039791 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-BF7DB4AE-9B84E56EBE6A.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000030400 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0861B6CD-CE93DEC5D2DD.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000020376 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-DBF1AA39-A0BB2778589B.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000018524 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-0328222D-3CF3F9BEBDC2.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000011512 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-3BE4D554-890F3E0376BA.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000011512 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-085ABF7D-B7C53F3194AB.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000008387 ____C C:\Users\asusPC\Downloads\asasin-1604.htm
2017-10-10 19:49 - 2017-10-10 19:49 - 000008387 ____C C:\Users\asusPC\Desktop\asasin-b2b9.htm
2017-10-10 19:49 - 2017-10-10 19:49 - 000006950 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-AF94F2A7-C698585FC9CA.asasin
2017-10-10 19:49 - 2017-10-10 19:49 - 000006950 _____ C:\Users\asusPC\Downloads\AIEAQWZW-F61G-KZC0-30A60D12-ECADED8C56D3.asasin
2017-10-04 19:08 - 2017-10-04 19:08 - 000000000 ____D C:\Users\asusPC\Desktop\Nová složka (2)
2017-10-04 19:05 - 2017-10-04 19:05 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet (2).exe
2017-10-04 19:05 - 2017-10-04 19:05 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet (1).exe
2017-10-04 19:04 - 2017-10-04 19:04 - 001636840 _____ C:\Users\asusPC\Downloads\setup_dm_CEWE_fotosvet.exe
2017-10-04 01:57 - 2017-10-04 01:57 - 000003292 _____ C:\Windows\System32\Tasks\Avira_Antivirus_Systray
2017-09-28 17:05 - 2017-09-28 17:05 - 000003122 _____ C:\Windows\System32\Tasks\Avira SystrayStartTrigger
2017-09-28 17:05 - 2017-09-28 17:05 - 000001134 _____ C:\Users\Public\Desktop\Avira.lnk
2017-09-25 09:52 - 2017-10-10 20:51 - 000000000 ____D C:\Users\asusPC\Desktop\iZUŠ _ Přihláška do ZUŠ_files
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-10-16 20:40 - 2016-08-08 08:09 - 000003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-530502146-3304040069-2869220945-1001
2017-10-16 19:33 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2017-10-16 19:05 - 2016-08-12 13:18 - 000003958 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{44B9CC47-EEB0-452A-B671-6DAAE07AF0AD}
2017-10-15 19:50 - 2016-09-04 13:23 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\vlc
2017-10-15 12:50 - 2016-09-04 13:23 - 000000000 ____D C:\Users\asusPC\AppData\Roaming\dvdcss
2017-10-15 12:00 - 2016-09-13 18:20 - 000003480 _____ C:\Windows\System32\Tasks\ASUS Live Update1
2017-10-15 12:00 - 2016-09-02 19:00 - 000003470 _____ C:\Windows\System32\Tasks\ASUS Live Update2
2017-10-12 19:31 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\rescache
2017-10-12 18:35 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-10-12 18:34 - 2013-08-22 16:44 - 000362520 _____ C:\Windows\system32\FNTCACHE.DAT
2017-10-12 18:31 - 2013-08-22 17:36 - 000000000 ___RD C:\Windows\ToastData
2017-10-12 18:31 - 2013-08-22 17:20 - 000000000 ____D C:\Windows\CbsTemp
2017-10-12 18:11 - 2016-08-15 14:56 - 000001084 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-10-12 18:02 - 2016-08-21 20:41 - 000000000 ____D C:\Users\asusPC\AppData\Local\CrashDumps
2017-10-12 18:02 - 2016-08-15 15:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-10-12 16:14 - 2016-08-08 08:02 - 000000000 ____D C:\Users\asusPC
2017-10-11 19:04 - 2016-08-15 15:13 - 000000000 ____D C:\ProgramData\Avira
2017-10-11 19:04 - 2016-08-15 15:13 - 000000000 ____D C:\Program Files (x86)\Avira
2017-10-11 18:43 - 2015-04-26 19:44 - 000740822 _____ C:\Windows\system32\perfh005.dat
2017-10-11 18:43 - 2015-04-26 19:44 - 000151948 _____ C:\Windows\system32\perfc005.dat
2017-10-11 18:43 - 2014-11-21 01:09 - 001748728 _____ C:\Windows\system32\PerfStringBackup.INI
2017-10-11 18:31 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2017-10-11 18:30 - 2016-08-21 23:13 - 000000000 ____D C:\Windows\system32\MRT
2017-10-11 18:26 - 2016-08-21 23:13 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-10-10 20:56 - 2017-01-11 21:59 - 000000000 ____D C:\Users\asusPC\Desktop\bradavice
2017-10-10 20:51 - 2017-06-14 11:38 - 000000000 ____D C:\Users\asusPC\Desktop\E SHOP OUTDOOR SPORT - Bufo Outdoor Sport_files
2017-10-10 20:45 - 2016-10-03 13:07 - 000000000 ____D C:\Users\asusPC\Desktop\filmy pohadky
2017-10-10 20:45 - 2016-08-05 15:20 - 000000000 ____D C:\ProgramData\Qualcomm Atheros
2017-10-10 20:45 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\ASUS WebStorage
2017-10-10 20:44 - 2016-08-08 08:05 - 000000000 ____D C:\ProgramData\USBChargerPlus
2017-10-10 20:44 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\WebStorage
2017-10-10 20:31 - 2017-07-31 21:45 - 000000000 ____D C:\Users\asusPC\Desktop\navigace
2017-10-10 20:30 - 2016-10-10 13:05 - 000000000 ____D C:\Users\asusPC\Desktop\OVEČKA SHAUN
2017-10-10 20:16 - 2016-10-10 13:27 - 000000000 ____D C:\Users\asusPC\Desktop\hudba
2017-10-10 20:00 - 2016-10-03 20:23 - 000000000 ____D C:\Users\asusPC\Desktop\k vyvoláí
2017-10-10 19:53 - 2015-04-26 12:02 - 000000000 ____D C:\ProgramData\ASUSLogos
2017-10-10 19:49 - 2017-06-29 22:00 - 000000000 ____D C:\Users\asusPC\Downloads\Nová složka
2017-10-10 19:49 - 2016-10-03 13:10 - 000000000 ____D C:\Users\asusPC\Desktop\fotky
2017-10-04 20:35 - 2017-04-26 21:20 - 000135680 ___SH C:\Users\asusPC\Downloads\Thumbs.db
2017-10-04 01:56 - 2016-08-15 15:13 - 000176224 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2017-10-01 20:22 - 2016-08-05 15:28 - 000000000 ____D C:\Program Files (x86)\McAfee
2017-09-28 17:05 - 2015-04-26 12:03 - 000000000 ____D C:\ProgramData\Package Cache
2017-09-27 18:04 - 2016-08-15 14:53 - 000002217 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-09-27 18:04 - 2016-08-15 14:53 - 000002205 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-09-22 16:50 - 2013-08-22 17:36 - 000000000 ___HD C:\Program Files\WindowsApps
2017-09-22 16:50 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\AppReadiness
==================== Files in the root of some directories =======
2017-10-11 20:01 - 2017-10-16 20:34 - 000000093 _____ () C:\Users\asusPC\AppData\Roaming\sp_data.sys
2017-10-10 19:50 - 2017-10-10 19:50 - 000001092 _____ () C:\ProgramData\AIEAQWZW-F61G-KZC0-204340C4-C19636FE4096.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000000939 _____ () C:\ProgramData\AIEAQWZW-F61G-KZC0-69962ACF-374D7F483013.asasin
2017-10-10 19:50 - 2017-10-10 19:50 - 000008387 ____C () C:\ProgramData\asasin-5477.htm
2016-08-05 15:14 - 2016-08-05 15:14 - 000000000 ____H () C:\ProgramData\DP45977C.lfl
2015-04-26 12:02 - 2012-09-07 13:40 - 000000256 _____ () C:\ProgramData\SetStretch.cmd
2015-04-26 12:02 - 2009-07-22 12:04 - 000024576 _____ () C:\ProgramData\SetStretch.exe
2015-04-26 12:02 - 2012-09-07 13:37 - 000000103 _____ () C:\ProgramData\SetStretch.VBS
Some files in TEMP:
====================
2017-10-12 18:10 - 2017-10-12 18:10 - 030950664 _____ () C:\Users\asusPC\AppData\Local\Temp\vlc-2.2.6-win32.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-10-15 09:09
==================== End of FRST.txt ============================
S díky TK