Divné spravanie notebooku
Napsal: 25 lis 2019 19:24
Zdravím, v poslednej dobe sa môj notebook správa divne na to, že ho mám asi iba mesiac. Najprv sa mi z ničoho nič odinštaloval antivírus (Avast, ktorý mám aj zaplatený), proste iba po zapnutí notebooku tam nebol. Ďalej mi nechce vyhľadať aktualizácie na Windows 10 ( Windows update vypíše chybu 0x80080005). Potom sa mi ešte odinštalovali ovládače grafickej karty Nvidia, (to mi vypíše keď zapnem PC) a nejdú mi ani znova nainštalovať. A ešte keď vypnem prehliadač (Google Chrome) a znova ho zapnem, tak už niesom prihlásený na ziadnej stránke ani napríklad na gmaily, čo predtým chrome vôbec nerobil. Robil som aj kontrolu cez Malwarebytes, ktorý mi nasiel asi 10 detekcii. Log z kontroly nemám, mám to iba odfotené na mobile ak pomôže (http://leteckaposta.cz/724866174). Prosím teda o kontrolu. Ďakujem.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-11-2019
Ran by 2mari (administrator) on LAPTOP-UD0IUSDB (ASUSTeK COMPUTER INC. VivoBook_ASUSLaptop X570ZD_X570ZD) (25-11-2019 18:33:04)
Running from D:\Stiahnuté súbory
Loaded Profiles: 2mari (Available Profiles: 2mari)
Platform: Windows 10 Home Version 1903 18362.418 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0330194.inf_amd64_6a88d4165e944d7c\B329837\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0330194.inf_amd64_6a88d4165e944d7c\B329837\atiesrxx.exe
(ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\ASUS Hello\ASUSHelloBG.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSLiveUpdateAgent\AsusLiveUpdateAgent.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSOptimization\ASUSOptimization.exe
(ASUSTek Computer Inc. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemAnalysis\AsusSystemAnalysis.exe
(ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\AsHidSrv64.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\AsLdrSrv64.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\AsMonStartupTask64.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\ATKOSD2.exe
(ASUSTeK COMPUTER INC.) C:\Program Files\WindowsApps\B9ECED6F.ASUSKeyboardHotkeys_1.0.12.0_x86__qmba6cd70vzyy\ATK Package\HControl.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Conexant Systems LLC -> Conexant Systems, Inc.) C:\Windows\System32\CxUIUSvc32.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler64.exe
(ICEpower a/s -> ICEpower) C:\Windows\System32\DriverStore\FileRepository\icesoundapo64.inf_amd64_e042e413cfab025e\ICEsoundService64.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\mcafee\WebAdvisor\servicehost.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\mcafee\WebAdvisor\uihost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11910.1001.5.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wuapihost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Node.js Foundation -> Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(Node.js Foundation -> Node.js) C:\Program Files (x86)\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\Display.NvContainer\NVDisplay.Container.exe
(Spotify AB -> Spotify Ltd) C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2084920 2019-09-27] (Adobe Inc. -> Adobe Inc.)
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-09-25] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\Run: [Spotify] => C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe [21141408 2019-11-23] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-14] (Piriform Software Ltd -> Piriform Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe [2019-11-20] (Google LLC -> Google LLC)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07BCC8A5-C5B2-4236-B418-10423F0FE09A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-14] (Piriform Software Ltd -> Piriform Ltd)
Task: {0B459154-1243-48F7-BDC4-74AF66D1CC3F} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemAnalysis\AsusSystemAnalysis.exe [1452992 2019-04-09] (ASUSTek Computer Inc. -> ASUSTeK COMPUTER INC.)
Task: {0E6566ED-FA8F-49BE-8FB5-A44B4C378913} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {10723487-B934-4368-9ABD-C5E69C4A6325} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {17D56080-D568-491B-A381-057F35F1AB20} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301928 2019-10-25] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {24EFF580-A2F2-4E9D-9AEB-AD6169042D1E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {28EEBFEE-4A39-4744-895F-3B8F423FD4E2} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
Task: {36F0302A-2CAD-40DF-826B-F9DF62CBA2DF} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-14] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {36F43B62-32E0-45B3-8CD5-5FA4D37D5657} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
Task: {429CD095-1B60-4722-AC87-A5E6335794F9} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4E1180FD-33C9-4082-A752-89C861B8D73E} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5F4071B4-F1E5-40DE-9AFD-8A38BCA80AEF} - System32\Tasks\Update Checker => C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSLiveUpdateAgent\UpdateChecker.exe [183232 2019-04-09] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.)
Task: {6689CAE9-3572-4D51-9E7D-679EBFEEB4AA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-04-30] (Google Inc -> Google LLC)
Task: {6DB964FC-C380-4248-B30B-530BAF1BBF49} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6DBE934C-E261-4DBE-8F41-1959ACBC1220} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [654456 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {78EF1C9C-6A72-4043-B025-333BB9F4E93C} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {91F521A9-987B-42C4-9535-B3A3052A15E1} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {AD49DD87-955E-4E95-8C46-35E98C688A65} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B448518C-E077-4149-BC1A-3F5686014228} - System32\Tasks\ASUS Hello => C:\Program Files (x86)\ASUS\ASUS Hello\ASUSHelloBG.exe [642448 2018-05-31] (ASUSTeK Computer Inc. -> )
Task: {EE8C60C4-EFF5-4DFA-B4F9-7DD1F0180772} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-04-30] (Google Inc -> Google LLC)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 147.175.130.10 147.175.137.20 147.175.1.11
Tcpip\..\Interfaces\{0d779e97-4075-48cf-9fd3-99896c2aee40}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{91b4ffd2-6f6a-4192-94cd-0f00c09de45a}: [DhcpNameServer] 147.175.130.10 147.175.137.20 147.175.1.11
Tcpip\..\Interfaces\{db59b198-99c3-488d-8d03-dafbf92b084a}: [DhcpNameServer] 147.175.130.10 147.175.137.20 147.175.1.11
Internet Explorer:
==================
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-11-14] (McAfee, LLC -> McAfee, Inc.)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-11-14] (McAfee, LLC -> McAfee, Inc.)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-11-14]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-09-27] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-09-27] (Adobe Inc. -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\2mari\AppData\Local\Google\Chrome\User Data\Default [2019-11-25]
CHR DownloadDir: D:\Stiahnuté súbory
CHR Extension: (AdBlock — best ad blocker) - C:\Users\2mari\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-11-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\2mari\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-11]
CHR Extension: (Chrome Media Router) - C:\Users\2mari\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-31]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [823352 2019-09-27] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\u0330194.inf_amd64_6a88d4165e944d7c\B329837\atiesrxx.exe [481144 2018-06-25] (Advanced Micro Devices, Inc. -> AMD)
R2 AsHidService; C:\WINDOWS\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\AsHidSrv64.exe [173960 2018-05-15] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R2 ASLDRService; C:\WINDOWS\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\AsLdrSrv64.exe [212872 2018-05-15] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R2 ASUSLiveUpdateAgent; C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSLiveUpdateAgent\AsusLiveUpdateAgent.exe [265152 2019-04-09] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.)
R2 ASUSOptimization; C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSOptimization\ASUSOptimization.exe [202176 2019-04-09] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.)
R2 ASUSSystemAnalysis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemAnalysis\AsusSystemAnalysis.exe [1452992 2019-04-09] (ASUSTek Computer Inc. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemDiagnosis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [519128 2019-04-09] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-11-10] (AVAST Software s.r.o. -> AVAST Software)
R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [414728 2017-11-07] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [417536 2019-11-10] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
R2 CxUIUSvc; C:\WINDOWS\System32\CxUIUSvc32.exe [92504 2018-06-28] (Conexant Systems LLC -> Conexant Systems, Inc.)
R2 GiftBox.Service; C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe [285144 2018-04-04] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 ICEsoundService; C:\WINDOWS\System32\DriverStore\FileRepository\icesoundapo64.inf_amd64_e042e413cfab025e\ICEsoundService64.exe [935088 2018-12-10] (ICEpower a/s -> ICEpower)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [913208 2019-11-14] (McAfee, LLC -> McAfee, Inc.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 wuauserv; C:\WINDOWS\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
S3 wuauserv; C:\WINDOWS\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [34664 2018-04-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\u0330194.inf_amd64_6a88d4165e944d7c\B329837\atikmdag.sys [40686456 2018-06-25] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\u0330194.inf_amd64_6a88d4165e944d7c\B329837\atikmpag.sys [545144 2018-06-25] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdpsp; C:\WINDOWS\System32\drivers\amdpsp.sys [145792 2018-04-25] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStor.SYS [109504 2018-04-26] (Alcorlink Corp. -> )
R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R1 ASUSSAIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemAnalysis\ASUSSAIO.sys [32704 2019-04-09] (ASUSTek Computer Inc. -> )
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [204824 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [209552 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [65120 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2019-10-19] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42736 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [161544 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
R1 aswNetSec; C:\WINDOWS\System32\drivers\aswNetSec.sys [552848 2019-11-10] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110320 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83792 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848432 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460448 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [236024 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316528 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [111080 2018-05-24] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R1 ATKWMIACPIIO; C:\WINDOWS\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\atkwmiacpi64.sys [36232 2018-05-15] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R3 CnxtHdAudService; C:\WINDOWS\system32\drivers\CHDRT64.sys [3463976 2019-05-16] (Synaptics Incorporated -> Conexant Systems Inc.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [135520 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 HfAudio; C:\WINDOWS\System32\drivers\HfAudio.sys [73680 2018-05-30] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32680 2019-08-07] (ASUSTek Computer Inc. -> ASUS)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\nvlddmkm.sys [22749432 2019-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-08-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1010648 2017-10-20] (Realtek Semiconductor Corp. -> Realtek )
S3 ScrHIDDriver2; C:\WINDOWS\System32\drivers\ScrHIDDriver2.sys [58320 2018-05-30] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166752 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2019-10-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
U1 aswbdisk; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-11-25 18:29 - 2019-11-25 18:33 - 000000000 ____D C:\FRST
2019-11-25 18:24 - 2019-11-25 18:24 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2019-11-25 18:24 - 2019-11-25 18:24 - 000002888 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2019-11-25 18:24 - 2019-11-25 18:24 - 000000865 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-11-25 18:24 - 2019-11-25 18:24 - 000000865 _____ C:\ProgramData\Desktop\CCleaner.lnk
2019-11-25 18:24 - 2019-11-25 18:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2019-11-25 18:24 - 2019-11-25 18:24 - 000000000 ____D C:\Program Files\CCleaner
2019-11-23 15:41 - 2019-11-25 14:27 - 000017429 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2019-11-23 15:41 - 2019-11-25 14:27 - 000012145 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2019-11-23 15:40 - 2019-11-25 14:27 - 000022266 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2019-11-23 15:40 - 2019-11-25 14:01 - 000001206 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1
2019-11-23 15:40 - 2019-11-23 15:40 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2019-11-23 15:05 - 2019-11-14 11:26 - 011842176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-11-23 15:05 - 2019-11-14 11:26 - 001074080 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-11-23 15:05 - 2019-11-14 11:26 - 001074080 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-11-23 15:05 - 2019-11-14 11:26 - 000931744 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-11-23 15:05 - 2019-11-14 11:26 - 000931744 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-11-23 15:05 - 2019-11-14 11:26 - 000848800 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-11-23 15:05 - 2019-11-14 11:26 - 000848800 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-11-23 15:05 - 2019-11-14 11:26 - 000706464 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-11-23 15:05 - 2019-11-14 11:26 - 000706464 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-11-23 15:05 - 2019-11-14 11:25 - 010167424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-11-23 15:05 - 2019-11-14 11:25 - 001000840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2019-11-23 15:05 - 2019-11-14 11:25 - 000685584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-11-23 15:05 - 2019-11-14 11:25 - 000677072 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-11-23 15:05 - 2019-11-14 11:25 - 000544512 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 040510408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 017458640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 015027160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 005557704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 005381760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 004717776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 002074032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 001568672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 001481976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 001369848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 001144848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 001065848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 000812792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 000659336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 000574384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2019-11-23 15:05 - 2019-11-14 11:24 - 000556464 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 000451712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2019-11-23 15:05 - 2019-11-14 11:23 - 035379672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-11-23 15:05 - 2019-11-14 11:23 - 004219656 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-11-23 15:05 - 2019-11-14 11:23 - 000858664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2019-11-23 15:05 - 2019-11-07 05:23 - 000081581 _____ C:\WINDOWS\system32\nvidia-smi.1.pdf
2019-11-23 15:05 - 2019-11-07 05:23 - 000076271 _____ C:\WINDOWS\system32\nvinfo.pb
2019-11-23 15:02 - 2019-11-23 18:24 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 15:02 - 2019-11-23 18:24 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 15:02 - 2019-11-23 18:24 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 15:02 - 2019-11-23 18:24 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 14:10 - 2019-11-23 14:10 - 000266384 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-11-20 15:08 - 2019-11-20 15:08 - 000000000 ____D C:\Users\2mari\OneDrive\Dokumenty\Image-Line
2019-11-20 15:07 - 2019-11-20 15:07 - 000000000 ____D C:\Users\2mari\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
2019-11-20 15:06 - 2019-11-20 15:06 - 000001004 _____ C:\Users\Public\Desktop\FL Studio 20.lnk
2019-11-20 15:06 - 2019-11-20 15:06 - 000001004 _____ C:\ProgramData\Desktop\FL Studio 20.lnk
2019-11-20 15:06 - 2019-11-20 15:06 - 000000000 ____D C:\Users\2mari\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2019-11-20 15:06 - 2019-11-20 15:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line
2019-11-20 15:06 - 2019-11-20 15:06 - 000000000 ____D C:\Program Files\Common Files\Propellerhead Software
2019-11-20 15:01 - 2019-11-20 15:07 - 000000000 ____D C:\Program Files (x86)\Image-Line
2019-11-13 21:27 - 2019-11-13 21:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-3160964539-2882457464-2850274892-1001
2019-11-10 15:50 - 2019-11-10 15:50 - 000002090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Internet Security.lnk
2019-11-10 15:50 - 2019-11-10 15:50 - 000002078 _____ C:\Users\Public\Desktop\Avast Internet Security.lnk
2019-11-10 15:50 - 2019-11-10 15:50 - 000002078 _____ C:\ProgramData\Desktop\Avast Internet Security.lnk
2019-11-10 15:44 - 2019-11-10 15:44 - 000552848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetSec.sys
2019-11-10 15:44 - 2019-11-09 22:46 - 000355720 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2019-11-10 01:16 - 2019-11-10 01:16 - 000000000 ____D C:\Users\2mari\AppData\Local\mbamtray
2019-11-10 01:16 - 2019-11-10 01:16 - 000000000 ____D C:\Users\2mari\AppData\Local\mbam
2019-11-10 01:16 - 2019-11-10 01:16 - 000000000 ____D C:\Users\2mari\AppData\Local\cache
2019-11-09 22:46 - 2019-11-09 22:46 - 000161544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2019-11-09 22:37 - 2019-11-09 22:37 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2019-11-05 19:49 - 2019-11-13 22:09 - 000000512 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2019-11-03 12:05 - 2019-11-03 12:17 - 000000000 ____D C:\Users\2mari\AppData\Roaming\vlc
2019-11-03 12:05 - 2019-11-03 12:05 - 000000796 _____ C:\Users\Public\Desktop\VLC media player.lnk
2019-11-03 12:05 - 2019-11-03 12:05 - 000000796 _____ C:\ProgramData\Desktop\VLC media player.lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-11-25 18:32 - 2019-10-11 19:14 - 000000000 ____D C:\Users\2mari\AppData\Roaming\Spotify
2019-11-25 18:24 - 2019-10-12 12:54 - 000795988 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-11-25 18:24 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2019-11-25 18:03 - 2019-10-20 13:15 - 000000000 ____D C:\Users\2mari\AppData\Local\GoPro
2019-11-25 18:03 - 2019-04-30 19:13 - 000000000 ____D C:\ProgramData\Package Cache
2019-11-25 17:28 - 2019-10-12 12:56 - 000003746 _____ C:\WINDOWS\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474
2019-11-25 17:25 - 2019-10-19 15:03 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2019-11-25 17:25 - 2019-04-30 19:13 - 000000000 ____D C:\ProgramData\NVIDIA
2019-11-25 17:24 - 2019-10-19 23:53 - 000000000 ___RD C:\Users\2mari\Creative Cloud Files
2019-11-25 17:24 - 2019-10-19 23:37 - 000000000 ____D C:\Users\2mari\AppData\Local\Adobe
2019-11-25 17:24 - 2019-10-12 11:23 - 000000000 ____D C:\Users\2mari\AppData\Local\CrashDumps
2019-11-25 17:23 - 2019-10-12 12:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-11-25 17:23 - 2019-10-11 19:15 - 000000000 ____D C:\Users\2mari\AppData\Local\Spotify
2019-11-25 17:23 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-11-25 14:27 - 2019-03-19 05:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-11-25 14:07 - 2019-10-12 12:56 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3160964539-2882457464-2850274892-1001
2019-11-25 14:07 - 2019-10-12 12:48 - 000002357 _____ C:\Users\2mari\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-11-25 14:07 - 2019-04-30 23:16 - 000000000 ___RD C:\Users\2mari\OneDrive
2019-11-23 18:24 - 2019-10-19 23:41 - 000002608 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2019-11-23 18:24 - 2019-10-19 15:03 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2019-11-23 18:24 - 2019-10-12 12:56 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000003386 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-11-23 18:24 - 2019-10-12 12:56 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000003162 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-11-23 18:24 - 2019-10-12 12:56 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000003088 _____ C:\WINDOWS\system32\Tasks\Update Checker
2019-11-23 18:24 - 2019-10-12 12:56 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000002770 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task v2
2019-11-23 18:24 - 2019-10-12 12:56 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000002338 _____ C:\WINDOWS\system32\Tasks\ASUS Hello
2019-11-23 17:41 - 2019-04-30 19:12 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-11-23 15:41 - 2019-10-19 15:12 - 000000000 ____D C:\Users\2mari\AppData\Local\NVIDIA
2019-11-23 15:41 - 2019-10-11 17:27 - 000000000 ____D C:\Users\2mari\AppData\Local\D3DSCache
2019-11-23 15:41 - 2019-04-30 19:12 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-11-23 15:40 - 2019-04-30 19:12 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-11-23 15:39 - 2019-04-30 19:12 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-11-23 15:39 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Help
2019-11-23 15:21 - 2019-10-12 12:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-11-23 15:03 - 2019-04-30 23:16 - 000000000 ____D C:\Users\2mari\AppData\Local\NVIDIA Corporation
2019-11-23 14:53 - 2019-10-19 15:02 - 000000000 ____D C:\ProgramData\AVAST Software
2019-11-23 00:18 - 2019-10-19 14:53 - 000000000 ____D C:\Users\2mari\AppData\Roaming\uTorrent
2019-11-23 00:18 - 2019-10-12 11:44 - 000000000 ___DC C:\WINDOWS\Panther
2019-11-23 00:16 - 2019-10-19 15:03 - 000000000 ____D C:\Users\2mari\AppData\Roaming\AVAST Software
2019-11-22 22:44 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-11-20 14:43 - 2019-04-30 23:19 - 000002315 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-11-14 11:23 - 2019-04-30 19:12 - 004952320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-11-13 21:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-11-13 21:28 - 2019-10-12 09:55 - 000000000 ____D C:\ProgramData\Packages
2019-11-10 17:30 - 2019-10-19 23:00 - 000000000 ____D C:\Users\2mari\AppData\LocalLow\uTorrent
2019-11-10 17:30 - 2019-10-19 23:00 - 000000000 ____D C:\Users\2mari\AppData\Local\BitTorrentHelper
2019-11-10 15:44 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-11-10 01:16 - 2019-04-30 23:14 - 000000000 ____D C:\Users\2mari\AppData\Local\AMD
2019-11-09 22:46 - 2019-10-19 15:02 - 000848432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2019-11-09 22:46 - 2019-10-19 15:02 - 000460448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2019-11-09 22:37 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-11-09 13:01 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-11-05 18:20 - 2019-04-30 23:19 - 000000000 ____D C:\Program Files (x86)\Google
==================== Files in the root of some directories ========
2019-10-19 23:39 - 2019-10-19 23:39 - 000000410 _____ () C:\Users\2mari\AppData\Local\oobelibMkey.log
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-11-2019
Ran by 2mari (25-11-2019 18:34:20)
Running from D:\Stiahnuté súbory
Windows 10 Home Version 1903 18362.418 (X64) (2019-10-12 11:56:26)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
2mari (S-1-5-21-3160964539-2882457464-2850274892-1001 - Administrator - Enabled) => C:\Users\2mari
Administrator (S-1-5-21-3160964539-2882457464-2850274892-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3160964539-2882457464-2850274892-503 - Limited - Disabled)
Guest (S-1-5-21-3160964539-2882457464-2850274892-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3160964539-2882457464-2850274892-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee VirusScan (Enabled - Up to date) {4DE344F8-6897-65B4-CED0-82B3AF2591B4}
AS: McAfee VirusScan (Enabled - Up to date) {2624E002-54CC-27F9-FD39-B2DD14D41191}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\uTorrent) (Version: 3.5.5.45365 - BitTorrent Inc.)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 5.0.0.354 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2019 (HKLM-x32\...\PPRO_13_0_1) (Version: 13.0.1 - Adobe Systems Incorporated)
Aktualizácie NVIDIA 38.0.2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.2.0 - NVIDIA Corporation) Hidden
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.14 - Michael Tippach)
ASUS GiftBox Service (HKLM-x32\...\{4701E5AB-AF91-4D40-8F18-358CC80E4E5B}) (Version: 3.2.1.0 - ASUSTeK COMPUTER INC.)
ASUS Hello (HKLM-x32\...\{D8CE1923-92A9-4036-817E-9E0D8AA2169B}) (Version: 1.1.4.0 - ASUSTeK COMPUTER INC.)
ASUS Sync Drivers (HKLM\...\{086FE7AE-1622-4617-92B8-F54FAAB372D0}) (Version: 2.3.5715 - Screenovate Technologies Ltd.)
AudioWizard (HKLM-x32\...\{57E770A2-2BAF-4CAA-BAA3-BD896E2254D3}) (Version: 1.0.8.1 - ICEpower a/s)
Avast Internet Security (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
CCleaner (HKLM\...\CCleaner) (Version: 5.63 - Piriform)
FL Studio 20 (HKLM-x32\...\FL Studio 20) (Version: - Image-Line)
FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 78.0.3904.108 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.48 - McAfee, LLC.)
Microsoft OneDrive (HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\OneDriveSetup.exe) (Version: 19.192.0926.0012 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.15.26706 (HKLM-x32\...\{95ac1cfa-f4fb-4d1b-8912-7f9d5fbb140d}) (Version: 14.15.26706.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (HKLM-x32\...\{7e9fae12-5bbf-47fb-b944-09c49e75c061}) (Version: 14.15.26706.0 - Microsoft Corporation)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.1.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.1.57 - NVIDIA Corporation)
NVIDIA Grafický ovládač 441.20 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.20 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Spotify (HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\Spotify) (Version: 1.1.20.510.g7d28aaaa - Spotify AB)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{3BAE4496-6F6C-4330-A8AA-B93D3D346FA5}) (Version: 2.53.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{F49D6A65-1AB6-4728-9FDA-DB5BAB631CF6}) (Version: 1.23.0.0 - Microsoft Corporation) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN)
Packages:
=========
Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc [2019-10-20] (Adobe Systems Incorporated)
Adobe Reader Touch -> C:\Program Files\WindowsApps\AdobeSystemsIncorporated.AdobeReader_3.1.8.7675_x86__ynb6jyjzte8ga [2019-10-13] (Adobe Systems Incorporated)
ASUS GIFTBOX -> C:\Program Files\WindowsApps\B9ECED6F.ASUSGIFTBOX_3.1.7.0_x64__qmba6cd70vzyy [2019-10-12] (ASUSTeK COMPUTER INC.)
ASUS Keyboard Hotkeys -> C:\Program Files\WindowsApps\B9ECED6F.ASUSKeyboardHotkeys_1.0.12.0_x86__qmba6cd70vzyy [2019-10-11] (ASUSTeK COMPUTER INC.) [Startup Task]
ASUS Sync -> C:\Program Files\WindowsApps\ScreenovateTechnologies.AsusVirtoo_2.4.8064.0_x64__0vhbc3ng4wbp0 [2019-10-12] (Screenovate Technologies.) [Startup Task]
eManual -> C:\Program Files\WindowsApps\B9ECED6F.eManual_2.0.3.0_x86__qmba6cd70vzyy [2019-04-30] (ASUSTeK COMPUTER INC.)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2019-10-12] (LinkedIn)
McAfee® Personal Security -> C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.16.0_x64__wafk5atnkzcwy [2019-10-12] (McAfee Inc.)
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-11] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-11] (Microsoft Corporation) [MS Ad]
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-11] (Microsoft Studios) [MS Ad]
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
MSN Počasie -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-10-11] (Microsoft Corporation) [MS Ad]
MyASUS -> C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_2.0.24.0_x64__qmba6cd70vzyy [2019-10-12] (ASUSTeK COMPUTER INC.) [Startup Task]
Pošta a kalendár -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20368.0_x64__8wekyb3d8bbwe [2019-11-09] (Microsoft Corporation) [MS Ad]
SmartAudio 2 -> C:\Program Files\WindowsApps\22094SynapticsIncorporate.SmartAudio2_1.1.36.0_x86__qt57b6kdvhcfw [2019-10-12] (Synaptics Hong Kong Limited, Taiwan Branch (H.K.))
Splendid -> C:\Program Files\WindowsApps\B9ECED6F.Splendid_1.0.14.0_x64__qmba6cd70vzyy [2019-10-12] (ASUSTeK COMPUTER INC.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3160964539-2882457464-2850274892-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-74C28FDECFD8} -> [Creative Cloud Files] => C:\Users\2mari\Creative Cloud Files [2019-10-19 23:53]
CustomCLSID: HKU\S-1-5-21-3160964539-2882457464-2850274892-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\nvshext.dll [2019-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\2mari\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default
==================== Loaded Modules (Whitelisted) =============
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer trusted/restricted ==========
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2018-04-12 00:38 - 2018-04-12 00:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
2019-11-05 19:49 - 2019-11-13 22:09 - 000000512 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\2mari\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\ce4ef3a9-df87-4150-a989-4e61c54dcbbf.jpg
DNS Servers: 147.175.130.10 - 147.175.137.20
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{4CD4A280-22E1-44A4-BC6E-1B5D44C07AC3}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.AsusVirtoo_2.4.8064.0_x64__0vhbc3ng4wbp0\app\ASUSSyncClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
FirewallRules: [{C6B13BB1-21C7-4BDB-8922-FA76C2644F1A}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.AsusVirtoo_2.4.8064.0_x64__0vhbc3ng4wbp0\app\ASUSSyncClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
FirewallRules: [UDP Query User{24A186B2-C741-4828-9669-D6EB18EFF52C}C:\users\2mari\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\2mari\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{EA7F4739-D575-476E-89CE-6C740A80DBD8}C:\users\2mari\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\2mari\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D66C12C3-3AD3-4CA8-9DC6-6D9550E736F2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{26A670C5-FA01-4D9A-A648-9BD8C59D29CB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{BF76E301-A5C1-4CDC-85E5-11D7A9F5C8AF}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.AsusVirtoo_2.4.8064.0_x64__0vhbc3ng4wbp0\app\ASUSSyncClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
FirewallRules: [{4EA78C5A-D791-42A8-A6CC-45ED579BCE4D}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.AsusVirtoo_2.4.8064.0_x64__0vhbc3ng4wbp0\app\ASUSSyncClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
FirewallRules: [TCP Query User{641D9C62-E571-4D0E-ABC7-A492F6A31D41}C:\users\2mari\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\2mari\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{6D032637-4395-4955-91B1-26275B1A40CD}C:\users\2mari\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\2mari\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D820A87C-000E-4B15-852B-FBD3422533FA}] => (Allow) C:\Users\2mari\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{58485AE4-D5C1-44A4-9778-BF4EB2A8729B}] => (Allow) C:\Users\2mari\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{FE63F04D-26C5-4FAB-83C2-F42197CBC56B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.12130.20272.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7533E611-28A1-4FCC-BE30-E5DB5CA028C4}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{F9ADE05C-7CAE-48F2-8FAC-414E6BAA488A}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{A1CFC953-E194-4451-AE55-48549D8046FD}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{B0DD5BF5-82DC-4D4A-91B6-913F061A0C16}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{9B481998-90FE-484A-AD91-91C9EEC04858}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{A0BEF54C-AA4A-4BA1-9EC6-DE8F83F38B7D}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{5A95E969-AA20-4F63-BE51-6F57FEF9FF2D}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{1FC94D4B-E2F2-498A-93DF-E2D5B3CBADD5}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{E8B39EE1-4A27-4879-99E8-B489DF5E18EE}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{631E2E70-9098-44C6-A387-C539E5414D88}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{2D7D9809-B846-4AF8-B313-02059E375C1D}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{D562A2AF-7DEA-4306-BEAD-663A22E59580}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C45EBDEF-ED7F-4D7F-A065-412004C6AFE9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0DE3F062-EC98-48AA-9795-60493AFBD976}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5563A39C-9C8A-4D3C-9310-03820DFCAD2A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5D5D24BA-A3A9-4FF7-8C0B-A3A361446E30}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
==================== Restore Points =========================
12-11-2019 17:53:39 Scheduled Checkpoint
23-11-2019 19:13:27 Scheduled Checkpoint
25-11-2019 18:03:02 GoPro Quik
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (11/25/2019 06:34:15 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6664,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (11/25/2019 06:15:16 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6208,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (11/25/2019 05:44:32 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7204,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (11/25/2019 05:33:46 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5056,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (11/25/2019 05:24:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AdobeNotificationClient.exe, verzia: 4.9.0.484, časová značka: 0x5d0b467b
Názov chybujúceho modulu: AdobeNotificationClient.exe, verzia: 4.9.0.484, časová značka: 0x5d0b467b
Kód výnimky: 0x80000003
Odstup chyby: 0x0000b311
Identifikácia chybujúceho procesu: 0x2508
Čas spustenia chybujúcej aplikácie: 0x01d5a3acbd4ab67e
Cesta chybujúcej aplikácie: C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc\AdobeNotificationClient.exe
Cesta chybujúceho modulu: C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc\AdobeNotificationClient.exe
Identifikácia hlásenia: ed580b85-4691-489a-9a48-be9c18f8d51f
Celé meno chybujúceho balíka: AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc
Identifikácia chybujúcej aplikácie vzhľadom na balík: App
Error: (11/25/2019 05:23:37 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for WORKGROUP\LAPTOP-UD0IUSDB$ via https://AMD-KeyId-a847fee0a6f81d768e541 ... s/Aik/scep failed:
GetCACaps
Method: GET(235ms)
Stage: GetCACaps
The server name or address could not be resolved 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)
Error: (11/25/2019 02:21:44 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (12360,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (11/25/2019 02:13:40 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4656,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
System errors:
=============
Error: (11/25/2019 06:33:37 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba wuauserv bola ukončená s nasledujúcou chybou:
The system cannot find the file specified.
Error: (11/25/2019 06:33:37 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-UD0IUSDB)
Description: The server {E60687F7-01A1-40AA-86AC-DB1CBF673334} did not register with DCOM within the required timeout.
Error: (11/25/2019 06:31:37 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba wuauserv bola ukončená s nasledujúcou chybou:
The system cannot find the file specified.
Error: (11/25/2019 06:31:37 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {E60687F7-01A1-40AA-86AC-DB1CBF673334} did not register with DCOM within the required timeout.
Error: (11/25/2019 06:29:37 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba wuauserv bola ukončená s nasledujúcou chybou:
The system cannot find the file specified.
Error: (11/25/2019 06:29:36 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {E60687F7-01A1-40AA-86AC-DB1CBF673334} did not register with DCOM within the required timeout.
Error: (11/25/2019 06:27:36 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba wuauserv bola ukončená s nasledujúcou chybou:
The system cannot find the file specified.
Error: (11/25/2019 06:27:36 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {E60687F7-01A1-40AA-86AC-DB1CBF673334} did not register with DCOM within the required timeout.
CodeIntegrity:
===================================
Date: 2019-11-25 17:25:28.204
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2019-11-25 17:25:28.194
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2019-11-25 17:25:28.167
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2019-11-25 17:24:33.737
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-11-25 17:24:33.724
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-11-25 17:24:33.713
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-11-25 17:24:33.699
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-11-25 17:24:33.683
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. X570ZD.310 07/04/2019
Motherboard: ASUSTeK COMPUTER INC. X570ZD
Processor: AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx
Percentage of memory in use: 59%
Total physical RAM: 7116.23 MB
Available physical RAM: 2862.51 MB
Total Virtual: 9292.23 MB
Available Virtual: 3578.61 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:118.19 GB) (Free:71.43 GB) NTFS
Drive d: (DATA) (Fixed) (Total:931.51 GB) (Free:800.66 GB) NTFS
\\?\Volume{b5423541-db88-4686-949a-d36183adfd7a}\ (RECOVERY) (Fixed) (Total:0.78 GB) (Free:0.35 GB) NTFS
\\?\Volume{339ece2b-a7f8-433a-9af9-2dca31c651c2}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 2660534F)
Partition: GPT.
==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 15317199)
Partition: GPT.
==================== End of Addition.txt =======================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-11-2019
Ran by 2mari (administrator) on LAPTOP-UD0IUSDB (ASUSTeK COMPUTER INC. VivoBook_ASUSLaptop X570ZD_X570ZD) (25-11-2019 18:33:04)
Running from D:\Stiahnuté súbory
Loaded Profiles: 2mari (Available Profiles: 2mari)
Platform: Windows 10 Home Version 1903 18362.418 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0330194.inf_amd64_6a88d4165e944d7c\B329837\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0330194.inf_amd64_6a88d4165e944d7c\B329837\atiesrxx.exe
(ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\ASUS Hello\ASUSHelloBG.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSLiveUpdateAgent\AsusLiveUpdateAgent.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSOptimization\ASUSOptimization.exe
(ASUSTek Computer Inc. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemAnalysis\AsusSystemAnalysis.exe
(ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\AsHidSrv64.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\AsLdrSrv64.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\AsMonStartupTask64.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\ATKOSD2.exe
(ASUSTeK COMPUTER INC.) C:\Program Files\WindowsApps\B9ECED6F.ASUSKeyboardHotkeys_1.0.12.0_x86__qmba6cd70vzyy\ATK Package\HControl.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Conexant Systems LLC -> Conexant Systems, Inc.) C:\Windows\System32\CxUIUSvc32.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler64.exe
(ICEpower a/s -> ICEpower) C:\Windows\System32\DriverStore\FileRepository\icesoundapo64.inf_amd64_e042e413cfab025e\ICEsoundService64.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\mcafee\WebAdvisor\servicehost.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\mcafee\WebAdvisor\uihost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11910.1001.5.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wuapihost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Node.js Foundation -> Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(Node.js Foundation -> Node.js) C:\Program Files (x86)\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\Display.NvContainer\NVDisplay.Container.exe
(Spotify AB -> Spotify Ltd) C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2084920 2019-09-27] (Adobe Inc. -> Adobe Inc.)
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-09-25] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\Run: [Spotify] => C:\Users\2mari\AppData\Roaming\Spotify\Spotify.exe [21141408 2019-11-23] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-14] (Piriform Software Ltd -> Piriform Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe [2019-11-20] (Google LLC -> Google LLC)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07BCC8A5-C5B2-4236-B418-10423F0FE09A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-14] (Piriform Software Ltd -> Piriform Ltd)
Task: {0B459154-1243-48F7-BDC4-74AF66D1CC3F} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemAnalysis\AsusSystemAnalysis.exe [1452992 2019-04-09] (ASUSTek Computer Inc. -> ASUSTeK COMPUTER INC.)
Task: {0E6566ED-FA8F-49BE-8FB5-A44B4C378913} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {10723487-B934-4368-9ABD-C5E69C4A6325} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {17D56080-D568-491B-A381-057F35F1AB20} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301928 2019-10-25] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {24EFF580-A2F2-4E9D-9AEB-AD6169042D1E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {28EEBFEE-4A39-4744-895F-3B8F423FD4E2} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
Task: {36F0302A-2CAD-40DF-826B-F9DF62CBA2DF} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-14] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {36F43B62-32E0-45B3-8CD5-5FA4D37D5657} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
Task: {429CD095-1B60-4722-AC87-A5E6335794F9} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4E1180FD-33C9-4082-A752-89C861B8D73E} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5F4071B4-F1E5-40DE-9AFD-8A38BCA80AEF} - System32\Tasks\Update Checker => C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSLiveUpdateAgent\UpdateChecker.exe [183232 2019-04-09] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.)
Task: {6689CAE9-3572-4D51-9E7D-679EBFEEB4AA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-04-30] (Google Inc -> Google LLC)
Task: {6DB964FC-C380-4248-B30B-530BAF1BBF49} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6DBE934C-E261-4DBE-8F41-1959ACBC1220} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [654456 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {78EF1C9C-6A72-4043-B025-333BB9F4E93C} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {91F521A9-987B-42C4-9535-B3A3052A15E1} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {AD49DD87-955E-4E95-8C46-35E98C688A65} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B448518C-E077-4149-BC1A-3F5686014228} - System32\Tasks\ASUS Hello => C:\Program Files (x86)\ASUS\ASUS Hello\ASUSHelloBG.exe [642448 2018-05-31] (ASUSTeK Computer Inc. -> )
Task: {EE8C60C4-EFF5-4DFA-B4F9-7DD1F0180772} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-04-30] (Google Inc -> Google LLC)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 147.175.130.10 147.175.137.20 147.175.1.11
Tcpip\..\Interfaces\{0d779e97-4075-48cf-9fd3-99896c2aee40}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{91b4ffd2-6f6a-4192-94cd-0f00c09de45a}: [DhcpNameServer] 147.175.130.10 147.175.137.20 147.175.1.11
Tcpip\..\Interfaces\{db59b198-99c3-488d-8d03-dafbf92b084a}: [DhcpNameServer] 147.175.130.10 147.175.137.20 147.175.1.11
Internet Explorer:
==================
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-11-14] (McAfee, LLC -> McAfee, Inc.)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-11-14] (McAfee, LLC -> McAfee, Inc.)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-11-14]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-09-27] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-09-27] (Adobe Inc. -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\2mari\AppData\Local\Google\Chrome\User Data\Default [2019-11-25]
CHR DownloadDir: D:\Stiahnuté súbory
CHR Extension: (AdBlock — best ad blocker) - C:\Users\2mari\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-11-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\2mari\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-11]
CHR Extension: (Chrome Media Router) - C:\Users\2mari\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-31]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [823352 2019-09-27] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\u0330194.inf_amd64_6a88d4165e944d7c\B329837\atiesrxx.exe [481144 2018-06-25] (Advanced Micro Devices, Inc. -> AMD)
R2 AsHidService; C:\WINDOWS\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\AsHidSrv64.exe [173960 2018-05-15] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R2 ASLDRService; C:\WINDOWS\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\AsLdrSrv64.exe [212872 2018-05-15] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R2 ASUSLiveUpdateAgent; C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSLiveUpdateAgent\AsusLiveUpdateAgent.exe [265152 2019-04-09] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.)
R2 ASUSOptimization; C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSOptimization\ASUSOptimization.exe [202176 2019-04-09] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.)
R2 ASUSSystemAnalysis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemAnalysis\AsusSystemAnalysis.exe [1452992 2019-04-09] (ASUSTek Computer Inc. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemDiagnosis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [519128 2019-04-09] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-11-10] (AVAST Software s.r.o. -> AVAST Software)
R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [414728 2017-11-07] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [417536 2019-11-10] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
R2 CxUIUSvc; C:\WINDOWS\System32\CxUIUSvc32.exe [92504 2018-06-28] (Conexant Systems LLC -> Conexant Systems, Inc.)
R2 GiftBox.Service; C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe [285144 2018-04-04] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 ICEsoundService; C:\WINDOWS\System32\DriverStore\FileRepository\icesoundapo64.inf_amd64_e042e413cfab025e\ICEsoundService64.exe [935088 2018-12-10] (ICEpower a/s -> ICEpower)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [913208 2019-11-14] (McAfee, LLC -> McAfee, Inc.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 wuauserv; C:\WINDOWS\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
S3 wuauserv; C:\WINDOWS\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [34664 2018-04-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\u0330194.inf_amd64_6a88d4165e944d7c\B329837\atikmdag.sys [40686456 2018-06-25] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\u0330194.inf_amd64_6a88d4165e944d7c\B329837\atikmpag.sys [545144 2018-06-25] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdpsp; C:\WINDOWS\System32\drivers\amdpsp.sys [145792 2018-04-25] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStor.SYS [109504 2018-04-26] (Alcorlink Corp. -> )
R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R1 ASUSSAIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci.inf_amd64_1a7b8d181de74529\ASUSSystemAnalysis\ASUSSAIO.sys [32704 2019-04-09] (ASUSTek Computer Inc. -> )
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [204824 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [209552 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [65120 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2019-10-19] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42736 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [161544 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
R1 aswNetSec; C:\WINDOWS\System32\drivers\aswNetSec.sys [552848 2019-11-10] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110320 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83792 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848432 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460448 2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [236024 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316528 2019-10-19] (AVAST Software s.r.o. -> AVAST Software)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [111080 2018-05-24] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R1 ATKWMIACPIIO; C:\WINDOWS\System32\DriverStore\FileRepository\atkwmiacpiio.inf_amd64_33b9b5f0b917512f\atkwmiacpi64.sys [36232 2018-05-15] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R3 CnxtHdAudService; C:\WINDOWS\system32\drivers\CHDRT64.sys [3463976 2019-05-16] (Synaptics Incorporated -> Conexant Systems Inc.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [135520 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 HfAudio; C:\WINDOWS\System32\drivers\HfAudio.sys [73680 2018-05-30] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32680 2019-08-07] (ASUSTek Computer Inc. -> ASUS)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\nvlddmkm.sys [22749432 2019-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-08-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1010648 2017-10-20] (Realtek Semiconductor Corp. -> Realtek )
S3 ScrHIDDriver2; C:\WINDOWS\System32\drivers\ScrHIDDriver2.sys [58320 2018-05-30] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166752 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2019-10-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
U1 aswbdisk; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-11-25 18:29 - 2019-11-25 18:33 - 000000000 ____D C:\FRST
2019-11-25 18:24 - 2019-11-25 18:24 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2019-11-25 18:24 - 2019-11-25 18:24 - 000002888 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2019-11-25 18:24 - 2019-11-25 18:24 - 000000865 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-11-25 18:24 - 2019-11-25 18:24 - 000000865 _____ C:\ProgramData\Desktop\CCleaner.lnk
2019-11-25 18:24 - 2019-11-25 18:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2019-11-25 18:24 - 2019-11-25 18:24 - 000000000 ____D C:\Program Files\CCleaner
2019-11-23 15:41 - 2019-11-25 14:27 - 000017429 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2019-11-23 15:41 - 2019-11-25 14:27 - 000012145 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2019-11-23 15:40 - 2019-11-25 14:27 - 000022266 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2019-11-23 15:40 - 2019-11-25 14:01 - 000001206 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1
2019-11-23 15:40 - 2019-11-23 15:40 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2019-11-23 15:05 - 2019-11-14 11:26 - 011842176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-11-23 15:05 - 2019-11-14 11:26 - 001074080 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-11-23 15:05 - 2019-11-14 11:26 - 001074080 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-11-23 15:05 - 2019-11-14 11:26 - 000931744 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-11-23 15:05 - 2019-11-14 11:26 - 000931744 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-11-23 15:05 - 2019-11-14 11:26 - 000848800 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-11-23 15:05 - 2019-11-14 11:26 - 000848800 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-11-23 15:05 - 2019-11-14 11:26 - 000706464 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-11-23 15:05 - 2019-11-14 11:26 - 000706464 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-11-23 15:05 - 2019-11-14 11:25 - 010167424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-11-23 15:05 - 2019-11-14 11:25 - 001000840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2019-11-23 15:05 - 2019-11-14 11:25 - 000685584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-11-23 15:05 - 2019-11-14 11:25 - 000677072 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-11-23 15:05 - 2019-11-14 11:25 - 000544512 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 040510408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 017458640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 015027160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 005557704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 005381760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 004717776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 002074032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 001568672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 001481976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 001369848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 001144848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 001065848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 000812792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 000659336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 000574384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2019-11-23 15:05 - 2019-11-14 11:24 - 000556464 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-11-23 15:05 - 2019-11-14 11:24 - 000451712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2019-11-23 15:05 - 2019-11-14 11:23 - 035379672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-11-23 15:05 - 2019-11-14 11:23 - 004219656 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-11-23 15:05 - 2019-11-14 11:23 - 000858664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2019-11-23 15:05 - 2019-11-07 05:23 - 000081581 _____ C:\WINDOWS\system32\nvidia-smi.1.pdf
2019-11-23 15:05 - 2019-11-07 05:23 - 000076271 _____ C:\WINDOWS\system32\nvinfo.pb
2019-11-23 15:02 - 2019-11-23 18:24 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 15:02 - 2019-11-23 18:24 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 15:02 - 2019-11-23 18:24 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 15:02 - 2019-11-23 18:24 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 14:10 - 2019-11-23 14:10 - 000266384 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-11-20 15:08 - 2019-11-20 15:08 - 000000000 ____D C:\Users\2mari\OneDrive\Dokumenty\Image-Line
2019-11-20 15:07 - 2019-11-20 15:07 - 000000000 ____D C:\Users\2mari\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
2019-11-20 15:06 - 2019-11-20 15:06 - 000001004 _____ C:\Users\Public\Desktop\FL Studio 20.lnk
2019-11-20 15:06 - 2019-11-20 15:06 - 000001004 _____ C:\ProgramData\Desktop\FL Studio 20.lnk
2019-11-20 15:06 - 2019-11-20 15:06 - 000000000 ____D C:\Users\2mari\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2019-11-20 15:06 - 2019-11-20 15:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line
2019-11-20 15:06 - 2019-11-20 15:06 - 000000000 ____D C:\Program Files\Common Files\Propellerhead Software
2019-11-20 15:01 - 2019-11-20 15:07 - 000000000 ____D C:\Program Files (x86)\Image-Line
2019-11-13 21:27 - 2019-11-13 21:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-3160964539-2882457464-2850274892-1001
2019-11-10 15:50 - 2019-11-10 15:50 - 000002090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Internet Security.lnk
2019-11-10 15:50 - 2019-11-10 15:50 - 000002078 _____ C:\Users\Public\Desktop\Avast Internet Security.lnk
2019-11-10 15:50 - 2019-11-10 15:50 - 000002078 _____ C:\ProgramData\Desktop\Avast Internet Security.lnk
2019-11-10 15:44 - 2019-11-10 15:44 - 000552848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetSec.sys
2019-11-10 15:44 - 2019-11-09 22:46 - 000355720 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2019-11-10 01:16 - 2019-11-10 01:16 - 000000000 ____D C:\Users\2mari\AppData\Local\mbamtray
2019-11-10 01:16 - 2019-11-10 01:16 - 000000000 ____D C:\Users\2mari\AppData\Local\mbam
2019-11-10 01:16 - 2019-11-10 01:16 - 000000000 ____D C:\Users\2mari\AppData\Local\cache
2019-11-09 22:46 - 2019-11-09 22:46 - 000161544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2019-11-09 22:37 - 2019-11-09 22:37 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2019-11-05 19:49 - 2019-11-13 22:09 - 000000512 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2019-11-03 12:05 - 2019-11-03 12:17 - 000000000 ____D C:\Users\2mari\AppData\Roaming\vlc
2019-11-03 12:05 - 2019-11-03 12:05 - 000000796 _____ C:\Users\Public\Desktop\VLC media player.lnk
2019-11-03 12:05 - 2019-11-03 12:05 - 000000796 _____ C:\ProgramData\Desktop\VLC media player.lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-11-25 18:32 - 2019-10-11 19:14 - 000000000 ____D C:\Users\2mari\AppData\Roaming\Spotify
2019-11-25 18:24 - 2019-10-12 12:54 - 000795988 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-11-25 18:24 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2019-11-25 18:03 - 2019-10-20 13:15 - 000000000 ____D C:\Users\2mari\AppData\Local\GoPro
2019-11-25 18:03 - 2019-04-30 19:13 - 000000000 ____D C:\ProgramData\Package Cache
2019-11-25 17:28 - 2019-10-12 12:56 - 000003746 _____ C:\WINDOWS\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474
2019-11-25 17:25 - 2019-10-19 15:03 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2019-11-25 17:25 - 2019-04-30 19:13 - 000000000 ____D C:\ProgramData\NVIDIA
2019-11-25 17:24 - 2019-10-19 23:53 - 000000000 ___RD C:\Users\2mari\Creative Cloud Files
2019-11-25 17:24 - 2019-10-19 23:37 - 000000000 ____D C:\Users\2mari\AppData\Local\Adobe
2019-11-25 17:24 - 2019-10-12 11:23 - 000000000 ____D C:\Users\2mari\AppData\Local\CrashDumps
2019-11-25 17:23 - 2019-10-12 12:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-11-25 17:23 - 2019-10-11 19:15 - 000000000 ____D C:\Users\2mari\AppData\Local\Spotify
2019-11-25 17:23 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-11-25 14:27 - 2019-03-19 05:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-11-25 14:07 - 2019-10-12 12:56 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3160964539-2882457464-2850274892-1001
2019-11-25 14:07 - 2019-10-12 12:48 - 000002357 _____ C:\Users\2mari\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-11-25 14:07 - 2019-04-30 23:16 - 000000000 ___RD C:\Users\2mari\OneDrive
2019-11-23 18:24 - 2019-10-19 23:41 - 000002608 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2019-11-23 18:24 - 2019-10-19 15:03 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2019-11-23 18:24 - 2019-10-12 12:56 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000003386 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-11-23 18:24 - 2019-10-12 12:56 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000003162 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-11-23 18:24 - 2019-10-12 12:56 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000003088 _____ C:\WINDOWS\system32\Tasks\Update Checker
2019-11-23 18:24 - 2019-10-12 12:56 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000002770 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task v2
2019-11-23 18:24 - 2019-10-12 12:56 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-23 18:24 - 2019-10-12 12:56 - 000002338 _____ C:\WINDOWS\system32\Tasks\ASUS Hello
2019-11-23 17:41 - 2019-04-30 19:12 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-11-23 15:41 - 2019-10-19 15:12 - 000000000 ____D C:\Users\2mari\AppData\Local\NVIDIA
2019-11-23 15:41 - 2019-10-11 17:27 - 000000000 ____D C:\Users\2mari\AppData\Local\D3DSCache
2019-11-23 15:41 - 2019-04-30 19:12 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-11-23 15:40 - 2019-04-30 19:12 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-11-23 15:39 - 2019-04-30 19:12 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-11-23 15:39 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Help
2019-11-23 15:21 - 2019-10-12 12:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-11-23 15:03 - 2019-04-30 23:16 - 000000000 ____D C:\Users\2mari\AppData\Local\NVIDIA Corporation
2019-11-23 14:53 - 2019-10-19 15:02 - 000000000 ____D C:\ProgramData\AVAST Software
2019-11-23 00:18 - 2019-10-19 14:53 - 000000000 ____D C:\Users\2mari\AppData\Roaming\uTorrent
2019-11-23 00:18 - 2019-10-12 11:44 - 000000000 ___DC C:\WINDOWS\Panther
2019-11-23 00:16 - 2019-10-19 15:03 - 000000000 ____D C:\Users\2mari\AppData\Roaming\AVAST Software
2019-11-22 22:44 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-11-20 14:43 - 2019-04-30 23:19 - 000002315 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-11-14 11:23 - 2019-04-30 19:12 - 004952320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-11-13 21:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-11-13 21:28 - 2019-10-12 09:55 - 000000000 ____D C:\ProgramData\Packages
2019-11-10 17:30 - 2019-10-19 23:00 - 000000000 ____D C:\Users\2mari\AppData\LocalLow\uTorrent
2019-11-10 17:30 - 2019-10-19 23:00 - 000000000 ____D C:\Users\2mari\AppData\Local\BitTorrentHelper
2019-11-10 15:44 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-11-10 01:16 - 2019-04-30 23:14 - 000000000 ____D C:\Users\2mari\AppData\Local\AMD
2019-11-09 22:46 - 2019-10-19 15:02 - 000848432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2019-11-09 22:46 - 2019-10-19 15:02 - 000460448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2019-11-09 22:37 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-11-09 13:01 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-11-05 18:20 - 2019-04-30 23:19 - 000000000 ____D C:\Program Files (x86)\Google
==================== Files in the root of some directories ========
2019-10-19 23:39 - 2019-10-19 23:39 - 000000410 _____ () C:\Users\2mari\AppData\Local\oobelibMkey.log
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-11-2019
Ran by 2mari (25-11-2019 18:34:20)
Running from D:\Stiahnuté súbory
Windows 10 Home Version 1903 18362.418 (X64) (2019-10-12 11:56:26)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
2mari (S-1-5-21-3160964539-2882457464-2850274892-1001 - Administrator - Enabled) => C:\Users\2mari
Administrator (S-1-5-21-3160964539-2882457464-2850274892-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3160964539-2882457464-2850274892-503 - Limited - Disabled)
Guest (S-1-5-21-3160964539-2882457464-2850274892-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3160964539-2882457464-2850274892-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee VirusScan (Enabled - Up to date) {4DE344F8-6897-65B4-CED0-82B3AF2591B4}
AS: McAfee VirusScan (Enabled - Up to date) {2624E002-54CC-27F9-FD39-B2DD14D41191}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\uTorrent) (Version: 3.5.5.45365 - BitTorrent Inc.)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 5.0.0.354 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2019 (HKLM-x32\...\PPRO_13_0_1) (Version: 13.0.1 - Adobe Systems Incorporated)
Aktualizácie NVIDIA 38.0.2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.2.0 - NVIDIA Corporation) Hidden
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.14 - Michael Tippach)
ASUS GiftBox Service (HKLM-x32\...\{4701E5AB-AF91-4D40-8F18-358CC80E4E5B}) (Version: 3.2.1.0 - ASUSTeK COMPUTER INC.)
ASUS Hello (HKLM-x32\...\{D8CE1923-92A9-4036-817E-9E0D8AA2169B}) (Version: 1.1.4.0 - ASUSTeK COMPUTER INC.)
ASUS Sync Drivers (HKLM\...\{086FE7AE-1622-4617-92B8-F54FAAB372D0}) (Version: 2.3.5715 - Screenovate Technologies Ltd.)
AudioWizard (HKLM-x32\...\{57E770A2-2BAF-4CAA-BAA3-BD896E2254D3}) (Version: 1.0.8.1 - ICEpower a/s)
Avast Internet Security (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
CCleaner (HKLM\...\CCleaner) (Version: 5.63 - Piriform)
FL Studio 20 (HKLM-x32\...\FL Studio 20) (Version: - Image-Line)
FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 78.0.3904.108 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.48 - McAfee, LLC.)
Microsoft OneDrive (HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\OneDriveSetup.exe) (Version: 19.192.0926.0012 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.15.26706 (HKLM-x32\...\{95ac1cfa-f4fb-4d1b-8912-7f9d5fbb140d}) (Version: 14.15.26706.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (HKLM-x32\...\{7e9fae12-5bbf-47fb-b944-09c49e75c061}) (Version: 14.15.26706.0 - Microsoft Corporation)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.1.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.1.57 - NVIDIA Corporation)
NVIDIA Grafický ovládač 441.20 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.20 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Spotify (HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\...\Spotify) (Version: 1.1.20.510.g7d28aaaa - Spotify AB)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{3BAE4496-6F6C-4330-A8AA-B93D3D346FA5}) (Version: 2.53.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{F49D6A65-1AB6-4728-9FDA-DB5BAB631CF6}) (Version: 1.23.0.0 - Microsoft Corporation) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN)
Packages:
=========
Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc [2019-10-20] (Adobe Systems Incorporated)
Adobe Reader Touch -> C:\Program Files\WindowsApps\AdobeSystemsIncorporated.AdobeReader_3.1.8.7675_x86__ynb6jyjzte8ga [2019-10-13] (Adobe Systems Incorporated)
ASUS GIFTBOX -> C:\Program Files\WindowsApps\B9ECED6F.ASUSGIFTBOX_3.1.7.0_x64__qmba6cd70vzyy [2019-10-12] (ASUSTeK COMPUTER INC.)
ASUS Keyboard Hotkeys -> C:\Program Files\WindowsApps\B9ECED6F.ASUSKeyboardHotkeys_1.0.12.0_x86__qmba6cd70vzyy [2019-10-11] (ASUSTeK COMPUTER INC.) [Startup Task]
ASUS Sync -> C:\Program Files\WindowsApps\ScreenovateTechnologies.AsusVirtoo_2.4.8064.0_x64__0vhbc3ng4wbp0 [2019-10-12] (Screenovate Technologies.) [Startup Task]
eManual -> C:\Program Files\WindowsApps\B9ECED6F.eManual_2.0.3.0_x86__qmba6cd70vzyy [2019-04-30] (ASUSTeK COMPUTER INC.)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2019-10-12] (LinkedIn)
McAfee® Personal Security -> C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.16.0_x64__wafk5atnkzcwy [2019-10-12] (McAfee Inc.)
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-11] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-11] (Microsoft Corporation) [MS Ad]
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-11] (Microsoft Studios) [MS Ad]
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.12130.20272.0_x86__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation)
MSN Počasie -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-10-11] (Microsoft Corporation) [MS Ad]
MyASUS -> C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_2.0.24.0_x64__qmba6cd70vzyy [2019-10-12] (ASUSTeK COMPUTER INC.) [Startup Task]
Pošta a kalendár -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20368.0_x64__8wekyb3d8bbwe [2019-11-09] (Microsoft Corporation) [MS Ad]
SmartAudio 2 -> C:\Program Files\WindowsApps\22094SynapticsIncorporate.SmartAudio2_1.1.36.0_x86__qt57b6kdvhcfw [2019-10-12] (Synaptics Hong Kong Limited, Taiwan Branch (H.K.))
Splendid -> C:\Program Files\WindowsApps\B9ECED6F.Splendid_1.0.14.0_x64__qmba6cd70vzyy [2019-10-12] (ASUSTeK COMPUTER INC.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3160964539-2882457464-2850274892-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-74C28FDECFD8} -> [Creative Cloud Files] => C:\Users\2mari\Creative Cloud Files [2019-10-19 23:53]
CustomCLSID: HKU\S-1-5-21-3160964539-2882457464-2850274892-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_44505f1b0434779e\nvshext.dll [2019-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-11-09] (AVAST Software s.r.o. -> AVAST Software)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\2mari\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default
==================== Loaded Modules (Whitelisted) =============
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer trusted/restricted ==========
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2018-04-12 00:38 - 2018-04-12 00:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
2019-11-05 19:49 - 2019-11-13 22:09 - 000000512 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3160964539-2882457464-2850274892-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\2mari\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\ce4ef3a9-df87-4150-a989-4e61c54dcbbf.jpg
DNS Servers: 147.175.130.10 - 147.175.137.20
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{4CD4A280-22E1-44A4-BC6E-1B5D44C07AC3}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.AsusVirtoo_2.4.8064.0_x64__0vhbc3ng4wbp0\app\ASUSSyncClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
FirewallRules: [{C6B13BB1-21C7-4BDB-8922-FA76C2644F1A}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.AsusVirtoo_2.4.8064.0_x64__0vhbc3ng4wbp0\app\ASUSSyncClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
FirewallRules: [UDP Query User{24A186B2-C741-4828-9669-D6EB18EFF52C}C:\users\2mari\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\2mari\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{EA7F4739-D575-476E-89CE-6C740A80DBD8}C:\users\2mari\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\2mari\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D66C12C3-3AD3-4CA8-9DC6-6D9550E736F2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{26A670C5-FA01-4D9A-A648-9BD8C59D29CB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{BF76E301-A5C1-4CDC-85E5-11D7A9F5C8AF}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.AsusVirtoo_2.4.8064.0_x64__0vhbc3ng4wbp0\app\ASUSSyncClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
FirewallRules: [{4EA78C5A-D791-42A8-A6CC-45ED579BCE4D}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.AsusVirtoo_2.4.8064.0_x64__0vhbc3ng4wbp0\app\ASUSSyncClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
FirewallRules: [TCP Query User{641D9C62-E571-4D0E-ABC7-A492F6A31D41}C:\users\2mari\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\2mari\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{6D032637-4395-4955-91B1-26275B1A40CD}C:\users\2mari\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\2mari\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D820A87C-000E-4B15-852B-FBD3422533FA}] => (Allow) C:\Users\2mari\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{58485AE4-D5C1-44A4-9778-BF4EB2A8729B}] => (Allow) C:\Users\2mari\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{FE63F04D-26C5-4FAB-83C2-F42197CBC56B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.12130.20272.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7533E611-28A1-4FCC-BE30-E5DB5CA028C4}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{F9ADE05C-7CAE-48F2-8FAC-414E6BAA488A}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{A1CFC953-E194-4451-AE55-48549D8046FD}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{B0DD5BF5-82DC-4D4A-91B6-913F061A0C16}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{9B481998-90FE-484A-AD91-91C9EEC04858}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{A0BEF54C-AA4A-4BA1-9EC6-DE8F83F38B7D}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{5A95E969-AA20-4F63-BE51-6F57FEF9FF2D}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{1FC94D4B-E2F2-498A-93DF-E2D5B3CBADD5}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{E8B39EE1-4A27-4879-99E8-B489DF5E18EE}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{631E2E70-9098-44C6-A387-C539E5414D88}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{2D7D9809-B846-4AF8-B313-02059E375C1D}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{D562A2AF-7DEA-4306-BEAD-663A22E59580}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C45EBDEF-ED7F-4D7F-A065-412004C6AFE9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0DE3F062-EC98-48AA-9795-60493AFBD976}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5563A39C-9C8A-4D3C-9310-03820DFCAD2A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5D5D24BA-A3A9-4FF7-8C0B-A3A361446E30}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
==================== Restore Points =========================
12-11-2019 17:53:39 Scheduled Checkpoint
23-11-2019 19:13:27 Scheduled Checkpoint
25-11-2019 18:03:02 GoPro Quik
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (11/25/2019 06:34:15 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6664,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (11/25/2019 06:15:16 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6208,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (11/25/2019 05:44:32 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7204,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (11/25/2019 05:33:46 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5056,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (11/25/2019 05:24:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AdobeNotificationClient.exe, verzia: 4.9.0.484, časová značka: 0x5d0b467b
Názov chybujúceho modulu: AdobeNotificationClient.exe, verzia: 4.9.0.484, časová značka: 0x5d0b467b
Kód výnimky: 0x80000003
Odstup chyby: 0x0000b311
Identifikácia chybujúceho procesu: 0x2508
Čas spustenia chybujúcej aplikácie: 0x01d5a3acbd4ab67e
Cesta chybujúcej aplikácie: C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc\AdobeNotificationClient.exe
Cesta chybujúceho modulu: C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc\AdobeNotificationClient.exe
Identifikácia hlásenia: ed580b85-4691-489a-9a48-be9c18f8d51f
Celé meno chybujúceho balíka: AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc
Identifikácia chybujúcej aplikácie vzhľadom na balík: App
Error: (11/25/2019 05:23:37 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for WORKGROUP\LAPTOP-UD0IUSDB$ via https://AMD-KeyId-a847fee0a6f81d768e541 ... s/Aik/scep failed:
GetCACaps
Method: GET(235ms)
Stage: GetCACaps
The server name or address could not be resolved 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)
Error: (11/25/2019 02:21:44 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (12360,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (11/25/2019 02:13:40 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4656,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
System errors:
=============
Error: (11/25/2019 06:33:37 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba wuauserv bola ukončená s nasledujúcou chybou:
The system cannot find the file specified.
Error: (11/25/2019 06:33:37 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-UD0IUSDB)
Description: The server {E60687F7-01A1-40AA-86AC-DB1CBF673334} did not register with DCOM within the required timeout.
Error: (11/25/2019 06:31:37 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba wuauserv bola ukončená s nasledujúcou chybou:
The system cannot find the file specified.
Error: (11/25/2019 06:31:37 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {E60687F7-01A1-40AA-86AC-DB1CBF673334} did not register with DCOM within the required timeout.
Error: (11/25/2019 06:29:37 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba wuauserv bola ukončená s nasledujúcou chybou:
The system cannot find the file specified.
Error: (11/25/2019 06:29:36 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {E60687F7-01A1-40AA-86AC-DB1CBF673334} did not register with DCOM within the required timeout.
Error: (11/25/2019 06:27:36 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba wuauserv bola ukončená s nasledujúcou chybou:
The system cannot find the file specified.
Error: (11/25/2019 06:27:36 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {E60687F7-01A1-40AA-86AC-DB1CBF673334} did not register with DCOM within the required timeout.
CodeIntegrity:
===================================
Date: 2019-11-25 17:25:28.204
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2019-11-25 17:25:28.194
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2019-11-25 17:25:28.167
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2019-11-25 17:24:33.737
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-11-25 17:24:33.724
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-11-25 17:24:33.713
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-11-25 17:24:33.699
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-11-25 17:24:33.683
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. X570ZD.310 07/04/2019
Motherboard: ASUSTeK COMPUTER INC. X570ZD
Processor: AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx
Percentage of memory in use: 59%
Total physical RAM: 7116.23 MB
Available physical RAM: 2862.51 MB
Total Virtual: 9292.23 MB
Available Virtual: 3578.61 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:118.19 GB) (Free:71.43 GB) NTFS
Drive d: (DATA) (Fixed) (Total:931.51 GB) (Free:800.66 GB) NTFS
\\?\Volume{b5423541-db88-4686-949a-d36183adfd7a}\ (RECOVERY) (Fixed) (Total:0.78 GB) (Free:0.35 GB) NTFS
\\?\Volume{339ece2b-a7f8-433a-9af9-2dca31c651c2}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 2660534F)
Partition: GPT.
==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 15317199)
Partition: GPT.
==================== End of Addition.txt =======================