Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14.03.2018
Ran by Josef (administrator) on DESKTOP-23MSNL0 (18-03-2018 13:07:32)
Running from C:\Users\Josef\Desktop
Loaded Profiles: Josef (Available Profiles: Josef)
Platform: Windows 10 Pro Version 1709 16299.248 (X64) Language: Čeština (Česko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
() C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTServer.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIHJE.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
(HP) C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google) C:\Users\Josef\AppData\Local\Google\Chrome\User Data\SwReporter\26.144.201\software_reporter_tool.exe
(Google) C:\Users\Josef\AppData\Local\Google\Chrome\User Data\SwReporter\26.144.201\software_reporter_tool.exe
(Google) C:\Users\Josef\AppData\Local\Google\Chrome\User Data\SwReporter\26.144.201\software_reporter_tool.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8911872 2016-10-15] (Realtek Semiconductor)
HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [229592 2015-07-09] (Realtek Semiconductor Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [245608 2018-03-04] (AVAST Software)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HPRadioMgr] => C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [268896 2016-04-14] (HP)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-08-30] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1243976712-1797555765-2480249262-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [10290608 2018-02-07] (Piriform Ltd)
HKU\S-1-5-21-1243976712-1797555765-2480249262-1001\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHJE.EXE [283232 2017-12-04] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1243976712-1797555765-2480249262-1001\...\Run: [FTweakFCleaner] => C:\Program Files (x86)\FCleaner\FCleaner.exe [1763840 2010-06-21] (FTweak)
Startup: C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2017-12-17]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.169.1.254
Tcpip\..\Interfaces\{a93c2824-6465-406f-a73d-ed7c26793b57}: [DhcpNameServer] 192.169.1.254
Tcpip\..\Interfaces\{d5ad5322-ae2b-4f34-b1f8-4ac836ad4d2f}: [DhcpNameServer] 192.168.42.129
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
SearchScopes: HKU\S-1-5-21-1243976712-1797555765-2480249262-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2009-08-24] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2009-08-24] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
FireFox:
========
FF DefaultProfile: jugoxqbc.default-1520583012548
FF ProfilePath: C:\Users\Josef\AppData\Roaming\Mozilla\Firefox\Profiles\jugoxqbc.default-1520583012548 [2018-03-18]
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-05] (Google Inc.)
Chrome:
=======
CHR HomePage: Default -> hxxps://
www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://
www.seznam.cz/"
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam.cz
CHR DefaultSuggestURL: Default -> hxxps://suggest.fulltext.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Profile: C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default [2018-03-18]
CHR Extension: (Prezentace) - C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-03-10]
CHR Extension: (Dokumenty) - C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-03-10]
CHR Extension: (Disk Google) - C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-03-10]
CHR Extension: (YouTube) - C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-03-10]
CHR Extension: (Avast SafePrice) - C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-03-10]
CHR Extension: (Tabulky) - C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-03-10]
CHR Extension: (Dokumenty Google offline) - C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-03-10]
CHR Extension: (Avast Online Security) - C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-03-10]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-03-10]
CHR Extension: (Gmail) - C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-03-10]
CHR Extension: (Chrome Media Router) - C:\Users\Josef\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-03-10]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7556704 2018-03-04] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [303728 2018-03-04] (AVAST Software)
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [125656 2015-09-18] ()
R2 esifsvc; C:\WINDOWS\SysWOW64\esif_uf.exe [1394360 2015-08-12] (Intel Corporation)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [332144 2017-11-21] (HP Inc.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [370080 2015-08-23] (Intel Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [326656 2016-10-15] (Realtek Semiconductor)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2017-11-26] (Microsoft Corporation)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [278616 2017-08-18] (Synaptics Incorporated)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\NisSrv.exe [356152 2018-03-01] (Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MsMpEng.exe [106280 2018-03-01] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [196648 2018-03-04] (AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [227504 2018-03-04] (AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [199440 2018-03-04] (AVAST Software)
R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [343752 2018-03-04] (AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [57680 2018-03-04] (AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [215320 2018-03-04] (AVAST Software)
S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [46968 2018-03-04] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [146656 2018-03-04] (AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110328 2018-03-04] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84368 2018-03-04] (AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1026696 2018-03-04] (AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460520 2018-03-04] (AVAST Software)
S2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [205976 2018-03-04] (AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [380528 2018-03-04] (AVAST Software)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [55816 2015-08-12] (Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [53752 2015-08-12] (Intel Corporation)
R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [261624 2015-08-12] (Intel Corporation)
R3 igfxLP; C:\WINDOWS\system32\DRIVERS\igdkmd64lp.sys [5760776 2015-08-23] (Intel Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [895256 2015-06-16] (Realtek )
R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [602352 2015-08-11] (Realtek Semiconductor Corporation)
R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [6895984 2017-08-17] (Realtek Semiconductor Corporation )
S3 smbdirect; C:\WINDOWS\System32\DRIVERS\smbdirect.sys [151552 2017-09-30] (Microsoft Corporation)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [55384 2017-08-18] (Synaptics Incorporated)
R3 TXEIx64; C:\WINDOWS\System32\drivers\TXEIx64.sys [146232 2015-06-26] (Intel Corporation)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [23040 2018-02-10] (Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46072 2018-03-01] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [288296 2018-03-01] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [129568 2018-03-01] (Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [31656 2016-04-14] (HP)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-03-18 13:07 - 2018-03-18 13:08 - 000015046 _____ C:\Users\Josef\Desktop\FRST.txt
2018-03-18 13:06 - 2018-03-18 13:06 - 002403328 _____ (Farbar) C:\Users\Josef\Desktop\FRST64.exe
2018-03-10 12:21 - 2018-03-10 12:21 - 000880208 _____ (Google Inc.) C:\Users\Josef\Downloads\ChromeSetup.exe
2018-03-09 10:38 - 2018-03-09 10:38 - 000083193 _____ C:\Users\Josef\Desktop\objednavka_31039446.pdf
2018-03-08 12:03 - 2018-03-08 12:03 - 000055642 _____ C:\Users\Josef\Desktop\velux.pdf
2018-03-07 06:34 - 2018-03-07 06:35 - 000000000 ____D C:\Users\Josef\Desktop\paušál
2018-03-04 11:56 - 2018-03-04 14:57 - 000000000 ____D C:\Program Files (x86)\FCleaner
2018-03-04 11:56 - 2018-03-04 11:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FCleaner
2018-03-04 11:56 - 2018-03-04 11:56 - 000000000 ____D C:\ProgramData\FTWeak
2018-03-04 11:47 - 2018-03-04 11:47 - 000002596 _____ C:\WINDOWS\System32\Tasks\FTweak FCleaner AutoCleanup
2018-03-04 11:47 - 2018-03-04 11:47 - 000000318 _____ C:\WINDOWS\Tasks\FTweak FCleaner AutoCleanup.job
2018-03-04 11:36 - 2018-03-04 11:56 - 000000000 ____D C:\Users\Josef\AppData\Roaming\FTWeak
2018-03-04 11:01 - 2018-03-04 11:01 - 000000000 ____D C:\Users\Josef\AppData\Roaming\AVAST Software
2018-03-04 11:00 - 2018-03-16 11:52 - 000004264 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2018-03-04 11:00 - 2018-03-10 12:12 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avast Software
2018-03-04 11:00 - 2018-03-04 11:00 - 000001986 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2018-03-04 10:59 - 2018-03-04 10:59 - 000460520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2018-03-04 10:59 - 2018-03-04 10:59 - 000380768 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2018-03-04 10:59 - 2018-03-04 10:59 - 000380528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2018-03-04 10:59 - 2018-03-04 10:59 - 000205976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2018-03-04 10:59 - 2018-03-04 10:59 - 000196648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2018-03-04 10:59 - 2018-03-04 10:59 - 000146656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2018-03-04 10:59 - 2018-03-04 10:59 - 000110328 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2018-03-04 10:59 - 2018-03-04 10:59 - 000084368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2018-03-04 10:59 - 2018-03-04 10:59 - 000046968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2018-03-04 10:59 - 2018-03-04 10:57 - 001026696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2018-03-04 10:59 - 2018-03-04 10:57 - 000343752 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbloga.sys
2018-03-04 10:59 - 2018-03-04 10:57 - 000227504 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys
2018-03-04 10:59 - 2018-03-04 10:57 - 000215320 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2018-03-04 10:59 - 2018-03-04 10:57 - 000199440 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsha.sys
2018-03-04 10:59 - 2018-03-04 10:57 - 000057680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniva.sys
2018-03-04 10:56 - 2018-03-04 10:56 - 000000000 ____D C:\Program Files\AVAST Software
2018-03-04 10:02 - 2018-03-04 10:05 - 000000000 ____D C:\Users\Josef\AppData\Local\Seznam.cz
2018-03-04 10:02 - 2018-03-04 10:02 - 000000938 _____ C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Seznam.cz.lnk
2018-03-04 10:00 - 2018-03-10 12:12 - 000000000 ____D C:\Users\Josef\AppData\Roaming\Seznam Browser
2018-03-02 14:15 - 2018-03-02 14:15 - 000003734 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1243976712-1797555765-2480249262-1001UA
2018-03-02 14:15 - 2018-03-02 14:15 - 000003466 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1243976712-1797555765-2480249262-1001Core
2018-03-02 13:10 - 2018-03-02 13:10 - 000000000 ____D C:\Users\Josef\AppData\Local\AVAST Software
2018-03-02 13:03 - 2018-03-02 13:03 - 000000000 ____D C:\Users\Josef\AppData\Local\CEF
2018-03-02 13:02 - 2018-03-04 11:00 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys
2018-03-02 13:01 - 2018-03-02 13:01 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2018-03-02 12:54 - 2018-03-04 10:56 - 000000000 ____D C:\ProgramData\AVAST Software
2018-02-28 10:29 - 2000-12-11 20:53 - 000041232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ODBCCP32.CPL
2018-02-28 10:29 - 1997-04-25 06:00 - 000026224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ODBC16GT.DLL
2018-02-28 10:29 - 1997-04-25 06:00 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ODBC32GT.DLL
2018-02-28 10:29 - 1997-04-25 06:00 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DS32GT.DLL
2018-02-28 10:29 - 1997-04-25 06:00 - 000004656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DS16GT.DLL
2018-02-28 10:29 - 1997-01-16 12:10 - 000376080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSRDO20.DLL
2018-02-28 10:29 - 1997-01-13 16:42 - 000037136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSJINT35.DLL
2018-02-28 10:29 - 1997-01-13 13:49 - 000097552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RDOCURS.DLL
2018-02-28 10:29 - 1996-12-31 16:19 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSEXCL35.DLL
2018-02-28 10:29 - 1996-12-31 16:19 - 000169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSLTUS35.DLL
2018-02-28 10:29 - 1996-12-16 21:30 - 001039360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSJET35.DLL
2018-02-28 10:29 - 1996-12-03 16:07 - 000403216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSREPL35.DLL
2018-02-28 10:29 - 1996-12-02 21:44 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSXBSE35.DLL
2018-02-28 10:29 - 1996-12-02 21:44 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPDOX35.DLL
2018-02-28 10:29 - 1996-12-02 21:44 - 000251664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSRD2X35.DLL
2018-02-28 10:29 - 1996-12-02 21:44 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSTEXT35.DLL
2018-02-28 10:29 - 1996-12-02 21:44 - 000024336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSJTER35.DLL
2018-02-28 10:29 - 1996-11-08 05:48 - 000368912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBAR332.DLL
2018-02-28 10:29 - 1996-10-29 03:00 - 000026340 _____ C:\WINDOWS\SysWOW64\ODBCINST.HLP
2018-02-28 10:29 - 1996-08-28 23:09 - 000000244 _____ C:\WINDOWS\SysWOW64\ODBCINST.CNT
2018-02-28 09:31 - 2018-03-01 10:45 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-03-18 13:07 - 2017-08-07 17:39 - 000000000 ____D C:\FRST
2018-03-18 13:01 - 2017-11-24 16:17 - 000000000 ____D C:\Users\Josef
2018-03-18 12:56 - 2017-11-24 16:38 - 000000000 __SHD C:\Users\Josef\IntelGraphicsProfiles
2018-03-18 12:56 - 2017-11-24 16:37 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2018-03-16 12:05 - 2017-11-24 15:58 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-03-16 11:57 - 2017-11-29 16:59 - 000003256 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForJosef
2018-03-16 11:57 - 2017-11-29 16:59 - 000000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForJosef.job
2018-03-16 11:56 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps
2018-03-16 11:56 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
2018-03-16 11:56 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-03-15 08:26 - 2017-09-29 14:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-03-14 10:07 - 2017-11-26 10:35 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-03-14 09:49 - 2017-11-26 10:35 - 130364688 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2018-03-14 09:49 - 2017-11-26 10:34 - 130364688 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-03-14 09:39 - 2017-09-29 14:44 - 000000000 ____D C:\WINDOWS\INF
2018-03-14 09:13 - 2017-12-05 10:05 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-03-14 09:13 - 2017-12-05 10:05 - 000002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-03-10 12:18 - 2017-11-24 15:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-03-10 12:17 - 2017-09-29 09:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2018-03-10 12:11 - 2017-04-21 09:53 - 000000000 ____D C:\AdwCleaner
2018-03-10 12:07 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\InfusedApps
2018-03-10 11:50 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\registration
2018-03-10 11:48 - 2017-11-24 16:35 - 000000000 ____D C:\Program Files (x86)\Google
2018-03-09 09:29 - 2017-11-24 16:31 - 000000000 ____D C:\Users\Josef\AppData\LocalLow\Mozilla
2018-03-09 07:57 - 2017-11-24 15:57 - 000398920 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-03-08 14:53 - 2017-11-24 16:19 - 000000000 ____D C:\Users\Josef\AppData\Local\Packages
2018-03-08 14:52 - 2017-12-16 10:46 - 000000000 ____D C:\ProgramData\Skype
2018-03-08 14:50 - 2017-12-01 18:41 - 000000000 ____D C:\ProgramData\Ashampoo
2018-03-07 11:39 - 2017-11-24 16:48 - 000000000 ____D C:\Users\Josef\AppData\Local\PlaceholderTileLogoFolder
2018-03-06 10:44 - 2017-12-04 10:30 - 000000000 ____D C:\Users\Josef\AppData\Roaming\Epson
2018-03-06 10:44 - 2017-12-04 09:50 - 000000000 ____D C:\ProgramData\EPSON
2018-03-04 12:03 - 2017-12-17 17:54 - 000000000 ____D C:\Users\Josef\Desktop\hudební složka
2018-03-04 11:12 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\rescache
2018-03-04 11:10 - 2017-11-24 17:10 - 000000000 ____D C:\Users\Josef\Desktop\Nová složka
2018-03-04 10:05 - 2017-12-02 11:21 - 000000000 ____D C:\Users\Josef\AppData\Roaming\Seznam.cz
2018-03-04 10:05 - 2017-12-02 11:21 - 000000000 ____D C:\Program Files (x86)\Seznam.cz
2018-03-04 09:58 - 2017-11-24 16:34 - 000000000 ____D C:\Users\Josef\AppData\Local\Google
2018-03-02 13:10 - 2017-11-25 08:12 - 000003936 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2018-03-02 13:10 - 2017-11-25 08:12 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk
2018-03-01 10:44 - 2017-09-29 14:46 - 000000000 ___RD C:\Program Files\Windows Defender
2018-02-28 11:23 - 2017-12-15 11:28 - 000000000 ____D C:\Users\Josef\Desktop\Nová složka (2)
2018-02-28 11:01 - 2017-11-28 13:41 - 000000000 ____D C:\ProgramData\firebird
2018-02-28 10:36 - 2017-11-24 16:19 - 000000000 ____D C:\Users\Josef\AppData\Local\VirtualStore
2018-02-28 09:38 - 2017-11-24 16:13 - 002947114 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-02-28 09:38 - 2017-09-30 15:30 - 001339228 _____ C:\WINDOWS\system32\perfh005.dat
2018-02-28 09:38 - 2017-09-30 15:30 - 000325580 _____ C:\WINDOWS\system32\perfc005.dat
2018-02-28 09:11 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\NDF
2018-02-28 09:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-02-17 19:56 - 2017-11-24 16:19 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-02-17 19:56 - 2017-11-24 16:19 - 000000000 ___RD C:\Users\Josef\3D Objects
2018-02-17 17:34 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\TextInput
2018-02-17 17:34 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2018-02-17 17:34 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
2018-02-17 17:34 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\ShellExperiences
2018-02-17 17:34 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2018-02-17 17:34 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\bcastdvr
==================== Files in the root of some directories =======
2017-11-30 17:58 - 2018-03-18 12:57 - 000265489 _____ () C:\Users\Josef\AppData\Local\BTServer.log
2017-12-01 20:35 - 2017-12-01 20:38 - 000004608 _____ () C:\Users\Josef\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2018-03-13 07:44
==================== End of FRST.txt ============================