Stránka 1 z 1

Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 29 říj 2019 21:07
od spok
RSIT

Logfile of random's system information tool 1.10 (written by random/random)
Run by Uzivatel at 2019-10-29 20:55:04
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 6 GB (5%) free of 114 GB
Total RAM: 16341 MB (82% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:55:06, on 29.10.2019
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.19507)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe
C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe
C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
C:\Program Files\trend micro\Uzivatel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE07DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKCU\..\Run: [XperiaCompanionAgent] "C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe"
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [vidnotifier.exe] C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [GarminExpress] "C:\Program Files (x86)\Garmin\Express\express.exe" /minimized (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [GarminExpress] "C:\Program Files (x86)\Garmin\Express\express.exe" /minimized (User 'Default user')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba CCleaner Browser Update (ccleaner) (ccleaner) - Piriform Software - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe
O23 - Service: CCleaner Browser Elevation Service (CCleanerBrowserElevationService) - Piriform Software - C:\Program Files (x86)\CCleaner Browser\Application\77.1.1834.93\elevation_service.exe
O23 - Service: Služba CCleaner Browser Update (ccleanerm) (ccleanerm) - Piriform Software - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe
O23 - Service: Digital Wave Update Service (DigitalWave.Update.Service) - Digital Wave Ltd - C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\elevation_service.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IObit Uninstaller Service (IObitUnSvr) - IObit - C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Wireless Keyboard 850 Notification Service (WirelessKB850NotificationService) - Unknown owner - C:\Windows\system32\WirelessKB850NotificationService.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wondershare Application Framework Service (WsAppService) - Wondershare - C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppService.exe
O23 - Service: Wondershare Driver Install Service (WsDrvInst) - Wondershare - C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe
O23 - Service: Služba Xperia Companion (XperiaCompanionService) - Sony - C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe

--
End of file - 9092 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe"
"C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe"
"C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe"
"C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe"
C:\Windows\system32\EscSvc64.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\WirelessKB850NotificationService.exe
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe"
"C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe"
AvastUI.exe /nogui
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-a09d9f22-049c-4702-995d-585a3ec3a297 -SystemEventPortName:HostProcess-c3f87817-fa5f-437a-956a-f6e9cc827060 -IoCancelEventPortName:HostProcess-46ff793f-a5f9-4e2b-8ed0-6dc2bd953b18 -NonStateChangingEventPortName:HostProcess-b71c37a7-6a8c-41b2-ad86-56ad07d7179f -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:34433f8e-d6f8-48f5-bc35-4c64f74755d7 -DeviceGroupId:WpdFsGroup
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\CCleaner Browser\Update\1.5.21.0\CCleanerBrowserCrashHandler.exe"
"C:\Program Files (x86)\CCleaner Browser\Update\1.5.21.0\CCleanerBrowserCrashHandler64.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe" /srvupt
"C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" "-launchedbycsxs"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --flag-switches-begin --flag-switches-end
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=77.0.3865.120 --initial-client-data=0x3c,0x40,0x44,0x38,0x48,0x7fed865ff08,0x7fed865ff18,0x7fed865ff28
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=1668 --on-initialized-event-handle=12 --parent-handle=120 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --gpu-preferences=KAAAAAAAAADgAAAwAAAAAAAAYAAAAAAAEAAAAAAAAAAAAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --service-request-channel-token=1753462712774586166 --mojo-platform-channel-handle=1016 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --service-sandbox-type=network --service-request-channel-token=11047238831960260424 --mojo-platform-channel-handle=1376 /prefetch:8
taskeng.exe {EB68D542-FF12-430C-8F9F-D829EC5D8E0A}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --service-sandbox-type=audio --service-request-channel-token=13860377273536070766 --mojo-platform-channel-handle=2340 /prefetch:8
C:\Windows\system32\wbem\WmiApSrv.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --enable-auto-reload --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=11195942763182100298 --renderer-client-id=30 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2920 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --enable-auto-reload --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=12647186790732737014 --renderer-client-id=45 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3812 /prefetch:1
taskeng.exe {2D07A053-7CDF-4B90-A465-3DFB6715E12B}
"C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe" /slMode
"C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe" --type=renderer /slMode
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --enable-auto-reload --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=5160974530011794633 --renderer-client-id=46 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4312 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --enable-auto-reload --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4411952755171220314 --renderer-client-id=47 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3820 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=992,10307027121785495304,1015931126511638902,131072 --lang=cs --enable-auto-reload --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=3626482884858065947 --renderer-client-id=48 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2412 /prefetch:1

C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Uzivatel\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\EPSON L382 Series Update {8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9}.job - C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSRRE.EXE /EXE:"{8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9}" /F:"Update"

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-07-19 2478864]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2012-06-18 626552]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2016-01-29 1340192]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe [2012-04-26 2907240]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2019-10-10 268680]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"XperiaCompanionAgent"=C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [2018-05-29 2132320]
"CCleaner Smart Cleaning"=C:\Program Files\CCleaner\CCleaner64.exe [2019-10-15 24552064]
"vidnotifier.exe"=C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [2019-10-21 1814848]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2014-10-31 2072928]
"EEventManager"=C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2016-03-14 1092304]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"vidc.mjpg"=pvmjpgx40.dll
"MSVideo8"=VfWWDM32.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux1"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2019-10-29 20:42:22 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2019-10-29 18:10:09 ----D---- C:\ProgramData\DigitalWave.ApplicationUpdater_files
2019-10-29 18:09:56 ----D---- C:\Program Files (x86)\FreeCodecPack
2019-10-29 18:09:56 ----D---- C:\Program Files (x86)\DVDVideoSoft
2019-10-29 18:09:43 ----D---- C:\Users\Uzivatel\AppData\Roaming\DVDVideoSoft
2019-10-18 15:34:11 ----A---- C:\Windows\system32\sipnotify.exe
2019-10-10 13:46:52 ----A---- C:\Windows\system32\aswBoot.exe
2019-10-10 13:46:48 ----A---- C:\Windows\system32\drivers\aswStm.sys
2019-10-10 13:46:48 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2019-10-09 17:32:12 ----A---- C:\Windows\system32\ieUnatt.exe
2019-10-09 17:32:12 ----A---- C:\Windows\system32\ieetwproxystub.dll
2019-10-09 17:32:12 ----A---- C:\Windows\system32\ieetwcollector.exe
2019-10-09 17:32:11 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2019-10-09 17:32:11 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2019-10-09 17:32:11 ----A---- C:\Windows\SYSWOW64\inseng.dll
2019-10-09 17:32:11 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2019-10-09 17:32:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2019-10-09 17:32:11 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2019-10-09 17:32:10 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2019-10-09 17:32:10 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2019-10-09 17:32:10 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2019-10-09 17:32:10 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2019-10-09 17:32:10 ----A---- C:\Windows\system32\ie4uinit.exe
2019-10-09 17:32:09 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2019-10-09 17:32:09 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2019-10-09 17:32:09 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2019-10-09 17:32:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\jscript.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\ieui.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2019-10-09 17:32:08 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2019-10-09 17:32:08 ----A---- C:\Windows\system32\urlmon.dll
2019-10-09 17:32:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2019-10-09 17:32:08 ----A---- C:\Windows\system32\iedkcs32.dll
2019-10-09 17:32:08 ----A---- C:\Windows\system32\dxtrans.dll
2019-10-09 17:32:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2019-10-09 17:32:07 ----A---- C:\Windows\system32\msfeeds.dll
2019-10-09 17:32:07 ----A---- C:\Windows\system32\iesetup.dll
2019-10-09 17:32:06 ----A---- C:\Windows\SYSWOW64\wininet.dll
2019-10-09 17:32:06 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2019-10-09 17:32:06 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2019-10-09 17:32:06 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2019-10-09 17:32:06 ----A---- C:\Windows\system32\vbscript.dll
2019-10-09 17:32:06 ----A---- C:\Windows\system32\iertutil.dll
2019-10-09 17:32:05 ----A---- C:\Windows\system32\mshtmled.dll
2019-10-09 17:32:05 ----A---- C:\Windows\system32\ieui.dll
2019-10-09 17:32:05 ----A---- C:\Windows\system32\ieframe.dll
2019-10-09 17:32:05 ----A---- C:\Windows\system32\dxtmsft.dll
2019-10-09 17:32:04 ----A---- C:\Windows\system32\mshtmlmedia.dll
2019-10-09 17:32:03 ----A---- C:\Windows\system32\wininet.dll
2019-10-09 17:32:03 ----A---- C:\Windows\system32\webcheck.dll
2019-10-09 17:32:03 ----A---- C:\Windows\system32\jscript9.dll
2019-10-09 17:32:03 ----A---- C:\Windows\system32\jscript.dll
2019-10-09 17:32:02 ----A---- C:\Windows\system32\MshtmlDac.dll
2019-10-09 17:32:02 ----A---- C:\Windows\system32\mshtml.dll
2019-10-09 17:32:02 ----A---- C:\Windows\system32\jsproxy.dll
2019-10-09 17:32:00 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2019-10-09 17:32:00 ----A---- C:\Windows\SYSWOW64\msrating.dll
2019-10-09 17:32:00 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2019-10-09 17:32:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\mstscax.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\msrating.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\jscript9diag.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\inseng.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\iernonce.dll
2019-10-09 17:32:00 ----A---- C:\Windows\system32\ieapfltr.dll
2019-10-09 17:31:59 ----A---- C:\Windows\SYSWOW64\occache.dll
2019-10-09 17:31:59 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2019-10-09 17:31:59 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2019-10-09 17:31:59 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\win32k.sys
2019-10-09 17:31:59 ----A---- C:\Windows\system32\werconcpl.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\umpo.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\rdpcorets.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\occache.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\EncDump.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\audiosrv.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\AudioSes.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\AUDIOKSE.dll
2019-10-09 17:31:59 ----A---- C:\Windows\system32\AudioEng.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\WerFault.exe
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\wer.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\user32.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\schannel.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\msrd3x40.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\msltus40.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2019-10-09 17:31:58 ----A---- C:\Windows\SYSWOW64\DWWIN.EXE
2019-10-09 17:31:58 ----A---- C:\Windows\system32\WerFault.exe
2019-10-09 17:31:58 ----A---- C:\Windows\system32\wercplsupport.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\wer.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\user32.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\schannel.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\msv1_0.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\Faultrep.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\DWWIN.EXE
2019-10-09 17:31:58 ----A---- C:\Windows\system32\drivers\rdbss.sys
2019-10-09 17:31:58 ----A---- C:\Windows\system32\drivers\monitor.sys
2019-10-09 17:31:58 ----A---- C:\Windows\system32\ci.dll
2019-10-09 17:31:58 ----A---- C:\Windows\system32\audiodg.exe
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-10-09 17:31:57 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\wow32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\werui.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\wermgr.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\werdiagcontroller.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\user.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\sscore.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\srclient.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\setup16.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\secur32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\instnm.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\credssp.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\certcli.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\wow64win.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\wow64cpu.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\wow64.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\winsrv.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\werui.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\wermgr.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\WerFaultSecure.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\werdiagcontroller.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\wdigest.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\TSpkg.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\sspisrv.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\sspicli.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\sscore.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\srvsvc.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\srcore.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\srclient.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\smss.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\setbcdlocale.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\secur32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\rstrui.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\rpchttp.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\rpcrt4.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\ntvdm64.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\ntoskrnl.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\ntdll.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\ncrypt.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\lsass.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\lsasrv.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\KernelBase.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\kernel32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\kerberos.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\hal.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\videoprt.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\srvnet.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\srv2.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\srv.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\processr.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\npfs.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\intelppm.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\appid.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\amdppm.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\drivers\amdk8.sys
2019-10-09 17:31:57 ----A---- C:\Windows\system32\csrsrv.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\cryptbase.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\credssp.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\conhost.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\certcli.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\bcrypt.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\auditpol.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\appidsvc.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2019-10-09 17:31:57 ----A---- C:\Windows\system32\appidapi.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\apisetschema.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\advapi32.dll
2019-10-09 17:31:57 ----A---- C:\Windows\system32\adtschema.dll
2019-10-09 17:31:56 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2019-10-09 17:31:56 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2019-10-09 17:31:56 ----A---- C:\Windows\system32\msobjs.dll
2019-10-09 17:31:56 ----A---- C:\Windows\system32\msaudite.dll
2019-10-05 21:29:45 ----D---- C:\Program Files (x86)\CCleaner Browser
2019-10-05 21:29:44 ----D---- C:\ProgramData\CCleaner Browser

======List of files/folders modified in the last 1 month======

2019-10-29 20:55:05 ----D---- C:\Program Files\trend micro
2019-10-29 20:47:25 ----D---- C:\Windows\Temp
2019-10-29 20:47:25 ----D---- C:\ProgramData\ProductData
2019-10-29 20:46:56 ----D---- C:\Windows\System32
2019-10-29 20:46:56 ----D---- C:\Windows\inf
2019-10-29 20:46:56 ----A---- C:\Windows\system32\PerfStringBackup.INI
2019-10-29 20:42:33 ----D---- C:\Windows\system32\config
2019-10-29 20:42:22 ----D---- C:\Windows\system32\drivers
2019-10-29 20:42:15 ----D---- C:\Program Files\CCleaner
2019-10-29 18:10:09 ----HD---- C:\ProgramData
2019-10-29 18:09:56 ----RD---- C:\Program Files (x86)
2019-10-29 18:09:56 ----D---- C:\Program Files (x86)\Common Files
2019-10-29 17:00:32 ----A---- C:\Users\Uzivatel\AppData\Roaming\POČÍTAČ.MTBF.txt
2019-10-28 11:17:44 ----SHD---- C:\System Volume Information
2019-10-27 16:08:03 ----SHD---- C:\Windows\Installer
2019-10-27 16:07:58 ----D---- C:\Windows\SysWOW64
2019-10-19 11:06:05 ----D---- C:\Windows\winsxs
2019-10-17 20:28:13 ----D---- C:\Windows\system32\Tasks
2019-10-17 20:27:59 ----D---- C:\Program Files (x86)\Internet Explorer
2019-10-10 15:22:35 ----D---- C:\Windows\Microsoft.NET
2019-10-10 15:17:44 ----RSD---- C:\Windows\assembly
2019-10-10 13:51:34 ----D---- C:\Windows\SYSWOW64\en-US
2019-10-10 13:51:34 ----D---- C:\Windows\SYSWOW64\cs-CZ
2019-10-10 13:51:34 ----D---- C:\Windows\system32\en-US
2019-10-10 13:51:34 ----D---- C:\Windows\system32\drivers\en-US
2019-10-10 13:51:34 ----D---- C:\Windows\system32\cs-CZ
2019-10-10 13:51:34 ----D---- C:\Windows\PolicyDefinitions
2019-10-10 13:51:34 ----D---- C:\Windows\ehome
2019-10-10 13:51:34 ----D---- C:\Windows\AppPatch
2019-10-10 13:51:34 ----D---- C:\Program Files\Internet Explorer
2019-10-10 13:51:33 ----D---- C:\Windows\system32\DriverStore
2019-10-10 13:51:33 ----D---- C:\Windows\system32\Boot
2019-10-10 13:49:15 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2019-10-10 13:48:33 ----D---- C:\Windows\system32\MRT
2019-10-10 13:46:02 ----D---- C:\Windows\debug
2019-10-10 13:45:47 ----AC---- C:\Windows\system32\MRT.exe
2019-10-09 17:29:22 ----D---- C:\Windows\system32\catroot2
2019-10-07 20:03:45 ----D---- C:\Program Files (x86)\Google
2019-10-06 09:49:38 ----D---- C:\Windows\rescache
2019-10-06 09:04:26 ----D---- C:\Windows
2019-10-05 21:23:30 ----D---- C:\Users\Uzivatel\AppData\Roaming\IObit
2019-10-05 21:02:15 ----D---- C:\ProgramData\Apple
2019-10-05 21:02:15 ----D---- C:\Program Files\Common Files

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswArDisk;aswArDisk; C:\Windows\system32\drivers\aswArDisk.sys [2019-10-10 37616]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2019-10-10 83792]
R0 iaStor;Intel RAID Controller; C:\Windows\system32\drivers\iaStor.sys [2012-06-18 568600]
R0 iaStorF;iaStorF; C:\Windows\system32\drivers\iaStorF.sys [2012-03-15 24496]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\drivers\iusb3hcs.sys [2012-06-18 16152]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-11-13 289120]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2018-01-01 213736]
R1 aswHdsKe;aswHdsKe; C:\Windows\system32\drivers\aswHdsKe.sys [2019-10-10 276952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2019-10-10 460448]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2018-06-29 516096]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2014-06-27 131856]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2019-10-10 171520]
R3 e1cexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver C; C:\Windows\system32\DRIVERS\e1c62x64.sys [2012-06-18 358576]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTDVHD64.sys [2012-04-26 3712360]
R3 IUProcessFilter;IUProcessFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IUProcessFilter.sys [2018-10-16 19312]
R3 IURegistryFilter;IURegistryFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IURegistryFilter.sys [2018-10-16 25488]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 MBAMSwissArmy;MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [2019-10-29 275232]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-05-25 60184]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-11-13 133816]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2012-05-25 188224]
S3 AF9035HB;AF9035 Hybrid Device; C:\Windows\System32\Drivers\AF9035HB.sys [2016-12-24 907904]
S3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x64; C:\Windows\system32\DRIVERS\Apfiltr.sys [2012-06-18 416592]
S3 AscFileControl;AscFileControl; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscFileControl.sys []
S3 AscFileFilter;AscFileFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscFileFilter.sys []
S3 AscRegistryFilter;AscRegistryFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscRegistryFilter.sys []
S3 aswArPot;aswArPot; C:\Windows\system32\drivers\aswArPot.sys [2019-10-10 204824]
S3 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdriver.sys [2019-10-10 274456]
S3 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsh.sys [2019-10-10 209552]
S3 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniv.sys [2019-10-10 65120]
S3 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2019-10-10 42736]
S3 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2019-10-10 110320]
S3 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2019-10-10 848432]
S3 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2019-10-10 236024]
S3 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2019-10-10 316528]
S3 atmeltpm;atmeltpm; C:\Windows\system32\drivers\atmeltpm64.sys [2012-05-25 19456]
S3 BCMTPM;BCMTPM; C:\Windows\system32\drivers\btpmwx64.sys [2012-05-25 32096]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2012-06-07 132648]
S3 btwrchid;btwrchid; C:\Windows\system32\drivers\btwrchid.sys [2012-06-07 21160]
S3 cpuz143;cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys []
S3 d554gps;Dell Wireless HSPA Mini-Card GPS Port; C:\Windows\system32\drivers\d554gps64.sys [2012-06-18 102440]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2019-07-09 135520]
S3 DIGITECH;DIGITECH; C:\Windows\system32\drivers\DIGITECH.sys [2011-06-08 25648]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 E1G60;Intel(R) PRO/1000 NDIS 6 – ovladač adaptéru; C:\Windows\system32\DRIVERS\E1G6032E.sys [2009-06-10 145792]
S3 ecnssndis; Mobile Broadband Driver; C:\Windows\System32\Drivers\wwuss64.sys [2012-06-18 26664]
S3 ecnssndisfltr; Mobile Broadband Driver Filter; C:\Windows\System32\Drivers\wwussf64.sys [2012-06-18 29736]
S3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver; C:\Windows\system32\drivers\FLxHCIc.sys [2012-03-02 221184]
S3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver; C:\Windows\system32\drivers\FLxHCIh.sys [2012-03-02 65536]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2011-04-15 69320]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2011-04-15 84808]
S3 ggflt;SOMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2018-03-14 16512]
S3 ggsomc;SOMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsomc.sys [2018-03-14 32384]
S3 HBtnKey;DELL Tablet PC Key Buttons HID Driver; C:\Windows\system32\drivers\HBtnKey.sys [2011-07-19 20424]
S3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\drivers\HECIx64.sys [2012-05-25 60184]
S3 CH341SER_A64;CH341SER_A64; C:\Windows\System32\Drivers\CH341S64.SYS [2015-01-25 59904]
S3 iaStorA;iaStorA; C:\Windows\system32\drivers\iaStorA.sys [2012-03-15 567216]
S3 iaStorS;iaStorS; C:\Windows\system32\drivers\iaStorS.sys [2012-06-15 639408]
S3 Impcd;Impcd; C:\Windows\system32\drivers\Impcd.sys [2012-07-04 158976]
S3 irstrtdv;Intel(R) Rapid Start Technology Driver; C:\Windows\system32\drivers\irstrtdv.sys [2011-06-16 26504]
S3 ISCT;Intel(R) Smart Connect Technology Device Driver; C:\Windows\system32\drivers\ISCTD64.sys [2012-05-25 44992]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\drivers\iusb3hub.sys [2012-06-18 356120]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\drivers\iusb3xhc.sys [2012-06-18 788760]
S3 libusb0;libusb-win32 - Kernel Driver 01/18/2012 1.2.6.0; C:\Windows\system32\DRIVERS\libusb0.sys [2017-03-14 56576]
S3 Mbm3CBus;Dell Wireless 5530 HSPA Mini-Card Device (WDM); C:\Windows\system32\drivers\Mbm3CBus.sys [2012-06-18 419400]
S3 Mbm3DevMt;Dell Wireless HSPA Mini-Card Device Management Driver (WDM); C:\Windows\system32\drivers\Mbm3DevMt.sys [2012-06-18 430664]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\drivers\nusb3hub.sys [2012-07-04 80384]
S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\drivers\nusb3xhc.sys [2012-04-20 177152]
S3 NvStUSB;NVIDIA Stereoscopic 3D USB driver; C:\Windows\system32\drivers\nvstusb.sys [2012-05-25 399168]
S3 NWADI;NWADI Bus Enumerator; C:\Windows\system32\drivers\NWADIenum.sys [2009-10-26 237568]
S3 nwdelgobi3kfilter;Dell Wireless Gobi 3000 USB Composite Device Filter Driver; C:\Windows\system32\drivers\nwdelgobi3kfilter.sys [2012-06-18 34304]
S3 NWDellPort;Dell Wireless Mobile Broadband Status Port Driver; C:\Windows\system32\drivers\nwdelser.sys [2012-06-18 222208]
S3 NWDellPort2;Dell Wireless Mobile Broadband Status2 Port Driver; C:\Windows\system32\drivers\nwdelser2.sys [2012-06-18 222208]
S3 nwdelserial;Dell Wireless Gobi 3000 USB Device for Legacy Serial Communication; C:\Windows\system32\drivers\nwdelserial.sys [2012-06-18 234112]
S3 O2MDFRDR;O2MDFRDR; C:\Windows\system32\drivers\O2MDFw7x64.sys [2012-06-18 72808]
S3 O2MDRRDR;O2MDRRDR; C:\Windows\system32\drivers\O2MDRw7x64.sys [2012-06-18 74984]
S3 O2SDJRDR;O2SDJRDR; C:\Windows\system32\drivers\o2sdjw7x64.sys [2012-06-18 84712]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 percsas2;percsas2; C:\Windows\system32\drivers\percsas2.sys [2012-06-15 53584]
S3 QCFilterdl;Dell Wireless 5600 (EV-DO-HSPA) Mobile Broadband Mini-Card Composite Device Filter Driver; C:\Windows\system32\drivers\qcfilterdl.sys [2012-05-10 8832]
S3 qcfilterdl2k;Dell Wireless 5620 (EV-DO-HSPA) Mobile Broadband Mini-Card Composite Device Filter; C:\Windows\system32\drivers\qcfilterdl2k.sys [2012-07-05 6400]
S3 qcombusdl;Gobi 2000 USB Composite Device Driver(413C-8186); C:\Windows\system32\drivers\qcombusdl.sys [2012-07-05 137800]
S3 qcusbserdl;Dell USB Device for Legacy Serial Communication; C:\Windows\system32\drivers\qcusbserdl.sys [2012-05-10 127104]
S3 qcusbserdl2k;Gobi 2000 USB Device for Legacy Serial Communication(413C-8186); C:\Windows\system32\drivers\qcusbserdl2k.sys [2012-07-05 230784]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 rimmptsk;rimmptsk; C:\Windows\system32\drivers\rimmpx64.sys [2012-05-10 67584]
S3 rimspci;rimspci; C:\Windows\system32\drivers\rimspe64.sys [2012-05-10 60416]
S3 rimsptsk;rimsptsk; C:\Windows\system32\drivers\rimspx64.sys [2012-05-10 55296]
S3 risdpcie;risdpcie; C:\Windows\system32\drivers\risdpe64.sys [2012-05-10 80896]
S3 rismxdp;rismxdp; C:\Windows\system32\drivers\rixdpx64.sys [2012-05-10 57856]
S3 rixdpcie;rixdpcie; C:\Windows\system32\drivers\rixdpe64.sys [2012-05-10 55808]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2012-06-07 222720]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\drivers\ser2pl64.sys [2011-04-15 97280]
S3 silabser;Silicon Labs CP210x USB to UART Bridge Driver; C:\Windows\system32\DRIVERS\silabser.sys [2016-10-27 111608]
S3 SNXPPAMD;SUNIX Parallel Port Driver; C:\Windows\system32\drivers\snxppamd.sys [2012-07-04 100728]
S3 SNXPSAMD;SUNIX Serial Port Driver; C:\Windows\system32\drivers\snxpsamd.sys [2012-07-04 97144]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2019-07-09 166752]
S3 ST_ACCEL;STMicroelectronics Accelerometer Service; C:\Windows\system32\drivers\ST_ACCEL.sys [2012-05-25 68208]
S3 ST7007;ST7007; C:\Windows\system32\drivers\ST7007.sys [2011-06-20 67696]
S3 stmtpm;stmtpm; C:\Windows\system32\drivers\stm_tpm.sys [2012-05-25 29184]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 tcm;tcm; C:\Windows\system32\drivers\tcm.sys [2012-07-04 17048]
S3 terahid;PCoIP(R) HID Minidriver; C:\Windows\system32\drivers\terahid.sys [2012-06-14 7680]
S3 terahidmapper;PCoIP(R) HID Minidriver Service; C:\Windows\system32\drivers\terahidmapper.sys [2012-06-14 7680]
S3 teramouse;PCoIP(R) Mouse Service; C:\Windows\system32\drivers\teramouse.sys [2012-06-14 11264]
S3 terapcoip;PCoIP(R) Device Service; C:\Windows\system32\drivers\terapcoip.sys [2012-06-14 37376]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2012-08-23 29696]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2013-10-02 29696]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2015-06-17 54784]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2019-09-10 88136]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2019-10-10 996880]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DigitalWave.Update.Service;Digital Wave Update Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [2019-10-21 441664]
R2 EpsonScanSvc;Epson Scanner Service; C:\Windows\system32\EscSvc64.exe [2017-03-10 145224]
R2 MBAMService;Malwarebytes Service; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [2019-06-26 6744288]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2016-01-29 23808]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-05-31 890216]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2016-01-29 374344]
S2 ccleaner;Služba CCleaner Browser Update (ccleaner); C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [2019-10-05 209128]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2018-03-26 107592]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2018-03-26 128584]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22 153752]
S2 IObitUnSvr;IObit Uninstaller Service; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [2018-09-25 153360]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [2019-10-10 6085360]
S3 CCleanerBrowserElevationService;CCleaner Browser Elevation Service; C:\Program Files (x86)\CCleaner Browser\Application\77.1.1834.93\elevation_service.exe [2019-09-25 984880]
S3 ccleanerm;Služba CCleaner Browser Update (ccleanerm); C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [2019-10-05 209128]
S3 GoogleChromeElevationService;Google Chrome Elevation Service; C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\elevation_service.exe [2019-10-09 1106416]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22 153752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2019-10-06 116224]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2015-06-10 155520]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2018-03-26 52832]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2018-03-26 136288]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2018-03-26 136288]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2018-03-26 136288]

-----------------EOF-----------------

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 29 říj 2019 21:59
od Rudy
Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 30 říj 2019 18:21
od spok
AWD nic nenašel.
Čištění a opravy není..
Tady je zpráva (exportovat shrnutí)

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 30.10.19
Čas skenování: 18:19
Logovací soubor: 79265cdf-fb39-11e9-94c4-782bcbaf1b4f.json

-Informace o softwaru-
Verze: 3.8.3.2965
Verze komponentů: 1.0.627
Aktualizovat verzi balíku komponent: 1.0.13115
Licence: Bezplatný

-Systémová informace-
OS: Windows 7 Service Pack 1
CPU: x64
Systém souborů: NTFS
Uživatel: PO\u00c4\u008c\u00c3\u008dTA\u00c4\u008c\Uzivatel

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Spuštění skenování: Ruční
Výsledek: Dokončeno
Skenované objekty: 232216
Zjištěné hrozby: 0
Hrozby umístěné do karantény: 0
Uplynulý čas: 1 min, 14 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)

Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)

WMI: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 30 říj 2019 18:54
od Rudy
Ano, toto je OK. Dejte logy FRST+Addition: https://forum.viry.cz/viewtopic.php?f=13&t=154679 .

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 01 lis 2019 19:06
od spok
Vyhodilo to dva logy:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02.08.2018
Ran by Uzivatel (01-11-2019 19:08:52)
Running from C:\Users\Uzivatel\Desktop
Windows 7 Professional Service Pack 1 (X64) (2015-07-14 06:06:27)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2828151382-1855654344-3190346470-500 - Administrator - Disabled)
Guest (S-1-5-21-2828151382-1855654344-3190346470-501 - Limited - Disabled)
Uzivatel (S-1-5-21-2828151382-1855654344-3190346470-1001 - Administrator - Enabled) => C:\Users\Uzivatel

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {768124D7-F5F7-6D2F-DDC2-94DFA4017C95}
AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Microsoft Security Essentials (Enabled - Up to date) {CDE0C533-D3CD-62A1-E772-AFADDF863628}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.021.20049 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9120 - Adobe Systems Inc.)
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
AirDroid 3.4.2.0 (HKLM-x32\...\AirDroid) (Version: 3.4.2.0 - Sand Studio)
Any Video Converter 6.3.2 (HKLM-x32\...\Any Video Converter) (Version: 6.3.2 - Anvsoft)
Ashampoo Burning Studio FREE (HKLM-x32\...\{91B33C97-91F8-FFB3-581B-BC952C901685}_is1) (Version: 1.14.5 - Ashampoo GmbH & Co. KG)
Autodesk Fusion 360 (HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.5519 - Autodesk, Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
Balíček ovladače systému Windows - Adafruit Industries LLC (usbser) Ports (02/25/2016 6.2.2600.0) (HKLM\...\1245A5961AC9D2C18ADF9EEC931D77E059B7F74E) (Version: 02/25/2016 6.2.2600.0 - Adafruit Industries LLC)
Balíček ovladače systému Windows - Arduino LLC (www.arduino.cc) Genuino USB Driver (01/07/2016 1.0.3.0) (HKLM\...\EC414D98E2986DCA1628FAED2163CD1C9A4ED7EC) (Version: 01/07/2016 1.0.3.0 - Arduino LLC (www.arduino.cc))
Balíček ovladače systému Windows - Arduino Srl (www.arduino.org) Arduino USB Driver (03/19/2015 1.1.1.0) (HKLM\...\69E507459B453D69A453EFC9E461FAE1E073408A) (Version: 03/19/2015 1.1.1.0 - Arduino Srl (www.arduino.org))
Balíček ovladače systému Windows - dji-innovations inc. (usbser) Ports (12/06/2012 5.1.2600.5512) (HKLM\...\F731C4A8B354FB9B7579C5D98402D2F988E8B95C) (Version: 12/06/2012 5.1.2600.5512 - dji-innovations inc.)
Balíček ovladače systému Windows - libusb-win32 (libusb0) libusb-win32 devices (04/21/2015 1.0.0.0) (HKLM\...\28E91B69CA377EB48D6E1B92C37F897036E8A818) (Version: 04/21/2015 1.0.0.0 - libusb-win32)
Balíček ovladače systému Windows - Linino (usbser) Ports (01/13/2014 1.0.0.0) (HKLM\...\A2C084AD4515675961A87E71B10E80E4FDCF7FAA) (Version: 01/13/2014 1.0.0.0 - Linino)
Balíček ovladače systému Windows - Silicon Laboratories Inc. (silabser) Ports (09/19/2016 6.7.4.261) (HKLM\...\9E2C239D42290B984A9E2B350A67AF8BC8BD11B9) (Version: 09/19/2016 6.7.4.261 - Silicon Laboratories Inc.)
Balíček ovladače systému Windows - Sony Mobile Communications (ggsomc) SOMCFlashDevice (12/06/2017 3.2.0.0) (HKLM\...\7AA77B236196DB9A6C04257060560ACDBB626F30) (Version: 12/06/2017 3.2.0.0 - Sony Mobile Communications)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Capture-A-ScreenShot (HKLM-x32\...\Capture-A-ScreenShot_is1) (Version: - PopDrops.com)
CCleaner (HKLM\...\CCleaner) (Version: 5.62 - Piriform)
Cura 15.04 (HKLM-x32\...\Cura_15.04) (Version: - )
Dazzle Video Capture DVC100 X64 Driver 1.07 (HKLM-x32\...\{631D71FD-237F-4D74-B090-88E66FBC5A10}) (Version: 1.07.0000 - Pinnacle)
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1211.101.114 - ALPS ELECTRIC CO., LTD.)
DJI Assistant 2 version V1.1.6 (HKLM-x32\...\{D939E096-78F1-4A32-A711-C1AD3F3D082A}_is1) (Version: V1.1.6 - DJI)
DJI driver version 2.02 (HKLM-x32\...\{EDFDE5EE-84C7-4936-804C-6563943E5754}_is1) (Version: 2.02 - DJI)
Epson Event Manager (HKLM-x32\...\{E244A764-EDD0-46B0-8689-661F6B28D9E5}) (Version: 3.10.0069 - Seiko Epson Corporation)
EPSON L382 Series Printer Uninstall (HKLM\...\EPSON L382 Series) (Version: - Seiko Epson Corporation)
Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation)
EPSON Scan OCR Component (HKLM-x32\...\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}) (Version: 3.00.04 - SEIKO EPSON Corp.)
Epson Software Updater (HKLM-x32\...\{60A3CB9F-4429-4C7A-AA97-77CC4FE10671}) (Version: 4.4.9 - Seiko Epson Corporation)
FastStone Image Viewer 5.3 (HKLM-x32\...\FastStone Image Viewer) (Version: 5.3 - FastStone Soft)
Free YouTube Download (HKLM-x32\...\Free YouTube Download_is1) (Version: 4.2.22.1018 - Digital Wave Ltd)
Fushicai VIDEO DVR (HKLM-x32\...\{989BAFE8-E777-43D7-9749-9810E0E9FF48}) (Version: 2013.5.6 - Fushicai)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.120 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.301 - Google LLC) Hidden
Image Composite Editor (HKLM\...\{92AB5708-1AAA-4B1B-A8D5-45CF3AD77519}) (Version: 2.0.3 - Microsoft Corporation)
IObit Uninstaller 8 (HKLM-x32\...\IObitUninstall) (Version: 8.1.0.13 - IObit)
K-Lite Codec Pack 10.9.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.5 - )
LibreOffice 4.4 Help Pack (Czech) (HKLM-x32\...\{287D0D9F-A64D-455C-88A8-93B8FC1D9A8A}) (Version: 4.4.0.3 - The Document Foundation)
LibreOffice 4.4.0.3 (HKLM-x32\...\{8BEE1CDD-F95D-4759-952D-6B38DF99D1F0}) (Version: 4.4.0.3 - The Document Foundation)
Malwarebytes verze 3.8.3.2965 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.8.3.2965 - Malwarebytes)
Microsoft .NET Framework 4.7.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{2C303EE0-A595-3543-A71A-931C7AC40EDE}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.9.218.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
NirSoft WebBrowserPassView (HKLM-x32\...\NirSoft WebBrowserPassView) (Version: - )
OpenOffice 4.1.3 (HKLM-x32\...\{7308600A-5231-459C-A3E2-A637F842CACA}) (Version: 4.13.9783 - Apache Software Foundation)
Ovládací panel NVIDIA 296.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 296.88 - NVIDIA Corporation) Hidden
Ovladače videa společnosti Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems)
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
Pinnacle Studio 18 (HKLM\...\{11FB47FB-B341-4FD8-A505-E4C0CC0536C1}) (Version: 18.0.0.234 - Corel Corporation)
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.0 - Power Software Ltd)
Příručky společnosti EPSON (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.54.0.0 - Seiko Epson Corporation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5910 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.52 - Piriform)
Služba Xperia Companion (HKLM\...\{15BAF400-C4AC-45CD-86D4-986DD7EBF14A}) (Version: 2.1.12.0 - Sony) Hidden
Sony Mobile Software Update Drivers (HKLM\...\{4872001F-F67C-4C54-BC92-281C6A165251}) (Version: 3.2.0.3 - Sony Mobile Communications)
Sony Mobile Update Engine (HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Update Engine) (Version: 2.18.11.201808101101 - Sony Mobile Communications Inc.)
Sony PC Companion 2.10.303 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.303 - Sony)
Total Commander (Remove or Repair) (HKLM-x32\...\Totalcmd) (Version: 8.51 - Ghisler Software GmbH)
Ultimaker Cura 3.3 (HKLM-x32\...\Ultimaker Cura 3.3) (Version: 3.3.1 - Ultimaker)
Videoder 1.0.9 (HKLM-x32\...\808fc302-3d01-59ce-8094-e0443a55877e) (Version: 1.0.9 - GlennioTech)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc)
Windows Driver Package - Arduino LLC (www.arduino.cc) Arduino USB Driver (11/24/2015 1.2.3.0) (HKLM\...\8B585560B248755A6C5A24D5C0F50FA998310883) (Version: 11/24/2015 1.2.3.0 - Arduino LLC (www.arduino.cc))
Windows Driver Package - wch.cn (CH341SER_A64) Ports (08/08/2014 3.4.2014.08) (HKLM\...\E46668F0267651C248944766291791B0DEF36F1D) (Version: 08/08/2014 3.4.2014.08 - wch.cn)
WinRAR 5.70 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)
Xperia Companion (HKLM-x32\...\{0785ee9f-59ca-46b1-861d-edbe859a85c9}) (Version: 2.1.12.0 - Sony)
Xperia Companion (HKLM-x32\...\{AF8E220D-5B8C-4F8C-B1D9-487D27E2202F}) (Version: 2.1.12.0 - Sony) Hidden
YoutubeDLG version 0.3.8 (HKLM-x32\...\{3C455028-FC99-4846-8E04-4FCD87D85613}_is1) (Version: 0.3.8 - Sotiris Papadopoulos)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2828151382-1855654344-3190346470-1001_Classes\CLSID\{1AC77AE9-9EC6-405A-9F9B-C06AB3C10B71}\InprocServer32 -> C:\Program Files\Microsoft Research\Image Composite Editor\ShellExtension.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2828151382-1855654344-3190346470-1001_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\Uzivatel\AppData\Local\Autodesk\webdeploy\production\d01d42bcd8a98c5ea527109039f3188b1d8e80bf\NPreview10.dll ()
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-10] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-10] (AVAST Software)
ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-01-29] (Microsoft Corporation)
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2018-07-21] (IObit)
ContextMenuHandlers1: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2014-06-27] (Power Software Ltd)
ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\Windows\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (Alexander Roshal)
ContextMenuHandlers2: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-01-29] (Microsoft Corporation)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-10] (AVAST Software)
ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-01-29] (Microsoft Corporation)
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2018-07-21] (IObit)
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2014-06-27] (Power Software Ltd)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2015-04-08] (Piriform Ltd)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2012-05-31] (NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-10] (AVAST Software)
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2018-07-21] (IObit)
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2014-06-27] (Power Software Ltd)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2015-04-08] (Piriform Ltd)
ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\Windows\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {068B010C-183E-44E3-AFB8-9761CF3FC55A} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-01-13] ()
Task: {0717A2AA-896E-4224-A219-D0E3D379FF95} - System32\Tasks\{06C861BF-E871-4D21-9DD6-C03A7601AB58} => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe
Task: {07582DFF-9E19-4B3E-9455-B42455540820} - System32\Tasks\{11549FC8-BBE9-4A91-B53F-0AB4ABD8309D} => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe
Task: {133F9E3A-3EED-45CF-A380-2552FFEE2AE4} - System32\Tasks\EPSON L382 Series Update {8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSRRE.EXE [2013-11-22] (SEIKO EPSON CORPORATION)
Task: {1D25E552-E9C1-4C75-88A1-8EF91CA3D851} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2019-09-19] (AVAST Software)
Task: {25333BD6-DC4E-4596-BC3D-9E002B1435D2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
Task: {2DCA2293-1B6D-4D5A-9038-56C75125B208} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2019-10-15] (Piriform Software Ltd)
Task: {2E493F48-EAF7-4654-A56D-3B8D69A7ABF7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
Task: {3037C374-4D41-49CC-B26D-1A3FE4709629} - System32\Tasks\{312F2DA1-1FC9-4D9F-A0B7-E108B0C39E8D} => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe
Task: {62812189-F1E7-4FFE-8916-0B13758A6374} - System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => C:\Windows\system32\sipnotify.exe [2019-10-11] (Microsoft Corporation)
Task: {85A1CCC1-D068-4364-916E-9A38E827C556} - System32\Tasks\Microsoft\Windows\End Of Support\Notify2 => C:\Windows\system32\sipnotify.exe [2019-10-11] (Microsoft Corporation)
Task: {8A2A4FF8-18E8-4950-9BD1-2EB9ED59E573} - System32\Tasks\{167D854D-735A-4BDC-BC6B-71E65C3BEC3A} => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe
Task: {92C956BE-57E1-465C-A23C-0B940284C441} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2019-10-15] (Piriform Ltd)
Task: {973F9F4E-4AA8-4544-A8EA-87A1C409686A} - System32\Tasks\{E65FD195-998E-4335-800D-9A33C903A363} => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe
Task: {B8DCFEA9-95A3-4A8B-93FA-CCB7A95656EA} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2019-09-10] (Adobe Systems)
Task: {E12BD694-CB62-4604-8A06-B517A57B3B15} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2019-10-10] (AVAST Software)
Task: {EABBDD2E-7A0A-4AEE-A26F-36B11B3619A8} - System32\Tasks\AdobeAAMUpdater-1.0-POČÍTAČ-Uzivatel => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04] (Adobe Systems Incorporated)
Task: {EB91511A-BBEC-409D-8C45-06AC23CB26A6} - System32\Tasks\Uninstaller_SkipUac_Uzivatel => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2018-10-17] (IObit)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\EPSON L382 Series Update {8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSRRE.EXE:/EXE:{8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9} /F:UpdateSYSTEMĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2019-10-10 13:46 - 2019-10-10 13:46 - 001186696 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll
2019-10-10 13:46 - 2019-10-10 13:46 - 000227208 _____ () C:\Program Files\AVAST Software\Avast\features_manager.dll
2019-10-10 13:46 - 2019-10-10 13:46 - 108869848 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2019-10-10 13:46 - 2019-10-10 13:46 - 002694872 _____ () C:\Program Files\AVAST Software\Avast\swiftshader\libglesv2.dll
2019-10-10 13:46 - 2019-10-10 13:46 - 000167128 _____ () C:\Program Files\AVAST Software\Avast\swiftshader\libegl.dll
2019-10-30 18:19 - 2019-10-31 17:58 - 002717624 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2019-10-15 18:46 - 2019-10-09 04:52 - 006907376 _____ () C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\libglesv2.dll
2019-10-15 18:46 - 2019-10-09 04:52 - 000381424 _____ () C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\libegl.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000178496 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000108008 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000024040 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000048104 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000042984 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\jansson.dll
2019-10-29 18:10 - 2019-10-21 15:17 - 000178496 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\zlib1.dll
2015-12-30 21:20 - 2014-10-31 16:37 - 001498112 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2015-12-30 21:20 - 2014-05-19 17:19 - 000137728 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2018-11-03 15:38 - 2018-05-02 17:42 - 000442128 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl
2018-11-03 15:38 - 2018-05-02 17:42 - 000210704 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl
2018-11-03 15:38 - 2018-05-02 17:42 - 000059664 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl
2012-03-09 16:26 - 2012-03-09 16:26 - 000100352 _____ () C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\zlib1.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2019-01-04 19:21 - 000000035 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Uzivatel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.255.255.20 - 10.255.255.10
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{FEAE9702-F83D-4823-889F-4AF5A3CBA551}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe
FirewallRules: [{DBD23320-5164-4D9D-BF8C-7B5EDAF991EB}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe
FirewallRules: [{C33A631E-9798-42F4-A442-48BE5323B2D9}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe
FirewallRules: [{B6D30602-DFF0-498A-AEC7-35EF34F1A3A4}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe
FirewallRules: [{A1C7176D-17CC-4179-8DED-BBD43A9C097D}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe
FirewallRules: [{79B70E29-2A23-4A86-9858-6EAF66770ADB}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe
FirewallRules: [{89467DD7-0E9D-42E7-8EE1-4E51064A2F72}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{06615D4A-EE1C-4BA1-8130-C51CF8834C31}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C7A73D5D-0B27-412F-B073-1475EDD67636}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E69BE422-55B2-4E87-BEE1-B42C0050DD13}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{46BB6255-B889-4E8F-ACC1-11016E48E96C}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [UDP Query User{1DEF217F-EBA0-4CC8-88B8-D614812AECE1}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [TCP Query User{0212A482-9A24-4017-9F6A-A26DAE86F124}C:\program files (x86)\dji product\dji assistant 2\assistant\root.exe] => (Block) C:\program files (x86)\dji product\dji assistant 2\assistant\root.exe
FirewallRules: [UDP Query User{C351654B-D093-4AF8-8366-7A1B2808AD92}C:\program files (x86)\dji product\dji assistant 2\assistant\root.exe] => (Block) C:\program files (x86)\dji product\dji assistant 2\assistant\root.exe
FirewallRules: [TCP Query User{FA75ADAA-B36A-4A0E-8E48-F3A74D2A64C2}C:\program files (x86)\dji product\dji assistant 2\assistant\visionstarter.exe] => (Allow) C:\program files (x86)\dji product\dji assistant 2\assistant\visionstarter.exe
FirewallRules: [UDP Query User{94D12459-CB90-4CBE-801A-33938325FA08}C:\program files (x86)\dji product\dji assistant 2\assistant\visionstarter.exe] => (Allow) C:\program files (x86)\dji product\dji assistant 2\assistant\visionstarter.exe
FirewallRules: [{4C7B4EF2-783D-434C-AA6F-6D0541FA4D84}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{6097E211-764F-4FFD-99EC-712C726896BB}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{3E47F593-689B-45A6-8DED-719C0BB60392}] => (Allow) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe
FirewallRules: [{E1C4EACA-3D8A-43FC-AECA-A6744BB16314}] => (Allow) C:\ProgramData\Sony Mobile\Update Engine\{1E926C0D-6437-475C-8E7F-99F4247CCDA1}\Sony Mobile Update Engine.exe
FirewallRules: [{C752DF48-F8E9-4685-9302-C2D3DFF1EBCA}] => (Allow) C:\ProgramData\Sony Mobile\Update Engine\{1E926C0D-6437-475C-8E7F-99F4247CCDA1}\Sony Mobile Update Engine.exe
FirewallRules: [{4D87F503-9F56-4CBB-8863-3D01FD3837BF}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{B36F48C9-6342-4580-88FB-675AC5481810}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{1B276404-8988-4586-8839-A86CE38FAAAF}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
FirewallRules: [{27E6DB0E-C78A-4187-A902-06E4979D33CA}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
FirewallRules: [TCP Query User{ADD6A774-5679-435F-8C44-F5A11C50CC05}C:\program files\ultimaker cura 3.3\cura.exe] => (Allow) C:\program files\ultimaker cura 3.3\cura.exe
FirewallRules: [UDP Query User{077590E5-386F-459C-9418-73911BFFD7CA}C:\program files\ultimaker cura 3.3\cura.exe] => (Allow) C:\program files\ultimaker cura 3.3\cura.exe
FirewallRules: [{1FD9D75D-7422-4253-9932-B10A9A0CC2D6}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

01-11-2019 18:05:14 Windows Update

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/29/2019 09:00:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MsiExec.exe, verze: 5.0.7601.24460, časové razítko: 0x5cd43e80
Název chybujícího modulu: QuickTime.qts_unloaded, verze: 0.0.0.0, časové razítko: 0x55c3a9ef
Kód výjimky: 0xc0000005
Posun chyby: 0x6ba3cce9
ID chybujícího procesu: 0x1c34
Čas spuštění chybující aplikace: 0x01d58e938f3fa517
Cesta k chybující aplikaci: C:\Windows\syswow64\MsiExec.exe
Cesta k chybujícímu modulu: QuickTime.qts
ID zprávy: cd8bac29-fa86-11e9-8385-782bcbaf1b4f

Error: (10/29/2019 08:44:11 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/15/2019 06:36:39 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/10/2019 01:55:05 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/10/2019 01:52:28 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/05/2019 11:05:17 PM) (Source: ESENT) (EventID: 454) (User: )
Description: taskhost (2000) WebCacheLocal: Při zotavení či obnovení databáze došlo k neočekávané chybě -501.

Error: (10/05/2019 11:05:17 PM) (Source: ESENT) (EventID: 465) (User: )
Description: taskhost (2000) WebCacheLocal: Při částečném obnovení byl zjištěn poškozený soubor protokolu C:\Users\Uzivatel\AppData\Local\Microsoft\Windows\WebCache\V01.log. Záznam s chybou kontrolního součtu je umístěn na pozici END. Data neodpovídající záznamům protokolu se poprvé vyskytla v sektoru 500 (0x000001F4). Soubor je poškozený a nelze jej použít.

Error: (10/05/2019 11:05:17 PM) (Source: ESENT) (EventID: 465) (User: )
Description: taskhost (2000) WebCacheLocal: Při částečném obnovení byl zjištěn poškozený soubor protokolu C:\Users\Uzivatel\AppData\Local\Microsoft\Windows\WebCache\V01.log. Záznam s chybou kontrolního součtu je umístěn na pozici END. Data neodpovídající záznamům protokolu se poprvé vyskytla v sektoru 500 (0x000001F4). Soubor je poškozený a nelze jej použít.


System errors:
=============
Error: (10/29/2019 06:10:09 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba Digital Wave Update Service je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (10/29/2019 04:58:30 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (10/29/2019 04:58:30 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (10/28/2019 11:17:44 AM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (10/28/2019 09:41:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (10/28/2019 09:41:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (10/28/2019 09:41:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (10/28/2019 09:41:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.


Windows Defender:
===================================
Date: 2014-07-31 05:30:51.192
Description:
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání:{F74994EE-6443-4737-AD02-11C9F1FC565C}
Typ prohledávání:Antispywarový program
Parametry prohledávání:Rychlé prohledávání
Uživatel:NT AUTHORITY\NETWORK SERVICE

CodeIntegrity:
===================================

Date: 2015-09-08 19:42:53.162
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system.

Date: 2015-09-08 19:42:53.137
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system.

Date: 2015-09-08 19:42:53.111
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe because the set of per-page image hashes could not be found on the system.

Date: 2015-09-08 19:42:53.084
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

Processor: Intel(R) Xeon(R) CPU E31270 @ 3.40GHz
Percentage of memory in use: 26%
Total physical RAM: 16341.02 MB
Available physical RAM: 12065.41 MB
Total Virtual: 32680.18 MB
Available Virtual: 26591.65 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:111.59 GB) (Free:10.25 GB) NTFS
Drive e: () (Fixed) (Total:1863.01 GB) (Free:805.79 GB) NTFS
Drive f: () (Fixed) (Total:465.75 GB) (Free:39.2 GB) NTFS

\\?\Volume{21a79c0b-29ee-11e5-a69a-806e6f6e6963}\ (System) (Fixed) (Total:0.2 GB) (Free:0.16 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: EEB3DC2A)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111.6 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: 6B4C4BE7)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 465.8 GB) (Disk ID: 045D58BA)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=0F Extended)

==================== End of Addition.txt ============================


Druhý:


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.08.2018
Ran by Uzivatel (administrator) on POČÍTAČ (01-11-2019 19:08:36)
Running from C:\Users\Uzivatel\Desktop
Loaded Profiles: Uzivatel (Available Profiles: Uzivatel)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe
(Sony) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe
(Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
(Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
(Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Sony) C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Adobe Systems, Incorporated) C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [626552 2012-06-18] (Alps Electric Co., Ltd.)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1340192 2016-01-29] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe [2907240 2012-04-26] (Realtek Semiconductor Corp.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-10-10] (AVAST Software)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2072928 2014-10-31] (Wondershare)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1092304 2016-03-14] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [2132320 2018-05-29] (Sony)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-15] (Piriform Ltd)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [1814848 2019-10-21] (Digital Wave Ltd)
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-18\...\Run: [GarminExpress] => "C:\Program Files (x86)\Garmin\Express\express.exe" /minimized
HKU\S-1-5-18\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-15] (Piriform Ltd)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.255.255.20 10.255.255.10
Tcpip\..\Interfaces\{8D3DD345-AED1-4C5F-A2DF-FEB54F9F04B4}: [DhcpNameServer] 10.255.255.20 10.255.255.10

Internet Explorer:
==================
HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=i ... ar=msnhome
SearchScopes: HKLM -> DefaultScope {5E9BA19F-E032-4A60-9A60-64552215D6C9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {5E9BA19F-E032-4A60-9A60-64552215D6C9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {EB117507-5E4C-40E1-B8D9-2945353E4AEB} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {EB117507-5E4C-40E1-B8D9-2945353E4AEB} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2828151382-1855654344-3190346470-1001 -> {CE3E38F5-B53D-4216-8A26-B4A2AC610792} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-07-19] (IObit)

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-07] (Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-07] (Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-16] (Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default [2019-11-01]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2019-10-29]
CHR Extension: (Adobe Acrobat) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-10-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]
CHR Extension: (Chrome Media Router) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-05]
CHR HKU\S-1-5-21-2828151382-1855654344-3190346470-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-10-10] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-10-10] (AVAST Software)
R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [441664 2019-10-21] (Digital Wave Ltd)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [145224 2017-03-10] (Seiko Epson Corporation)
S3 GoogleChromeElevationService; C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\elevation_service.exe [1106416 2019-10-09] (Google LLC)
S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [153360 2018-09-25] (IObit)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2016-01-29] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [374344 2016-01-29] (Microsoft Corporation)
S3 Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [155520 2015-06-10] (Avanquest Software) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WirelessKB850NotificationService; C:\Windows\system32\WirelessKB850NotificationService.exe [174256 2018-05-14] (Microsoft Corporation)
S3 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppService.exe [495840 2018-01-26] (Wondershare)
S3 WsDrvInst; C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe [120096 2018-01-16] (Wondershare)
R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2195968 2018-05-29] (Sony) [File not signed]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AF9035HB; C:\Windows\System32\Drivers\AF9035HB.sys [907904 2016-12-24] (ITE Technologies )
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37616 2019-10-10] (AVAST Software)
S3 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [204824 2019-10-10] (AVAST Software)
S3 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [274456 2019-10-10] (AVAST Software)
S3 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [209552 2019-10-10] (AVAST Software)
S3 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [65120 2019-10-10] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [276952 2019-10-10] (AVAST Software)
S3 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42736 2019-10-10] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [171520 2019-10-10] (AVAST Software)
S3 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [110320 2019-10-10] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [83792 2019-10-10] (AVAST Software)
S3 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [848432 2019-10-10] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [460448 2019-10-10] (AVAST Software)
S3 aswStm; C:\Windows\System32\drivers\aswStm.sys [236024 2019-10-10] (AVAST Software)
S3 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [316528 2019-10-10] (AVAST Software)
S3 atmeltpm; C:\Windows\system32\drivers\atmeltpm64.sys [19456 2012-05-25] (Atmel, Inc.)
S3 BCMTPM; C:\Windows\system32\drivers\btpmwx64.sys [32096 2012-05-25] (Broadcom Corp.)
S3 CH341SER_A64; C:\Windows\System32\Drivers\CH341S64.SYS [59904 2015-01-25] (www.winchiphead.com)
S3 d554gps; C:\Windows\system32\drivers\d554gps64.sys [102440 2012-06-18] (Ericsson AB)
S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [135520 2019-07-09] (Samsung Electronics Co., Ltd.)
S3 DIGITECH; C:\Windows\system32\drivers\DIGITECH.sys [25648 2011-06-08] (Copyright(c) Digitech Systems)
S3 ecnssndis; C:\Windows\System32\Drivers\wwuss64.sys [26664 2012-06-18] (Ericsson AB)
S3 ecnssndisfltr; C:\Windows\System32\Drivers\wwussf64.sys [29736 2012-06-18] (Ericsson AB)
S3 FLxHCIh; C:\Windows\system32\drivers\FLxHCIh.sys [65536 2012-03-02] (Fresco Logic)
S3 ggsomc; C:\Windows\System32\DRIVERS\ggsomc.sys [32384 2018-03-14] (Sony Mobile Communications)
S3 HBtnKey; C:\Windows\system32\drivers\HBtnKey.sys [20424 2011-07-19] (Dell Inc.)
R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [24496 2012-03-15] (Intel Corporation)
S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [639408 2012-06-15] (Intel Corporation)
R3 IntcAzAudAddService; C:\Windows\System32\drivers\RTDVHD64.sys [3712360 2012-04-26] (Realtek Semiconductor Corp.)
S3 irstrtdv; C:\Windows\system32\drivers\irstrtdv.sys [26504 2011-06-16] (Intel Corporation)
S3 ISCT; C:\Windows\system32\drivers\ISCTD64.sys [44992 2012-05-25] ()
R3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IUProcessFilter.sys [19312 2018-10-16] (IObit)
R3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IURegistryFilter.sys [25488 2018-10-16] (IObit)
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [56576 2017-03-14] (hxxp://libusb-win32.sourceforge.net)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [275232 2019-10-31] (Malwarebytes)
S3 Mbm3CBus; C:\Windows\system32\drivers\Mbm3CBus.sys [419400 2012-06-18] (MCCI Corporation)
S3 Mbm3DevMt; C:\Windows\system32\drivers\Mbm3DevMt.sys [430664 2012-06-18] (MCCI Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [289120 2015-11-13] (Microsoft Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133816 2015-11-13] (Microsoft Corporation)
S3 nwdelgobi3kfilter; C:\Windows\system32\drivers\nwdelgobi3kfilter.sys [34304 2012-06-18] (Novatel Wireless Inc)
S3 NWDellPort; C:\Windows\system32\drivers\nwdelser.sys [222208 2012-06-18] (Novatel Wireless Inc.)
S3 NWDellPort2; C:\Windows\system32\drivers\nwdelser2.sys [222208 2012-06-18] (Novatel Wireless Inc.)
S3 nwdelserial; C:\Windows\system32\drivers\nwdelserial.sys [234112 2012-06-18] (Novatel Wireless Inc.)
S3 percsas2; C:\Windows\system32\drivers\percsas2.sys [53584 2012-06-15] (LSI Corporation)
S3 QCFilterdl; C:\Windows\system32\drivers\qcfilterdl.sys [8832 2012-05-10] (QUALCOMM Incorporated)
S3 qcfilterdl2k; C:\Windows\system32\drivers\qcfilterdl2k.sys [6400 2012-07-05] (QUALCOMM Incorporated)
S3 qcombusdl; C:\Windows\system32\drivers\qcombusdl.sys [137800 2012-07-05] (MCCI)
S3 qcusbserdl; C:\Windows\system32\drivers\qcusbserdl.sys [127104 2012-05-10] (QUALCOMM Incorporated)
S3 qcusbserdl2k; C:\Windows\system32\drivers\qcusbserdl2k.sys [230784 2012-07-05] (QUALCOMM Incorporated)
S3 SNXPPAMD; C:\Windows\system32\drivers\snxppamd.sys [100728 2012-07-04] (SUNIX Co., Ltd.)
S3 SNXPSAMD; C:\Windows\system32\drivers\snxpsamd.sys [97144 2012-07-04] (SUNIX Co., Ltd.)
S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166752 2019-07-09] (Samsung Electronics Co., Ltd.)
S3 ST7007; C:\Windows\system32\drivers\ST7007.sys [67696 2011-06-20] (STMicroelectronics)
S3 stmtpm; C:\Windows\system32\drivers\stm_tpm.sys [29184 2012-05-25] (STMicroelectronics, INC)
S3 ST_ACCEL; C:\Windows\system32\drivers\ST_ACCEL.sys [68208 2012-05-25] (STMicroelectronics)
S3 tcm; C:\Windows\system32\drivers\tcm.sys [17048 2012-07-04] ()
S3 terahid; C:\Windows\system32\drivers\terahid.sys [7680 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 terahidmapper; C:\Windows\system32\drivers\terahidmapper.sys [7680 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 teramouse; C:\Windows\system32\drivers\teramouse.sys [11264 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 terapcoip; C:\Windows\system32\drivers\terapcoip.sys [37376 2012-06-14] (Windows (R) Win 7 DDK provider)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Apple, Inc.) [File not signed]
S3 X86BDA; C:\Windows\System32\DRIVERS\OEMDrv.sys [268416 2011-06-08] ( )
S3 AscFileControl; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscFileControl.sys [X]
S3 AscFileFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscFileFilter.sys [X]
S3 AscRegistryFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscRegistryFilter.sys [X]
U3 aswbdisk; no ImagePath
U3 aswblog; no ImagePath
S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-01 19:07 - 2019-11-01 19:08 - 000037771 _____ C:\Users\Uzivatel\Desktop\Addition.txt
2019-11-01 19:07 - 2019-11-01 19:08 - 000019318 _____ C:\Users\Uzivatel\Desktop\FRST.txt
2019-10-31 17:59 - 2019-10-31 17:59 - 000275232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2019-10-30 18:19 - 2019-10-31 17:59 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2019-10-30 18:19 - 2019-10-30 18:19 - 000001878 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-10-30 18:19 - 2019-10-30 18:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-10-30 18:12 - 2019-10-30 18:12 - 066367928 _____ (Malwarebytes ) C:\Users\Uzivatel\Desktop\mb3-setup-37469.37469-3.8.3.2965-1.0.627-1.0.12633.exe
2019-10-29 18:10 - 2019-10-29 18:10 - 000001356 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2019-10-29 18:10 - 2019-10-29 18:10 - 000001323 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk
2019-10-29 18:10 - 2019-10-29 18:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2019-10-29 18:10 - 2019-10-29 18:10 - 000000000 ____D C:\ProgramData\DigitalWave.ApplicationUpdater_files
2019-10-29 18:09 - 2019-10-29 20:22 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\DVDVideoSoft
2019-10-29 18:09 - 2019-10-29 18:09 - 000000000 ____D C:\Program Files (x86)\FreeCodecPack
2019-10-29 18:09 - 2019-10-29 18:09 - 000000000 ____D C:\Program Files (x86)\DVDVideoSoft
2019-10-18 15:34 - 2019-10-11 03:22 - 000338944 _____ (Microsoft Corporation) C:\Windows\system32\sipnotify.exe
2019-10-10 13:46 - 2019-10-10 13:46 - 000355720 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-10-10 13:46 - 2019-10-10 13:46 - 000236024 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-10-10 13:46 - 2019-10-10 13:46 - 000171520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-10-09 17:32 - 2019-10-07 07:49 - 000390752 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-10-09 17:32 - 2019-10-07 06:57 - 000341896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2019-10-09 17:32 - 2019-10-06 05:12 - 025753088 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-10-09 17:32 - 2019-10-06 05:00 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-10-09 17:32 - 2019-10-06 04:49 - 002909184 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-10-09 17:32 - 2019-10-06 04:48 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-10-09 17:32 - 2019-10-06 04:47 - 000579584 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-10-09 17:32 - 2019-10-06 04:47 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-10-09 17:32 - 2019-10-06 04:47 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-10-09 17:32 - 2019-10-06 04:46 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-10-09 17:32 - 2019-10-06 04:41 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-10-09 17:32 - 2019-10-06 04:40 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-10-09 17:32 - 2019-10-06 04:38 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-10-09 17:32 - 2019-10-06 04:37 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-10-09 17:32 - 2019-10-06 04:37 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-10-09 17:32 - 2019-10-06 04:36 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-10-09 17:32 - 2019-10-06 04:36 - 000797696 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-10-09 17:32 - 2019-10-06 04:34 - 005500928 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-10-09 17:32 - 2019-10-06 04:32 - 020290048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-10-09 17:32 - 2019-10-06 04:31 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-10-09 17:32 - 2019-10-06 04:28 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-10-09 17:32 - 2019-10-06 04:23 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-10-09 17:32 - 2019-10-06 04:22 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-10-09 17:32 - 2019-10-06 04:22 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-10-09 17:32 - 2019-10-06 04:19 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-10-09 17:32 - 2019-10-06 04:19 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-10-09 17:32 - 2019-10-06 04:18 - 000496128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-10-09 17:32 - 2019-10-06 04:18 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2019-10-09 17:32 - 2019-10-06 04:17 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2019-10-09 17:32 - 2019-10-06 04:17 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-10-09 17:32 - 2019-10-06 04:16 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2019-10-09 17:32 - 2019-10-06 04:15 - 002302464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-10-09 17:32 - 2019-10-06 04:12 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2019-10-09 17:32 - 2019-10-06 04:12 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2019-10-09 17:32 - 2019-10-06 04:11 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2019-10-09 17:32 - 2019-10-06 04:10 - 000663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-10-09 17:32 - 2019-10-06 04:10 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-10-09 17:32 - 2019-10-06 04:10 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2019-10-09 17:32 - 2019-10-06 04:07 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-10-09 17:32 - 2019-10-06 04:05 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-10-09 17:32 - 2019-10-06 04:05 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-10-09 17:32 - 2019-10-06 04:03 - 002132992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-10-09 17:32 - 2019-10-06 04:03 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-10-09 17:32 - 2019-10-06 04:03 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2019-10-09 17:32 - 2019-10-06 04:00 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2019-10-09 17:32 - 2019-10-06 04:00 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2019-10-09 17:32 - 2019-10-06 03:59 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2019-10-09 17:32 - 2019-10-06 03:58 - 015413760 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-10-09 17:32 - 2019-10-06 03:57 - 004859904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-10-09 17:32 - 2019-10-06 03:57 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2019-10-09 17:32 - 2019-10-06 03:56 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2019-10-09 17:32 - 2019-10-06 03:56 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2019-10-09 17:32 - 2019-10-06 03:53 - 004112384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-10-09 17:32 - 2019-10-06 03:50 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2019-10-09 17:32 - 2019-10-06 03:49 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2019-10-09 17:32 - 2019-10-06 03:48 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2019-10-09 17:32 - 2019-10-06 03:48 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2019-10-09 17:32 - 2019-10-06 03:45 - 013808640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-10-09 17:32 - 2019-10-06 03:45 - 001566208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-10-09 17:32 - 2019-10-06 03:35 - 004387840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-10-09 17:32 - 2019-10-06 03:34 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-10-09 17:32 - 2019-10-06 03:32 - 001331712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-10-09 17:32 - 2019-10-06 03:30 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2019-10-09 17:32 - 2019-09-10 03:02 - 006135296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2019-10-09 17:32 - 2019-09-10 01:09 - 007082496 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-10-09 17:31 - 2019-10-06 05:00 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-10-09 17:31 - 2019-10-06 04:28 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2019-10-09 17:31 - 2019-10-06 04:17 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2019-10-09 17:31 - 2019-10-06 04:16 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-10-09 17:31 - 2019-10-06 03:55 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2019-10-09 17:31 - 2019-09-19 05:27 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2019-10-09 17:31 - 2019-09-17 03:32 - 004060896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2019-10-09 17:31 - 2019-09-17 03:32 - 003966688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2019-10-09 17:31 - 2019-09-17 03:32 - 000709856 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-10-09 17:31 - 2019-09-17 03:32 - 000627424 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-10-09 17:31 - 2019-09-17 03:31 - 005552864 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-10-09 17:31 - 2019-09-17 03:31 - 001319496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2019-10-09 17:31 - 2019-09-17 03:31 - 000263904 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-10-09 17:31 - 2019-09-17 03:31 - 000155360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-10-09 17:31 - 2019-09-17 03:31 - 000096992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-10-09 17:31 - 2019-09-17 03:30 - 001670784 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000834048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000555520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 001472512 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 001211392 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 001162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 001010176 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000733184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000408576 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:28 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 03:04 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2019-10-09 17:31 - 2019-09-17 03:03 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2019-10-09 17:31 - 2019-09-17 03:00 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2019-10-09 17:31 - 2019-09-17 03:00 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-10-09 17:31 - 2019-09-17 03:00 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2019-10-09 17:31 - 2019-09-17 02:59 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2019-10-09 17:31 - 2019-09-17 02:59 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2019-10-09 17:31 - 2019-09-17 02:59 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2019-10-09 17:31 - 2019-09-17 02:59 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2019-10-09 17:31 - 2019-09-17 02:59 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2019-10-09 17:31 - 2019-09-17 02:57 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2019-10-09 17:31 - 2019-09-17 02:57 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 02:57 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 02:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 02:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2019-10-09 17:31 - 2019-09-17 02:56 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-10-09 17:31 - 2019-09-17 02:56 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2019-10-09 17:31 - 2019-09-17 02:55 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2019-10-09 17:31 - 2019-09-17 02:53 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2019-10-09 17:31 - 2019-09-17 02:53 - 000161280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-10-09 17:31 - 2019-09-17 02:52 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-10-09 17:31 - 2019-09-17 02:52 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-10-09 17:31 - 2019-09-17 02:52 - 000169984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2019-10-09 17:31 - 2019-09-17 02:52 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-10-09 17:31 - 2019-09-17 02:51 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2019-10-09 17:31 - 2019-09-17 02:51 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2019-10-09 17:31 - 2019-09-17 01:13 - 000455392 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2019-10-09 17:31 - 2019-09-12 04:53 - 000442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2019-10-09 17:31 - 2019-09-12 04:52 - 000373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2019-10-09 17:31 - 2019-09-12 04:52 - 000195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2019-10-09 17:31 - 2019-09-12 04:44 - 000680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2019-10-09 17:31 - 2019-09-12 04:44 - 000499712 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2019-10-09 17:31 - 2019-09-12 04:44 - 000438784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2019-10-09 17:31 - 2019-09-12 04:44 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2019-10-09 17:31 - 2019-09-12 04:44 - 000284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2019-10-09 17:31 - 2019-09-12 04:24 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2019-10-09 17:31 - 2019-09-11 05:56 - 000353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-10-09 17:31 - 2019-09-11 05:56 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2019-10-09 17:31 - 2019-09-10 03:27 - 000383488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2019-10-09 17:31 - 2019-09-10 03:27 - 000320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2019-10-09 17:31 - 2019-09-10 03:27 - 000160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 001281536 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 000486912 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 000174080 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2019-10-09 17:31 - 2019-09-10 03:24 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2019-10-09 17:31 - 2019-09-10 03:00 - 000361472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2019-10-09 17:31 - 2019-09-10 03:00 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2019-10-09 17:31 - 2019-09-10 03:00 - 000054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2019-10-09 17:31 - 2019-09-10 03:00 - 000028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2019-10-09 17:31 - 2019-09-10 03:00 - 000028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2019-10-09 17:31 - 2019-09-10 02:54 - 003231744 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-10-09 17:31 - 2019-09-10 02:53 - 000416256 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2019-10-09 17:31 - 2019-09-10 02:53 - 000152576 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2019-10-09 17:31 - 2019-09-10 02:53 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2019-10-09 17:31 - 2019-09-10 02:53 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2019-10-09 17:31 - 2019-09-10 02:52 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys
2019-10-09 17:31 - 2019-09-10 02:49 - 000317440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2019-10-09 17:31 - 2019-09-10 01:09 - 003187712 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2019-10-05 21:30 - 2019-10-05 21:30 - 000090002 _____ C:\Users\Uzivatel\Documents\cc_20191005_223002.reg

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-01 19:08 - 2017-03-04 23:56 - 000000000 ____D C:\FRST
2019-11-01 19:07 - 2018-11-01 21:07 - 000000911 _____ C:\Windows\Tasks\EPSON L382 Series Update {8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9}.job
2019-11-01 18:15 - 2015-07-15 21:51 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\Adobe
2019-11-01 18:12 - 2009-07-14 05:45 - 000030896 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-11-01 18:12 - 2009-07-14 05:45 - 000030896 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-10-31 17:01 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\rescache
2019-10-31 16:26 - 2018-11-03 15:38 - 000002866 _____ C:\Windows\System32\Tasks\Uninstaller_SkipUac_Uzivatel
2019-10-31 16:26 - 2018-11-01 21:07 - 000003978 _____ C:\Windows\System32\Tasks\EPSON L382 Series Update {8FAAB004-9450-42D7-B7B5-8CCD7F2D93F9}
2019-10-31 16:26 - 2018-10-02 20:38 - 000003036 _____ C:\Windows\System32\Tasks\{11549FC8-BBE9-4A91-B53F-0AB4ABD8309D}
2019-10-31 16:26 - 2018-10-02 20:37 - 000003036 _____ C:\Windows\System32\Tasks\{167D854D-735A-4BDC-BC6B-71E65C3BEC3A}
2019-10-31 16:26 - 2018-10-02 20:37 - 000003036 _____ C:\Windows\System32\Tasks\{06C861BF-E871-4D21-9DD6-C03A7601AB58}
2019-10-31 16:26 - 2018-10-02 20:36 - 000003036 _____ C:\Windows\System32\Tasks\{E65FD195-998E-4335-800D-9A33C903A363}
2019-10-31 16:26 - 2018-10-02 20:36 - 000003036 _____ C:\Windows\System32\Tasks\{312F2DA1-1FC9-4D9F-A0B7-E108B0C39E8D}
2019-10-31 16:26 - 2018-08-14 15:51 - 000003870 _____ C:\Windows\System32\Tasks\CCleaner Update
2019-10-31 16:26 - 2018-08-14 15:51 - 000002794 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2019-10-31 16:26 - 2017-01-22 18:01 - 000003388 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-10-31 16:26 - 2017-01-22 18:01 - 000003260 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-10-31 16:26 - 2015-07-22 20:04 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2019-10-31 16:26 - 2015-07-16 20:55 - 000003506 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-POČÍTAČ-Uzivatel
2019-10-31 16:26 - 2015-02-08 13:40 - 000003688 _____ C:\Windows\System32\Tasks\klcp_update
2019-10-31 16:24 - 2018-08-14 15:53 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2019-10-30 18:19 - 2018-11-03 16:15 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-10-29 21:02 - 2017-04-20 14:11 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\Posta
2019-10-29 20:59 - 2018-03-29 18:08 - 000000000 ____D C:\ProgramData\Garmin
2019-10-29 20:59 - 2016-12-18 13:12 - 000000000 ____D C:\ProgramData\Package Cache
2019-10-29 20:59 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2019-10-29 20:55 - 2016-06-19 17:33 - 000000000 ____D C:\Program Files\trend micro
2019-10-29 20:47 - 2018-11-03 15:21 - 000000000 ____D C:\ProgramData\ProductData
2019-10-29 20:46 - 2014-07-31 01:14 - 000668542 _____ C:\Windows\system32\perfh005.dat
2019-10-29 20:46 - 2014-07-31 01:14 - 000141202 _____ C:\Windows\system32\perfc005.dat
2019-10-29 20:46 - 2009-07-14 06:13 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2019-10-29 20:42 - 2018-08-14 15:51 - 000000000 ____D C:\Program Files\CCleaner
2019-10-29 20:42 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-10-29 20:40 - 2018-08-14 15:51 - 000000877 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-10-29 17:25 - 2015-07-21 14:55 - 000023552 _____ C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2019-10-29 17:00 - 2015-09-23 15:09 - 000048033 _____ C:\Users\Uzivatel\AppData\Roaming\POČÍTAČ.MTBF.txt
2019-10-29 17:00 - 2015-07-15 15:08 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\Pinnacle
2019-10-29 17:00 - 2015-07-15 15:06 - 000000349 _____ C:\Users\Public\Documents\PCLECHAL.INI
2019-10-27 16:08 - 2017-12-19 19:53 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-10-21 20:34 - 2015-09-23 15:09 - 000000000 ____D C:\Users\Uzivatel\temp
2019-10-15 18:46 - 2017-01-22 18:03 - 000002241 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-10-15 18:46 - 2017-01-22 18:03 - 000002200 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-10-10 13:52 - 2009-07-14 05:45 - 005045192 _____ C:\Windows\system32\FNTCACHE.DAT
2019-10-10 13:51 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-10-10 13:49 - 2014-07-30 23:49 - 001557940 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2019-10-10 13:48 - 2014-07-30 21:08 - 000000000 ____D C:\Windows\system32\MRT
2019-10-10 13:47 - 2018-08-14 15:53 - 000848432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-10-10 13:47 - 2018-08-14 15:53 - 000460448 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-10-10 13:47 - 2018-08-14 15:53 - 000003910 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-10-10 13:46 - 2019-02-20 18:10 - 000276952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-10-10 13:46 - 2019-01-19 10:31 - 000274456 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-10-10 13:46 - 2019-01-17 16:09 - 000209552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-10-10 13:46 - 2019-01-17 16:09 - 000065120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-10-10 13:46 - 2019-01-17 16:09 - 000037616 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-10-10 13:46 - 2018-10-22 20:02 - 000042736 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-10-10 13:46 - 2018-08-14 15:53 - 000316528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-10-10 13:46 - 2018-08-14 15:53 - 000204824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-10-10 13:46 - 2018-08-14 15:53 - 000110320 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-10-10 13:46 - 2018-08-14 15:53 - 000083792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-10-10 13:45 - 2014-07-30 21:08 - 127230528 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-10-07 20:03 - 2015-02-08 12:12 - 000000000 ____D C:\Program Files (x86)\Google
2019-10-05 21:32 - 2017-04-26 20:59 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\CrashDumps
2019-10-05 21:28 - 2018-08-14 15:54 - 000002014 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2019-10-05 21:23 - 2018-11-03 15:21 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\IObit
2019-10-05 21:02 - 2015-09-10 17:18 - 000000000 ____D C:\ProgramData\Apple
2019-10-05 20:15 - 2019-06-30 21:15 - 000000000 _____ C:\Windows\system32\last.dump
2019-10-05 19:35 - 2017-05-08 15:13 - 000000000 ___RD C:\Users\Uzivatel\Documents\Scanned Documents

==================== Files in the root of some directories =======

2018-04-29 15:06 - 2018-04-29 15:06 - 000015704 _____ () C:\Users\Uzivatel\AppData\Roaming\.ptbt0
2015-07-29 17:55 - 2015-11-01 20:35 - 000000132 _____ () C:\Users\Uzivatel\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2016-07-27 12:03 - 2018-03-23 22:26 - 000000132 _____ () C:\Users\Uzivatel\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2015-09-23 15:09 - 2019-10-29 17:00 - 000048033 _____ () C:\Users\Uzivatel\AppData\Roaming\POČÍTAČ.MTBF.txt
2015-07-29 17:24 - 2015-07-29 17:24 - 000001480 _____ () C:\Users\Uzivatel\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2016-08-05 10:00 - 2017-03-04 21:35 - 000001480 _____ () C:\Users\Uzivatel\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2015-07-21 14:55 - 2019-10-29 17:25 - 000023552 _____ () C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2019-10-31 16:54

==================== End of FRST.txt ============================

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 01 lis 2019 20:03
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
Task: {2E493F48-EAF7-4654-A56D-3B8D69A7ABF7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
Task: {25333BD6-DC4E-4596-BC3D-9E002B1435D2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
FirewallRules: [{89467DD7-0E9D-42E7-8EE1-4E51064A2F72}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{06615D4A-EE1C-4BA1-8130-C51CF8834C31}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C7A73D5D-0B27-412F-B073-1475EDD67636}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E69BE422-55B2-4E87-BEE1-B42C0050DD13}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
U3 aswbdisk; no ImagePath
U3 aswblog; no ImagePath
S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X]
C:\Windows\System32\Tasks\{11549FC8-BBE9-4A91-B53F-0AB4ABD8309D}
C:\Windows\System32\Tasks\{167D854D-735A-4BDC-BC6B-71E65C3BEC3A}
C:\Windows\System32\Tasks\{06C861BF-E871-4D21-9DD6-C03A7601AB58}
C:\Windows\System32\Tasks\{E65FD195-998E-4335-800D-9A33C903A363}
C:\Windows\System32\Tasks\{312F2DA1-1FC9-4D9F-A0B7-E108B0C39E8D}
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 03 lis 2019 09:41
od spok
Udělal jsem podle popisu ale možnost fix to nenabídne.
Ani když dám scan. Zase to vyhodí dva logy a fixlist uložený na ploše nepoužije

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 03 lis 2019 11:27
od Rudy
spok píše:Udělal jsem podle popisu ale možnost fix to nenabídne.
Po spuštění FRST je tlačítko "Fix" vpravo. To stiskněte.

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 03 lis 2019 18:27
od spok
Už to jde. Asi jsem dělal něco blbě..

Fix result of Farbar Recovery Scan Tool (x64) Version: 01-11-2019
Ran by Uzivatel (03-11-2019 18:17:40) Run:2
Running from C:\Users\Uzivatel\Desktop
Loaded Profiles: Uzivatel (Available Profiles: Uzivatel)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
Task: {2E493F48-EAF7-4654-A56D-3B8D69A7ABF7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
Task: {25333BD6-DC4E-4596-BC3D-9E002B1435D2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-22] (Google Inc.)
FirewallRules: [{89467DD7-0E9D-42E7-8EE1-4E51064A2F72}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{06615D4A-EE1C-4BA1-8130-C51CF8834C31}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C7A73D5D-0B27-412F-B073-1475EDD67636}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E69BE422-55B2-4E87-BEE1-B42C0050DD13}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
U3 aswbdisk; no ImagePath
U3 aswblog; no ImagePath
S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X]
C:\Windows\System32\Tasks\{11549FC8-BBE9-4A91-B53F-0AB4ABD8309D}
C:\Windows\System32\Tasks\{167D854D-735A-4BDC-BC6B-71E65C3BEC3A}
C:\Windows\System32\Tasks\{06C861BF-E871-4D21-9DD6-C03A7601AB58}
C:\Windows\System32\Tasks\{E65FD195-998E-4335-800D-9A33C903A363}
C:\Windows\System32\Tasks\{312F2DA1-1FC9-4D9F-A0B7-E108B0C39E8D}
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2E493F48-EAF7-4654-A56D-3B8D69A7ABF7}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2E493F48-EAF7-4654-A56D-3B8D69A7ABF7}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{25333BD6-DC4E-4596-BC3D-9E002B1435D2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{25333BD6-DC4E-4596-BC3D-9E002B1435D2}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{89467DD7-0E9D-42E7-8EE1-4E51064A2F72}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{06615D4A-EE1C-4BA1-8130-C51CF8834C31}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C7A73D5D-0B27-412F-B073-1475EDD67636}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E69BE422-55B2-4E87-BEE1-B42C0050DD13}" => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\System\CurrentControlSet\Services\aswbdisk => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\aswblog => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\cpuz143 => removed successfully
cpuz143 => service removed successfully
C:\Windows\System32\Tasks\{11549FC8-BBE9-4A91-B53F-0AB4ABD8309D} => moved successfully
C:\Windows\System32\Tasks\{167D854D-735A-4BDC-BC6B-71E65C3BEC3A} => moved successfully
C:\Windows\System32\Tasks\{06C861BF-E871-4D21-9DD6-C03A7601AB58} => moved successfully
C:\Windows\System32\Tasks\{E65FD195-998E-4335-800D-9A33C903A363} => moved successfully
C:\Windows\System32\Tasks\{312F2DA1-1FC9-4D9F-A0B7-E108B0C39E8D} => moved successfully
"C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore" => not found
C:\Users\Uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 27250504 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 15418747 B
Edge => 0 B
Chrome => 332759641 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 0 B
systemprofile32 => 128 B
LocalService => 128 B
NetworkService => 86770 B
Uzivatel => 2810488885 B

RecycleBin => 339535539 B
EmptyTemp: => 3.3 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 03-11-2019 18:19:38)


Result of scheduled keys to remove after reboot:

HKLM\System\CurrentControlSet\Services\aswbdisk => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\aswblog => could not remove, key could be protected

==== End of Fixlog 18:19:38 ====

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 03 lis 2019 18:57
od Rudy
Smazáno. Log by již měl být OK.

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 03 lis 2019 20:02
od spok
Děkuji.
Pošlu něco na pivo :)

Re: Prosím o kontrolu a pomoc s vyčištěním C Díky!

Napsal: 03 lis 2019 20:24
od Rudy
Nemáte zač a my děkujeme za příspěvek! :)