Kontrola logu
Napsal: 08 pro 2019 18:11
Dobrý den,
prosím o kontrolu logu, počítač je velmi pomalý. Děkuji.
Přikládám log z FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-12-2019
Ran by Filip Marčík (administrator) on DESKTOP-KQGVJSN (ASUSTeK COMPUTER INC. X541UV) (08-12-2019 18:00:38)
Running from C:\Users\Filip Marčík\Desktop
Loaded Profiles: Filip Marčík & Ivuška & Maminka & Táta2 (Available Profiles: Filip Marčík & Ivuška & Maminka & Táta2)
Platform: Windows 10 Home Version 1903 18362.175 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(CyberLink Corp. -> CyberLink) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\UnrealCEFSubProcess.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(FarStone Technology -> ) C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\FBAgent.exe
(Farstone Technology Inc -> ) C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\DCNTranProc.exe
(ICEpower a/s -> ICEpower) C:\Windows\System32\ICEsoundService64.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxEM.exe
(Intel(R) Software -> Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Intel(R) Software -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Mail.Ru, LLC -> ) C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe
(Mail.Ru, LLC -> ) C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\McClnUI.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Filip Marčík\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe
(Microvirt Software Technology Co., Ltd. -> Microvirt Software Technology Co. Ltd.) C:\Program Files\Microvirt\MEmu\MemuService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\Realtek Bluetooth Filter ONLY\BTDevMgr.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(TeamViewer -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [World of Tanks] => C:\Games\World_of_Tanks\WargamingGameUpdater.exe [3139936 2018-06-25] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [36058000 2019-12-05] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2541944 2019-05-18] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [GameCenter] => C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe [10395776 2019-12-05] (Mail.Ru, LLC -> )
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0BB81A9F-3476-4C0B-9E3F-B34A6A824BAF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155472 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {0BBB64D3-9EF8-412D-9FBA-14C35FB62408} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2108216 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {14F7D6E3-5BE4-42FE-AC8C-390B7BB7DC77} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
Task: {19849B53-BCBD-445E-9F63-587846EC063A} - System32\Tasks\WpsKtpcntrQingTask_Administrator => C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\office6\ktpcntr.exe [1531136 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
Task: {204F16B9-8C89-4CB1-A4DF-3A4C9345E5F8} - System32\Tasks\Norton Family\Norton Family Error Analyzer => C:\Program Files (x86)\Norton Family\Engine\3.7.2.37\SymErr.exe
Task: {257D01DE-5354-4A0A-9945-5317D961229C} - System32\Tasks\McAfee Cleanup => C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe [688896 2019-06-21] (McAfee, LLC -> McAfee, LLC.) <==== ATTENTION
Task: {2EBFE872-9459-494E-B78C-4369DC2AB788} - System32\Tasks\ASUSTek Computer Inc\ASUS GIFTBOX => C:\Program Files (x86)\ASUS\Giftbox\asusgiftbox.exe [1049608 2017-07-03] (ASUSTek Computer Inc. -> ASUSTek Computer Inc)
Task: {300C6C10-4734-4CD5-95E8-E94E560C9849} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {32BC4421-6F4A-42FE-BE4C-C39108A01BA7} - System32\Tasks\Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
Task: {34A84272-39A2-41E1-9728-B89A3854AE2C} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {376D87BA-CBA8-4B7F-9E5A-AD73951CAD31} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {3BD92534-B9A6-4C7F-A41C-5A1D199A478A} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18391104 2018-11-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {3C64CF9A-8190-488F-9A72-5AC008C28D7D} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3FEB29A4-0018-48BE-B031-158541A69766} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {54D45970-EDEC-4E81-AC8D-F954ACEC1D93} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19786024 2016-02-23] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
Task: {60EFC32D-BFD4-4BAD-886F-00F65DEA2ECE} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2089864 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {684DEB0C-1C4E-422A-BECE-BC9B8BB1E0F1} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1873288 2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
Task: {75DE6A22-4176-4165-BA9E-DB57516581F2} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [964544 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {78607855-4EC6-461B-B1A5-C832A5D86591} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [521152 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8131B922-E991-4A0D-9F43-6748501A8CAF} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [54784 2016-02-23] (ASUS) [File not signed]
Task: {969168FC-E07E-4CE0-855A-42993B079FE4} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9DD74553-8723-4F08-B8B2-F7BC6E5C60BA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155472 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {A3DCAB9C-FCE4-4747-B8CD-A9AD5D709BDF} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {A8EC45D1-1C10-4387-9DF3-3F6F7809A2CF} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AEAEED82-C8E1-488B-9546-D9A57F1A3922} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506368 2018-11-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {B7C730AA-2DAA-48A5-BD4E-BA1147DE7E2B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671304 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {BA741588-964C-496A-9ECF-9FDFC1621F33} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C1669F19-7766-43B9-B9AA-561024F27020} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1864640 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CD426258-6747-4F25-864A-53587E6FFD45} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [855352 2016-02-19] (Intel(R) Trusted Connect Service -> Intel(R) Corporation)
Task: {D81FF288-7101-479D-A50C-96F80DAFDC0C} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [1578784 2016-07-07] (ASUSTeK Computer Inc. -> ASUSTek COMPUTER INC.) [File not signed]
Task: {D900DB63-0952-42F4-97BC-692BC77054A4} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671304 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {EE77944F-6D67-46D9-ADAE-85815B17BA8E} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2108216 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {F1BF6F52-19A1-4349-A55B-CB0E78E8B23A} - System32\Tasks\WpsExternal_20161114022915 => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe [516352 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
Task: {F29D077F-90FA-4679-918C-D7DF210DB314} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\WpsExternal_20161114022915.job => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe
Task: C:\WINDOWS\Tasks\WpsKtpcntrQingTask_Administrator.job => C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\office6\ktpcntr.exeÃqing 10.1.0.5644 xxx server_url=hxxp:/kdl1.cache.wps.com/ksodl/wpscfg/client/____client____html____service____bubble.html ic_server_url=hxxp:/info.kingsoftstore.com/wpsv6internet/infos.ads
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 79.98.72.27 79.98.72.2 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{99b5710c-532b-4064-baaf-32772c54e8ac}: [DhcpNameServer] 79.98.72.27 79.98.72.2 8.8.8.8 8.8.4.4
Internet Explorer:
==================
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=12454
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=12454
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {14DD4B29-F85C-4E4D-9290-D918524CB5E9} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {2FC69E8C-0341-4C3C-8608-8BC9958EF123} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {338AF512-D204-4F80-847C-B584505FF384} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {5838E27F-69CA-4CA2-853B-53134D0747AF} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {8899093F-0B7F-43B6-927E-207720247146} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {9978FF19-82D2-4813-95F0-A1077953835B} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {CE14CFCD-4A18-4D72-ADE4-CDF15A2F3D79} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {D0D20547-4FF5-4A48-B76A-1793701A52E7} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {E330D925-E44D-4F6C-8044-7A58E81FA508} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {00DD2D4B-31C4-417B-A172-6AEC47F4F72B} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {047BA285-75FC-46E6-BB34-FA179AEFC37A} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {14AD75BB-74D3-4B73-BC63-1B1E7FD5BE86} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {269574AE-999C-4280-B185-BA429AE23E3D} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {63BBBA5D-C0C6-4250-A25E-F5217BF81B11} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {C6AE4BD5-A94F-44B2-8373-BEB6F86AF81C} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {CD189DE3-9C6A-46A5-8CF2-0ACEF22912F1} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {D11F5AD1-C934-4AD6-A93A-89130ECC85A5} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {E671AA39-F7B6-4665-A5C1-2A804F37D625} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\ssv.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\jp2ssv.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Edge:
======
Edge Notifications: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> hxxps://www.youtube.com
FireFox:
========
FF DefaultProfile: df7kmm00.default
FF ProfilePath: C:\Users\Filip Marčík\AppData\Roaming\Mozilla\Firefox\Profiles\df7kmm00.default [2019-07-25]
FF Extension: (ETP Search Volume Study) - C:\Users\Filip Marčík\AppData\Roaming\Mozilla\Firefox\Profiles\df7kmm00.default\Extensions\etp-search-volume-study@shield.mozilla.org.xpi [2019-07-20]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-10-09] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-03-29] (BattlEye Innovations e.K. -> )
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth Filter ONLY\BTDevMgr.exe [125144 2016-02-15] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11345992 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2019-02-01] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 esifsvc; C:\WINDOWS\SysWOW64\esif_uf.exe [1392792 2015-11-09] (Intel(R) Software -> Intel Corporation)
R2 FBAgent; C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\FBAgent.exe [73032 2014-08-13] (FarStone Technology -> )
S2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 ICEsoundService; C:\WINDOWS\system32\ICEsoundService64.exe [806344 2018-11-01] (ICEpower a/s -> ICEpower)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Trusted Connect Service -> Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-05-25] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
S2 Kingsoft_WPS_UpdateService; C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\wtoolex\wpsupdatesvr.exe [133376 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
R2 MEmusvc; C:\Program Files\Microvirt\MEmu\MemuService.exe [269480 2017-05-26] (Microvirt Software Technology Co., Ltd. -> Microvirt Software Technology Co. Ltd.)
S3 mracsvc; C:\WINDOWS\System32\mracsvc.exe [16340752 2019-03-16] (Mail.Ru LLC -> LLC Mail.Ru)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2298688 2019-02-19] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3171144 2019-02-19] (Electronic Arts, Inc. -> Electronic Arts)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2015-09-23] (CyberLink Corp. -> CyberLink)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [324168 2018-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer -> TeamViewer GmbH)
R2 Tran_Process_Proc; C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\DCNTranProc.exe [71024 2014-03-25] (Farstone Technology Inc -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 wpscloudsvr; C:\Program Files (x86)\Kingsoft\WPS Office\wpscloudsvr.exe [162048 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiCharger; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [22656 2016-02-23] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
R2 ASMMAP64; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [18048 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUS)
R3 AsusHFilter; C:\WINDOWS\System32\drivers\AsusHFilter.sys [30200 2016-12-22] (ASUSTeK Computer Inc. -> )
R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37616 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [204824 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [209552 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [65120 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2019-10-07] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [276952 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42736 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [161544 2019-11-05] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110320 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83792 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848432 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460448 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [236024 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316528 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [55784 2015-11-09] (Intel(R) Software -> Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [52200 2015-11-09] (Intel(R) Software -> Intel Corporation)
R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [260072 2015-11-09] (Intel(R) Software -> Intel Corporation)
S3 farmntio; C:\Windows\system32\drivers\farmntio.sys [25144 2014-03-25] (FarStone Technology -> ) [File not signed]
S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2018-05-30] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32680 2019-08-07] (ASUSTek Computer Inc. -> ASUS)
R2 memudrv; C:\Program Files\Microvirt\MEmuHyperv\MEmuDrv.sys [260368 2015-11-02] (上海迈微软件科技有限公司 -> Microvirt Corporation)
S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv.sys [15553520 2019-03-16] (Mail.Ru LLC -> LLC Mail.Ru)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvam.inf_amd64_9b1341e92276ee7c\nvlddmkm.sys [17213616 2018-10-14] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [937728 2016-05-17] (Realtek Semiconductor Corp -> Realtek )
R3 RtkBtFilter; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [758352 2018-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RTWlanE02; C:\WINDOWS\System32\drivers\rtwlane02.sys [9599440 2018-12-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-08 18:00 - 2019-12-08 18:04 - 000037750 _____ C:\Users\Filip Marčík\Desktop\FRST.txt
2019-12-08 17:46 - 2019-12-08 17:46 - 002263552 _____ (Farbar) C:\Users\Filip Marčík\Desktop\FRST64.exe
2019-12-08 11:45 - 2019-12-08 11:45 - 000005693 ___RH C:\farstone_pe.letter
2019-12-06 10:05 - 2019-12-06 10:05 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-12-06 09:59 - 2019-12-06 09:59 - 000000020 ___SH C:\Users\Filip Marčík\ntuser.ini
2019-12-05 22:39 - 2019-12-08 11:47 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2019-12-05 22:39 - 2019-12-08 11:42 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-12-05 22:39 - 2019-12-05 22:40 - 000003458 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003428 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{FA29C794-20E0-4B41-8806-7050159DAA5C}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003414 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{6DF17297-FF54-4FA5-8BDD-D9904FF837A2}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003236 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003178 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2019-12-05 22:39 - 2019-12-05 22:40 - 000003088 _____ C:\WINDOWS\system32\Tasks\WpsExternal_20161114022915
2019-12-05 22:39 - 2019-12-05 22:40 - 000003044 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000002922 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1006
2019-12-05 22:39 - 2019-12-05 22:40 - 000002920 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1005
2019-12-05 22:39 - 2019-12-05 22:40 - 000002890 _____ C:\WINDOWS\system32\Tasks\ASUS Live Update1
2019-12-05 22:39 - 2019-12-05 22:40 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1001
2019-12-05 22:39 - 2019-12-05 22:39 - 000003330 _____ C:\WINDOWS\system32\Tasks\WpsKtpcntrQingTask_Administrator
2019-12-05 22:39 - 2019-12-05 22:39 - 000003028 _____ C:\WINDOWS\system32\Tasks\Update Checker
2019-12-05 22:39 - 2019-12-05 22:39 - 000003016 _____ C:\WINDOWS\system32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002984 _____ C:\WINDOWS\system32\Tasks\ATK Package 36D18D69AFC3
2019-12-05 22:39 - 2019-12-05 22:39 - 000002974 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002898 _____ C:\WINDOWS\system32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002880 _____ C:\WINDOWS\system32\Tasks\ASUS Live Update2
2019-12-05 22:39 - 2019-12-05 22:39 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1003
2019-12-05 22:39 - 2019-12-05 22:39 - 000002846 _____ C:\WINDOWS\system32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002804 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002626 _____ C:\WINDOWS\system32\Tasks\Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002406 _____ C:\WINDOWS\system32\Tasks\RtHDVBg_ListenToDevice
2019-12-05 22:39 - 2019-12-05 22:39 - 000002400 _____ C:\WINDOWS\system32\Tasks\ASUS USB Charger Plus
2019-12-05 22:39 - 2019-12-05 22:39 - 000002340 _____ C:\WINDOWS\system32\Tasks\RTKCPL
2019-12-05 22:39 - 2019-12-05 22:39 - 000002274 _____ C:\WINDOWS\system32\Tasks\ATK Package A22126881260
2019-12-05 22:39 - 2019-12-05 22:39 - 000002274 _____ C:\WINDOWS\system32\Tasks\ASUS Splendid ACMON
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Family
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\ASUSTek Computer Inc
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\ASUS
2019-12-05 22:35 - 2019-12-05 22:39 - 000019053 _____ C:\WINDOWS\diagwrn.xml
2019-12-05 22:35 - 2019-12-05 22:39 - 000019053 _____ C:\WINDOWS\diagerr.xml
2019-12-05 22:21 - 2019-12-08 11:49 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-12-05 22:01 - 2019-12-08 11:50 - 000000000 ____D C:\Users\Filip Marčík
2019-12-05 22:01 - 2019-12-05 22:22 - 000000000 ____D C:\Users\Táta2
2019-12-05 22:01 - 2019-12-05 22:22 - 000000000 ____D C:\Users\Maminka
2019-12-05 22:01 - 2019-12-05 22:18 - 000000000 ____D C:\Users\Ivuška
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Táta2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Ivuška\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 21:58 - 2019-12-05 21:58 - 000000000 ____D C:\ProgramData\USOShared
2019-12-05 21:58 - 2016-11-30 07:36 - 000113672 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2019-12-05 21:58 - 2016-11-30 07:36 - 000104456 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2019-12-05 21:57 - 2019-06-12 02:29 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-12-05 21:53 - 2019-12-08 17:40 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-12-05 21:53 - 2019-12-05 22:12 - 000434856 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-12-05 21:52 - 2019-12-05 22:41 - 000000000 ____D C:\Windows.old
2019-12-05 21:44 - 2019-12-05 21:52 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-12-05 21:41 - 2019-12-05 21:43 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-12-05 21:41 - 2019-12-05 21:41 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files\MSBuild
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-12-05 21:37 - 2019-03-01 17:31 - 001166488 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-12-05 21:37 - 2019-03-01 17:31 - 000124568 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-12-05 21:37 - 2019-03-01 17:31 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2019-12-05 21:37 - 2019-02-05 18:41 - 000778912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2019-12-05 21:37 - 2019-02-05 18:41 - 000103072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-12-05 21:37 - 2019-02-05 18:41 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2019-12-05 21:31 - 2019-12-05 21:31 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-12-05 21:31 - 2019-12-05 21:31 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-12-05 17:45 - 2019-12-06 09:59 - 000000000 ___DC C:\WINDOWS\Panther
2019-12-05 17:18 - 2019-12-05 17:35 - 000000000 ___HD C:\$GetCurrent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-08 18:02 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-12-08 18:02 - 2018-02-20 20:34 - 000000000 ____D C:\FRST
2019-12-08 18:00 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-12-08 17:55 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2019-12-08 12:24 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-12-08 12:21 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-12-08 12:18 - 2017-07-10 17:03 - 000000000 ____D C:\Program Files\Microsoft Office
2019-12-08 12:07 - 2017-12-25 09:10 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\Packages
2019-12-08 12:06 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-12-08 12:06 - 2019-03-15 17:19 - 000000000 ____D C:\ProgramData\Packages
2019-12-08 11:58 - 2017-12-25 03:29 - 000000000 ____D C:\Program Files\rempl
2019-12-08 11:56 - 2019-03-12 22:57 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\LogMeIn Hamachi
2019-12-08 11:56 - 2018-07-21 15:37 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\AVAST Software
2019-12-08 11:54 - 2019-03-15 21:27 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\GameCenter
2019-12-08 11:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\appcompat
2019-12-08 11:50 - 2017-12-24 23:05 - 000000000 __SHD C:\Users\Filip Marčík\IntelGraphicsProfiles
2019-12-08 11:50 - 2017-07-10 16:43 - 000000000 ____D C:\ProgramData\NVIDIA
2019-12-08 11:49 - 2019-03-19 12:55 - 000719454 _____ C:\WINDOWS\system32\perfh005.dat
2019-12-08 11:49 - 2019-03-19 12:55 - 000145482 _____ C:\WINDOWS\system32\perfc005.dat
2019-12-06 10:00 - 2017-12-25 09:32 - 000000000 ___RD C:\Users\Filip Marčík\3D Objects
2019-12-06 10:00 - 2017-07-10 16:28 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-12-06 09:59 - 2017-12-25 09:31 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\ConnectedDevicesPlatform
2019-12-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\USOPrivate
2019-12-05 22:40 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows NT
2019-12-05 22:40 - 2019-03-19 05:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-12-05 22:39 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-12-05 22:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Registration
2019-12-05 22:26 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-12-05 22:24 - 2017-12-25 09:24 - 000023020 _____ C:\WINDOWS\system32\emptyregdb.dat
2019-12-05 22:23 - 2017-07-10 16:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
2019-12-05 22:08 - 2019-10-09 13:45 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fraps
2019-12-05 22:08 - 2019-03-19 05:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-12-05 22:08 - 2019-03-15 21:27 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games
2019-12-05 22:08 - 2019-01-30 19:56 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net
2019-12-05 22:08 - 2018-01-06 20:26 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEmu
2019-12-05 22:08 - 2017-12-25 10:55 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks
2019-12-05 22:08 - 2017-12-24 23:20 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-12-05 22:07 - 2017-12-25 17:59 - 000000000 ____D C:\Users\Maminka\AppData\Local\Packages
2019-12-05 22:06 - 2018-01-29 21:33 - 000000000 ____D C:\Users\Táta2\AppData\Local\Packages
2019-12-05 22:03 - 2017-12-25 11:34 - 000000000 ____D C:\Users\Ivuška\AppData\Local\Packages
2019-12-05 22:00 - 2019-03-12 22:56 - 000000000 ____D C:\WINDOWS\system32\DAX3
2019-12-05 22:00 - 2017-07-10 16:46 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-12-05 22:00 - 2017-07-10 16:46 - 000000000 ____D C:\WINDOWS\system32\DAX2
2019-12-05 21:59 - 2017-07-10 16:47 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2019-12-05 21:58 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ServiceState
2019-12-05 21:58 - 2017-07-10 16:42 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-12-05 21:52 - 2019-04-06 10:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 __RHD C:\Users\Public\Libraries
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\spool
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Help
2019-12-05 21:52 - 2019-03-19 05:49 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2019-12-05 21:52 - 2019-02-20 19:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends
2019-12-05 21:52 - 2019-01-07 14:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Family
2019-12-05 21:52 - 2018-10-23 17:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-12-05 21:52 - 2018-10-04 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2019-12-05 21:52 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-12-05 21:52 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2019-12-05 21:52 - 2018-01-07 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2019-12-05 21:52 - 2017-12-25 09:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-12-05 21:52 - 2017-12-25 03:29 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-12-05 21:52 - 2017-12-25 03:21 - 000000000 ____D C:\Program Files\UNP
2019-12-05 21:52 - 2017-12-24 23:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-12-05 21:52 - 2017-12-24 23:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2019-12-05 21:52 - 2017-12-24 23:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office 2016
2019-12-05 21:52 - 2017-07-10 16:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2019-12-05 21:52 - 2017-07-10 16:39 - 000000000 ____D C:\Program Files (x86)\Intel
2019-12-05 21:52 - 2017-07-10 16:32 - 000000000 ____D C:\Program Files\Intel
2019-12-05 21:52 - 2016-11-14 03:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WPS Office
2019-12-05 21:51 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\InfusedApps
2019-12-05 21:45 - 2019-07-21 18:59 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-12-05 21:45 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2019-12-05 21:45 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-12-05 21:44 - 2019-07-25 13:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS
2019-12-05 21:44 - 2019-06-16 18:46 - 000000000 ____D C:\WINDOWS\Firmware
2019-12-05 21:44 - 2019-03-19 12:57 - 000000000 ____D C:\WINDOWS\OCR
2019-12-05 21:44 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Resources
2019-12-05 21:44 - 2018-08-25 16:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2019-12-05 21:44 - 2018-02-22 19:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue
2019-12-05 21:44 - 2017-07-10 17:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FarStone
2019-12-05 21:44 - 2017-07-10 16:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ICEpower
2019-12-05 21:44 - 2017-07-10 16:46 - 000000000 ____D C:\Program Files\Realtek
2019-12-05 21:38 - 2019-03-19 05:58 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2019-12-05 21:38 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2019-12-05 21:38 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\MUI
2019-12-05 21:36 - 2019-03-19 05:56 - 000000000 ____D C:\WINDOWS\Setup
2019-12-05 17:44 - 2017-12-24 23:46 - 000000036 _____ C:\WINDOWS\progress.ini
2019-12-05 17:35 - 2019-10-20 18:59 - 000000000 ____D C:\Windows10Upgrade
2019-11-26 20:42 - 2019-07-22 21:21 - 000000000 ____D C:\Users\Filip Marčík\Desktop\parkour videa sestříhané
2019-11-25 18:00 - 2017-12-25 03:29 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-11-25 17:41 - 2017-12-24 23:11 - 000000000 ___RD C:\Users\Filip Marčík\OneDrive
2019-11-25 17:39 - 2018-08-06 17:12 - 000000000 ____D C:\Users\Ivuška\AppData\Local\AVAST Software
2019-11-25 17:37 - 2019-03-12 22:57 - 000000000 ____D C:\Users\Ivuška\AppData\Local\LogMeIn Hamachi
2019-11-25 17:34 - 2017-12-25 11:34 - 000000000 __SHD C:\Users\Ivuška\IntelGraphicsProfiles
2019-11-22 19:47 - 2017-12-27 19:14 - 000000000 ___RD C:\Users\Ivuška\OneDrive
2019-11-21 19:08 - 2017-12-27 19:45 - 000000000 ____D C:\Users\Ivuška\AppData\Local\PlaceholderTileLogoFolder
2019-11-20 14:11 - 2018-01-26 08:36 - 000000000 ____D C:\Users\Ivuška\Desktop\Nová složka
2019-11-18 14:58 - 2017-12-25 11:42 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\PlaceholderTileLogoFolder
2019-11-16 21:12 - 2019-07-25 13:44 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Sony
==================== Files in the root of some directories ========
2017-12-24 23:08 - 2018-03-18 14:51 - 000000206 _____ () C:\Users\Filip Marčík\AppData\Roaming\sp_data.sys
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
A ještě Addition.txt:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-12-2019
Ran by Filip Marčík (administrator) on DESKTOP-KQGVJSN (ASUSTeK COMPUTER INC. X541UV) (08-12-2019 18:00:38)
Running from C:\Users\Filip Marčík\Desktop
Loaded Profiles: Filip Marčík & Ivuška & Maminka & Táta2 (Available Profiles: Filip Marčík & Ivuška & Maminka & Táta2)
Platform: Windows 10 Home Version 1903 18362.175 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(CyberLink Corp. -> CyberLink) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\UnrealCEFSubProcess.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(FarStone Technology -> ) C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\FBAgent.exe
(Farstone Technology Inc -> ) C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\DCNTranProc.exe
(ICEpower a/s -> ICEpower) C:\Windows\System32\ICEsoundService64.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxEM.exe
(Intel(R) Software -> Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Intel(R) Software -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Mail.Ru, LLC -> ) C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe
(Mail.Ru, LLC -> ) C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\McClnUI.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Filip Marčík\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe
(Microvirt Software Technology Co., Ltd. -> Microvirt Software Technology Co. Ltd.) C:\Program Files\Microvirt\MEmu\MemuService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\Realtek Bluetooth Filter ONLY\BTDevMgr.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(TeamViewer -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [World of Tanks] => C:\Games\World_of_Tanks\WargamingGameUpdater.exe [3139936 2018-06-25] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [36058000 2019-12-05] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2541944 2019-05-18] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [GameCenter] => C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe [10395776 2019-12-05] (Mail.Ru, LLC -> )
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0BB81A9F-3476-4C0B-9E3F-B34A6A824BAF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155472 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {0BBB64D3-9EF8-412D-9FBA-14C35FB62408} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2108216 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {14F7D6E3-5BE4-42FE-AC8C-390B7BB7DC77} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
Task: {19849B53-BCBD-445E-9F63-587846EC063A} - System32\Tasks\WpsKtpcntrQingTask_Administrator => C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\office6\ktpcntr.exe [1531136 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
Task: {204F16B9-8C89-4CB1-A4DF-3A4C9345E5F8} - System32\Tasks\Norton Family\Norton Family Error Analyzer => C:\Program Files (x86)\Norton Family\Engine\3.7.2.37\SymErr.exe
Task: {257D01DE-5354-4A0A-9945-5317D961229C} - System32\Tasks\McAfee Cleanup => C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe [688896 2019-06-21] (McAfee, LLC -> McAfee, LLC.) <==== ATTENTION
Task: {2EBFE872-9459-494E-B78C-4369DC2AB788} - System32\Tasks\ASUSTek Computer Inc\ASUS GIFTBOX => C:\Program Files (x86)\ASUS\Giftbox\asusgiftbox.exe [1049608 2017-07-03] (ASUSTek Computer Inc. -> ASUSTek Computer Inc)
Task: {300C6C10-4734-4CD5-95E8-E94E560C9849} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {32BC4421-6F4A-42FE-BE4C-C39108A01BA7} - System32\Tasks\Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
Task: {34A84272-39A2-41E1-9728-B89A3854AE2C} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {376D87BA-CBA8-4B7F-9E5A-AD73951CAD31} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {3BD92534-B9A6-4C7F-A41C-5A1D199A478A} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18391104 2018-11-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {3C64CF9A-8190-488F-9A72-5AC008C28D7D} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3FEB29A4-0018-48BE-B031-158541A69766} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {54D45970-EDEC-4E81-AC8D-F954ACEC1D93} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19786024 2016-02-23] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
Task: {60EFC32D-BFD4-4BAD-886F-00F65DEA2ECE} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2089864 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {684DEB0C-1C4E-422A-BECE-BC9B8BB1E0F1} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1873288 2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
Task: {75DE6A22-4176-4165-BA9E-DB57516581F2} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [964544 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {78607855-4EC6-461B-B1A5-C832A5D86591} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [521152 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8131B922-E991-4A0D-9F43-6748501A8CAF} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [54784 2016-02-23] (ASUS) [File not signed]
Task: {969168FC-E07E-4CE0-855A-42993B079FE4} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9DD74553-8723-4F08-B8B2-F7BC6E5C60BA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155472 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {A3DCAB9C-FCE4-4747-B8CD-A9AD5D709BDF} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {A8EC45D1-1C10-4387-9DF3-3F6F7809A2CF} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AEAEED82-C8E1-488B-9546-D9A57F1A3922} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506368 2018-11-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {B7C730AA-2DAA-48A5-BD4E-BA1147DE7E2B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671304 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {BA741588-964C-496A-9ECF-9FDFC1621F33} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C1669F19-7766-43B9-B9AA-561024F27020} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1864640 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CD426258-6747-4F25-864A-53587E6FFD45} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [855352 2016-02-19] (Intel(R) Trusted Connect Service -> Intel(R) Corporation)
Task: {D81FF288-7101-479D-A50C-96F80DAFDC0C} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [1578784 2016-07-07] (ASUSTeK Computer Inc. -> ASUSTek COMPUTER INC.) [File not signed]
Task: {D900DB63-0952-42F4-97BC-692BC77054A4} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671304 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {EE77944F-6D67-46D9-ADAE-85815B17BA8E} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2108216 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {F1BF6F52-19A1-4349-A55B-CB0E78E8B23A} - System32\Tasks\WpsExternal_20161114022915 => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe [516352 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
Task: {F29D077F-90FA-4679-918C-D7DF210DB314} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\WpsExternal_20161114022915.job => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe
Task: C:\WINDOWS\Tasks\WpsKtpcntrQingTask_Administrator.job => C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\office6\ktpcntr.exeÃqing 10.1.0.5644 xxx server_url=hxxp:/kdl1.cache.wps.com/ksodl/wpscfg/client/____client____html____service____bubble.html ic_server_url=hxxp:/info.kingsoftstore.com/wpsv6internet/infos.ads
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 79.98.72.27 79.98.72.2 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{99b5710c-532b-4064-baaf-32772c54e8ac}: [DhcpNameServer] 79.98.72.27 79.98.72.2 8.8.8.8 8.8.4.4
Internet Explorer:
==================
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=12454
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=12454
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {14DD4B29-F85C-4E4D-9290-D918524CB5E9} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {2FC69E8C-0341-4C3C-8608-8BC9958EF123} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {338AF512-D204-4F80-847C-B584505FF384} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {5838E27F-69CA-4CA2-853B-53134D0747AF} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {8899093F-0B7F-43B6-927E-207720247146} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {9978FF19-82D2-4813-95F0-A1077953835B} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {CE14CFCD-4A18-4D72-ADE4-CDF15A2F3D79} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {D0D20547-4FF5-4A48-B76A-1793701A52E7} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {E330D925-E44D-4F6C-8044-7A58E81FA508} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {00DD2D4B-31C4-417B-A172-6AEC47F4F72B} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {047BA285-75FC-46E6-BB34-FA179AEFC37A} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {14AD75BB-74D3-4B73-BC63-1B1E7FD5BE86} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {269574AE-999C-4280-B185-BA429AE23E3D} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {63BBBA5D-C0C6-4250-A25E-F5217BF81B11} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {C6AE4BD5-A94F-44B2-8373-BEB6F86AF81C} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {CD189DE3-9C6A-46A5-8CF2-0ACEF22912F1} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {D11F5AD1-C934-4AD6-A93A-89130ECC85A5} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {E671AA39-F7B6-4665-A5C1-2A804F37D625} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\ssv.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\jp2ssv.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Edge:
======
Edge Notifications: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> hxxps://www.youtube.com
FireFox:
========
FF DefaultProfile: df7kmm00.default
FF ProfilePath: C:\Users\Filip Marčík\AppData\Roaming\Mozilla\Firefox\Profiles\df7kmm00.default [2019-07-25]
FF Extension: (ETP Search Volume Study) - C:\Users\Filip Marčík\AppData\Roaming\Mozilla\Firefox\Profiles\df7kmm00.default\Extensions\etp-search-volume-study@shield.mozilla.org.xpi [2019-07-20]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-10-09] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-03-29] (BattlEye Innovations e.K. -> )
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth Filter ONLY\BTDevMgr.exe [125144 2016-02-15] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11345992 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2019-02-01] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 esifsvc; C:\WINDOWS\SysWOW64\esif_uf.exe [1392792 2015-11-09] (Intel(R) Software -> Intel Corporation)
R2 FBAgent; C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\FBAgent.exe [73032 2014-08-13] (FarStone Technology -> )
S2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 ICEsoundService; C:\WINDOWS\system32\ICEsoundService64.exe [806344 2018-11-01] (ICEpower a/s -> ICEpower)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Trusted Connect Service -> Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-05-25] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
S2 Kingsoft_WPS_UpdateService; C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\wtoolex\wpsupdatesvr.exe [133376 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
R2 MEmusvc; C:\Program Files\Microvirt\MEmu\MemuService.exe [269480 2017-05-26] (Microvirt Software Technology Co., Ltd. -> Microvirt Software Technology Co. Ltd.)
S3 mracsvc; C:\WINDOWS\System32\mracsvc.exe [16340752 2019-03-16] (Mail.Ru LLC -> LLC Mail.Ru)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2298688 2019-02-19] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3171144 2019-02-19] (Electronic Arts, Inc. -> Electronic Arts)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2015-09-23] (CyberLink Corp. -> CyberLink)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [324168 2018-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer -> TeamViewer GmbH)
R2 Tran_Process_Proc; C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\DCNTranProc.exe [71024 2014-03-25] (Farstone Technology Inc -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 wpscloudsvr; C:\Program Files (x86)\Kingsoft\WPS Office\wpscloudsvr.exe [162048 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiCharger; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [22656 2016-02-23] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
R2 ASMMAP64; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [18048 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUS)
R3 AsusHFilter; C:\WINDOWS\System32\drivers\AsusHFilter.sys [30200 2016-12-22] (ASUSTeK Computer Inc. -> )
R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37616 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [204824 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [209552 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [65120 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2019-10-07] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [276952 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42736 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [161544 2019-11-05] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110320 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83792 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848432 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460448 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [236024 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316528 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [55784 2015-11-09] (Intel(R) Software -> Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [52200 2015-11-09] (Intel(R) Software -> Intel Corporation)
R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [260072 2015-11-09] (Intel(R) Software -> Intel Corporation)
S3 farmntio; C:\Windows\system32\drivers\farmntio.sys [25144 2014-03-25] (FarStone Technology -> ) [File not signed]
S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2018-05-30] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32680 2019-08-07] (ASUSTek Computer Inc. -> ASUS)
R2 memudrv; C:\Program Files\Microvirt\MEmuHyperv\MEmuDrv.sys [260368 2015-11-02] (上海迈微软件科技有限公司 -> Microvirt Corporation)
S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv.sys [15553520 2019-03-16] (Mail.Ru LLC -> LLC Mail.Ru)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvam.inf_amd64_9b1341e92276ee7c\nvlddmkm.sys [17213616 2018-10-14] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [937728 2016-05-17] (Realtek Semiconductor Corp -> Realtek )
R3 RtkBtFilter; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [758352 2018-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RTWlanE02; C:\WINDOWS\System32\drivers\rtwlane02.sys [9599440 2018-12-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-08 18:00 - 2019-12-08 18:04 - 000037750 _____ C:\Users\Filip Marčík\Desktop\FRST.txt
2019-12-08 17:46 - 2019-12-08 17:46 - 002263552 _____ (Farbar) C:\Users\Filip Marčík\Desktop\FRST64.exe
2019-12-08 11:45 - 2019-12-08 11:45 - 000005693 ___RH C:\farstone_pe.letter
2019-12-06 10:05 - 2019-12-06 10:05 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-12-06 09:59 - 2019-12-06 09:59 - 000000020 ___SH C:\Users\Filip Marčík\ntuser.ini
2019-12-05 22:39 - 2019-12-08 11:47 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2019-12-05 22:39 - 2019-12-08 11:42 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-12-05 22:39 - 2019-12-05 22:40 - 000003458 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003428 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{FA29C794-20E0-4B41-8806-7050159DAA5C}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003414 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{6DF17297-FF54-4FA5-8BDD-D9904FF837A2}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003236 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003178 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2019-12-05 22:39 - 2019-12-05 22:40 - 000003088 _____ C:\WINDOWS\system32\Tasks\WpsExternal_20161114022915
2019-12-05 22:39 - 2019-12-05 22:40 - 000003044 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000002922 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1006
2019-12-05 22:39 - 2019-12-05 22:40 - 000002920 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1005
2019-12-05 22:39 - 2019-12-05 22:40 - 000002890 _____ C:\WINDOWS\system32\Tasks\ASUS Live Update1
2019-12-05 22:39 - 2019-12-05 22:40 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1001
2019-12-05 22:39 - 2019-12-05 22:39 - 000003330 _____ C:\WINDOWS\system32\Tasks\WpsKtpcntrQingTask_Administrator
2019-12-05 22:39 - 2019-12-05 22:39 - 000003028 _____ C:\WINDOWS\system32\Tasks\Update Checker
2019-12-05 22:39 - 2019-12-05 22:39 - 000003016 _____ C:\WINDOWS\system32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002984 _____ C:\WINDOWS\system32\Tasks\ATK Package 36D18D69AFC3
2019-12-05 22:39 - 2019-12-05 22:39 - 000002974 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002898 _____ C:\WINDOWS\system32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002880 _____ C:\WINDOWS\system32\Tasks\ASUS Live Update2
2019-12-05 22:39 - 2019-12-05 22:39 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1003
2019-12-05 22:39 - 2019-12-05 22:39 - 000002846 _____ C:\WINDOWS\system32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002804 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002626 _____ C:\WINDOWS\system32\Tasks\Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002406 _____ C:\WINDOWS\system32\Tasks\RtHDVBg_ListenToDevice
2019-12-05 22:39 - 2019-12-05 22:39 - 000002400 _____ C:\WINDOWS\system32\Tasks\ASUS USB Charger Plus
2019-12-05 22:39 - 2019-12-05 22:39 - 000002340 _____ C:\WINDOWS\system32\Tasks\RTKCPL
2019-12-05 22:39 - 2019-12-05 22:39 - 000002274 _____ C:\WINDOWS\system32\Tasks\ATK Package A22126881260
2019-12-05 22:39 - 2019-12-05 22:39 - 000002274 _____ C:\WINDOWS\system32\Tasks\ASUS Splendid ACMON
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Family
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\ASUSTek Computer Inc
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\ASUS
2019-12-05 22:35 - 2019-12-05 22:39 - 000019053 _____ C:\WINDOWS\diagwrn.xml
2019-12-05 22:35 - 2019-12-05 22:39 - 000019053 _____ C:\WINDOWS\diagerr.xml
2019-12-05 22:21 - 2019-12-08 11:49 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-12-05 22:01 - 2019-12-08 11:50 - 000000000 ____D C:\Users\Filip Marčík
2019-12-05 22:01 - 2019-12-05 22:22 - 000000000 ____D C:\Users\Táta2
2019-12-05 22:01 - 2019-12-05 22:22 - 000000000 ____D C:\Users\Maminka
2019-12-05 22:01 - 2019-12-05 22:18 - 000000000 ____D C:\Users\Ivuška
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Táta2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Ivuška\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 21:58 - 2019-12-05 21:58 - 000000000 ____D C:\ProgramData\USOShared
2019-12-05 21:58 - 2016-11-30 07:36 - 000113672 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2019-12-05 21:58 - 2016-11-30 07:36 - 000104456 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2019-12-05 21:57 - 2019-06-12 02:29 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-12-05 21:53 - 2019-12-08 17:40 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-12-05 21:53 - 2019-12-05 22:12 - 000434856 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-12-05 21:52 - 2019-12-05 22:41 - 000000000 ____D C:\Windows.old
2019-12-05 21:44 - 2019-12-05 21:52 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-12-05 21:41 - 2019-12-05 21:43 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-12-05 21:41 - 2019-12-05 21:41 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files\MSBuild
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-12-05 21:37 - 2019-03-01 17:31 - 001166488 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-12-05 21:37 - 2019-03-01 17:31 - 000124568 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-12-05 21:37 - 2019-03-01 17:31 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2019-12-05 21:37 - 2019-02-05 18:41 - 000778912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2019-12-05 21:37 - 2019-02-05 18:41 - 000103072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-12-05 21:37 - 2019-02-05 18:41 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2019-12-05 21:31 - 2019-12-05 21:31 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-12-05 21:31 - 2019-12-05 21:31 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-12-05 17:45 - 2019-12-06 09:59 - 000000000 ___DC C:\WINDOWS\Panther
2019-12-05 17:18 - 2019-12-05 17:35 - 000000000 ___HD C:\$GetCurrent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-08 18:02 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-12-08 18:02 - 2018-02-20 20:34 - 000000000 ____D C:\FRST
2019-12-08 18:00 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-12-08 17:55 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2019-12-08 12:24 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-12-08 12:21 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-12-08 12:18 - 2017-07-10 17:03 - 000000000 ____D C:\Program Files\Microsoft Office
2019-12-08 12:07 - 2017-12-25 09:10 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\Packages
2019-12-08 12:06 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-12-08 12:06 - 2019-03-15 17:19 - 000000000 ____D C:\ProgramData\Packages
2019-12-08 11:58 - 2017-12-25 03:29 - 000000000 ____D C:\Program Files\rempl
2019-12-08 11:56 - 2019-03-12 22:57 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\LogMeIn Hamachi
2019-12-08 11:56 - 2018-07-21 15:37 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\AVAST Software
2019-12-08 11:54 - 2019-03-15 21:27 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\GameCenter
2019-12-08 11:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\appcompat
2019-12-08 11:50 - 2017-12-24 23:05 - 000000000 __SHD C:\Users\Filip Marčík\IntelGraphicsProfiles
2019-12-08 11:50 - 2017-07-10 16:43 - 000000000 ____D C:\ProgramData\NVIDIA
2019-12-08 11:49 - 2019-03-19 12:55 - 000719454 _____ C:\WINDOWS\system32\perfh005.dat
2019-12-08 11:49 - 2019-03-19 12:55 - 000145482 _____ C:\WINDOWS\system32\perfc005.dat
2019-12-06 10:00 - 2017-12-25 09:32 - 000000000 ___RD C:\Users\Filip Marčík\3D Objects
2019-12-06 10:00 - 2017-07-10 16:28 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-12-06 09:59 - 2017-12-25 09:31 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\ConnectedDevicesPlatform
2019-12-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\USOPrivate
2019-12-05 22:40 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows NT
2019-12-05 22:40 - 2019-03-19 05:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-12-05 22:39 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-12-05 22:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Registration
2019-12-05 22:26 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-12-05 22:24 - 2017-12-25 09:24 - 000023020 _____ C:\WINDOWS\system32\emptyregdb.dat
2019-12-05 22:23 - 2017-07-10 16:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
2019-12-05 22:08 - 2019-10-09 13:45 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fraps
2019-12-05 22:08 - 2019-03-19 05:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-12-05 22:08 - 2019-03-15 21:27 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games
2019-12-05 22:08 - 2019-01-30 19:56 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net
2019-12-05 22:08 - 2018-01-06 20:26 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEmu
2019-12-05 22:08 - 2017-12-25 10:55 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks
2019-12-05 22:08 - 2017-12-24 23:20 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-12-05 22:07 - 2017-12-25 17:59 - 000000000 ____D C:\Users\Maminka\AppData\Local\Packages
2019-12-05 22:06 - 2018-01-29 21:33 - 000000000 ____D C:\Users\Táta2\AppData\Local\Packages
2019-12-05 22:03 - 2017-12-25 11:34 - 000000000 ____D C:\Users\Ivuška\AppData\Local\Packages
2019-12-05 22:00 - 2019-03-12 22:56 - 000000000 ____D C:\WINDOWS\system32\DAX3
2019-12-05 22:00 - 2017-07-10 16:46 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-12-05 22:00 - 2017-07-10 16:46 - 000000000 ____D C:\WINDOWS\system32\DAX2
2019-12-05 21:59 - 2017-07-10 16:47 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2019-12-05 21:58 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ServiceState
2019-12-05 21:58 - 2017-07-10 16:42 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-12-05 21:52 - 2019-04-06 10:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 __RHD C:\Users\Public\Libraries
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\spool
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Help
2019-12-05 21:52 - 2019-03-19 05:49 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2019-12-05 21:52 - 2019-02-20 19:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends
2019-12-05 21:52 - 2019-01-07 14:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Family
2019-12-05 21:52 - 2018-10-23 17:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-12-05 21:52 - 2018-10-04 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2019-12-05 21:52 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-12-05 21:52 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2019-12-05 21:52 - 2018-01-07 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2019-12-05 21:52 - 2017-12-25 09:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-12-05 21:52 - 2017-12-25 03:29 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-12-05 21:52 - 2017-12-25 03:21 - 000000000 ____D C:\Program Files\UNP
2019-12-05 21:52 - 2017-12-24 23:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-12-05 21:52 - 2017-12-24 23:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2019-12-05 21:52 - 2017-12-24 23:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office 2016
2019-12-05 21:52 - 2017-07-10 16:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2019-12-05 21:52 - 2017-07-10 16:39 - 000000000 ____D C:\Program Files (x86)\Intel
2019-12-05 21:52 - 2017-07-10 16:32 - 000000000 ____D C:\Program Files\Intel
2019-12-05 21:52 - 2016-11-14 03:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WPS Office
2019-12-05 21:51 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\InfusedApps
2019-12-05 21:45 - 2019-07-21 18:59 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-12-05 21:45 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2019-12-05 21:45 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-12-05 21:44 - 2019-07-25 13:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS
2019-12-05 21:44 - 2019-06-16 18:46 - 000000000 ____D C:\WINDOWS\Firmware
2019-12-05 21:44 - 2019-03-19 12:57 - 000000000 ____D C:\WINDOWS\OCR
2019-12-05 21:44 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Resources
2019-12-05 21:44 - 2018-08-25 16:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2019-12-05 21:44 - 2018-02-22 19:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue
2019-12-05 21:44 - 2017-07-10 17:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FarStone
2019-12-05 21:44 - 2017-07-10 16:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ICEpower
2019-12-05 21:44 - 2017-07-10 16:46 - 000000000 ____D C:\Program Files\Realtek
2019-12-05 21:38 - 2019-03-19 05:58 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2019-12-05 21:38 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2019-12-05 21:38 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\MUI
2019-12-05 21:36 - 2019-03-19 05:56 - 000000000 ____D C:\WINDOWS\Setup
2019-12-05 17:44 - 2017-12-24 23:46 - 000000036 _____ C:\WINDOWS\progress.ini
2019-12-05 17:35 - 2019-10-20 18:59 - 000000000 ____D C:\Windows10Upgrade
2019-11-26 20:42 - 2019-07-22 21:21 - 000000000 ____D C:\Users\Filip Marčík\Desktop\parkour videa sestříhané
2019-11-25 18:00 - 2017-12-25 03:29 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-11-25 17:41 - 2017-12-24 23:11 - 000000000 ___RD C:\Users\Filip Marčík\OneDrive
2019-11-25 17:39 - 2018-08-06 17:12 - 000000000 ____D C:\Users\Ivuška\AppData\Local\AVAST Software
2019-11-25 17:37 - 2019-03-12 22:57 - 000000000 ____D C:\Users\Ivuška\AppData\Local\LogMeIn Hamachi
2019-11-25 17:34 - 2017-12-25 11:34 - 000000000 __SHD C:\Users\Ivuška\IntelGraphicsProfiles
2019-11-22 19:47 - 2017-12-27 19:14 - 000000000 ___RD C:\Users\Ivuška\OneDrive
2019-11-21 19:08 - 2017-12-27 19:45 - 000000000 ____D C:\Users\Ivuška\AppData\Local\PlaceholderTileLogoFolder
2019-11-20 14:11 - 2018-01-26 08:36 - 000000000 ____D C:\Users\Ivuška\Desktop\Nová složka
2019-11-18 14:58 - 2017-12-25 11:42 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\PlaceholderTileLogoFolder
2019-11-16 21:12 - 2019-07-25 13:44 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Sony
==================== Files in the root of some directories ========
2017-12-24 23:08 - 2018-03-18 14:51 - 000000206 _____ () C:\Users\Filip Marčík\AppData\Roaming\sp_data.sys
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
prosím o kontrolu logu, počítač je velmi pomalý. Děkuji.
Přikládám log z FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-12-2019
Ran by Filip Marčík (administrator) on DESKTOP-KQGVJSN (ASUSTeK COMPUTER INC. X541UV) (08-12-2019 18:00:38)
Running from C:\Users\Filip Marčík\Desktop
Loaded Profiles: Filip Marčík & Ivuška & Maminka & Táta2 (Available Profiles: Filip Marčík & Ivuška & Maminka & Táta2)
Platform: Windows 10 Home Version 1903 18362.175 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(CyberLink Corp. -> CyberLink) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\UnrealCEFSubProcess.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(FarStone Technology -> ) C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\FBAgent.exe
(Farstone Technology Inc -> ) C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\DCNTranProc.exe
(ICEpower a/s -> ICEpower) C:\Windows\System32\ICEsoundService64.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxEM.exe
(Intel(R) Software -> Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Intel(R) Software -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Mail.Ru, LLC -> ) C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe
(Mail.Ru, LLC -> ) C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\McClnUI.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Filip Marčík\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe
(Microvirt Software Technology Co., Ltd. -> Microvirt Software Technology Co. Ltd.) C:\Program Files\Microvirt\MEmu\MemuService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\Realtek Bluetooth Filter ONLY\BTDevMgr.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(TeamViewer -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [World of Tanks] => C:\Games\World_of_Tanks\WargamingGameUpdater.exe [3139936 2018-06-25] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [36058000 2019-12-05] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2541944 2019-05-18] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [GameCenter] => C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe [10395776 2019-12-05] (Mail.Ru, LLC -> )
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0BB81A9F-3476-4C0B-9E3F-B34A6A824BAF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155472 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {0BBB64D3-9EF8-412D-9FBA-14C35FB62408} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2108216 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {14F7D6E3-5BE4-42FE-AC8C-390B7BB7DC77} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
Task: {19849B53-BCBD-445E-9F63-587846EC063A} - System32\Tasks\WpsKtpcntrQingTask_Administrator => C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\office6\ktpcntr.exe [1531136 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
Task: {204F16B9-8C89-4CB1-A4DF-3A4C9345E5F8} - System32\Tasks\Norton Family\Norton Family Error Analyzer => C:\Program Files (x86)\Norton Family\Engine\3.7.2.37\SymErr.exe
Task: {257D01DE-5354-4A0A-9945-5317D961229C} - System32\Tasks\McAfee Cleanup => C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe [688896 2019-06-21] (McAfee, LLC -> McAfee, LLC.) <==== ATTENTION
Task: {2EBFE872-9459-494E-B78C-4369DC2AB788} - System32\Tasks\ASUSTek Computer Inc\ASUS GIFTBOX => C:\Program Files (x86)\ASUS\Giftbox\asusgiftbox.exe [1049608 2017-07-03] (ASUSTek Computer Inc. -> ASUSTek Computer Inc)
Task: {300C6C10-4734-4CD5-95E8-E94E560C9849} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {32BC4421-6F4A-42FE-BE4C-C39108A01BA7} - System32\Tasks\Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
Task: {34A84272-39A2-41E1-9728-B89A3854AE2C} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {376D87BA-CBA8-4B7F-9E5A-AD73951CAD31} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {3BD92534-B9A6-4C7F-A41C-5A1D199A478A} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18391104 2018-11-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {3C64CF9A-8190-488F-9A72-5AC008C28D7D} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3FEB29A4-0018-48BE-B031-158541A69766} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {54D45970-EDEC-4E81-AC8D-F954ACEC1D93} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19786024 2016-02-23] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
Task: {60EFC32D-BFD4-4BAD-886F-00F65DEA2ECE} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2089864 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {684DEB0C-1C4E-422A-BECE-BC9B8BB1E0F1} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1873288 2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
Task: {75DE6A22-4176-4165-BA9E-DB57516581F2} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [964544 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {78607855-4EC6-461B-B1A5-C832A5D86591} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [521152 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8131B922-E991-4A0D-9F43-6748501A8CAF} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [54784 2016-02-23] (ASUS) [File not signed]
Task: {969168FC-E07E-4CE0-855A-42993B079FE4} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9DD74553-8723-4F08-B8B2-F7BC6E5C60BA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155472 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {A3DCAB9C-FCE4-4747-B8CD-A9AD5D709BDF} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {A8EC45D1-1C10-4387-9DF3-3F6F7809A2CF} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AEAEED82-C8E1-488B-9546-D9A57F1A3922} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506368 2018-11-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {B7C730AA-2DAA-48A5-BD4E-BA1147DE7E2B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671304 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {BA741588-964C-496A-9ECF-9FDFC1621F33} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C1669F19-7766-43B9-B9AA-561024F27020} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1864640 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CD426258-6747-4F25-864A-53587E6FFD45} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [855352 2016-02-19] (Intel(R) Trusted Connect Service -> Intel(R) Corporation)
Task: {D81FF288-7101-479D-A50C-96F80DAFDC0C} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [1578784 2016-07-07] (ASUSTeK Computer Inc. -> ASUSTek COMPUTER INC.) [File not signed]
Task: {D900DB63-0952-42F4-97BC-692BC77054A4} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671304 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {EE77944F-6D67-46D9-ADAE-85815B17BA8E} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2108216 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {F1BF6F52-19A1-4349-A55B-CB0E78E8B23A} - System32\Tasks\WpsExternal_20161114022915 => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe [516352 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
Task: {F29D077F-90FA-4679-918C-D7DF210DB314} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\WpsExternal_20161114022915.job => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe
Task: C:\WINDOWS\Tasks\WpsKtpcntrQingTask_Administrator.job => C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\office6\ktpcntr.exeÃqing 10.1.0.5644 xxx server_url=hxxp:/kdl1.cache.wps.com/ksodl/wpscfg/client/____client____html____service____bubble.html ic_server_url=hxxp:/info.kingsoftstore.com/wpsv6internet/infos.ads
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 79.98.72.27 79.98.72.2 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{99b5710c-532b-4064-baaf-32772c54e8ac}: [DhcpNameServer] 79.98.72.27 79.98.72.2 8.8.8.8 8.8.4.4
Internet Explorer:
==================
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=12454
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=12454
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {14DD4B29-F85C-4E4D-9290-D918524CB5E9} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {2FC69E8C-0341-4C3C-8608-8BC9958EF123} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {338AF512-D204-4F80-847C-B584505FF384} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {5838E27F-69CA-4CA2-853B-53134D0747AF} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {8899093F-0B7F-43B6-927E-207720247146} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {9978FF19-82D2-4813-95F0-A1077953835B} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {CE14CFCD-4A18-4D72-ADE4-CDF15A2F3D79} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {D0D20547-4FF5-4A48-B76A-1793701A52E7} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {E330D925-E44D-4F6C-8044-7A58E81FA508} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {00DD2D4B-31C4-417B-A172-6AEC47F4F72B} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {047BA285-75FC-46E6-BB34-FA179AEFC37A} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {14AD75BB-74D3-4B73-BC63-1B1E7FD5BE86} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {269574AE-999C-4280-B185-BA429AE23E3D} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {63BBBA5D-C0C6-4250-A25E-F5217BF81B11} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {C6AE4BD5-A94F-44B2-8373-BEB6F86AF81C} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {CD189DE3-9C6A-46A5-8CF2-0ACEF22912F1} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {D11F5AD1-C934-4AD6-A93A-89130ECC85A5} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {E671AA39-F7B6-4665-A5C1-2A804F37D625} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\ssv.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\jp2ssv.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Edge:
======
Edge Notifications: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> hxxps://www.youtube.com
FireFox:
========
FF DefaultProfile: df7kmm00.default
FF ProfilePath: C:\Users\Filip Marčík\AppData\Roaming\Mozilla\Firefox\Profiles\df7kmm00.default [2019-07-25]
FF Extension: (ETP Search Volume Study) - C:\Users\Filip Marčík\AppData\Roaming\Mozilla\Firefox\Profiles\df7kmm00.default\Extensions\etp-search-volume-study@shield.mozilla.org.xpi [2019-07-20]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-10-09] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-03-29] (BattlEye Innovations e.K. -> )
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth Filter ONLY\BTDevMgr.exe [125144 2016-02-15] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11345992 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2019-02-01] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 esifsvc; C:\WINDOWS\SysWOW64\esif_uf.exe [1392792 2015-11-09] (Intel(R) Software -> Intel Corporation)
R2 FBAgent; C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\FBAgent.exe [73032 2014-08-13] (FarStone Technology -> )
S2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 ICEsoundService; C:\WINDOWS\system32\ICEsoundService64.exe [806344 2018-11-01] (ICEpower a/s -> ICEpower)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Trusted Connect Service -> Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-05-25] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
S2 Kingsoft_WPS_UpdateService; C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\wtoolex\wpsupdatesvr.exe [133376 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
R2 MEmusvc; C:\Program Files\Microvirt\MEmu\MemuService.exe [269480 2017-05-26] (Microvirt Software Technology Co., Ltd. -> Microvirt Software Technology Co. Ltd.)
S3 mracsvc; C:\WINDOWS\System32\mracsvc.exe [16340752 2019-03-16] (Mail.Ru LLC -> LLC Mail.Ru)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2298688 2019-02-19] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3171144 2019-02-19] (Electronic Arts, Inc. -> Electronic Arts)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2015-09-23] (CyberLink Corp. -> CyberLink)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [324168 2018-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer -> TeamViewer GmbH)
R2 Tran_Process_Proc; C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\DCNTranProc.exe [71024 2014-03-25] (Farstone Technology Inc -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 wpscloudsvr; C:\Program Files (x86)\Kingsoft\WPS Office\wpscloudsvr.exe [162048 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiCharger; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [22656 2016-02-23] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
R2 ASMMAP64; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [18048 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUS)
R3 AsusHFilter; C:\WINDOWS\System32\drivers\AsusHFilter.sys [30200 2016-12-22] (ASUSTeK Computer Inc. -> )
R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37616 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [204824 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [209552 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [65120 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2019-10-07] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [276952 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42736 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [161544 2019-11-05] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110320 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83792 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848432 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460448 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [236024 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316528 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [55784 2015-11-09] (Intel(R) Software -> Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [52200 2015-11-09] (Intel(R) Software -> Intel Corporation)
R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [260072 2015-11-09] (Intel(R) Software -> Intel Corporation)
S3 farmntio; C:\Windows\system32\drivers\farmntio.sys [25144 2014-03-25] (FarStone Technology -> ) [File not signed]
S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2018-05-30] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32680 2019-08-07] (ASUSTek Computer Inc. -> ASUS)
R2 memudrv; C:\Program Files\Microvirt\MEmuHyperv\MEmuDrv.sys [260368 2015-11-02] (上海迈微软件科技有限公司 -> Microvirt Corporation)
S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv.sys [15553520 2019-03-16] (Mail.Ru LLC -> LLC Mail.Ru)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvam.inf_amd64_9b1341e92276ee7c\nvlddmkm.sys [17213616 2018-10-14] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [937728 2016-05-17] (Realtek Semiconductor Corp -> Realtek )
R3 RtkBtFilter; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [758352 2018-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RTWlanE02; C:\WINDOWS\System32\drivers\rtwlane02.sys [9599440 2018-12-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-08 18:00 - 2019-12-08 18:04 - 000037750 _____ C:\Users\Filip Marčík\Desktop\FRST.txt
2019-12-08 17:46 - 2019-12-08 17:46 - 002263552 _____ (Farbar) C:\Users\Filip Marčík\Desktop\FRST64.exe
2019-12-08 11:45 - 2019-12-08 11:45 - 000005693 ___RH C:\farstone_pe.letter
2019-12-06 10:05 - 2019-12-06 10:05 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-12-06 09:59 - 2019-12-06 09:59 - 000000020 ___SH C:\Users\Filip Marčík\ntuser.ini
2019-12-05 22:39 - 2019-12-08 11:47 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2019-12-05 22:39 - 2019-12-08 11:42 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-12-05 22:39 - 2019-12-05 22:40 - 000003458 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003428 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{FA29C794-20E0-4B41-8806-7050159DAA5C}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003414 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{6DF17297-FF54-4FA5-8BDD-D9904FF837A2}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003236 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003178 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2019-12-05 22:39 - 2019-12-05 22:40 - 000003088 _____ C:\WINDOWS\system32\Tasks\WpsExternal_20161114022915
2019-12-05 22:39 - 2019-12-05 22:40 - 000003044 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000002922 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1006
2019-12-05 22:39 - 2019-12-05 22:40 - 000002920 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1005
2019-12-05 22:39 - 2019-12-05 22:40 - 000002890 _____ C:\WINDOWS\system32\Tasks\ASUS Live Update1
2019-12-05 22:39 - 2019-12-05 22:40 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1001
2019-12-05 22:39 - 2019-12-05 22:39 - 000003330 _____ C:\WINDOWS\system32\Tasks\WpsKtpcntrQingTask_Administrator
2019-12-05 22:39 - 2019-12-05 22:39 - 000003028 _____ C:\WINDOWS\system32\Tasks\Update Checker
2019-12-05 22:39 - 2019-12-05 22:39 - 000003016 _____ C:\WINDOWS\system32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002984 _____ C:\WINDOWS\system32\Tasks\ATK Package 36D18D69AFC3
2019-12-05 22:39 - 2019-12-05 22:39 - 000002974 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002898 _____ C:\WINDOWS\system32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002880 _____ C:\WINDOWS\system32\Tasks\ASUS Live Update2
2019-12-05 22:39 - 2019-12-05 22:39 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1003
2019-12-05 22:39 - 2019-12-05 22:39 - 000002846 _____ C:\WINDOWS\system32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002804 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002626 _____ C:\WINDOWS\system32\Tasks\Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002406 _____ C:\WINDOWS\system32\Tasks\RtHDVBg_ListenToDevice
2019-12-05 22:39 - 2019-12-05 22:39 - 000002400 _____ C:\WINDOWS\system32\Tasks\ASUS USB Charger Plus
2019-12-05 22:39 - 2019-12-05 22:39 - 000002340 _____ C:\WINDOWS\system32\Tasks\RTKCPL
2019-12-05 22:39 - 2019-12-05 22:39 - 000002274 _____ C:\WINDOWS\system32\Tasks\ATK Package A22126881260
2019-12-05 22:39 - 2019-12-05 22:39 - 000002274 _____ C:\WINDOWS\system32\Tasks\ASUS Splendid ACMON
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Family
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\ASUSTek Computer Inc
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\ASUS
2019-12-05 22:35 - 2019-12-05 22:39 - 000019053 _____ C:\WINDOWS\diagwrn.xml
2019-12-05 22:35 - 2019-12-05 22:39 - 000019053 _____ C:\WINDOWS\diagerr.xml
2019-12-05 22:21 - 2019-12-08 11:49 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-12-05 22:01 - 2019-12-08 11:50 - 000000000 ____D C:\Users\Filip Marčík
2019-12-05 22:01 - 2019-12-05 22:22 - 000000000 ____D C:\Users\Táta2
2019-12-05 22:01 - 2019-12-05 22:22 - 000000000 ____D C:\Users\Maminka
2019-12-05 22:01 - 2019-12-05 22:18 - 000000000 ____D C:\Users\Ivuška
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Táta2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Ivuška\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 21:58 - 2019-12-05 21:58 - 000000000 ____D C:\ProgramData\USOShared
2019-12-05 21:58 - 2016-11-30 07:36 - 000113672 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2019-12-05 21:58 - 2016-11-30 07:36 - 000104456 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2019-12-05 21:57 - 2019-06-12 02:29 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-12-05 21:53 - 2019-12-08 17:40 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-12-05 21:53 - 2019-12-05 22:12 - 000434856 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-12-05 21:52 - 2019-12-05 22:41 - 000000000 ____D C:\Windows.old
2019-12-05 21:44 - 2019-12-05 21:52 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-12-05 21:41 - 2019-12-05 21:43 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-12-05 21:41 - 2019-12-05 21:41 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files\MSBuild
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-12-05 21:37 - 2019-03-01 17:31 - 001166488 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-12-05 21:37 - 2019-03-01 17:31 - 000124568 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-12-05 21:37 - 2019-03-01 17:31 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2019-12-05 21:37 - 2019-02-05 18:41 - 000778912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2019-12-05 21:37 - 2019-02-05 18:41 - 000103072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-12-05 21:37 - 2019-02-05 18:41 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2019-12-05 21:31 - 2019-12-05 21:31 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-12-05 21:31 - 2019-12-05 21:31 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-12-05 17:45 - 2019-12-06 09:59 - 000000000 ___DC C:\WINDOWS\Panther
2019-12-05 17:18 - 2019-12-05 17:35 - 000000000 ___HD C:\$GetCurrent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-08 18:02 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-12-08 18:02 - 2018-02-20 20:34 - 000000000 ____D C:\FRST
2019-12-08 18:00 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-12-08 17:55 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2019-12-08 12:24 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-12-08 12:21 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-12-08 12:18 - 2017-07-10 17:03 - 000000000 ____D C:\Program Files\Microsoft Office
2019-12-08 12:07 - 2017-12-25 09:10 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\Packages
2019-12-08 12:06 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-12-08 12:06 - 2019-03-15 17:19 - 000000000 ____D C:\ProgramData\Packages
2019-12-08 11:58 - 2017-12-25 03:29 - 000000000 ____D C:\Program Files\rempl
2019-12-08 11:56 - 2019-03-12 22:57 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\LogMeIn Hamachi
2019-12-08 11:56 - 2018-07-21 15:37 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\AVAST Software
2019-12-08 11:54 - 2019-03-15 21:27 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\GameCenter
2019-12-08 11:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\appcompat
2019-12-08 11:50 - 2017-12-24 23:05 - 000000000 __SHD C:\Users\Filip Marčík\IntelGraphicsProfiles
2019-12-08 11:50 - 2017-07-10 16:43 - 000000000 ____D C:\ProgramData\NVIDIA
2019-12-08 11:49 - 2019-03-19 12:55 - 000719454 _____ C:\WINDOWS\system32\perfh005.dat
2019-12-08 11:49 - 2019-03-19 12:55 - 000145482 _____ C:\WINDOWS\system32\perfc005.dat
2019-12-06 10:00 - 2017-12-25 09:32 - 000000000 ___RD C:\Users\Filip Marčík\3D Objects
2019-12-06 10:00 - 2017-07-10 16:28 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-12-06 09:59 - 2017-12-25 09:31 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\ConnectedDevicesPlatform
2019-12-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\USOPrivate
2019-12-05 22:40 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows NT
2019-12-05 22:40 - 2019-03-19 05:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-12-05 22:39 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-12-05 22:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Registration
2019-12-05 22:26 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-12-05 22:24 - 2017-12-25 09:24 - 000023020 _____ C:\WINDOWS\system32\emptyregdb.dat
2019-12-05 22:23 - 2017-07-10 16:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
2019-12-05 22:08 - 2019-10-09 13:45 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fraps
2019-12-05 22:08 - 2019-03-19 05:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-12-05 22:08 - 2019-03-15 21:27 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games
2019-12-05 22:08 - 2019-01-30 19:56 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net
2019-12-05 22:08 - 2018-01-06 20:26 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEmu
2019-12-05 22:08 - 2017-12-25 10:55 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks
2019-12-05 22:08 - 2017-12-24 23:20 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-12-05 22:07 - 2017-12-25 17:59 - 000000000 ____D C:\Users\Maminka\AppData\Local\Packages
2019-12-05 22:06 - 2018-01-29 21:33 - 000000000 ____D C:\Users\Táta2\AppData\Local\Packages
2019-12-05 22:03 - 2017-12-25 11:34 - 000000000 ____D C:\Users\Ivuška\AppData\Local\Packages
2019-12-05 22:00 - 2019-03-12 22:56 - 000000000 ____D C:\WINDOWS\system32\DAX3
2019-12-05 22:00 - 2017-07-10 16:46 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-12-05 22:00 - 2017-07-10 16:46 - 000000000 ____D C:\WINDOWS\system32\DAX2
2019-12-05 21:59 - 2017-07-10 16:47 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2019-12-05 21:58 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ServiceState
2019-12-05 21:58 - 2017-07-10 16:42 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-12-05 21:52 - 2019-04-06 10:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 __RHD C:\Users\Public\Libraries
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\spool
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Help
2019-12-05 21:52 - 2019-03-19 05:49 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2019-12-05 21:52 - 2019-02-20 19:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends
2019-12-05 21:52 - 2019-01-07 14:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Family
2019-12-05 21:52 - 2018-10-23 17:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-12-05 21:52 - 2018-10-04 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2019-12-05 21:52 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-12-05 21:52 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2019-12-05 21:52 - 2018-01-07 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2019-12-05 21:52 - 2017-12-25 09:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-12-05 21:52 - 2017-12-25 03:29 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-12-05 21:52 - 2017-12-25 03:21 - 000000000 ____D C:\Program Files\UNP
2019-12-05 21:52 - 2017-12-24 23:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-12-05 21:52 - 2017-12-24 23:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2019-12-05 21:52 - 2017-12-24 23:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office 2016
2019-12-05 21:52 - 2017-07-10 16:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2019-12-05 21:52 - 2017-07-10 16:39 - 000000000 ____D C:\Program Files (x86)\Intel
2019-12-05 21:52 - 2017-07-10 16:32 - 000000000 ____D C:\Program Files\Intel
2019-12-05 21:52 - 2016-11-14 03:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WPS Office
2019-12-05 21:51 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\InfusedApps
2019-12-05 21:45 - 2019-07-21 18:59 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-12-05 21:45 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2019-12-05 21:45 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-12-05 21:44 - 2019-07-25 13:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS
2019-12-05 21:44 - 2019-06-16 18:46 - 000000000 ____D C:\WINDOWS\Firmware
2019-12-05 21:44 - 2019-03-19 12:57 - 000000000 ____D C:\WINDOWS\OCR
2019-12-05 21:44 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Resources
2019-12-05 21:44 - 2018-08-25 16:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2019-12-05 21:44 - 2018-02-22 19:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue
2019-12-05 21:44 - 2017-07-10 17:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FarStone
2019-12-05 21:44 - 2017-07-10 16:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ICEpower
2019-12-05 21:44 - 2017-07-10 16:46 - 000000000 ____D C:\Program Files\Realtek
2019-12-05 21:38 - 2019-03-19 05:58 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2019-12-05 21:38 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2019-12-05 21:38 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\MUI
2019-12-05 21:36 - 2019-03-19 05:56 - 000000000 ____D C:\WINDOWS\Setup
2019-12-05 17:44 - 2017-12-24 23:46 - 000000036 _____ C:\WINDOWS\progress.ini
2019-12-05 17:35 - 2019-10-20 18:59 - 000000000 ____D C:\Windows10Upgrade
2019-11-26 20:42 - 2019-07-22 21:21 - 000000000 ____D C:\Users\Filip Marčík\Desktop\parkour videa sestříhané
2019-11-25 18:00 - 2017-12-25 03:29 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-11-25 17:41 - 2017-12-24 23:11 - 000000000 ___RD C:\Users\Filip Marčík\OneDrive
2019-11-25 17:39 - 2018-08-06 17:12 - 000000000 ____D C:\Users\Ivuška\AppData\Local\AVAST Software
2019-11-25 17:37 - 2019-03-12 22:57 - 000000000 ____D C:\Users\Ivuška\AppData\Local\LogMeIn Hamachi
2019-11-25 17:34 - 2017-12-25 11:34 - 000000000 __SHD C:\Users\Ivuška\IntelGraphicsProfiles
2019-11-22 19:47 - 2017-12-27 19:14 - 000000000 ___RD C:\Users\Ivuška\OneDrive
2019-11-21 19:08 - 2017-12-27 19:45 - 000000000 ____D C:\Users\Ivuška\AppData\Local\PlaceholderTileLogoFolder
2019-11-20 14:11 - 2018-01-26 08:36 - 000000000 ____D C:\Users\Ivuška\Desktop\Nová složka
2019-11-18 14:58 - 2017-12-25 11:42 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\PlaceholderTileLogoFolder
2019-11-16 21:12 - 2019-07-25 13:44 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Sony
==================== Files in the root of some directories ========
2017-12-24 23:08 - 2018-03-18 14:51 - 000000206 _____ () C:\Users\Filip Marčík\AppData\Roaming\sp_data.sys
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
A ještě Addition.txt:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-12-2019
Ran by Filip Marčík (administrator) on DESKTOP-KQGVJSN (ASUSTeK COMPUTER INC. X541UV) (08-12-2019 18:00:38)
Running from C:\Users\Filip Marčík\Desktop
Loaded Profiles: Filip Marčík & Ivuška & Maminka & Táta2 (Available Profiles: Filip Marčík & Ivuška & Maminka & Táta2)
Platform: Windows 10 Home Version 1903 18362.175 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc. -> ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(CyberLink Corp. -> CyberLink) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\UnrealCEFSubProcess.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(FarStone Technology -> ) C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\FBAgent.exe
(Farstone Technology Inc -> ) C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\DCNTranProc.exe
(ICEpower a/s -> ICEpower) C:\Windows\System32\ICEsoundService64.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxEM.exe
(Intel(R) Software -> Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Intel(R) Software -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Mail.Ru, LLC -> ) C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe
(Mail.Ru, LLC -> ) C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe
(McAfee, LLC -> McAfee, LLC.) C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\McClnUI.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Filip Marčík\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe
(Microvirt Software Technology Co., Ltd. -> Microvirt Software Technology Co. Ltd.) C:\Program Files\Microvirt\MEmu\MemuService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\Realtek Bluetooth Filter ONLY\BTDevMgr.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(TeamViewer -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [World of Tanks] => C:\Games\World_of_Tanks\WargamingGameUpdater.exe [3139936 2018-06-25] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [36058000 2019-12-05] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2541944 2019-05-18] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\...\Run: [GameCenter] => C:\Users\Filip Marčík\AppData\Local\GameCenter\GameCenter.exe [10395776 2019-12-05] (Mail.Ru, LLC -> )
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0BB81A9F-3476-4C0B-9E3F-B34A6A824BAF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155472 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {0BBB64D3-9EF8-412D-9FBA-14C35FB62408} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2108216 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {14F7D6E3-5BE4-42FE-AC8C-390B7BB7DC77} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
Task: {19849B53-BCBD-445E-9F63-587846EC063A} - System32\Tasks\WpsKtpcntrQingTask_Administrator => C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\office6\ktpcntr.exe [1531136 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
Task: {204F16B9-8C89-4CB1-A4DF-3A4C9345E5F8} - System32\Tasks\Norton Family\Norton Family Error Analyzer => C:\Program Files (x86)\Norton Family\Engine\3.7.2.37\SymErr.exe
Task: {257D01DE-5354-4A0A-9945-5317D961229C} - System32\Tasks\McAfee Cleanup => C:\Users\Filip Marčík\AppData\Local\Temp\MCPR\mccleanup.exe [688896 2019-06-21] (McAfee, LLC -> McAfee, LLC.) <==== ATTENTION
Task: {2EBFE872-9459-494E-B78C-4369DC2AB788} - System32\Tasks\ASUSTek Computer Inc\ASUS GIFTBOX => C:\Program Files (x86)\ASUS\Giftbox\asusgiftbox.exe [1049608 2017-07-03] (ASUSTek Computer Inc. -> ASUSTek Computer Inc)
Task: {300C6C10-4734-4CD5-95E8-E94E560C9849} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {32BC4421-6F4A-42FE-BE4C-C39108A01BA7} - System32\Tasks\Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
Task: {34A84272-39A2-41E1-9728-B89A3854AE2C} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {376D87BA-CBA8-4B7F-9E5A-AD73951CAD31} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {3BD92534-B9A6-4C7F-A41C-5A1D199A478A} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18391104 2018-11-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {3C64CF9A-8190-488F-9A72-5AC008C28D7D} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3FEB29A4-0018-48BE-B031-158541A69766} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {54D45970-EDEC-4E81-AC8D-F954ACEC1D93} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19786024 2016-02-23] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
Task: {60EFC32D-BFD4-4BAD-886F-00F65DEA2ECE} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2089864 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {684DEB0C-1C4E-422A-BECE-BC9B8BB1E0F1} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1873288 2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
Task: {75DE6A22-4176-4165-BA9E-DB57516581F2} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [964544 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {78607855-4EC6-461B-B1A5-C832A5D86591} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [521152 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8131B922-E991-4A0D-9F43-6748501A8CAF} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [54784 2016-02-23] (ASUS) [File not signed]
Task: {969168FC-E07E-4CE0-855A-42993B079FE4} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9DD74553-8723-4F08-B8B2-F7BC6E5C60BA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155472 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {A3DCAB9C-FCE4-4747-B8CD-A9AD5D709BDF} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920 2016-08-01] () [File not signed]
Task: {A8EC45D1-1C10-4387-9DF3-3F6F7809A2CF} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AEAEED82-C8E1-488B-9546-D9A57F1A3922} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506368 2018-11-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {B7C730AA-2DAA-48A5-BD4E-BA1147DE7E2B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671304 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {BA741588-964C-496A-9ECF-9FDFC1621F33} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C1669F19-7766-43B9-B9AA-561024F27020} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1864640 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CD426258-6747-4F25-864A-53587E6FFD45} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [855352 2016-02-19] (Intel(R) Trusted Connect Service -> Intel(R) Corporation)
Task: {D81FF288-7101-479D-A50C-96F80DAFDC0C} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [1578784 2016-07-07] (ASUSTeK Computer Inc. -> ASUSTek COMPUTER INC.) [File not signed]
Task: {D900DB63-0952-42F4-97BC-692BC77054A4} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671304 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {EE77944F-6D67-46D9-ADAE-85815B17BA8E} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2108216 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {F1BF6F52-19A1-4349-A55B-CB0E78E8B23A} - System32\Tasks\WpsExternal_20161114022915 => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe [516352 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
Task: {F29D077F-90FA-4679-918C-D7DF210DB314} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\WpsExternal_20161114022915.job => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe
Task: C:\WINDOWS\Tasks\WpsKtpcntrQingTask_Administrator.job => C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\office6\ktpcntr.exeÃqing 10.1.0.5644 xxx server_url=hxxp:/kdl1.cache.wps.com/ksodl/wpscfg/client/____client____html____service____bubble.html ic_server_url=hxxp:/info.kingsoftstore.com/wpsv6internet/infos.ads
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 79.98.72.27 79.98.72.2 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{99b5710c-532b-4064-baaf-32772c54e8ac}: [DhcpNameServer] 79.98.72.27 79.98.72.2 8.8.8.8 8.8.4.4
Internet Explorer:
==================
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=12454
HKU\S-1-5-21-3901295729-2401866428-3015012624-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=12454
HKU\S-1-5-21-3901295729-2401866428-3015012624-1006\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {14DD4B29-F85C-4E4D-9290-D918524CB5E9} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {2FC69E8C-0341-4C3C-8608-8BC9958EF123} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {338AF512-D204-4F80-847C-B584505FF384} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {5838E27F-69CA-4CA2-853B-53134D0747AF} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {8899093F-0B7F-43B6-927E-207720247146} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {9978FF19-82D2-4813-95F0-A1077953835B} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {CE14CFCD-4A18-4D72-ADE4-CDF15A2F3D79} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {D0D20547-4FF5-4A48-B76A-1793701A52E7} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> {E330D925-E44D-4F6C-8044-7A58E81FA508} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {00DD2D4B-31C4-417B-A172-6AEC47F4F72B} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {047BA285-75FC-46E6-BB34-FA179AEFC37A} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {14AD75BB-74D3-4B73-BC63-1B1E7FD5BE86} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {269574AE-999C-4280-B185-BA429AE23E3D} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {63BBBA5D-C0C6-4250-A25E-F5217BF81B11} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {C6AE4BD5-A94F-44B2-8373-BEB6F86AF81C} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {CD189DE3-9C6A-46A5-8CF2-0ACEF22912F1} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {D11F5AD1-C934-4AD6-A93A-89130ECC85A5} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3901295729-2401866428-3015012624-1006 -> {E671AA39-F7B6-4665-A5C1-2A804F37D625} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\ssv.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\jp2ssv.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Edge:
======
Edge Notifications: HKU\S-1-5-21-3901295729-2401866428-3015012624-1001 -> hxxps://www.youtube.com
FireFox:
========
FF DefaultProfile: df7kmm00.default
FF ProfilePath: C:\Users\Filip Marčík\AppData\Roaming\Mozilla\Firefox\Profiles\df7kmm00.default [2019-07-25]
FF Extension: (ETP Search Volume Study) - C:\Users\Filip Marčík\AppData\Roaming\Mozilla\Firefox\Profiles\df7kmm00.default\Extensions\etp-search-volume-study@shield.mozilla.org.xpi [2019-07-20]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-10-09] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-03-29] (BattlEye Innovations e.K. -> )
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth Filter ONLY\BTDevMgr.exe [125144 2016-02-15] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11345992 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2019-02-01] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 esifsvc; C:\WINDOWS\SysWOW64\esif_uf.exe [1392792 2015-11-09] (Intel(R) Software -> Intel Corporation)
R2 FBAgent; C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\FBAgent.exe [73032 2014-08-13] (FarStone Technology -> )
S2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 ICEsoundService; C:\WINDOWS\system32\ICEsoundService64.exe [806344 2018-11-01] (ICEpower a/s -> ICEpower)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Trusted Connect Service -> Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-05-25] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
S2 Kingsoft_WPS_UpdateService; C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\wtoolex\wpsupdatesvr.exe [133376 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
R2 MEmusvc; C:\Program Files\Microvirt\MEmu\MemuService.exe [269480 2017-05-26] (Microvirt Software Technology Co., Ltd. -> Microvirt Software Technology Co. Ltd.)
S3 mracsvc; C:\WINDOWS\System32\mracsvc.exe [16340752 2019-03-16] (Mail.Ru LLC -> LLC Mail.Ru)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2298688 2019-02-19] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3171144 2019-02-19] (Electronic Arts, Inc. -> Electronic Arts)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2015-09-23] (CyberLink Corp. -> CyberLink)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [324168 2018-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer -> TeamViewer GmbH)
R2 Tran_Process_Proc; C:\Program Files (x86)\FarStone\TotalRecovery Pro\EFB\DCNTranProc.exe [71024 2014-03-25] (Farstone Technology Inc -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 wpscloudsvr; C:\Program Files (x86)\Kingsoft\WPS Office\wpscloudsvr.exe [162048 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiCharger; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [22656 2016-02-23] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
R2 ASMMAP64; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [18048 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUS)
R3 AsusHFilter; C:\WINDOWS\System32\drivers\AsusHFilter.sys [30200 2016-12-22] (ASUSTeK Computer Inc. -> )
R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37616 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [204824 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [209552 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [65120 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2019-10-07] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [276952 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42736 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [161544 2019-11-05] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110320 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83792 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848432 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460448 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [236024 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316528 2019-10-07] (AVAST Software s.r.o. -> AVAST Software)
R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [55784 2015-11-09] (Intel(R) Software -> Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [52200 2015-11-09] (Intel(R) Software -> Intel Corporation)
R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [260072 2015-11-09] (Intel(R) Software -> Intel Corporation)
S3 farmntio; C:\Windows\system32\drivers\farmntio.sys [25144 2014-03-25] (FarStone Technology -> ) [File not signed]
S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2018-05-30] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32680 2019-08-07] (ASUSTek Computer Inc. -> ASUS)
R2 memudrv; C:\Program Files\Microvirt\MEmuHyperv\MEmuDrv.sys [260368 2015-11-02] (上海迈微软件科技有限公司 -> Microvirt Corporation)
S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv.sys [15553520 2019-03-16] (Mail.Ru LLC -> LLC Mail.Ru)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvam.inf_amd64_9b1341e92276ee7c\nvlddmkm.sys [17213616 2018-10-14] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [937728 2016-05-17] (Realtek Semiconductor Corp -> Realtek )
R3 RtkBtFilter; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [758352 2018-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RTWlanE02; C:\WINDOWS\System32\drivers\rtwlane02.sys [9599440 2018-12-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-08 18:00 - 2019-12-08 18:04 - 000037750 _____ C:\Users\Filip Marčík\Desktop\FRST.txt
2019-12-08 17:46 - 2019-12-08 17:46 - 002263552 _____ (Farbar) C:\Users\Filip Marčík\Desktop\FRST64.exe
2019-12-08 11:45 - 2019-12-08 11:45 - 000005693 ___RH C:\farstone_pe.letter
2019-12-06 10:05 - 2019-12-06 10:05 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-12-06 09:59 - 2019-12-06 09:59 - 000000020 ___SH C:\Users\Filip Marčík\ntuser.ini
2019-12-05 22:39 - 2019-12-08 11:47 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2019-12-05 22:39 - 2019-12-08 11:42 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-12-05 22:39 - 2019-12-05 22:40 - 000003458 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003428 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{FA29C794-20E0-4B41-8806-7050159DAA5C}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003414 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{6DF17297-FF54-4FA5-8BDD-D9904FF837A2}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003236 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000003178 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2019-12-05 22:39 - 2019-12-05 22:40 - 000003088 _____ C:\WINDOWS\system32\Tasks\WpsExternal_20161114022915
2019-12-05 22:39 - 2019-12-05 22:40 - 000003044 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:40 - 000002922 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1006
2019-12-05 22:39 - 2019-12-05 22:40 - 000002920 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1005
2019-12-05 22:39 - 2019-12-05 22:40 - 000002890 _____ C:\WINDOWS\system32\Tasks\ASUS Live Update1
2019-12-05 22:39 - 2019-12-05 22:40 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1001
2019-12-05 22:39 - 2019-12-05 22:39 - 000003330 _____ C:\WINDOWS\system32\Tasks\WpsKtpcntrQingTask_Administrator
2019-12-05 22:39 - 2019-12-05 22:39 - 000003028 _____ C:\WINDOWS\system32\Tasks\Update Checker
2019-12-05 22:39 - 2019-12-05 22:39 - 000003016 _____ C:\WINDOWS\system32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002984 _____ C:\WINDOWS\system32\Tasks\ATK Package 36D18D69AFC3
2019-12-05 22:39 - 2019-12-05 22:39 - 000002974 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002898 _____ C:\WINDOWS\system32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002880 _____ C:\WINDOWS\system32\Tasks\ASUS Live Update2
2019-12-05 22:39 - 2019-12-05 22:39 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3901295729-2401866428-3015012624-1003
2019-12-05 22:39 - 2019-12-05 22:39 - 000002846 _____ C:\WINDOWS\system32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002804 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002626 _____ C:\WINDOWS\system32\Tasks\Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-05 22:39 - 2019-12-05 22:39 - 000002406 _____ C:\WINDOWS\system32\Tasks\RtHDVBg_ListenToDevice
2019-12-05 22:39 - 2019-12-05 22:39 - 000002400 _____ C:\WINDOWS\system32\Tasks\ASUS USB Charger Plus
2019-12-05 22:39 - 2019-12-05 22:39 - 000002340 _____ C:\WINDOWS\system32\Tasks\RTKCPL
2019-12-05 22:39 - 2019-12-05 22:39 - 000002274 _____ C:\WINDOWS\system32\Tasks\ATK Package A22126881260
2019-12-05 22:39 - 2019-12-05 22:39 - 000002274 _____ C:\WINDOWS\system32\Tasks\ASUS Splendid ACMON
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Family
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\ASUSTek Computer Inc
2019-12-05 22:39 - 2019-12-05 22:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\ASUS
2019-12-05 22:35 - 2019-12-05 22:39 - 000019053 _____ C:\WINDOWS\diagwrn.xml
2019-12-05 22:35 - 2019-12-05 22:39 - 000019053 _____ C:\WINDOWS\diagerr.xml
2019-12-05 22:21 - 2019-12-08 11:49 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-12-05 22:01 - 2019-12-08 11:50 - 000000000 ____D C:\Users\Filip Marčík
2019-12-05 22:01 - 2019-12-05 22:22 - 000000000 ____D C:\Users\Táta2
2019-12-05 22:01 - 2019-12-05 22:22 - 000000000 ____D C:\Users\Maminka
2019-12-05 22:01 - 2019-12-05 22:18 - 000000000 ____D C:\Users\Ivuška
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Táta2\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Maminka\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Ivuška\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Šablony
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Soubory cookie
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Poslední
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Okolní tiskárny
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Okolní síť
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Nabídka Start
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Dokumenty
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Obrázky
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Hudba
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Documents\Filmy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\Data aplikací
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-12-05 22:01 - 2019-12-05 22:01 - 000000000 _SHDL C:\Users\Filip Marčík\AppData\Local\Data aplikací
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Táta2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Maminka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Ivuška\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 22:01 - 2019-03-19 05:46 - 000001105 _____ C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-12-05 21:58 - 2019-12-05 21:58 - 000000000 ____D C:\ProgramData\USOShared
2019-12-05 21:58 - 2016-11-30 07:36 - 000113672 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2019-12-05 21:58 - 2016-11-30 07:36 - 000104456 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2019-12-05 21:57 - 2019-06-12 02:29 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-12-05 21:53 - 2019-12-08 17:40 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-12-05 21:53 - 2019-12-05 22:12 - 000434856 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-12-05 21:52 - 2019-12-05 22:41 - 000000000 ____D C:\Windows.old
2019-12-05 21:44 - 2019-12-05 21:52 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-12-05 21:41 - 2019-12-05 21:43 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-12-05 21:41 - 2019-12-05 21:41 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files\MSBuild
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2019-12-05 21:38 - 2019-12-05 21:38 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-12-05 21:37 - 2019-03-01 17:31 - 001166488 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-12-05 21:37 - 2019-03-01 17:31 - 000124568 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-12-05 21:37 - 2019-03-01 17:31 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2019-12-05 21:37 - 2019-02-05 18:41 - 000778912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2019-12-05 21:37 - 2019-02-05 18:41 - 000103072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-12-05 21:37 - 2019-02-05 18:41 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2019-12-05 21:31 - 2019-12-05 21:31 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-12-05 21:31 - 2019-12-05 21:31 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-12-05 17:45 - 2019-12-06 09:59 - 000000000 ___DC C:\WINDOWS\Panther
2019-12-05 17:18 - 2019-12-05 17:35 - 000000000 ___HD C:\$GetCurrent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-08 18:02 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-12-08 18:02 - 2018-02-20 20:34 - 000000000 ____D C:\FRST
2019-12-08 18:00 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-12-08 17:55 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2019-12-08 12:24 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-12-08 12:21 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-12-08 12:18 - 2017-07-10 17:03 - 000000000 ____D C:\Program Files\Microsoft Office
2019-12-08 12:07 - 2017-12-25 09:10 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\Packages
2019-12-08 12:06 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-12-08 12:06 - 2019-03-15 17:19 - 000000000 ____D C:\ProgramData\Packages
2019-12-08 11:58 - 2017-12-25 03:29 - 000000000 ____D C:\Program Files\rempl
2019-12-08 11:56 - 2019-03-12 22:57 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\LogMeIn Hamachi
2019-12-08 11:56 - 2018-07-21 15:37 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\AVAST Software
2019-12-08 11:54 - 2019-03-15 21:27 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\GameCenter
2019-12-08 11:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\appcompat
2019-12-08 11:50 - 2017-12-24 23:05 - 000000000 __SHD C:\Users\Filip Marčík\IntelGraphicsProfiles
2019-12-08 11:50 - 2017-07-10 16:43 - 000000000 ____D C:\ProgramData\NVIDIA
2019-12-08 11:49 - 2019-03-19 12:55 - 000719454 _____ C:\WINDOWS\system32\perfh005.dat
2019-12-08 11:49 - 2019-03-19 12:55 - 000145482 _____ C:\WINDOWS\system32\perfc005.dat
2019-12-06 10:00 - 2017-12-25 09:32 - 000000000 ___RD C:\Users\Filip Marčík\3D Objects
2019-12-06 10:00 - 2017-07-10 16:28 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-12-06 09:59 - 2017-12-25 09:31 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\ConnectedDevicesPlatform
2019-12-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\USOPrivate
2019-12-05 22:40 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows NT
2019-12-05 22:40 - 2019-03-19 05:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-12-05 22:39 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-12-05 22:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Registration
2019-12-05 22:26 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-12-05 22:24 - 2017-12-25 09:24 - 000023020 _____ C:\WINDOWS\system32\emptyregdb.dat
2019-12-05 22:23 - 2017-07-10 16:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
2019-12-05 22:08 - 2019-10-09 13:45 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fraps
2019-12-05 22:08 - 2019-03-19 05:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-12-05 22:08 - 2019-03-15 21:27 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games
2019-12-05 22:08 - 2019-01-30 19:56 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net
2019-12-05 22:08 - 2018-01-06 20:26 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEmu
2019-12-05 22:08 - 2017-12-25 10:55 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks
2019-12-05 22:08 - 2017-12-24 23:20 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-12-05 22:07 - 2017-12-25 17:59 - 000000000 ____D C:\Users\Maminka\AppData\Local\Packages
2019-12-05 22:06 - 2018-01-29 21:33 - 000000000 ____D C:\Users\Táta2\AppData\Local\Packages
2019-12-05 22:03 - 2017-12-25 11:34 - 000000000 ____D C:\Users\Ivuška\AppData\Local\Packages
2019-12-05 22:00 - 2019-03-12 22:56 - 000000000 ____D C:\WINDOWS\system32\DAX3
2019-12-05 22:00 - 2017-07-10 16:46 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-12-05 22:00 - 2017-07-10 16:46 - 000000000 ____D C:\WINDOWS\system32\DAX2
2019-12-05 21:59 - 2017-07-10 16:47 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2019-12-05 21:58 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ServiceState
2019-12-05 21:58 - 2017-07-10 16:42 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-12-05 21:52 - 2019-04-06 10:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 __RHD C:\Users\Public\Libraries
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\spool
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-12-05 21:52 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Help
2019-12-05 21:52 - 2019-03-19 05:49 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2019-12-05 21:52 - 2019-02-20 19:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends
2019-12-05 21:52 - 2019-01-07 14:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Family
2019-12-05 21:52 - 2018-10-23 17:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-12-05 21:52 - 2018-10-04 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2019-12-05 21:52 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-12-05 21:52 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2019-12-05 21:52 - 2018-01-07 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2019-12-05 21:52 - 2017-12-25 09:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-12-05 21:52 - 2017-12-25 03:29 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-12-05 21:52 - 2017-12-25 03:21 - 000000000 ____D C:\Program Files\UNP
2019-12-05 21:52 - 2017-12-24 23:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-12-05 21:52 - 2017-12-24 23:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2019-12-05 21:52 - 2017-12-24 23:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office 2016
2019-12-05 21:52 - 2017-07-10 16:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2019-12-05 21:52 - 2017-07-10 16:39 - 000000000 ____D C:\Program Files (x86)\Intel
2019-12-05 21:52 - 2017-07-10 16:32 - 000000000 ____D C:\Program Files\Intel
2019-12-05 21:52 - 2016-11-14 03:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WPS Office
2019-12-05 21:51 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\InfusedApps
2019-12-05 21:45 - 2019-07-21 18:59 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-12-05 21:45 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2019-12-05 21:45 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-12-05 21:44 - 2019-07-25 13:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS
2019-12-05 21:44 - 2019-06-16 18:46 - 000000000 ____D C:\WINDOWS\Firmware
2019-12-05 21:44 - 2019-03-19 12:57 - 000000000 ____D C:\WINDOWS\OCR
2019-12-05 21:44 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Resources
2019-12-05 21:44 - 2018-08-25 16:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2019-12-05 21:44 - 2018-02-22 19:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue
2019-12-05 21:44 - 2017-07-10 17:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FarStone
2019-12-05 21:44 - 2017-07-10 16:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ICEpower
2019-12-05 21:44 - 2017-07-10 16:46 - 000000000 ____D C:\Program Files\Realtek
2019-12-05 21:38 - 2019-03-19 05:58 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2019-12-05 21:38 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2019-12-05 21:38 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\MUI
2019-12-05 21:36 - 2019-03-19 05:56 - 000000000 ____D C:\WINDOWS\Setup
2019-12-05 17:44 - 2017-12-24 23:46 - 000000036 _____ C:\WINDOWS\progress.ini
2019-12-05 17:35 - 2019-10-20 18:59 - 000000000 ____D C:\Windows10Upgrade
2019-11-26 20:42 - 2019-07-22 21:21 - 000000000 ____D C:\Users\Filip Marčík\Desktop\parkour videa sestříhané
2019-11-25 18:00 - 2017-12-25 03:29 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-11-25 17:41 - 2017-12-24 23:11 - 000000000 ___RD C:\Users\Filip Marčík\OneDrive
2019-11-25 17:39 - 2018-08-06 17:12 - 000000000 ____D C:\Users\Ivuška\AppData\Local\AVAST Software
2019-11-25 17:37 - 2019-03-12 22:57 - 000000000 ____D C:\Users\Ivuška\AppData\Local\LogMeIn Hamachi
2019-11-25 17:34 - 2017-12-25 11:34 - 000000000 __SHD C:\Users\Ivuška\IntelGraphicsProfiles
2019-11-22 19:47 - 2017-12-27 19:14 - 000000000 ___RD C:\Users\Ivuška\OneDrive
2019-11-21 19:08 - 2017-12-27 19:45 - 000000000 ____D C:\Users\Ivuška\AppData\Local\PlaceholderTileLogoFolder
2019-11-20 14:11 - 2018-01-26 08:36 - 000000000 ____D C:\Users\Ivuška\Desktop\Nová složka
2019-11-18 14:58 - 2017-12-25 11:42 - 000000000 ____D C:\Users\Filip Marčík\AppData\Local\PlaceholderTileLogoFolder
2019-11-16 21:12 - 2019-07-25 13:44 - 000000000 ____D C:\Users\Filip Marčík\AppData\Roaming\Sony
==================== Files in the root of some directories ========
2017-12-24 23:08 - 2018-03-18 14:51 - 000000206 _____ () C:\Users\Filip Marčík\AppData\Roaming\sp_data.sys
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================