SP PC Problém s přeplněným diskem C
Napsal: 07 srp 2018 22:13
Zdravím.
C disk je zacpaný až hanba..
Prosím o pomoc s vyčištěním přebytečných sra***
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.08.2018
Ran by Uzivatel (administrator) on POČÍTAČ (07-08-2018 23:08:45)
Running from C:\Users\Uzivatel\Desktop
Loaded Profiles: Uzivatel (Available Profiles: Uzivatel)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(InterVideo Inc.) C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe
(EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe
(Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe
(Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppService.exe
(EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\SpyHunter5.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Wondershare) C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Adobe Systems, Incorporated) C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
(Microsoft) C:\Program Files\Microsoft Research\Image Composite Editor\ICE.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\6a0c9611291d45bb9226980209917c3d\FusionLauncher.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\6a0c9611291d45bb9226980209917c3d\FusionLauncher.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\Fusion360.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\Fusion360.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\adexmtsv.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Sony) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe
(Sony) C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\Cura_15.04\python\pythonw.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Datales) F:\FOTKY\Prodej aukro\Tisk tiskopisů\slozenky\Slozenky\Slozenky.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Pinnacle) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe
(Pinnacle) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe
(Pinnacle) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe
(Pinnacle) C:\Program Files\Pinnacle\Studio 18\programs\BGRnd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [626552 2012-06-18] (Alps Electric Co., Ltd.)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1340192 2016-01-29] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe [2907240 2012-04-26] (Realtek Semiconductor Corp.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60688 2015-09-23] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-08-06] (Apple Inc.)
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [408888 2014-06-27] (Power Software Ltd)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2072928 2014-10-31] (Wondershare)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [UVS11 Preload] => C:\Program Files (x86)\Ulead Systems\Ulead VideoStudio 11\uvPL.exe [341488 2007-03-03] (InterVideo Digital Technology Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [2132320 2018-05-29] (Sony)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\MountPoints2: {110a058c-ba65-11e5-a292-782bcbaf1b4f} - I:\Lenovo_Suite.exe
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\MountPoints2: {1eca292e-29ef-11e5-a5e4-806e6f6e6963} - D:\DJHERCULESMIX_Universal_DJ.exe
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\MountPoints2: {21e0712e-8a21-11e7-b9b7-782bcbaf1b4f} - H:\startme.exe
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\MountPoints2: {5096ba38-a174-11e5-ae5c-782bcbaf1b4f} - H:\Startme.exe
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\MountPoints2: {69575116-af34-11e5-8ec3-782bcbaf1b4f} - I:\startme.exe
Startup: C:\Users\Uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sledovat výstrahy inkoustu - HP Deskjet 2050 J510 series.lnk [2018-07-31]
ShortcutTarget: Sledovat výstrahy inkoustu - HP Deskjet 2050 J510 series.lnk -> C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.255.255.20 10.255.255.10
Tcpip\..\Interfaces\{8D3DD345-AED1-4C5F-A2DF-FEB54F9F04B4}: [DhcpNameServer] 10.255.255.20 10.255.255.10
Internet Explorer:
==================
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=i ... ar=msnhome
SearchScopes: HKLM -> DefaultScope {5E9BA19F-E032-4A60-9A60-64552215D6C9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {5E9BA19F-E032-4A60-9A60-64552215D6C9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {EB117507-5E4C-40E1-B8D9-2945353E4AEB} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> {EB117507-5E4C-40E1-B8D9-2945353E4AEB} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2828151382-1855654344-3190346470-1001 -> {CE3E38F5-B53D-4216-8A26-B4A2AC610792} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-06-29] (Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default [2018-08-07]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2018-05-14]
CHR Extension: (Adobe Acrobat) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-12-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-05-14]
CHR Extension: (Chrome Media Router) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-21]
CHR HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Capture Device Service; C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe [198168 2007-03-06] (InterVideo Inc.)
R2 EsgShKernel; C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe [9872688 2018-07-24] (EnigmaSoft Limited)
R2 Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [1194512 2018-06-06] (Garmin Ltd. or its subsidiaries)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2016-01-29] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [374344 2016-01-29] (Microsoft Corporation)
R2 ShMonitor; C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe [538416 2018-07-24] (EnigmaSoft Limited)
S3 Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [155520 2015-06-10] (Avanquest Software) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppService.exe [495840 2018-01-26] (Wondershare)
R2 WsDrvInst; C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe [120096 2018-01-16] (Wondershare)
R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2195968 2018-05-29] (Sony) [File not signed]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AF9035HB; C:\Windows\System32\Drivers\AF9035HB.sys [907904 2016-12-24] (ITE Technologies )
S3 atmeltpm; C:\Windows\system32\drivers\atmeltpm64.sys [19456 2012-05-25] (Atmel, Inc.)
S3 BCMTPM; C:\Windows\system32\drivers\btpmwx64.sys [32096 2012-05-25] (Broadcom Corp.)
R3 CH341SER_A64; C:\Windows\System32\Drivers\CH341S64.SYS [59904 2015-01-25] (www.winchiphead.com)
S3 d554gps; C:\Windows\system32\drivers\d554gps64.sys [102440 2012-06-18] (Ericsson AB)
S3 DIGITECH; C:\Windows\system32\drivers\DIGITECH.sys [25648 2011-06-08] (Copyright(c) Digitech Systems)
S3 ecnssndis; C:\Windows\System32\Drivers\wwuss64.sys [26664 2012-06-18] (Ericsson AB)
S3 ecnssndisfltr; C:\Windows\System32\Drivers\wwussf64.sys [29736 2012-06-18] (Ericsson AB)
R3 EnigmaFileMonDriver; C:\Windows\system32\Drivers\EnigmaFileMonDriver.sys [61624 2018-07-31] (EnigmaSoft Limited)
S3 FLxHCIh; C:\Windows\system32\drivers\FLxHCIh.sys [65536 2012-03-02] (Fresco Logic)
S3 ggsomc; C:\Windows\System32\DRIVERS\ggsomc.sys [32384 2018-03-14] (Sony Mobile Communications)
S3 HBtnKey; C:\Windows\system32\drivers\HBtnKey.sys [20424 2011-07-19] (Dell Inc.)
R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [24496 2012-03-15] (Intel Corporation)
S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [639408 2012-06-15] (Intel Corporation)
R3 IntcAzAudAddService; C:\Windows\System32\drivers\RTDVHD64.sys [3712360 2012-04-26] (Realtek Semiconductor Corp.)
S3 irstrtdv; C:\Windows\system32\drivers\irstrtdv.sys [26504 2011-06-16] (Intel Corporation)
S3 ISCT; C:\Windows\system32\drivers\ISCTD64.sys [44992 2012-05-25] ()
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [56576 2017-03-14] (hxxp://libusb-win32.sourceforge.net)
S3 Mbm3CBus; C:\Windows\system32\drivers\Mbm3CBus.sys [419400 2012-06-18] (MCCI Corporation)
S3 Mbm3DevMt; C:\Windows\system32\drivers\Mbm3DevMt.sys [430664 2012-06-18] (MCCI Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [289120 2015-11-13] (Microsoft Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133816 2015-11-13] (Microsoft Corporation)
S3 nwdelgobi3kfilter; C:\Windows\system32\drivers\nwdelgobi3kfilter.sys [34304 2012-06-18] (Novatel Wireless Inc)
S3 NWDellPort; C:\Windows\system32\drivers\nwdelser.sys [222208 2012-06-18] (Novatel Wireless Inc.)
S3 NWDellPort2; C:\Windows\system32\drivers\nwdelser2.sys [222208 2012-06-18] (Novatel Wireless Inc.)
S3 nwdelserial; C:\Windows\system32\drivers\nwdelserial.sys [234112 2012-06-18] (Novatel Wireless Inc.)
S3 percsas2; C:\Windows\system32\drivers\percsas2.sys [53584 2012-06-15] (LSI Corporation)
S3 QCFilterdl; C:\Windows\system32\drivers\qcfilterdl.sys [8832 2012-05-10] (QUALCOMM Incorporated)
S3 qcfilterdl2k; C:\Windows\system32\drivers\qcfilterdl2k.sys [6400 2012-07-05] (QUALCOMM Incorporated)
S3 qcombusdl; C:\Windows\system32\drivers\qcombusdl.sys [137800 2012-07-05] (MCCI)
S3 qcusbserdl; C:\Windows\system32\drivers\qcusbserdl.sys [127104 2012-05-10] (QUALCOMM Incorporated)
S3 qcusbserdl2k; C:\Windows\system32\drivers\qcusbserdl2k.sys [230784 2012-07-05] (QUALCOMM Incorporated)
S3 SNXPPAMD; C:\Windows\system32\drivers\snxppamd.sys [100728 2012-07-04] (SUNIX Co., Ltd.)
S3 SNXPSAMD; C:\Windows\system32\drivers\snxpsamd.sys [97144 2012-07-04] (SUNIX Co., Ltd.)
S3 ST7007; C:\Windows\system32\drivers\ST7007.sys [67696 2011-06-20] (STMicroelectronics)
S3 stmtpm; C:\Windows\system32\drivers\stm_tpm.sys [29184 2012-05-25] (STMicroelectronics, INC)
S3 ST_ACCEL; C:\Windows\system32\drivers\ST_ACCEL.sys [68208 2012-05-25] (STMicroelectronics)
S3 tcm; C:\Windows\system32\drivers\tcm.sys [17048 2012-07-04] ()
S3 terahid; C:\Windows\system32\drivers\terahid.sys [7680 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 terahidmapper; C:\Windows\system32\drivers\terahidmapper.sys [7680 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 teramouse; C:\Windows\system32\drivers\teramouse.sys [11264 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 terapcoip; C:\Windows\system32\drivers\terapcoip.sys [37376 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Apple, Inc.) [File not signed]
S3 X86BDA; C:\Windows\System32\DRIVERS\OEMDrv.sys [268416 2011-06-08] ( )
S3 ALSysIO; \??\C:\Users\Uzivatel\AppData\Local\Temp\ALSysIO64.sys [X] <==== ATTENTION
S3 ptlser; \SystemRoot\system32\drivers\ptlser64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-08-07 23:08 - 2018-08-07 23:09 - 000020450 _____ C:\Users\Uzivatel\Desktop\FRST.txt
2018-08-07 23:08 - 2018-08-07 23:08 - 002412544 _____ (Farbar) C:\Users\Uzivatel\Desktop\FRST64.exe
2018-08-07 23:08 - 2018-08-07 23:08 - 000000000 ____D C:\Users\Uzivatel\Desktop\FRST-OlderVersion
2018-08-06 19:00 - 2018-08-06 19:01 - 000015664 _____ C:\Users\Uzivatel\Documents\cc_20180806_190045 registry 6.8..reg
2018-08-06 18:29 - 2018-08-06 18:29 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ggsomc_01009.Wdf
2018-08-06 18:29 - 2018-08-06 18:29 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ggflt_01009.Wdf
2018-08-06 18:29 - 2018-08-06 18:29 - 000000000 ____D C:\Windows\LastGood
2018-08-06 18:16 - 2018-08-06 18:16 - 000000000 ____D C:\ProgramData\Sony Mobile
2018-08-06 18:16 - 2018-08-06 18:16 - 000000000 ____D C:\ProgramData\Oracle
2018-08-06 18:16 - 2018-08-06 18:16 - 000000000 ____D C:\Program Files\Sony Mobile
2018-08-06 16:31 - 2018-08-06 16:31 - 000002192 _____ C:\Users\Public\Desktop\Xperia Companion.lnk
2018-08-05 15:36 - 2018-08-05 15:36 - 000001040 _____ C:\Users\Public\Desktop\EaseUS Data Recovery Wizard.lnk
2018-08-05 15:36 - 2018-08-05 15:36 - 000000000 ____D C:\ProgramData\SystemAcCrux
2018-08-05 15:36 - 2018-08-05 15:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard
2018-08-05 15:36 - 2018-08-05 15:36 - 000000000 ____D C:\Program Files\EaseUS
2018-07-24 19:55 - 2018-07-31 08:32 - 000061624 _____ (EnigmaSoft Limited) C:\Windows\system32\Drivers\EnigmaFileMonDriver.sys
2018-07-24 19:55 - 2018-07-24 19:55 - 000001021 _____ C:\Users\Public\Desktop\SpyHunter5.lnk
2018-07-24 19:55 - 2018-07-24 19:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft
2018-07-24 19:55 - 2018-07-24 19:55 - 000000000 ____D C:\ProgramData\EnigmaSoft Limited
2018-07-24 19:54 - 2018-07-24 19:54 - 000000000 ____D C:\sh5ldr
2018-07-24 19:53 - 2018-07-24 19:53 - 000000000 ____D C:\Program Files\EnigmaSoft
2018-07-22 12:31 - 2018-07-24 19:55 - 000000000 ___HD C:\Program Files (x86)\InstallJammer Registry
2018-07-22 12:31 - 2018-07-22 21:08 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\esmska
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-08-07 23:08 - 2017-03-05 00:56 - 000000000 ____D C:\FRST
2018-08-07 22:51 - 2015-07-31 14:24 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\vlc
2018-08-07 22:51 - 2015-07-21 15:55 - 000023552 _____ C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-08-07 22:48 - 2015-09-23 16:09 - 000000000 ____D C:\Users\Uzivatel\temp
2018-08-07 22:38 - 2015-09-23 16:09 - 000036631 _____ C:\Users\Uzivatel\AppData\Roaming\POČÍTAČ.MTBF.txt
2018-08-07 22:38 - 2015-07-15 16:08 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\Pinnacle
2018-08-07 22:38 - 2015-07-15 16:06 - 000000349 _____ C:\Users\Public\Documents\PCLECHAL.INI
2018-08-07 15:10 - 2015-07-15 22:51 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\Adobe
2018-08-06 22:13 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2018-08-06 19:12 - 2016-06-19 18:33 - 000000000 ____D C:\Program Files\trend micro
2018-08-06 19:05 - 2016-12-18 14:12 - 000000000 ____D C:\ProgramData\Package Cache
2018-08-06 19:04 - 2017-04-26 21:59 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\CrashDumps
2018-08-06 16:31 - 2016-05-19 17:02 - 000000000 ____D C:\Program Files\Sony
2018-08-06 16:31 - 2015-12-16 19:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2018-08-06 16:31 - 2015-12-16 19:08 - 000000000 ____D C:\Program Files (x86)\Sony
2018-08-06 15:42 - 2014-07-31 02:14 - 000668542 _____ C:\Windows\system32\perfh005.dat
2018-08-06 15:42 - 2014-07-31 02:14 - 000141202 _____ C:\Windows\system32\perfc005.dat
2018-08-06 15:42 - 2009-07-14 07:13 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2018-08-06 15:36 - 2009-07-14 06:45 - 000030896 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-08-06 15:36 - 2009-07-14 06:45 - 000030896 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-08-05 15:48 - 2014-11-26 23:47 - 000000000 ____D C:\Users\Uzivatel
2018-08-05 15:47 - 2015-07-28 11:45 - 000000000 ____D C:\Program Files\Recuva
2018-08-01 17:13 - 2018-03-22 22:10 - 000002567 _____ C:\Users\Uzivatel\Desktop\Autodesk Fusion 360.lnk
2018-07-31 08:31 - 2015-07-18 11:49 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\ICQ
2018-07-31 08:31 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-07-22 23:49 - 2015-07-16 16:23 - 000000000 ____D C:\Program Files\Adobe
2018-07-17 00:02 - 2010-11-21 05:27 - 000563832 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2018-07-10 15:45 - 2017-12-19 20:53 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-07-10 15:45 - 2015-07-22 21:04 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
==================== Files in the root of some directories =======
2018-04-29 16:06 - 2018-04-29 16:06 - 000015704 _____ () C:\Users\Uzivatel\AppData\Roaming\.ptbt0
2015-07-29 18:55 - 2015-11-01 21:35 - 000000132 _____ () C:\Users\Uzivatel\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2016-07-27 13:03 - 2018-03-23 23:26 - 000000132 _____ () C:\Users\Uzivatel\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2015-09-23 16:09 - 2018-08-07 22:38 - 000036631 _____ () C:\Users\Uzivatel\AppData\Roaming\POČÍTAČ.MTBF.txt
2015-07-29 18:24 - 2015-07-29 18:24 - 000001480 _____ () C:\Users\Uzivatel\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2016-08-05 11:00 - 2017-03-04 22:35 - 000001480 _____ () C:\Users\Uzivatel\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2015-07-21 15:55 - 2018-08-07 22:51 - 000023552 _____ () C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
Some files in TEMP:
====================
2018-08-06 16:28 - 2018-08-06 16:28 - 049934576 _____ (Sony) C:\Users\Uzivatel\AppData\Local\Temp\xcsE0D8.tmp.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2018-08-01 15:56
==================== End of FRST.txt ============================
C disk je zacpaný až hanba..
Prosím o pomoc s vyčištěním přebytečných sra***
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.08.2018
Ran by Uzivatel (administrator) on POČÍTAČ (07-08-2018 23:08:45)
Running from C:\Users\Uzivatel\Desktop
Loaded Profiles: Uzivatel (Available Profiles: Uzivatel)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(InterVideo Inc.) C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe
(EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe
(Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe
(Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppService.exe
(EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\SpyHunter5.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Wondershare) C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Adobe Systems, Incorporated) C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
(Microsoft) C:\Program Files\Microsoft Research\Image Composite Editor\ICE.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\6a0c9611291d45bb9226980209917c3d\FusionLauncher.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\6a0c9611291d45bb9226980209917c3d\FusionLauncher.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\Fusion360.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\Fusion360.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\adexmtsv.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Autodesk, Inc.) C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\957ce16f9555f92925985b77abe440de715ead70\WIN64\AdCefWebBrowser.exe
(Sony) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe
(Sony) C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\Cura_15.04\python\pythonw.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Datales) F:\FOTKY\Prodej aukro\Tisk tiskopisů\slozenky\Slozenky\Slozenky.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Pinnacle) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe
(Pinnacle) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe
(Pinnacle) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe
(Pinnacle) C:\Program Files\Pinnacle\Studio 18\programs\BGRnd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [626552 2012-06-18] (Alps Electric Co., Ltd.)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1340192 2016-01-29] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe [2907240 2012-04-26] (Realtek Semiconductor Corp.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60688 2015-09-23] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-08-06] (Apple Inc.)
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [408888 2014-06-27] (Power Software Ltd)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2072928 2014-10-31] (Wondershare)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [UVS11 Preload] => C:\Program Files (x86)\Ulead Systems\Ulead VideoStudio 11\uvPL.exe [341488 2007-03-03] (InterVideo Digital Technology Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [2132320 2018-05-29] (Sony)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\MountPoints2: {110a058c-ba65-11e5-a292-782bcbaf1b4f} - I:\Lenovo_Suite.exe
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\MountPoints2: {1eca292e-29ef-11e5-a5e4-806e6f6e6963} - D:\DJHERCULESMIX_Universal_DJ.exe
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\MountPoints2: {21e0712e-8a21-11e7-b9b7-782bcbaf1b4f} - H:\startme.exe
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\MountPoints2: {5096ba38-a174-11e5-ae5c-782bcbaf1b4f} - H:\Startme.exe
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\MountPoints2: {69575116-af34-11e5-8ec3-782bcbaf1b4f} - I:\startme.exe
Startup: C:\Users\Uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sledovat výstrahy inkoustu - HP Deskjet 2050 J510 series.lnk [2018-07-31]
ShortcutTarget: Sledovat výstrahy inkoustu - HP Deskjet 2050 J510 series.lnk -> C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.255.255.20 10.255.255.10
Tcpip\..\Interfaces\{8D3DD345-AED1-4C5F-A2DF-FEB54F9F04B4}: [DhcpNameServer] 10.255.255.20 10.255.255.10
Internet Explorer:
==================
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=i ... ar=msnhome
SearchScopes: HKLM -> DefaultScope {5E9BA19F-E032-4A60-9A60-64552215D6C9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {5E9BA19F-E032-4A60-9A60-64552215D6C9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {EB117507-5E4C-40E1-B8D9-2945353E4AEB} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> {EB117507-5E4C-40E1-B8D9-2945353E4AEB} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2828151382-1855654344-3190346470-1001 -> {CE3E38F5-B53D-4216-8A26-B4A2AC610792} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-06-29] (Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default [2018-08-07]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2018-05-14]
CHR Extension: (Adobe Acrobat) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-12-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-05-14]
CHR Extension: (Chrome Media Router) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-21]
CHR HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Capture Device Service; C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe [198168 2007-03-06] (InterVideo Inc.)
R2 EsgShKernel; C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe [9872688 2018-07-24] (EnigmaSoft Limited)
R2 Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [1194512 2018-06-06] (Garmin Ltd. or its subsidiaries)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2016-01-29] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [374344 2016-01-29] (Microsoft Corporation)
R2 ShMonitor; C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe [538416 2018-07-24] (EnigmaSoft Limited)
S3 Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [155520 2015-06-10] (Avanquest Software) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppService.exe [495840 2018-01-26] (Wondershare)
R2 WsDrvInst; C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe [120096 2018-01-16] (Wondershare)
R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2195968 2018-05-29] (Sony) [File not signed]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AF9035HB; C:\Windows\System32\Drivers\AF9035HB.sys [907904 2016-12-24] (ITE Technologies )
S3 atmeltpm; C:\Windows\system32\drivers\atmeltpm64.sys [19456 2012-05-25] (Atmel, Inc.)
S3 BCMTPM; C:\Windows\system32\drivers\btpmwx64.sys [32096 2012-05-25] (Broadcom Corp.)
R3 CH341SER_A64; C:\Windows\System32\Drivers\CH341S64.SYS [59904 2015-01-25] (www.winchiphead.com)
S3 d554gps; C:\Windows\system32\drivers\d554gps64.sys [102440 2012-06-18] (Ericsson AB)
S3 DIGITECH; C:\Windows\system32\drivers\DIGITECH.sys [25648 2011-06-08] (Copyright(c) Digitech Systems)
S3 ecnssndis; C:\Windows\System32\Drivers\wwuss64.sys [26664 2012-06-18] (Ericsson AB)
S3 ecnssndisfltr; C:\Windows\System32\Drivers\wwussf64.sys [29736 2012-06-18] (Ericsson AB)
R3 EnigmaFileMonDriver; C:\Windows\system32\Drivers\EnigmaFileMonDriver.sys [61624 2018-07-31] (EnigmaSoft Limited)
S3 FLxHCIh; C:\Windows\system32\drivers\FLxHCIh.sys [65536 2012-03-02] (Fresco Logic)
S3 ggsomc; C:\Windows\System32\DRIVERS\ggsomc.sys [32384 2018-03-14] (Sony Mobile Communications)
S3 HBtnKey; C:\Windows\system32\drivers\HBtnKey.sys [20424 2011-07-19] (Dell Inc.)
R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [24496 2012-03-15] (Intel Corporation)
S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [639408 2012-06-15] (Intel Corporation)
R3 IntcAzAudAddService; C:\Windows\System32\drivers\RTDVHD64.sys [3712360 2012-04-26] (Realtek Semiconductor Corp.)
S3 irstrtdv; C:\Windows\system32\drivers\irstrtdv.sys [26504 2011-06-16] (Intel Corporation)
S3 ISCT; C:\Windows\system32\drivers\ISCTD64.sys [44992 2012-05-25] ()
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [56576 2017-03-14] (hxxp://libusb-win32.sourceforge.net)
S3 Mbm3CBus; C:\Windows\system32\drivers\Mbm3CBus.sys [419400 2012-06-18] (MCCI Corporation)
S3 Mbm3DevMt; C:\Windows\system32\drivers\Mbm3DevMt.sys [430664 2012-06-18] (MCCI Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [289120 2015-11-13] (Microsoft Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133816 2015-11-13] (Microsoft Corporation)
S3 nwdelgobi3kfilter; C:\Windows\system32\drivers\nwdelgobi3kfilter.sys [34304 2012-06-18] (Novatel Wireless Inc)
S3 NWDellPort; C:\Windows\system32\drivers\nwdelser.sys [222208 2012-06-18] (Novatel Wireless Inc.)
S3 NWDellPort2; C:\Windows\system32\drivers\nwdelser2.sys [222208 2012-06-18] (Novatel Wireless Inc.)
S3 nwdelserial; C:\Windows\system32\drivers\nwdelserial.sys [234112 2012-06-18] (Novatel Wireless Inc.)
S3 percsas2; C:\Windows\system32\drivers\percsas2.sys [53584 2012-06-15] (LSI Corporation)
S3 QCFilterdl; C:\Windows\system32\drivers\qcfilterdl.sys [8832 2012-05-10] (QUALCOMM Incorporated)
S3 qcfilterdl2k; C:\Windows\system32\drivers\qcfilterdl2k.sys [6400 2012-07-05] (QUALCOMM Incorporated)
S3 qcombusdl; C:\Windows\system32\drivers\qcombusdl.sys [137800 2012-07-05] (MCCI)
S3 qcusbserdl; C:\Windows\system32\drivers\qcusbserdl.sys [127104 2012-05-10] (QUALCOMM Incorporated)
S3 qcusbserdl2k; C:\Windows\system32\drivers\qcusbserdl2k.sys [230784 2012-07-05] (QUALCOMM Incorporated)
S3 SNXPPAMD; C:\Windows\system32\drivers\snxppamd.sys [100728 2012-07-04] (SUNIX Co., Ltd.)
S3 SNXPSAMD; C:\Windows\system32\drivers\snxpsamd.sys [97144 2012-07-04] (SUNIX Co., Ltd.)
S3 ST7007; C:\Windows\system32\drivers\ST7007.sys [67696 2011-06-20] (STMicroelectronics)
S3 stmtpm; C:\Windows\system32\drivers\stm_tpm.sys [29184 2012-05-25] (STMicroelectronics, INC)
S3 ST_ACCEL; C:\Windows\system32\drivers\ST_ACCEL.sys [68208 2012-05-25] (STMicroelectronics)
S3 tcm; C:\Windows\system32\drivers\tcm.sys [17048 2012-07-04] ()
S3 terahid; C:\Windows\system32\drivers\terahid.sys [7680 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 terahidmapper; C:\Windows\system32\drivers\terahidmapper.sys [7680 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 teramouse; C:\Windows\system32\drivers\teramouse.sys [11264 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 terapcoip; C:\Windows\system32\drivers\terapcoip.sys [37376 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Apple, Inc.) [File not signed]
S3 X86BDA; C:\Windows\System32\DRIVERS\OEMDrv.sys [268416 2011-06-08] ( )
S3 ALSysIO; \??\C:\Users\Uzivatel\AppData\Local\Temp\ALSysIO64.sys [X] <==== ATTENTION
S3 ptlser; \SystemRoot\system32\drivers\ptlser64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-08-07 23:08 - 2018-08-07 23:09 - 000020450 _____ C:\Users\Uzivatel\Desktop\FRST.txt
2018-08-07 23:08 - 2018-08-07 23:08 - 002412544 _____ (Farbar) C:\Users\Uzivatel\Desktop\FRST64.exe
2018-08-07 23:08 - 2018-08-07 23:08 - 000000000 ____D C:\Users\Uzivatel\Desktop\FRST-OlderVersion
2018-08-06 19:00 - 2018-08-06 19:01 - 000015664 _____ C:\Users\Uzivatel\Documents\cc_20180806_190045 registry 6.8..reg
2018-08-06 18:29 - 2018-08-06 18:29 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ggsomc_01009.Wdf
2018-08-06 18:29 - 2018-08-06 18:29 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ggflt_01009.Wdf
2018-08-06 18:29 - 2018-08-06 18:29 - 000000000 ____D C:\Windows\LastGood
2018-08-06 18:16 - 2018-08-06 18:16 - 000000000 ____D C:\ProgramData\Sony Mobile
2018-08-06 18:16 - 2018-08-06 18:16 - 000000000 ____D C:\ProgramData\Oracle
2018-08-06 18:16 - 2018-08-06 18:16 - 000000000 ____D C:\Program Files\Sony Mobile
2018-08-06 16:31 - 2018-08-06 16:31 - 000002192 _____ C:\Users\Public\Desktop\Xperia Companion.lnk
2018-08-05 15:36 - 2018-08-05 15:36 - 000001040 _____ C:\Users\Public\Desktop\EaseUS Data Recovery Wizard.lnk
2018-08-05 15:36 - 2018-08-05 15:36 - 000000000 ____D C:\ProgramData\SystemAcCrux
2018-08-05 15:36 - 2018-08-05 15:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard
2018-08-05 15:36 - 2018-08-05 15:36 - 000000000 ____D C:\Program Files\EaseUS
2018-07-24 19:55 - 2018-07-31 08:32 - 000061624 _____ (EnigmaSoft Limited) C:\Windows\system32\Drivers\EnigmaFileMonDriver.sys
2018-07-24 19:55 - 2018-07-24 19:55 - 000001021 _____ C:\Users\Public\Desktop\SpyHunter5.lnk
2018-07-24 19:55 - 2018-07-24 19:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft
2018-07-24 19:55 - 2018-07-24 19:55 - 000000000 ____D C:\ProgramData\EnigmaSoft Limited
2018-07-24 19:54 - 2018-07-24 19:54 - 000000000 ____D C:\sh5ldr
2018-07-24 19:53 - 2018-07-24 19:53 - 000000000 ____D C:\Program Files\EnigmaSoft
2018-07-22 12:31 - 2018-07-24 19:55 - 000000000 ___HD C:\Program Files (x86)\InstallJammer Registry
2018-07-22 12:31 - 2018-07-22 21:08 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\esmska
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-08-07 23:08 - 2017-03-05 00:56 - 000000000 ____D C:\FRST
2018-08-07 22:51 - 2015-07-31 14:24 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\vlc
2018-08-07 22:51 - 2015-07-21 15:55 - 000023552 _____ C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-08-07 22:48 - 2015-09-23 16:09 - 000000000 ____D C:\Users\Uzivatel\temp
2018-08-07 22:38 - 2015-09-23 16:09 - 000036631 _____ C:\Users\Uzivatel\AppData\Roaming\POČÍTAČ.MTBF.txt
2018-08-07 22:38 - 2015-07-15 16:08 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\Pinnacle
2018-08-07 22:38 - 2015-07-15 16:06 - 000000349 _____ C:\Users\Public\Documents\PCLECHAL.INI
2018-08-07 15:10 - 2015-07-15 22:51 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\Adobe
2018-08-06 22:13 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2018-08-06 19:12 - 2016-06-19 18:33 - 000000000 ____D C:\Program Files\trend micro
2018-08-06 19:05 - 2016-12-18 14:12 - 000000000 ____D C:\ProgramData\Package Cache
2018-08-06 19:04 - 2017-04-26 21:59 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\CrashDumps
2018-08-06 16:31 - 2016-05-19 17:02 - 000000000 ____D C:\Program Files\Sony
2018-08-06 16:31 - 2015-12-16 19:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2018-08-06 16:31 - 2015-12-16 19:08 - 000000000 ____D C:\Program Files (x86)\Sony
2018-08-06 15:42 - 2014-07-31 02:14 - 000668542 _____ C:\Windows\system32\perfh005.dat
2018-08-06 15:42 - 2014-07-31 02:14 - 000141202 _____ C:\Windows\system32\perfc005.dat
2018-08-06 15:42 - 2009-07-14 07:13 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2018-08-06 15:36 - 2009-07-14 06:45 - 000030896 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-08-06 15:36 - 2009-07-14 06:45 - 000030896 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-08-05 15:48 - 2014-11-26 23:47 - 000000000 ____D C:\Users\Uzivatel
2018-08-05 15:47 - 2015-07-28 11:45 - 000000000 ____D C:\Program Files\Recuva
2018-08-01 17:13 - 2018-03-22 22:10 - 000002567 _____ C:\Users\Uzivatel\Desktop\Autodesk Fusion 360.lnk
2018-07-31 08:31 - 2015-07-18 11:49 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\ICQ
2018-07-31 08:31 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-07-22 23:49 - 2015-07-16 16:23 - 000000000 ____D C:\Program Files\Adobe
2018-07-17 00:02 - 2010-11-21 05:27 - 000563832 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2018-07-10 15:45 - 2017-12-19 20:53 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-07-10 15:45 - 2015-07-22 21:04 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
==================== Files in the root of some directories =======
2018-04-29 16:06 - 2018-04-29 16:06 - 000015704 _____ () C:\Users\Uzivatel\AppData\Roaming\.ptbt0
2015-07-29 18:55 - 2015-11-01 21:35 - 000000132 _____ () C:\Users\Uzivatel\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2016-07-27 13:03 - 2018-03-23 23:26 - 000000132 _____ () C:\Users\Uzivatel\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2015-09-23 16:09 - 2018-08-07 22:38 - 000036631 _____ () C:\Users\Uzivatel\AppData\Roaming\POČÍTAČ.MTBF.txt
2015-07-29 18:24 - 2015-07-29 18:24 - 000001480 _____ () C:\Users\Uzivatel\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2016-08-05 11:00 - 2017-03-04 22:35 - 000001480 _____ () C:\Users\Uzivatel\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2015-07-21 15:55 - 2018-08-07 22:51 - 000023552 _____ () C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
Some files in TEMP:
====================
2018-08-06 16:28 - 2018-08-06 16:28 - 049934576 _____ (Sony) C:\Users\Uzivatel\AppData\Local\Temp\xcsE0D8.tmp.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2018-08-01 15:56
==================== End of FRST.txt ============================