Stránka 1 z 1

Kontrola

Napsal: 01 zář 2018 16:57
od Kokos
Dobrý den prosim o kontrolu logu zacala se mi divne chovat klavesnice, napriklad pri psani e se objevi \e a podobne. Děkuji.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Jarda at 2018-09-01 17:36:50
Microsoft Windows 8.1
System drive C: has 109 GB (12%) free of 934 GB
Total RAM: 8115 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:36:56, on 1. 9. 2018
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.19036)
Boot mode: Normal

Running processes:
C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\trend micro\Jarda.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com/?pc=ACJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_172\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_172\bin\jp2ssv.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\PTC\Mathcad PDSi\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [AcerPortal] "C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe" startup
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Discord] C:\Users\Acer\AppData\Local\Discord\app-0.0.301\Discord.exe
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: AtherosSvc - Qualcomm Atheros - C:\Program Files (x86)\Qualcomm Atheros\Qualcomm Atheros 61x4 Wireless LAN&Bluetooth Installer\Bluetooth Suite\adminservice.exe
O23 - Service: Služba %1!s! Update (avast) (avast) - AVAST Software - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba %1!s! Update (avastm) (avastm) - AVAST Software - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Blizzard\Bonjour Service\mDNSResponder.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service 64 - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Správce úloh aplikace Autodesk Simulation Moldflow MITSI 2016 (mitsijm2016) - Autodesk, Inc. - C:\Program Files\Autodesk\Inventor 2016\Moldflow\bin\mitsijm.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PDFsam Manager - ANDREA VACONDIO - C:\ProgramData\ANDREA VACONDIO\PDFsam Manager\PDFsam Enhanced\PDFsam Manager.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10168 bytes

======Listing Processes======






wininit.exe
winlogon.exe


C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\igfxCUIService.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 388951515824
\??\C:\Windows\system32\conhost.exe 0x4

C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Qualcomm Atheros 61x4 Wireless LAN&Bluetooth Installer\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\Blizzard\Bonjour Service\mDNSResponder.exe"
"C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe"
C:\Windows\System32\svchost.exe -k utcsvc
dashost.exe {9f432c8e-2a41-4e8d-82bdba19698d0b9b}
"C:\Program Files\Autodesk\Inventor 2016\Moldflow\bin\mitsijm.exe"
"C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe" -r "C:\Users\Acer\AppData\Local\AOP SDK\Acer Infra\acer\SyncAgent" -u S-1-5-21-967545429-930516042-363579341-1001 -c 400 -s 414 -g "C:\ProgramData\acer\CCD"
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\ProgramData\ANDREA VACONDIO\PDFsam Manager\PDFsam Enhanced\PDFsam Manager.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Windows\system32\wbem\unsecapp.exe -Embedding
taskeng.exe {72AFF7C5-89E5-4CE3-AC1B-355CBBFB8C59}
taskhostex.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\Explorer.EXE
"C:\Program Files\Dolby Digital Plus\ddp.exe" -autostart
igfxEM.exe
igfxHK.exe
igfxTray.exe
ClassicStartMenu.exe -startup
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe"
"C:\Program Files\Acer\Acer Power Management\ePowerTray.exe"
"C:\Windows\system32\igfxext.exe" -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler.exe"
"C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Realtek\Audio\HDA\FMAPP.exe" -START
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
AvastUI.exe /nogui
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler64.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="5028.0.898261140\236376183" -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - "C:\Users\Acer\AppData\LocalLow\Mozilla\Temp-{4d387fee-dbca-42d5-a1e2-6560575712d1}" 5028 "\\.\pipe\gecko-crash-server-pipe.5028" 1460 gpu
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="5028.3.515618013\184925661" -childID 1 -isForBrowser -prefsHandle 1980 -prefsLen 12589 -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 5028 "\\.\pipe\gecko-crash-server-pipe.5028" 2020 tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="5028.12.747236826\108417346" -childID 2 -isForBrowser -prefsHandle 2324 -prefsLen 12589 -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 5028 "\\.\pipe\gecko-crash-server-pipe.5028" 2336 tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="5028.20.1198369304\240467578" -childID 3 -isForBrowser -prefsHandle 3312 -prefsLen 15610 -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 5028 "\\.\pipe\gecko-crash-server-pipe.5028" 3252 tab
"C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe" task
"C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe" task
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" --type=renderer --disable-gpu-compositing --disable-pinch --no-sandbox --primordial-pipe-token=D4D8D52AA7D0DA04A8C9BA8D34EBF23F --lang=en-US --lang=en-US --log-file="C:\Users\Acer\AppData\Roaming\AVAST Software\Avast\log\cef_log.txt" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/57.3.2987.1601 Safari/537.36 Avastium (18.6.2349)" --proxy-auto-detect --disable-webaudio --force-wave-audio --disable-software-rasterizer --no-sandbox --blacklist-accelerated-compositing --disable-accelerated-2d-canvas --disable-accelerated-compositing --disable-accelerated-layers --disable-accelerated-video-decode --blacklist-webgl --disable-bundled-ppapi-flash --disable-flash-3d --enable-aggressive-domstorage-flushing --enable-media-stream --allow-file-access-from-files=1 --pack_loading_disabled=1 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --disable-webrtc-hw-vp8-encoding --disable-gpu-compositing --service-request-channel-token=D4D8D52AA7D0DA04A8C9BA8D34EBF23F --renderer-client-id=2 --mojo-platform-channel-handle=6272 /prefetch:1
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchFilterHost.exe" 0 572 576 584 65536 580

"C:\Users\Acer\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\MATLAB R2014b Startup Accelerator.job - C:\Program Files\MATLAB\R2014b\bin\win64\MATLABStartupAccelerator.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\efny9rut.default-1529667833924

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 30.0.0.154 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_154.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@garmin.com/GpsControl]
"Description"=Garmin GPS Control for Firefox
"Path"=C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.172.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_172\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.172.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_172\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 30.0.0.154 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_30_0_0_154.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@garmin.com/GpsControl]
"Description"=Garmin GPS Control for Firefox
"Path"=C:\Program Files\Garmin GPS Plugin\npGarmin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.172.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_172\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.172.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_172\bin\plugin2\npjp2.dll


C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\efny9rut.default-1529667833924\extensions\
staged

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-05-21 809432]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_172\bin\ssv.dll [2018-05-17 582088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_172\bin\jp2ssv.dll [2018-05-17 245192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2016-05-21 486872]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-05-21 686552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_172\bin\ssv.dll [2018-05-17 480200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_172\bin\jp2ssv.dll [2018-05-17 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2016-05-21 442328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-05-21 809432]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-05-21 686552]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-12-13 2531472]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-05-26 13672152]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-05-13 1387376]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2016-05-21 161240]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2018-09-01 242392]
"OODefragTray"=C:\Program Files\OO Software\Defrag\oodtray.exe []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AcerPortal"=C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2016-06-27 2418392]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2018-06-09 3201312]
"Discord"=C:\Users\Acer\AppData\Local\Discord\app-0.0.301\Discord.exe [2018-04-30 57816920]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Acrobat Assistant 8.0"=C:\Program Files (x86)\PTC\Mathcad PDSi\Acrobat\Acrotray.exe [2008-10-01 640376]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2018-03-28 588704]

C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=lvcod64.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo"=vfwwdm32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
.txt - open - C:\Windows\NOTEPAD.EXE %1

======List of files/folders created in the last 1 month======

2018-09-01 17:36:50 ----D---- C:\rsit
2018-09-01 17:36:50 ----D---- C:\Program Files\trend micro
2018-09-01 16:58:57 ----A---- C:\Windows\system32\aswBoot.exe
2018-09-01 16:58:08 ----D---- C:\ProgramData\F-Secure
2018-08-29 19:40:36 ----D---- C:\Program Files\paint.net
2018-08-26 13:25:10 ----D---- C:\Games
2018-08-26 13:22:49 ----D---- C:\ProgramData\Wargaming.net
2018-08-16 13:26:23 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2018-08-15 10:19:45 ----A---- C:\Windows\system32\mshtml.dll
2018-08-15 10:19:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2018-08-15 10:19:37 ----A---- C:\Windows\system32\ieframe.dll
2018-08-15 10:19:36 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2018-08-15 10:19:33 ----A---- C:\Windows\system32\jscript9.dll
2018-08-15 10:19:32 ----A---- C:\Windows\system32\wininet.dll
2018-08-15 10:19:32 ----A---- C:\Windows\system32\ntoskrnl.exe
2018-08-15 10:19:30 ----A---- C:\Windows\SYSWOW64\wininet.dll
2018-08-15 10:19:30 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2018-08-15 10:19:29 ----A---- C:\Windows\SYSWOW64\msi.dll
2018-08-15 10:19:29 ----A---- C:\Windows\system32\win32k.sys
2018-08-15 10:19:28 ----A---- C:\Windows\system32\urlmon.dll
2018-08-15 10:19:28 ----A---- C:\Windows\system32\drivers\tcpip.sys
2018-08-15 10:19:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2018-08-15 10:19:27 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2018-08-15 10:19:27 ----A---- C:\Windows\system32\msi.dll
2018-08-15 10:19:27 ----A---- C:\Windows\system32\authui.dll
2018-08-15 10:19:26 ----A---- C:\Windows\system32\iertutil.dll
2018-08-15 10:19:26 ----A---- C:\Windows\system32\GdiPlus.dll
2018-08-15 10:19:26 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2018-08-15 10:19:25 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2018-08-15 10:19:24 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2018-08-15 10:19:24 ----A---- C:\Windows\SYSWOW64\jscript.dll
2018-08-15 10:19:24 ----A---- C:\Windows\system32\StructuredQuery.dll
2018-08-15 10:19:24 ----A---- C:\Windows\system32\samsrv.dll
2018-08-15 10:19:24 ----A---- C:\Windows\system32\jscript.dll
2018-08-15 10:19:24 ----A---- C:\Windows\system32\drivers\ndis.sys
2018-08-15 10:19:23 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2018-08-15 10:19:23 ----A---- C:\Windows\system32\win32spl.dll
2018-08-15 10:19:23 ----A---- C:\Windows\system32\vbscript.dll
2018-08-15 10:19:23 ----A---- C:\Windows\system32\puiobj.dll
2018-08-15 10:19:22 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2018-08-15 10:19:22 ----A---- C:\Windows\system32\msfeeds.dll
2018-08-15 10:19:21 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2018-08-15 10:19:21 ----A---- C:\Windows\system32\hlink.dll
2018-08-15 10:19:21 ----A---- C:\Windows\system32\drivers\refs.sys
2018-08-15 10:19:20 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2018-08-15 10:19:20 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2018-08-15 10:19:20 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2018-08-15 10:19:20 ----A---- C:\Windows\system32\ntdll.dll
2018-08-15 10:19:20 ----A---- C:\Windows\system32\msiexec.exe
2018-08-15 10:19:20 ----A---- C:\Windows\system32\fontsub.dll
2018-08-15 10:19:19 ----A---- C:\Windows\SYSWOW64\hlink.dll
2018-08-15 10:19:19 ----A---- C:\Windows\system32\drivers\appid.sys
2018-08-15 10:19:15 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2018-08-15 10:19:15 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2018-08-15 10:19:15 ----A---- C:\Windows\system32\webcheck.dll
2018-08-15 10:19:15 ----A---- C:\Windows\system32\ieapfltr.dll
2018-08-15 10:19:15 ----A---- C:\Windows\system32\ie4uinit.exe
2018-08-15 10:19:15 ----A---- C:\Windows\system32\dpapisrv.dll
2018-08-15 10:19:15 ----A---- C:\Windows\system32\actxprxy.dll
2018-08-15 10:19:12 ----A---- C:\Windows\SYSWOW64\authui.dll
2018-08-15 10:19:11 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2018-08-15 10:19:11 ----A---- C:\Windows\system32\t2embed.dll
2018-08-15 10:19:11 ----A---- C:\Windows\system32\jscript9diag.dll
2018-08-15 10:19:11 ----A---- C:\Windows\system32\inseng.dll
2018-08-15 10:19:11 ----A---- C:\Windows\system32\certcli.dll
2018-08-15 10:19:10 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2018-08-15 10:19:10 ----A---- C:\Windows\SYSWOW64\certcli.dll
2018-08-15 10:19:10 ----A---- C:\Windows\system32\inetcomm.dll
2018-08-15 10:19:10 ----A---- C:\Windows\system32\ieui.dll
2018-08-15 10:19:09 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2018-08-08 21:48:29 ----D---- C:\Users\Acer\AppData\Roaming\GameSparks
2018-08-06 11:41:52 ----A---- C:\Windows\SYSWOW64\aspnet_counters.dll
2018-08-06 11:41:51 ----A---- C:\Windows\system32\msvcr100_clr0400.dll
2018-08-06 11:41:47 ----A---- C:\Windows\system32\aspnet_counters.dll
2018-08-06 11:41:45 ----A---- C:\Windows\SYSWOW64\msvcr100_clr0400.dll
2018-08-05 09:58:23 ----D---- C:\Users\Acer\AppData\Roaming\dvdcss
2018-08-05 09:57:43 ----D---- C:\Users\Acer\AppData\Roaming\CyberLink

======List of files/folders modified in the last 1 month======

2018-09-01 17:36:54 ----D---- C:\Windows\system32\drivers\etc
2018-09-01 17:36:50 ----RD---- C:\Program Files
2018-09-01 17:34:54 ----D---- C:\Windows\Temp
2018-09-01 17:31:32 ----D---- C:\Windows\Prefetch
2018-09-01 17:23:55 ----D---- C:\Windows\system32\drivers
2018-09-01 17:23:44 ----D---- C:\Windows\system32\Tasks
2018-09-01 17:23:06 ----SHD---- C:\Config.Msi
2018-09-01 17:04:58 ----SHD---- C:\Windows\Installer
2018-09-01 17:04:25 ----RD---- C:\Windows\System32
2018-09-01 17:04:25 ----D---- C:\Windows\SysWOW64
2018-09-01 17:03:30 ----D---- C:\Windows\system32\config
2018-09-01 17:03:00 ----D---- C:\Windows\system32\sru
2018-09-01 16:58:08 ----HD---- C:\ProgramData
2018-09-01 16:44:10 ----D---- C:\Windows\system32\wbem
2018-09-01 16:44:10 ----D---- C:\Windows
2018-09-01 16:42:26 ----D---- C:\Windows\Tasks
2018-09-01 16:42:26 ----D---- C:\Windows\system32\catroot2
2018-09-01 16:42:25 ----D---- C:\Windows\system32\CodeIntegrity
2018-09-01 16:42:25 ----D---- C:\Windows\moje
2018-09-01 16:41:53 ----D---- C:\Program Files (x86)\Acer
2018-09-01 16:38:08 ----HD---- C:\Program Files\WindowsApps
2018-09-01 16:30:44 ----D---- C:\Windows\registration
2018-09-01 16:30:17 ----D---- C:\Windows\Microsoft.NET
2018-09-01 16:30:10 ----RSD---- C:\Windows\assembly
2018-09-01 16:28:50 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2018-09-01 16:28:11 ----D---- C:\ProgramData\Acer
2018-09-01 16:06:04 ----SHD---- C:\System Volume Information
2018-09-01 15:32:39 ----D---- C:\Windows\debug
2018-08-29 18:09:01 ----D---- C:\Windows\Inf
2018-08-29 18:09:01 ----A---- C:\Windows\system32\PerfStringBackup.INI
2018-08-29 14:26:32 ----D---- C:\Users\Acer\AppData\Roaming\.minecraft
2018-08-28 17:19:31 ----D---- C:\Users\Acer\AppData\Roaming\discord
2018-08-27 14:23:39 ----D---- C:\Windows\AppReadiness
2018-08-26 13:25:13 ----D---- C:\ProgramData\boost_interprocess
2018-08-26 13:23:33 ----D---- C:\Users\Acer\AppData\Roaming\Wargaming.net
2018-08-26 00:04:47 ----D---- C:\Users\Acer\AppData\Roaming\vlc
2018-08-25 22:50:05 ----D---- C:\Windows\tracing
2018-08-25 13:26:44 ----D---- C:\Windows\rescache
2018-08-24 10:07:06 ----D---- C:\Windows\WinSxS
2018-08-23 13:14:31 ----D---- C:\Windows\CbsTemp
2018-08-18 14:37:33 ----D---- C:\Windows\system32\DriverStore
2018-08-18 13:56:42 ----D---- C:\Program Files\ANSYS Inc
2018-08-18 12:47:25 ----AD---- C:\ProgramData\Autodesk
2018-08-18 12:47:21 ----D---- C:\Program Files (x86)\Autodesk
2018-08-18 11:50:07 ----D---- C:\Program Files\ANSYS Student
2018-08-18 11:06:21 ----D---- C:\Users\Acer\AppData\Roaming\Ansys
2018-08-17 23:38:47 ----D---- C:\Program Files\Acer
2018-08-17 23:38:06 ----D---- C:\ProgramData\OEM
2018-08-17 23:31:59 ----AD---- C:\Program Files\Autodesk
2018-08-17 23:14:02 ----D---- C:\Program Files (x86)
2018-08-15 23:38:05 ----RD---- C:\Windows\ToastData
2018-08-15 23:38:02 ----D---- C:\Windows\SYSWOW64\en-US
2018-08-15 23:38:02 ----D---- C:\Windows\SYSWOW64\cs-CZ
2018-08-15 23:38:02 ----D---- C:\Windows\system32\cs-CZ
2018-08-15 23:38:02 ----D---- C:\Program Files\Internet Explorer
2018-08-15 23:38:02 ----D---- C:\Program Files (x86)\Internet Explorer
2018-08-15 23:38:01 ----D---- C:\Windows\system32\en-US
2018-08-15 23:38:00 ----D---- C:\Windows\apppatch
2018-08-15 12:30:34 ----D---- C:\Windows\system32\MRT
2018-08-15 12:27:02 ----AC---- C:\Windows\system32\MRT.exe
2018-08-14 18:33:05 ----D---- C:\Windows\system32\Macromed
2018-08-14 18:33:04 ----D---- C:\Windows\SYSWOW64\Macromed
2018-08-11 07:34:10 ----D---- C:\Program Files\Mozilla Firefox
2018-08-11 07:34:10 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2018-08-08 23:05:54 ----D---- C:\Program Files (x86)\Steam
2018-08-06 21:41:48 ----D---- C:\Users\Acer\AppData\Roaming\TS3Client
2018-08-05 09:57:59 ----D---- C:\ProgramData\CyberLink

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2018-09-01 201320]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2018-09-01 346664]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2018-09-01 59568]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2018-09-01 87904]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2018-09-01 381560]
R1 aswArPot;aswArPot; C:\Windows\system32\drivers\aswArPot.sys [2018-09-01 199712]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2018-09-01 229384]
R1 aswHdsKe;aswHdsKe; C:\Windows\system32\drivers\aswHdsKe.sys [2018-09-01 249016]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2018-09-01 111864]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2018-09-01 1027720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2018-09-01 467232]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2016-08-13 71680]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2018-09-01 163272]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2018-09-01 214800]
R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2014-08-26 47720]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-06-16 3793408]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-06-03 3986392]
R3 iwdbus;@oem4.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2014-05-07 27032]
R3 k57nd60a;@oem5.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2013-10-30 458960]
R3 MEIx64;@oem10.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-02-20 116736]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2014-12-24 13036232]
R3 Qcamain;@oem7.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\Qcamainx64.sys [2014-08-26 2220544]
R3 SynRMIHID;@oem12.inf,%SynRMIHID.SVCDESC%;Synaptics HID Service; C:\Windows\system32\DRIVERS\SynRMIHID.sys [2014-07-10 42736]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2016-08-13 38912]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2018-09-01 46968]
S3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl63a.sys [2013-07-01 8536752]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\Windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2017-07-06 119296]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 dg_ssudbus;@oem34.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2017-05-18 131984]
S3 grmnusb;grmnusb; C:\Windows\system32\drivers\grmnusb.sys [2012-04-18 19304]
S3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\Windows\system32\DRIVERS\Hamdrv.sys [2018-05-30 45680]
S3 intaud_WaveExtensible;@oem3.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2014-05-07 38296]
S3 IntcDAud;@oem1.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-06-16 450520]
S3 LMDriver;@oem14.inf,%LMDriver.SVCDESC%;Launch Manager Wireless Driver; C:\Windows\System32\drivers\LMDriver.sys [2013-07-18 21360]
S3 LVUVC64;@oem37.inf,%PID_0817_DD%(UVC);Logitech Webcam C100(UVC); C:\Windows\system32\DRIVERS\lvuvc64.sys [2012-10-26 4758176]
S3 mfesapsn;McAfee Process Start Notification Service; \??\C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys []
S3 RadioShim;@oem14.inf,%RadioShim.SVCDESC%;Shim for HID-KMDF Interface layer; C:\Windows\System32\drivers\RadioShim.sys [2013-07-18 14680]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 RSUSBVSTOR;@oem11.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUVStor.sys [2014-03-27 331992]
S3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
S3 ssudmdm;@oem35.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2017-05-18 166288]
S3 ssudserd;@oem33.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudserd.sys [2017-05-18 166288]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2018-03-21 83984]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Qualcomm Atheros 61x4 Wireless LAN&Bluetooth Installer\Bluetooth Suite\adminservice.exe [2014-08-22 305664]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2018-09-01 322464]
R2 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Blizzard\Bonjour Service\mDNSResponder.exe [2017-04-20 390504]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2016-07-14 2267352]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2014-06-16 315352]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-02-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-02-20 398296]
R2 mitsijm2016;Správce úloh aplikace Autodesk Simulation Moldflow MITSI 2016; C:\Program Files\Autodesk\Inventor 2016\Moldflow\bin\mitsijm.exe [2014-09-30 968480]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-12-13 1701520]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-12-24 934032]
R2 PDFsam Manager;PDFsam Manager; C:\ProgramData\ANDREA VACONDIO\PDFsam Manager\PDFsam Enhanced\PDFsam Manager.exe [2015-11-13 1050224]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2012-04-24 254512]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2018-09-01 7994520]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2014-07-22 2573032]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
S2 avast;Služba %1!s! Update (avast); C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-04-05 164984]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-08-14 335872]
S3 avastm;Služba %1!s! Update (avastm); C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-04-05 164984]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-06-17 279000]
S3 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [2015-12-05 1369856]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-02-01 887232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2018-08-10 194512]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2018-06-14 187072]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2018-06-09 1673504]

-----------------EOF-----------------

Re: Kontrola

Napsal: 01 zář 2018 18:42
od Conder
Ahoj :)

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj

Re: Kontrola

Napsal: 01 zář 2018 18:55
od Kokos
Děkuji, teď ta klávesnice začala sama od sebe zase fungovat ještě před čištěním. Zde posílám log.

# -------------------------------
# Malwarebytes AdwCleaner 7.2.3.0
# -------------------------------
# Build: 08-30-2018
# Database: 2018-09-01.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 09-01-2018
# Duration: 00:00:04
# OS: Windows 8.1
# Cleaned: 32
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\Classes\pokki
Deleted HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\TBDEn|SBOEM2
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|ProductUpdater
Deleted HKCU\Software\AppDataLow\Software\adawarebp
Deleted HKLM\Software\Wow6432Node\Classes\AppID\OverlayIcon.DLL
Deleted HKLM\SOFTWARE\Classes\AppID\OverlayIcon.DLL
Deleted HKLM\Software\Wow6432Node\Classes\AppID\NCTAudioCDGrabber2.DLL
Deleted HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{ADF1FA2A-6EAA-4A97-A55F-3C8B92843EF5}
Deleted HKLM\Software\Classes\TypeLib\{ADF1FA2A-6EAA-4A97-A55F-3C8B92843EF5}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{7BCA6879-A9F8-47DE-AE05-F5CE7EA3A474}
Deleted HKLM\Software\Classes\Interface\{7BCA6879-A9F8-47DE-AE05-F5CE7EA3A474}
Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{81CA8FCD-1420-4A07-B47D-B30F3DDA79E1}
Deleted HKLM\Software\Classes\TypeLib\{81CA8FCD-1420-4A07-B47D-B30F3DDA79E1}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Deleted HKLM\Software\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Deleted HKLM\Software\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Deleted HKLM\Software\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Deleted HKLM\Software\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C3DA4}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Deleted HKLM\Software\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Deleted HKLM\Software\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Deleted HKLM\Software\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Deleted HKLM\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\SpyHunter4.exe

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [4746 octets] - [01/09/2018 15:47:43]
AdwCleaner[C00].txt - [4298 octets] - [01/09/2018 15:49:24]
AdwCleaner[S01].txt - [4685 octets] - [01/09/2018 19:47:41]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########

Re: Kontrola

Napsal: 01 zář 2018 20:05
od Conder
:arrow: Poprosim o obidva logy z FRST podla tohto navodu: https://forum.viry.cz/viewtopic.php?f=13&t=154679

Re: Kontrola

Napsal: 01 zář 2018 22:42
od Kokos
Oba soubory jsou velké a proto jsem je zabalil do raru

Re: Kontrola

Napsal: 02 zář 2018 18:24
od Conder
:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    
    HKLM-x32\...\Run: [] => [X]
    HKU\S-1-5-21-967545429-930516042-363579341-1001\...\Policies\Explorer: [] 
    BootExecute: autocheck autochk * sdnclean64.exe
    HKU\S-1-5-21-967545429-930516042-363579341-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://seznam.cz/
    HKU\S-1-5-21-967545429-930516042-363579341-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
    SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-21-967545429-930516042-363579341-1001 -> DefaultScope {66ABA537-4FC1-4317-81CD-4F82679E1865} URL = 
    SearchScopes: HKU\S-1-5-21-967545429-930516042-363579341-1001 -> {66ABA537-4FC1-4317-81CD-4F82679E1865} URL = 
    S3 mfesapsn; \??\C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [X]
    2018-09-01 17:36 - 2018-09-01 17:36 - 001222144 _____ C:\Users\Acer\Downloads\RSITx64.exe
    2018-09-01 17:36 - 2018-09-01 17:36 - 000000000 ____D C:\rsit
    2018-09-01 17:36 - 2018-09-01 17:36 - 000000000 ____D C:\Program Files\trend micro
    2018-09-01 15:51 - 2018-09-01 15:51 - 000000000 ____D C:\Users\Acer\AppData\Roaming\SUPERAntiSpyware.com
    2018-09-01 15:50 - 2018-09-01 16:44 - 000000000 ____D C:\Program Files\SUPERAntiSpyware
    2018-09-01 16:28 - 2017-07-11 12:30 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com
    
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{04991C5B-9ABF-48F7-AB39-48051DBBD48E}\InprocServer32 -> AcmPEXCtrl.ocx => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0F7BC65C-AB86-4BA1-A3A5-63539C2BD78B}\InprocServer32 -> AcmPEXCtrl.ocx => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{12545889-6D32-4424-9967-1E1D7BD1F809}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{641094DE-35F7-4CAC-AFF1-C39AABA22E43}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6E2A9D17-D1DA-43E9-94E6-C513D3315891}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}\InprocServer32 -> AcInetUI.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{91520053-F024-4E94-B185-C80D25E0F985}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{A5DC4F3D-CB7E-46DF-A1DE-51421A94232C}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BC71DEA1-D6FB-48B8-AB06-D151C81BBCDD}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C532F3AD-EFAD-41C0-8864-0093FF43D06A}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DD7A3651-067D-4AC2-AB5B-EB851BA9486C}\InprocServer32 -> AcmPEXCtrl.ocx => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{EFE2B983-6FB7-463C-AFF2-E513228567F7}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => No File
    CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => No File
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj

Re: Kontrola

Napsal: 02 zář 2018 21:29
od Kokos
Děkuji, přikládám obsah souboru Fixlog.txt

Fix result of Farbar Recovery Scan Tool (x64) Version: 01.09.2018 03
Ran by Jarda (02-09-2018 22:17:35) Run:1
Running from C:\Users\Acer\Desktop
Loaded Profiles: Jarda (Available Profiles: Jarda)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum

HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-967545429-930516042-363579341-1001\...\Policies\Explorer: []
BootExecute: autocheck autochk * sdnclean64.exe
HKU\S-1-5-21-967545429-930516042-363579341-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://seznam.cz/
HKU\S-1-5-21-967545429-930516042-363579341-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-967545429-930516042-363579341-1001 -> DefaultScope {66ABA537-4FC1-4317-81CD-4F82679E1865} URL =
SearchScopes: HKU\S-1-5-21-967545429-930516042-363579341-1001 -> {66ABA537-4FC1-4317-81CD-4F82679E1865} URL =
S3 mfesapsn; \??\C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [X]
2018-09-01 17:36 - 2018-09-01 17:36 - 001222144 _____ C:\Users\Acer\Downloads\RSITx64.exe
2018-09-01 17:36 - 2018-09-01 17:36 - 000000000 ____D C:\rsit
2018-09-01 17:36 - 2018-09-01 17:36 - 000000000 ____D C:\Program Files\trend micro
2018-09-01 15:51 - 2018-09-01 15:51 - 000000000 ____D C:\Users\Acer\AppData\Roaming\SUPERAntiSpyware.com
2018-09-01 15:50 - 2018-09-01 16:44 - 000000000 ____D C:\Program Files\SUPERAntiSpyware
2018-09-01 16:28 - 2017-07-11 12:30 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com

CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{04991C5B-9ABF-48F7-AB39-48051DBBD48E}\InprocServer32 -> AcmPEXCtrl.ocx => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0F7BC65C-AB86-4BA1-A3A5-63539C2BD78B}\InprocServer32 -> AcmPEXCtrl.ocx => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{12545889-6D32-4424-9967-1E1D7BD1F809}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{641094DE-35F7-4CAC-AFF1-C39AABA22E43}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6E2A9D17-D1DA-43E9-94E6-C513D3315891}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}\InprocServer32 -> AcInetUI.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{91520053-F024-4E94-B185-C80D25E0F985}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{A5DC4F3D-CB7E-46DF-A1DE-51421A94232C}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BC71DEA1-D6FB-48B8-AB06-D151C81BBCDD}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C532F3AD-EFAD-41C0-8864-0093FF43D06A}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DD7A3651-067D-4AC2-AB5B-EB851BA9486C}\InprocServer32 -> AcmPEXCtrl.ocx => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{EFE2B983-6FB7-463C-AFF2-E513228567F7}\InprocServer32 -> g3vPartAuthEnviron.arx => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 13325
Average :
Sum : 440715849114
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========

"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\" => removed successfully
HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => value restored successfully
HKU\S-1-5-21-967545429-930516042-363579341-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-967545429-930516042-363579341-1001\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => removed successfully
HKLM\Software\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => not found
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => not found
"HKU\S-1-5-21-967545429-930516042-363579341-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{66ABA537-4FC1-4317-81CD-4F82679E1865}" => removed successfully
HKLM\Software\Classes\CLSID\{66ABA537-4FC1-4317-81CD-4F82679E1865} => not found
"HKLM\System\CurrentControlSet\Services\mfesapsn" => removed successfully
mfesapsn => service removed successfully
C:\Users\Acer\Downloads\RSITx64.exe => moved successfully
C:\rsit => moved successfully
C:\Program Files\trend micro => moved successfully
C:\Users\Acer\AppData\Roaming\SUPERAntiSpyware.com => moved successfully
C:\Program Files\SUPERAntiSpyware => moved successfully
C:\ProgramData\SUPERAntiSpyware.com => moved successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{04991C5B-9ABF-48F7-AB39-48051DBBD48E}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{0F7BC65C-AB86-4BA1-A3A5-63539C2BD78B}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{12545889-6D32-4424-9967-1E1D7BD1F809}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{641094DE-35F7-4CAC-AFF1-C39AABA22E43}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6E2A9D17-D1DA-43E9-94E6-C513D3315891}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{91520053-F024-4E94-B185-C80D25E0F985}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{A5DC4F3D-CB7E-46DF-A1DE-51421A94232C}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BC71DEA1-D6FB-48B8-AB06-D151C81BBCDD}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C532F3AD-EFAD-41C0-8864-0093FF43D06A}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DD7A3651-067D-4AC2-AB5B-EB851BA9486C}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{EFE2B983-6FB7-463C-AFF2-E513228567F7}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}" => removed successfully
"HKU\S-1-5-21-967545429-930516042-363579341-1001_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}" => removed successfully
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui" => removed successfully
HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 12582912 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 30374596 B
Java, Flash, Steam htmlcache => 197858156 B
Windows/system/drivers => 6583707 B
Edge => 0 B
Chrome => 0 B
Firefox => 427038188 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 0 B
LocalService => 1530075 B
NetworkService => 0 B
Acer => 525771341 B

RecycleBin => 81933325 B
EmptyTemp: => 1.2 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 22:21:41 ====

Re: Kontrola

Napsal: 03 zář 2018 09:43
od Conder
:arrow: Plocha ma vyse 400 GB, co je prilis vela. Presun vsetky subory a zlozky z plochy do dokumentov a na ploche nechaj iba odkazy/zastupcov. Prilis velka velkost plochy moze sposobit spomalenie systemu.

:arrow: Inak to vyzera OK. Su este s PC nejake problemy?

Re: Kontrola

Napsal: 03 zář 2018 11:54
od Kokos
Děkuji moc za pomoc, všechno se zdá v pořádku. Věci z plochy přesunu, trochu ty databáze přerostly potvory :D

Re: Kontrola

Napsal: 03 zář 2018 13:50
od Conder
:arrow: Tak este upraceme po pouzitych nastrojoch:

Re: Kontrola

Napsal: 03 zář 2018 16:34
od Kokos
Ještě jednou děkuju,přikládám log.

# DelFix v1.013 - Logfile created 03/09/2018 at 17:33:30
# Updated 17/04/2016 by Xplode
# Username : Jarda - A05-0208B
# Operating System : Windows 8.1 (64 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\AdwCleaner
Deleted : C:\Users\Acer\Downloads\adwcleaner_7.2.3.exe
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis

########## - EOF - ##########

Re: Kontrola

Napsal: 03 zář 2018 17:52
od Conder
Toto je OK.

Nie je zaco, rad som pomohol :)