Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zřejmě keylogger – klávesnice nedělá, co má

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
martinJmenoMe
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 28 čer 2018 11:16

Zřejmě keylogger – klávesnice nedělá, co má

#1 Příspěvek od martinJmenoMe »

Hezký den,
zřejmě se v mém notebooku objevil nějaký keylogger... Po určité době se zasekne klávesnice, a chová se zvláštně. Například nejde psát a v programech pracovat s klávesovými zkratkami; chová se, jako by byla přeprogramovaná (představte si, že máte zmáčknutou klávesu Windows a ta vše zablokuje – místo toho, když nějak chci napsat písmeno 'r' se spustí nástroj "Spustit", který se běžně vyvolá po zmáčknutí "Win+R").

Děkuji za pomoc s řešením a hodně štěstí do nového roku.

FRST zde, Addition v příloze

Kód: Vybrat vše

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-12-2019
Ran by Marti (administrator) on LAPTOP-M582K8LG (LENOVO 81FV) (29-12-2019 12:44:15)
Running from C:\Users\Marti\Desktop
Loaded Profiles: Marti (Available Profiles: Marti)
Platform: Windows 10 Home Version 1903 18362.535 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Adobe Systems Incorporated -> Adobe Systems, Incorporated) C:\Program Files\Adobe\Adobe Lightroom Classic CC\Helpers\DynamicLinkMediaServer\dynamiclinkmediaserver\1.0\dynamiclinkmediaserver.exe
(Adobe Systems Incorporated -> Adobe) C:\Program Files\Adobe\Adobe Lightroom Classic CC\Helpers\DynamicLinkMediaServer\dynamiclinkmediaserver\1.0\dynamiclinkmanager.exe
(Adobe Systems) [File not signed] C:\Program Files\Adobe\Adobe Lightroom Classic CC\Lightroom.exe
(Amazon Services LLC -> Amazon.com Inc.) C:\Users\Marti\AppData\Local\Amazon Drive\AmazonPhotos.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe
(Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\88.3.167\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\88.3.167\QtWebEngineProcess.exe
(Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler64.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\jhi_service.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_component.inf_amd64_0219cc1c7085a93f\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_component.inf_amd64_0219cc1c7085a93f\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch_base.inf_amd64_a5a132c6d8339491\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch_base.inf_amd64_a5a132c6d8339491\IntelCpHeciSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19081.22010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12228.20356.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12228.20356.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11912.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.36.6003.0_x64__8wekyb3d8bbwe\GameBar.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_2e7610b81d809f18\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_2e7610b81d809f18\Display.NvContainer\NVDisplay.Container.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Windscribe Limited -> Windscribe Limited) C:\Program Files (x86)\Windscribe\WindscribeService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [865568 2019-03-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2410968 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5011504 2019-12-02] (Adobe Inc. -> Adobe Systems Inc.)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1319208 2019-05-31] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6261760 2019-12-23] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [RadminVPN] => C:\Program Files (x86)\Radmin VPN\RvRvpnGui.exe [1805432 2019-11-20] (Famatech Corp. -> Famatech Corp.)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-3321410577-2413595115-2568922229-1001\...\Run: [Spotify] => C:\Users\Marti\AppData\Roaming\Spotify\Spotify.exe [21218720 2019-10-29] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3321410577-2413595115-2568922229-1001\...\Run: [Windscribe] => C:\Program Files (x86)\Windscribe\Windscribe.exe [10106544 2019-01-19] (Windscribe Limited -> Windscribe Limited)
HKU\S-1-5-21-3321410577-2413595115-2568922229-1001\...\Run: [ScreenRec] => C:\Users\Marti\AppData\Local\StreamingVideoProvider\ScreenRec_app\screenrec.exe [2063064 2019-11-11] (TeddySoft Ltd. -> StreamingVideoProvider)
HKU\S-1-5-21-3321410577-2413595115-2568922229-1001\...\Run: [Amazon Photos] => C:\Users\Marti\AppData\Local\Amazon Drive\AmazonPhotos.exe [9655976 2019-12-21] (Amazon Services LLC -> Amazon.com Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.88\Installer\chrmstp.exe [2019-12-19] (Google LLC -> Google LLC)
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ColorMunki Gamma.lnk [2019-10-04]
ShortcutTarget: ColorMunki Gamma.lnk -> C:\Program Files (x86)\X-Rite\ColorMunki Photo\Gamma\CalibrationLoader.exe (LOGO Kommunikations- und Drucktechnik GmbH & Co. KG) [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ColorMunkiPhotoTray.exe.lnk [2019-10-04]
ShortcutTarget: ColorMunkiPhotoTray.exe.lnk -> C:\Program Files (x86)\X-Rite\ColorMunki Photo\Tray\ColorMunki Photo Tray.exe (X-Rite Incorporated -> )
Startup: C:\Users\Marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Boom3D.lnk [2019-11-09]
ShortcutTarget: Boom3D.lnk -> C:\Program Files\Global Delight\Boom 3D\Boom3D.exe (No File)
Startup: C:\Users\Marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk [2019-10-29]
ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {10AF4CC0-154C-4E40-AAB5-296F31E63FAF} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1A0B7D55-EA26-41B9-9B75-CAC94B831874} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
Task: {1C44C149-6A03-4736-AA94-97B8A473B31C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-02] (Google Inc -> Google LLC)
Task: {1C7A1CC9-A696-4CA3-AFD8-EA4550BC1D4E} - \Lenovo\ImController\TimeBasedEvents\bf8e9fa9-a9be-41ed-aef3-7bb9a2753b31 -> No File <==== ATTENTION
Task: {26B6F42D-8EE2-4D03-B5EF-BEF0DC02EB6C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26042744 2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {2DE25E2A-BAF8-4CCE-BB64-797F23AE458B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6054816 2019-12-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {301EB317-0B1F-4117-9109-E9182D5B5E52} - System32\Tasks\LenovoUtility Startup => C:\Windows\explorer.exe lenovo-utility://
Task: {3159CA9C-6307-4B73-9D23-14173C5E93E9} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {340E0A71-18A5-4F0B-B92E-F83C4CCA373D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {3CE7C65D-852C-4303-8861-50ACC079AC1A} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [128856 2019-12-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {4B2CC6E3-1910-457A-9A92-C96C400BF36E} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent => {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} "C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe"
Task: {4E8DAD6E-9E6A-47B3-B045-A84DA955F8DC} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5175C0D8-9EEF-4E0E-B47B-3626B8923E95} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-11-11] (Dropbox, Inc -> Dropbox, Inc.)
Task: {5432B4FC-0240-4093-9136-D6E49C8B7660} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26042744 2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {5514E115-1EE7-4D87-9022-0945A1329E61} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3310688 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {690B1996-6246-4A94-B2BE-99D15D2F7B4C} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6E8E3382-40B5-4201-9931-1D06C9E8804F} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {74B6C032-C11C-413B-ADB8-5AC0DF0DB1C2} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7874A0E0-D9F2-45F2-8900-5F12C419BA32} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-martin@outlook.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {7DACBA6E-D906-4778-82E9-EA5641560912} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {81308872-7475-4037-9C43-50D8EBA159C9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-02] (Google Inc -> Google LLC)
Task: {99459102-D878-466D-A0B8-0D554896070A} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
Task: {9BA25E2C-17CB-45CF-BC14-AA2A36FDE6A3} - System32\Tasks\EPSON L7160 Series Update {32B46DC0-2C85-450E-9321-90B882A6DF9C} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSR6E.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Task: {A37352F5-B1EE-4D42-80CA-2D4A4B83ABA5} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2146712 2019-12-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {A53BEA7D-A4BE-4AF2-95C5-AEFB65358301} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6054816 2019-12-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {AAC3A2FE-B224-488A-B902-B51B8D740D54} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B48393D5-601C-4604-AE8A-016F3A615031} - System32\Tasks\X-Rite Device Services Software Updater => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe [31656 2019-01-24] (X-Rite Incorporated -> X-Rite Inc.)
Task: {B6D12529-2778-4CF2-8654-6257284E0215} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-09-19] (AVAST Software s.r.o. -> AVAST Software)
Task: {BCDBFF9E-61A5-4E87-93EA-75D7EB049B30} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-11-11] (Dropbox, Inc -> Dropbox, Inc.)
Task: {C5393DE7-02CB-498D-81AB-88AC15FE90D8} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [128856 2019-12-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {CAFA4D29-3DE0-46B9-9236-B9ECA1194550} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1094024 2019-12-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {CE4FB9B6-85CD-4BF7-942B-C86CDF9BF75E} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2146712 2019-12-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {CEE6700F-51E9-422D-97E5-30B903B116E8} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\1.1.207\DADUpdater.exe
Task: {E82C1929-28F5-42FA-A9E3-ED1290FB06F1} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653864 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EAB9B681-4FD7-4E5E-8113-1463E7B2D152} - System32\Tasks\McAfee\McAfee Idle Detection Task => {ABCDCA3B-DE6B-5A7C-B132-6D7CBA63E5C5} "C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe"
Task: {F4F6AB78-F3EC-4398-992D-F1AB24A8CF5F} - System32\Tasks\McAfeeLogon => C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe
Task: {FD77DAA6-350D-400A-887D-0003A5857D05} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {FE5048A5-2921-43B8-AF9C-DDCAFC56DACF} - \Lenovo\ImController\TimeBasedEvents\7feb2e74-46b8-4375-9253-a4ef3698b845 -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\EPSON L7160 Series Update {32B46DC0-2C85-450E-9321-90B882A6DF9C}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSR6E.EXE:/EXE:{32B46DC0-2C85-450E-9321-90B882A6DF9C} /F:UpdateWORKGROUP\LAPTOP-M582K8LG$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\X-Rite Device Services Software Updater.job => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 10.100.100.1 10.100.100.6
Tcpip\..\Interfaces\{4116ca12-9794-4230-b9c1-44734f4c9197}: [DhcpNameServer] 192.168.1.1 10.100.100.1 10.100.100.6
Tcpip\..\Interfaces\{47af0c3b-3119-4b44-a29c-8ddd8802218a}: [DhcpNameServer] 8.8.8.8

Internet Explorer:
==================
HKU\S-1-5-21-3321410577-2413595115-2568922229-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
SearchScopes: HKU\S-1-5-21-3321410577-2413595115-2568922229-1001 -> DefaultScope {C582445E-6FB9-4A53-AC4D-729E4A8DB205} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2019-12-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-02-17] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-02-17] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-07-22] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2019-09-19] (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-02-17] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2019-10-04] (Sun Microsystems, Inc. -> Sun Microsystems, Inc.)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-02-17] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-02-17] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-02-17] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-07-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-18] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-07-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-18] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-07-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-18] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-07-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-18] (Microsoft Corporation -> Microsoft Corporation)

Edge: 
======
Edge Notifications: HKU\S-1-5-21-3321410577-2413595115-2568922229-1001 -> hxxps://www.messenger.com

FireFox:
========
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2019-05-02]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on
FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2019-11-14] [Legacy] [not signed]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-07-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-07-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-07-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-14] (Google LLC -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-14] (Google LLC -> Google LLC)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2019-12-02] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems)

Chrome: 
=======
CHR HomePage: Default -> hxxp://google.com/
CHR Notifications: Default -> hxxps://www.blabu.com
CHR Profile: C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default [2019-12-29]
CHR Extension: (Překladač Google) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2019-04-02]
CHR Extension: (Prezentace) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-04-02]
CHR Extension: (Honey) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2019-12-24]
CHR Extension: (Adblock na Youtube™) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2019-07-31]
CHR Extension: (Intelligence Search) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\dipfggodcibdmflidbceoaanadclgomm [2019-06-07]
CHR Extension: (Adobe Acrobat) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-09-30]
CHR Extension: (Muzli 2 - Stay Inspired) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\glcipcfhmopcgidicgdociohdoicpdfc [2019-11-07]
CHR Extension: (Eye Dropper) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmdcmlfkchdmnmnmheododdhjedfccka [2019-04-29]
CHR Extension: (Yarr, Pirate maps) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\jddbpdpkofboocpcdmfgjaglkgejhcoe [2019-04-02]
CHR Extension: (Webflow - Website Builder) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\kabncpcembkecekibfmamlbogjefdnae [2019-04-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-09-30]
CHR Extension: (Social Revealer) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmnnjcmpjlbbobehaikglfgpbjclcoeg [2019-10-22]
CHR Extension: (Friends Visual Map) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\ojnfeeadkmdfgjanophbgeldmfddoekd [2019-04-02]
CHR Extension: (Gmail) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-02]
CHR Extension: (Chrome Media Router) - C:\Users\Marti\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-17]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6259592 2019-12-19] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11156344 2019-12-05] (Microsoft Corporation -> Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-11-11] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-11-11] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44552 2019-12-23] (Dropbox, Inc -> Dropbox, Inc.)
R2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [398352 2018-06-21] (Dolby Laboratories, Inc. -> )
R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [145224 2019-09-18] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
R2 esifsvc; C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe [1643064 2018-05-26] (Intel Corporation -> Intel Corporation)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [305520 2018-05-30] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_e3f9b958faa255f1\lib\SocketHeciServer.exe [876304 2019-08-30] (Intel(R) Trust Services -> Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_e3f9b958faa255f1\lib\TPMProvisioningService.exe [806152 2019-08-30] (Intel(R) Trust Services -> Intel(R) Corporation)
R2 jhi_service; C:\WINDOWS\System32\jhi_service.exe [576560 2018-05-23] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
R2 RtkAudioUniversalService; C:\WINDOWS\System32\RtkAudUService64.exe [865568 2019-03-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
S2 RvControlSvc; C:\Program Files (x86)\Radmin VPN\RvControlSvc.exe [1067640 2019-11-20] (Famatech Corp. -> Famatech Corp.)
S3 sshd; C:\WINDOWS\System32\OpenSSH\sshd.exe [974848 2019-09-07] (Microsoft Windows -> )
S3 SshdBroker; C:\WINDOWS\System32\SshdBroker.dll [290816 2019-10-04] (Microsoft Windows -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12135768 2019-09-24] (TeamViewer GmbH -> TeamViewer GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\NisSrv.exe [2552416 2019-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MsMpEng.exe [108832 2019-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WindscribeService; C:\Program Files (x86)\Windscribe\WindscribeService.exe [493232 2019-01-19] (Windscribe Limited -> Windscribe Limited)
S2 xrdd.exe; C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe [91048 2019-01-24] (X-Rite Incorporated -> X-Rite Inc.)
S2 ImControllerService; "%SystemDrive%\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe" [X]
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvlti.inf_amd64_2e7610b81d809f18\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvlti.inf_amd64_2e7610b81d809f18\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37616 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [204824 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [209552 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [65120 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2019-10-02] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [276952 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42736 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [161544 2019-11-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110320 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83792 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848432 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460448 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [236024 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316528 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
S3 colormunki; C:\WINDOWS\System32\Drivers\colormunki_x64.sys [51600 2019-01-24] (USBIO Test -> Thesycon GmbH, Germany)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [135520 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [77224 2018-05-26] (Intel Corporation -> Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [70568 2018-05-26] (Intel Corporation -> Intel Corporation)
R3 esif_lf; C:\WINDOWS\System32\drivers\esif_lf.sys [399784 2018-05-26] (Intel Corporation -> Intel Corporation)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2018-10-22] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 ibtusb; C:\WINDOWS\System32\drivers\ibtusb.sys [199192 2018-05-15] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
S3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [496544 2018-01-31] (McAfee, Inc. -> McAfee LLC)
S3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [115104 2018-01-31] (McAfee, Inc. -> McAfee LLC)
R3 Netwtw06; C:\WINDOWS\System32\drivers\Netwtw06.sys [8810336 2018-05-23] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvlti.inf_amd64_2e7610b81d809f18\nvlddmkm.sys [22377560 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1024384 2018-04-29] (Realtek Semiconductor Corp. -> Realtek )
R3 RvNetMP60; C:\WINDOWS\System32\drivers\RvNetMP60.sys [69048 2019-08-16] (Famatech Corp. -> Famatech Corp.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166752 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [54896 2018-07-06] (Windscribe Limited -> The OpenVPN Project)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [47496 2019-08-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [344288 2019-08-05] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54496 2019-08-05] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-12-29 12:44 - 2019-12-29 12:44 - 000044229 _____ C:\Users\Marti\Desktop\FRST.txt
2019-12-28 18:24 - 2019-12-28 18:25 - 001385188 _____ C:\WINDOWS\Minidump\122819-22921-01.dmp
2019-12-27 14:05 - 2019-12-27 14:05 - 000014561 _____ C:\Users\Marti\Downloads\SLUŽBY ŠTUDLOV.xlsx
2019-12-25 19:24 - 2019-12-25 19:24 - 000000000 ____D C:\Users\Marti\Downloads\favicon_io
2019-12-25 19:23 - 2019-12-25 19:23 - 000059515 _____ C:\Users\Marti\Downloads\favicon_io.zip
2019-12-25 15:39 - 2019-12-25 15:41 - 000000000 ____D C:\Users\Marti\Desktop\InfiniteColorInstaller_PC
2019-12-25 15:38 - 2019-12-25 15:38 - 002428389 _____ C:\Users\Marti\Downloads\Pratik Naik - Retouching Photoshop Panels Collection.zip
2019-12-25 15:32 - 2019-12-25 15:32 - 000000000 ____D C:\Users\Marti\Downloads\InfiniteColorInstaller_PC_Rarpc.com
2019-12-25 15:13 - 2019-12-25 15:13 - 000000028 _____ C:\Users\Marti\AppData\Roaming\kulerdata.json
2019-12-25 14:24 - 2019-12-25 14:24 - 001004796 _____ C:\Users\Marti\Downloads\InfiniteColorInstaller_PC_Rarpc.com.zip
2019-12-24 10:17 - 2019-12-24 10:17 - 000081768 _____ C:\Users\Marti\Downloads\Oxygen.zip
2019-12-23 23:02 - 2019-12-25 20:37 - 000001056 _____ C:\Users\Marti\Desktop\Nový textový dokument.txt
2019-12-23 22:34 - 2019-12-23 22:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2019-12-23 10:48 - 2019-12-23 10:48 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
2019-12-23 10:48 - 2019-12-23 10:48 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
2019-12-23 10:48 - 2019-12-23 10:48 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
2019-12-23 10:48 - 2019-12-23 10:48 - 000044552 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2019-12-22 20:00 - 2019-12-22 20:00 - 000012719 _____ C:\Users\Marti\Downloads\[CzT]Jachyme_hod_ho_do_stroje_1974_CZ_.torrent
2019-12-21 22:48 - 2019-12-21 22:48 - 000131448 _____ C:\Users\Marti\Downloads\Livin_on_a_Prayer.pdf
2019-12-21 20:12 - 2019-12-21 20:12 - 000000000 ____D C:\Users\Marti\AppData\Local\Amazon Drive
2019-12-21 19:49 - 2019-12-21 19:49 - 000111734 _____ C:\Users\Marti\Downloads\Still_Loving_You_Scorpions.pdf
2019-12-21 19:04 - 2019-12-21 19:04 - 000110495 _____ C:\Users\Marti\Downloads\Ed_Sheeran_-_Happier.pdf
2019-12-21 18:59 - 2019-12-21 18:59 - 000080671 _____ C:\Users\Marti\Downloads\The_Final_Countdown_-_EUROPE.pdf
2019-12-21 18:57 - 2019-12-21 18:57 - 000130835 _____ C:\Users\Marti\Downloads\Dont_Stop_Believing_Piano.pdf
2019-12-21 18:56 - 2019-12-21 18:56 - 000175454 _____ C:\Users\Marti\Downloads\John_William_-_Jurassic_Park_Theme.pdf
2019-12-21 18:54 - 2019-12-21 18:54 - 000108491 _____ C:\Users\Marti\Downloads\Calum_Scott_-_You_Are_The_Reason_Instrumental_w_Vocals.pdf
2019-12-21 18:34 - 2019-12-21 18:34 - 000108432 _____ C:\Users\Marti\Downloads\Always_remember_us_this_way.pdf
2019-12-21 18:30 - 2019-12-21 18:30 - 000134596 _____ C:\Users\Marti\Downloads\Lady_GaGa_-_Shallow_pianovocal.pdf
2019-12-21 18:29 - 2019-12-21 18:29 - 000095316 _____ C:\Users\Marti\Downloads\5256444-060e8e88876d796e83c5201d70e45661.pdf
2019-12-21 17:03 - 2019-12-21 17:03 - 000003634 _____ C:\Users\Marti\Downloads\wedding-rings.svg
2019-12-21 12:04 - 2019-12-21 12:04 - 000001302 _____ C:\Users\Marti\Downloads\like (1).svg
2019-12-21 11:59 - 2019-12-21 12:00 - 026777197 _____ C:\Users\Marti\Downloads\gray-wooden-background-texture-design.zip
2019-12-21 11:59 - 2019-12-21 12:00 - 016952265 _____ C:\Users\Marti\Downloads\natural-wooden-background.zip
2019-12-21 11:34 - 2019-12-21 11:34 - 016430667 _____ C:\Users\Marti\Downloads\textura-madera.zip
2019-12-21 11:02 - 2019-12-21 11:05 - 173197140 _____ C:\Users\Marti\Downloads\save-date-wedding-invitation-card-mockup (1).zip
2019-12-21 11:00 - 2019-12-21 11:04 - 196822892 _____ C:\Users\Marti\Downloads\save-date-wedding-invitation-card-mockup.zip
2019-12-20 18:59 - 2019-12-20 18:59 - 000000879 _____ C:\Users\Marti\Downloads\like.svg
2019-12-20 18:12 - 2019-12-20 18:12 - 000078732 _____ C:\Users\Marti\Downloads\perník.pdf
2019-12-19 20:31 - 2019-12-19 20:31 - 000000926 _____ C:\Users\Marti\Desktop\(32х)Euro Truck Simulator 2.lnk
2019-12-19 20:31 - 2019-12-19 20:31 - 000000860 _____ C:\Users\Marti\Desktop\(64х)Euro Truck Simulator 2.lnk
2019-12-19 20:31 - 2019-12-19 20:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2
2019-12-19 19:24 - 2019-12-19 19:24 - 000015986 _____ C:\Users\Marti\Downloads\[CzT]Euro_Truck_Simulator_2_v_1_35_1_31s_66_DLC_2019_CZ_EN_.torrent
2019-12-19 19:08 - 2019-12-19 19:08 - 000018798 _____ C:\Users\Marti\Downloads\Transport.Fever.2.GOG (1).torrent
2019-12-19 19:06 - 2019-12-19 19:06 - 000018798 _____ C:\Users\Marti\Downloads\Transport.Fever.2.GOG.torrent
2019-12-19 18:57 - 2019-12-19 18:57 - 000146801 _____ C:\Users\Marti\Downloads\transport-fever-2-v27428-gog.torrent
2019-12-19 15:51 - 2019-12-19 15:53 - 000000000 ____D C:\Users\Marti\Desktop\USB
2019-12-19 06:50 - 2019-12-19 07:30 - 023849440 _____ C:\Users\Marti\Downloads\Browser mockup by Luc van Loon.psd
2019-12-17 21:04 - 2019-12-17 21:05 - 022039586 _____ C:\Users\Marti\Downloads\zaklady_mezilidske_komunikace_DeVito_Joseph.pdf
2019-12-17 19:15 - 2019-12-17 19:15 - 000149245 _____ C:\Users\Marti\Downloads\Aktivni_naslouchani.pptx
2019-12-16 22:53 - 2019-12-16 22:53 - 000079638 _____ C:\Users\Marti\Downloads\Funkční styl publicistický.pptx
2019-12-16 22:51 - 2019-12-16 22:51 - 000387637 _____ C:\Users\Marti\Downloads\Dílčí-oblast-syžetová.pptx
2019-12-15 15:17 - 2019-12-15 15:17 - 000000000 _____ C:\Users\Marti\Downloads\~WRD3550.tmp
2019-12-15 14:20 - 2019-12-15 14:20 - 004236900 _____ C:\Users\Marti\Downloads\deskew-110.zip
2019-12-15 14:20 - 2019-12-15 14:20 - 000000000 ____D C:\Users\Marti\Downloads\Deskew
2019-12-15 14:01 - 2019-12-15 14:02 - 002907727 _____ C:\Users\Marti\Downloads\vybíral - Lži, polopravdy a pravda v lidské komunikaci.rar
2019-12-15 12:09 - 2019-12-15 12:09 - 000207267 _____ C:\Users\Marti\Downloads\Zbyněk Vybíral Psychologie komunikace.zip
2019-12-14 22:45 - 2019-12-14 22:45 - 000047056 _____ C:\Users\Marti\Downloads\Otevření textu.pptx
2019-12-14 14:36 - 2019-12-28 20:44 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-12-14 14:36 - 2019-12-28 20:44 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-12-12 23:01 - 2019-12-12 23:01 - 000031940 _____ C:\Users\Marti\Downloads\[CzT]Adobe_Premiere_Pro_CC_2019_v_13_0_2_38_CZ_.torrent
2019-12-12 22:55 - 2019-12-12 22:55 - 016899544 _____ (Windscribe Limited ) C:\Users\Marti\Downloads\Windscribe.exe
2019-12-12 22:55 - 2019-12-12 22:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windscribe
2019-12-12 22:47 - 2019-12-12 22:47 - 000015750 _____ C:\Users\Marti\Downloads\[CzT]Adobe_Acrobat_Pro_DC_v_2019_012_20040_CZ_SK_.torrent
2019-12-12 22:46 - 2019-12-12 22:46 - 000005864 _____ C:\Users\Marti\Downloads\[CzT]Revo_Uninstaller_Pro_v_4_2_1_CZ_SK_.torrent
2019-12-12 22:28 - 2019-12-12 22:28 - 000048198 _____ C:\Users\Marti\Downloads\stara-paka-2017 (1).zip
2019-12-12 22:25 - 2019-12-12 22:25 - 000000000 ____D C:\Users\Marti\Downloads\stara-paka-2017
2019-12-12 22:24 - 2019-12-12 22:24 - 000000000 ____D C:\Users\Marti\Downloads\visl-demo
2019-12-12 19:18 - 2019-12-12 19:18 - 039031816 _____ (Movavi) C:\Users\Marti\Downloads\MovaviFreeOnlineScreenRecorderSetup.exe
2019-12-12 19:18 - 2019-12-12 19:18 - 000004996 _____ C:\ProgramData\gjsmjbwe.krj
2019-12-12 19:18 - 2019-12-12 19:18 - 000000016 _____ C:\ProgramData\mntemp
2019-12-12 16:47 - 2019-12-12 16:47 - 000000000 ____D C:\Users\Marti\Downloads\Mrkve_a_housenky_1
2019-12-11 16:20 - 2019-12-11 16:51 - 575320503 _____ C:\Users\Marti\Downloads\Mrkve_a_housenky_1.rar
2019-12-11 16:10 - 2019-12-11 16:10 - 000238921 _____ C:\Users\Marti\Downloads\45799541.pdf
2019-12-10 23:53 - 2019-12-10 23:53 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 009927992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 007278592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 006516648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 006083832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 005943296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 005914112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 002762296 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 002698768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 002494432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 002284544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 002147328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 002082208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001757304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-12-10 23:53 - 2019-12-10 23:53 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001664904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001656600 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001539584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001512528 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001451520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 001413840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001399312 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-12-10 23:53 - 2019-12-10 23:53 - 001261464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 001098928 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001054864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 001006904 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000986936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000842552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 000822416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 000797112 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000674280 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 000673456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000593128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-12-10 23:53 - 2019-12-10 23:53 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000524264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 000511000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000422712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000127272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000089536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-12-10 23:53 - 2019-12-10 23:53 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000067112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevQueryBroker.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000032056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2019-12-10 23:53 - 2019-12-10 23:53 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2019-12-10 23:53 - 2019-12-10 23:53 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2019-12-10 15:45 - 2019-12-10 15:45 - 020528244 _____ C:\Users\Marti\Downloads\supermarket-50-2019.pdf
2019-12-10 09:10 - 2019-12-29 12:44 - 000000000 ____D C:\Users\Marti\Desktop\FRST-OlderVersion
2019-12-09 19:41 - 2019-12-09 19:41 - 000388187 _____ C:\Users\Marti\Downloads\Vánoční souboj Ježíšků.rar
2019-12-09 17:07 - 2019-12-09 17:07 - 000000029 _____ C:\Users\Marti\Downloads\user.ini
2019-12-08 20:29 - 2019-12-08 20:29 - 000065989 _____ C:\Users\Marti\Downloads\FIL.9.fenom_exist.pptx
2019-12-08 20:28 - 2019-12-08 20:28 - 000061181 _____ C:\Users\Marti\Downloads\FIL.10.analyt_strukt.pptx
2019-12-08 20:27 - 2019-12-08 20:27 - 000056473 _____ C:\Users\Marti\Downloads\FIL.2.bez_obr.pptx
2019-12-08 20:27 - 2019-12-08 20:27 - 000043773 _____ C:\Users\Marti\Downloads\FIL.1_uvod.18.pptx
2019-12-07 23:11 - 2019-12-09 17:16 - 000000000 ____D C:\Users\Marti\Desktop\resized
2019-12-07 23:08 - 2019-12-07 23:08 - 000449563 _____ C:\Users\Marti\Downloads\FastImageResizer_098.exe
2019-12-07 23:08 - 2019-12-07 23:08 - 000000000 ____D C:\Users\Marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fast Image Resizer
2019-12-07 23:08 - 2019-12-07 23:08 - 000000000 ____D C:\Program Files (x86)\Fast Image Resizer
2019-12-07 23:02 - 2019-12-07 23:04 - 000000000 ____D C:\Users\Marti\Desktop\FSResizer43
2019-12-07 23:02 - 2019-12-07 23:02 - 002158252 _____ C:\Users\Marti\Downloads\FSResizer43.zip
2019-12-07 19:29 - 2019-12-12 22:31 - 000000000 ____D C:\Users\Marti\Downloads\.idea
2019-12-07 19:28 - 2019-12-07 19:28 - 000506568 _____ C:\Users\Marti\Downloads\fabulist.1.0.5.zip
2019-12-07 19:28 - 2019-12-07 19:28 - 000000000 ____D C:\Users\Marti\Downloads\fabulist.1.0.5
2019-12-07 16:37 - 2019-12-07 16:37 - 000842704 _____ C:\Users\Marti\Downloads\silvia.1.1.0.zip
2019-12-06 13:17 - 2019-12-06 13:18 - 077544049 _____ C:\Users\Marti\Downloads\visl-demo.zip
2019-12-06 13:17 - 2019-12-06 13:17 - 000101268 _____ C:\Users\Marti\Downloads\doz-otrokovice-stare-mesto-u-uh-2017.zip
2019-12-06 13:17 - 2019-12-06 13:17 - 000048198 _____ C:\Users\Marti\Downloads\stara-paka-2017.zip
2019-12-04 16:17 - 2019-12-04 16:44 - 003176148 _____ C:\Users\Marti\Downloads\Vanek-PoukazKVysetreni.pdf
2019-12-04 13:22 - 2019-12-04 13:25 - 000000000 ____D C:\AdwCleaner
2019-12-04 13:21 - 2019-12-04 13:22 - 008218800 _____ (Malwarebytes) C:\Users\Marti\Downloads\adwcleaner_8.0.0.exe
2019-12-04 13:21 - 2019-12-04 13:21 - 001883976 _____ (Malwarebytes) C:\Users\Marti\Downloads\MBSetup.exe
2019-12-04 10:22 - 2019-12-10 09:19 - 000011988 _____ C:\Users\Marti\Desktop\Addition.zip
2019-12-04 10:10 - 2019-12-29 12:44 - 002272256 _____ (Farbar) C:\Users\Marti\Desktop\FRST64.exe
2019-12-04 10:10 - 2019-12-29 12:44 - 000000000 ____D C:\FRST
2019-12-04 10:07 - 2019-12-04 10:08 - 002263040 _____ (Farbar) C:\Users\Marti\Downloads\FRST64.exe
2019-12-03 17:32 - 2019-12-03 17:32 - 009683798 _____ C:\Users\Marti\Downloads\Wild Adventure by Slidesgo.pptx
2019-12-03 17:28 - 2019-12-03 17:28 - 016623229 _____ C:\Users\Marti\Downloads\Neon Cyber Monday by Slidesgo.pptx
2019-12-03 14:37 - 2019-12-04 21:13 - 000011855 _____ C:\ProgramData\DisplaySessionContainer13.log_backup1
2019-12-03 12:38 - 2019-12-03 14:37 - 000010924 _____ C:\ProgramData\DisplaySessionContainer12.log_backup1
2019-12-02 23:29 - 2019-12-02 23:29 - 000065488 _____ (Adobe Systems Inc) C:\WINDOWS\system32\AdobePDF.dll
2019-12-02 23:29 - 2019-12-02 23:29 - 000036304 _____ (Adobe Systems Inc.) C:\WINDOWS\system32\AdobePDFUI.dll
2019-12-02 23:26 - 2019-12-03 12:38 - 000012346 _____ C:\ProgramData\DisplaySessionContainer11.log_backup1
2019-11-29 13:31 - 2019-11-29 13:36 - 005169732 _____ C:\Users\Marti\Downloads\Nepotvrzeno 723585.crdownload
2019-11-29 10:10 - 2019-11-29 10:10 - 000051238 _____ C:\Users\Marti\Downloads\Exportovat-Trasa_z_José_Martího_26931_do_Kněževes,Skladový_areál.gpx
2019-11-29 10:10 - 2019-11-29 10:10 - 000043435 _____ C:\Users\Marti\Downloads\Exportovat-Trasa_z_Hlavní_nádraží_do_José_Martího_26931.gpx

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-12-29 12:38 - 2019-04-02 08:13 - 000000000 ____D C:\Users\Marti\AppData\Local\D3DSCache
2019-12-29 12:28 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-12-29 12:25 - 2018-09-17 18:29 - 000000000 ____D C:\ProgramData\NVIDIA
2019-12-29 12:08 - 2019-08-04 12:16 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-12-28 20:44 - 2019-11-21 21:20 - 000003500 _____ C:\WINDOWS\system32\Tasks\EPSON L7160 Series Update {32B46DC0-2C85-450E-9321-90B882A6DF9C}
2019-12-28 20:44 - 2019-11-21 21:20 - 000000951 _____ C:\WINDOWS\Tasks\EPSON L7160 Series Update {32B46DC0-2C85-450E-9321-90B882A6DF9C}.job
2019-12-28 20:44 - 2019-11-11 20:01 - 000003452 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA
2019-12-28 20:44 - 2019-11-11 20:01 - 000003228 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore
2019-12-28 20:44 - 2019-11-11 20:01 - 000000938 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2019-12-28 20:44 - 2019-11-11 20:01 - 000000934 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2019-12-28 20:44 - 2019-10-04 19:49 - 000002586 _____ C:\WINDOWS\system32\Tasks\X-Rite Device Services Software Updater
2019-12-28 20:44 - 2019-10-04 19:49 - 000000428 _____ C:\WINDOWS\Tasks\X-Rite Device Services Software Updater.job
2019-12-28 20:44 - 2019-10-04 13:09 - 000002608 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2019-12-28 20:44 - 2019-08-04 12:25 - 000003554 _____ C:\WINDOWS\system32\Tasks\LenovoUtility Startup
2019-12-28 20:44 - 2019-08-04 12:25 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2019-12-28 20:44 - 2019-08-04 12:25 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-28 20:44 - 2019-08-04 12:25 - 000003354 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{37C4CB34-7CF4-4AE9-BCFA-6896AB2CF27F}
2019-12-28 20:44 - 2019-08-04 12:25 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-28 20:44 - 2019-08-04 12:25 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-28 20:44 - 2019-08-04 12:25 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-28 20:44 - 2019-08-04 12:25 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-28 20:44 - 2019-08-04 12:25 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-28 20:44 - 2019-08-04 12:25 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-28 20:44 - 2019-08-04 12:25 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-28 20:44 - 2019-08-04 12:25 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-28 20:44 - 2019-08-04 12:25 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3321410577-2413595115-2568922229-1001
2019-12-28 20:44 - 2019-08-04 12:25 - 000002820 _____ C:\WINDOWS\system32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-martin@outlook.com
2019-12-28 20:44 - 2019-08-04 12:25 - 000002770 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task v2
2019-12-28 20:44 - 2019-08-04 12:25 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-12-28 20:44 - 2019-08-04 12:25 - 000002486 _____ C:\WINDOWS\system32\Tasks\McAfeeLogon
2019-12-28 20:44 - 2019-08-04 12:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2019-12-28 20:26 - 2019-04-02 08:09 - 000000000 __SHD C:\Users\Marti\IntelGraphicsProfiles
2019-12-28 18:47 - 2019-08-04 12:27 - 001693640 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-12-28 18:47 - 2019-03-19 12:55 - 000719670 _____ C:\WINDOWS\system32\perfh005.dat
2019-12-28 18:47 - 2019-03-19 12:55 - 000145698 _____ C:\WINDOWS\system32\perfc005.dat
2019-12-28 18:47 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2019-12-28 18:43 - 2019-09-29 10:46 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-12-28 18:43 - 2019-08-04 12:25 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-12-28 18:42 - 2019-08-04 12:19 - 000000000 ____D C:\Users\Marti
2019-12-28 18:42 - 2019-05-23 20:37 - 000017089 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2019-12-28 18:42 - 2019-05-23 20:37 - 000013785 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2019-12-28 18:42 - 2019-05-23 20:37 - 000008579 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2019-12-28 18:42 - 2019-03-19 05:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-12-28 18:24 - 2019-09-04 10:56 - 000000000 ____D C:\WINDOWS\Minidump
2019-12-28 14:02 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-12-25 15:09 - 2019-04-01 18:14 - 000000000 ____D C:\Users\Marti\AppData\Roaming\uTorrent
2019-12-23 23:17 - 2019-04-02 08:19 - 000000000 ____D C:\Users\Marti\AppData\Local\CrashDumps
2019-12-23 22:34 - 2019-11-11 20:01 - 000000000 ____D C:\Program Files (x86)\Dropbox
2019-12-21 20:34 - 2019-08-06 10:57 - 000001456 _____ C:\Users\Marti\AppData\Local\Adobe Save for Web 13.0 Prefs
2019-12-21 20:13 - 2019-11-17 11:48 - 000000000 ____D C:\Users\Marti\AppData\Roaming\Amazon Cloud Drive
2019-12-21 20:12 - 2019-11-17 11:48 - 000001234 _____ C:\Users\Marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Photos.lnk
2019-12-21 16:44 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-12-21 16:44 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-12-20 19:42 - 2019-04-02 08:09 - 000000000 ____D C:\Users\Marti\AppData\Local\Packages
2019-12-20 15:36 - 2019-11-07 23:30 - 000000000 ____D C:\Users\Marti\AppData\Roaming\Epson
2019-12-20 00:13 - 2019-07-12 22:25 - 000019456 _____ C:\ProgramData\DisplaySessionContainer4.log_backup1
2019-12-19 23:42 - 2019-04-02 08:15 - 000002312 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-12-19 21:00 - 2019-11-14 12:21 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2019-12-19 19:26 - 2019-05-23 11:17 - 000002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2019-12-19 06:46 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-12-19 06:45 - 2019-04-02 21:31 - 000000000 ____D C:\Program Files\Microsoft Office
2019-12-19 01:31 - 2019-07-11 22:38 - 000017080 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1
2019-12-18 09:13 - 2019-07-07 20:21 - 000004964 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1
2019-12-16 16:14 - 2019-09-04 11:12 - 000000000 ____D C:\Users\Marti\AppData\Local\ElevatedDiagnostics
2019-12-16 15:03 - 2019-08-04 12:25 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2019-12-15 21:26 - 2019-04-08 12:43 - 000000000 ____D C:\Program Files (x86)\Windscribe
2019-12-15 17:48 - 2019-07-13 09:54 - 000021193 _____ C:\ProgramData\DisplaySessionContainer5.log_backup1
2019-12-13 10:51 - 2019-04-03 09:59 - 000000000 ____D C:\Users\Marti\AppData\Local\Spotify
2019-12-13 09:51 - 2019-04-03 09:58 - 000000000 ____D C:\Users\Marti\AppData\Roaming\Spotify
2019-12-13 09:38 - 2019-05-23 11:17 - 000002125 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
2019-12-12 02:13 - 2019-04-02 16:15 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-12-12 02:12 - 2019-04-02 16:15 - 129221664 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-12-11 01:41 - 2019-08-04 12:16 - 000590808 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-12-11 01:41 - 2019-04-02 08:09 - 000000000 ___RD C:\Users\Marti\3D Objects
2019-12-11 01:41 - 2018-04-17 20:03 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-12-11 01:40 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-12-11 01:40 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-12-11 01:40 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-12-10 23:55 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-12-10 20:58 - 2019-05-14 15:09 - 000000000 ____D C:\Users\Marti\AppData\LocalLow\Temp
2019-12-07 23:08 - 2019-04-02 08:09 - 000000000 ____D C:\Users\Marti\AppData\Local\VirtualStore
2019-12-04 13:25 - 2019-08-04 12:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2019-12-04 13:25 - 2019-08-01 07:58 - 000000000 ____D C:\Users\Marti\AppData\Local\Lenovo
2019-12-04 13:25 - 2018-09-17 18:21 - 000000000 ____D C:\WINDOWS\system32\Drivers\Lenovo
2019-12-04 13:25 - 2018-09-17 18:21 - 000000000 ____D C:\ProgramData\Lenovo
2019-12-04 13:25 - 2018-09-17 18:21 - 000000000 ____D C:\Program Files\Lenovo
2019-12-04 13:25 - 2018-09-17 18:21 - 000000000 ____D C:\Program Files (x86)\Lenovo
2019-12-02 15:52 - 2019-04-02 08:10 - 000000000 ____D C:\Users\Marti\AppData\Local\PlaceholderTileLogoFolder
2019-12-01 17:48 - 2019-10-24 14:44 - 000010599 _____ C:\ProgramData\DisplaySessionContainer8.log_backup1
2019-11-30 23:27 - 2019-07-17 18:40 - 000010297 _____ C:\ProgramData\DisplaySessionContainer7.log_backup1
2019-11-29 20:47 - 2019-07-14 22:36 - 000010943 _____ C:\ProgramData\DisplaySessionContainer6.log_backup1

==================== Files in the root of some directories ========

2019-06-11 13:34 - 2019-11-02 18:57 - 000000033 _____ () C:\Users\Marti\AppData\Roaming\AdobeWLCMCache.dat
2019-12-25 15:13 - 2019-12-25 15:13 - 000000028 _____ () C:\Users\Marti\AppData\Roaming\kulerdata.json
2019-08-06 10:57 - 2019-12-21 20:34 - 000001456 _____ () C:\Users\Marti\AppData\Local\Adobe Save for Web 13.0 Prefs
2019-04-01 18:44 - 2019-04-01 18:44 - 000000410 _____ () C:\Users\Marti\AppData\Local\oobelibMkey.log
2019-04-03 10:46 - 2019-09-18 17:00 - 000007593 _____ () C:\Users\Marti\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Přílohy
Addition.zip
(11.02 KiB) Staženo 73 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zřejmě keylogger – klávesnice nedělá, co má

#2 Příspěvek od Rudy »

Zdravím!
Keylogger většinou pouze brání diakritice (psaní háčku). Může to být i vada klávesky. Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

martinJmenoMe
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 28 čer 2018 11:16

Re: Zřejmě keylogger – klávesnice nedělá, co má

#3 Příspěvek od martinJmenoMe »

Provedeno, log zde:

Kód: Vybrat vše

# -------------------------------
# Malwarebytes AdwCleaner 8.0.1.0
# -------------------------------
# Build:    12-17-2019
# Database: 2019-12-17.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    12-29-2019
# Duration: 00:00:01
# OS:       Windows 10 Home
# Cleaned:  0
# Failed:   0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1968 octets] - [04/12/2019 13:23:53]
AdwCleaner[S01].txt - [2029 octets] - [04/12/2019 13:24:45]
AdwCleaner[C01].txt - [2306 octets] - [04/12/2019 13:25:32]
AdwCleaner[S02].txt - [1509 octets] - [04/12/2019 22:21:15]
AdwCleaner[C02].txt - [1697 octets] - [04/12/2019 22:21:35]
AdwCleaner[S03].txt - [1631 octets] - [29/12/2019 18:49:01]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C03].txt ##########
Je možné, že to byla zaseknutá klávesa, to vůbec nevylučuji.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zřejmě keylogger – klávesnice nedělá, co má

#4 Příspěvek od Rudy »

OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
ShortcutTarget: Boom3D.lnk -> C:\Program Files\Global Delight\Boom 3D\Boom3D.exe (No File)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {1A0B7D55-EA26-41B9-9B75-CAC94B831874} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
Task: {1C7A1CC9-A696-4CA3-AFD8-EA4550BC1D4E} - \Lenovo\ImController\TimeBasedEvents\bf8e9fa9-a9be-41ed-aef3-7bb9a2753b31 -> No File <==== ATTENTION
Task: {81308872-7475-4037-9C43-50D8EBA159C9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-02] (Google Inc -> Google LLC)
Task: {1C44C149-6A03-4736-AA94-97B8A473B31C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-02] (Google Inc -> Google LLC)
SearchScopes: HKU\S-1-5-21-3321410577-2413595115-2568922229-1001 -> DefaultScope {C582445E-6FB9-4A53-AC4D-729E4A8DB205} URL =
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
FirewallRules: [{36AD33E6-98F7-40D5-8D74-29ACB41AFEE8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

martinJmenoMe
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 28 čer 2018 11:16

Re: Zřejmě keylogger – klávesnice nedělá, co má

#5 Příspěvek od martinJmenoMe »

Fixlog zde:

Kód: Vybrat vše

Fix result of Farbar Recovery Scan Tool (x64) Version: 28-12-2019
Ran by Marti (29-12-2019 23:16:24) Run:2
Running from C:\Users\Marti\Desktop
Loaded Profiles: Marti (Available Profiles: Marti)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
ShortcutTarget: Boom3D.lnk -> C:\Program Files\Global Delight\Boom 3D\Boom3D.exe (No File)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {1A0B7D55-EA26-41B9-9B75-CAC94B831874} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
Task: {1C7A1CC9-A696-4CA3-AFD8-EA4550BC1D4E} - \Lenovo\ImController\TimeBasedEvents\bf8e9fa9-a9be-41ed-aef3-7bb9a2753b31 -> No File <==== ATTENTION
Task: {81308872-7475-4037-9C43-50D8EBA159C9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-02] (Google Inc -> Google LLC)
Task: {1C44C149-6A03-4736-AA94-97B8A473B31C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-02] (Google Inc -> Google LLC)
SearchScopes: HKU\S-1-5-21-3321410577-2413595115-2568922229-1001 -> DefaultScope {C582445E-6FB9-4A53-AC4D-729E4A8DB205} URL =
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
FirewallRules: [{36AD33E6-98F7-40D5-8D74-29ACB41AFEE8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe No File

EmptyTemp:
End
*****************

Processes closed successfully.
"C:\Program Files\Global Delight\Boom 3D\Boom3D.exe" => not found
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1A0B7D55-EA26-41B9-9B75-CAC94B831874}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1A0B7D55-EA26-41B9-9B75-CAC94B831874}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1C7A1CC9-A696-4CA3-AFD8-EA4550BC1D4E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1C7A1CC9-A696-4CA3-AFD8-EA4550BC1D4E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\TimeBasedEvents\bf8e9fa9-a9be-41ed-aef3-7bb9a2753b31" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{81308872-7475-4037-9C43-50D8EBA159C9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{81308872-7475-4037-9C43-50D8EBA159C9}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1C44C149-6A03-4736-AA94-97B8A473B31C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1C44C149-6A03-4736-AA94-97B8A473B31C}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKU\S-1-5-21-3321410577-2413595115-2568922229-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => removed successfully
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{36AD33E6-98F7-40D5-8D74-29ACB41AFEE8}" => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 899364945 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 3903989 B
Edge => 555723 B
Chrome => 652088064 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 34364 B
NetworkService => 34364 B
Marti => 77763566 B

RecycleBin => 51122959 B
EmptyTemp: => 1.6 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 23:18:25 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zřejmě keylogger – klávesnice nedělá, co má

#6 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

martinJmenoMe
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 28 čer 2018 11:16

Re: Zřejmě keylogger – klávesnice nedělá, co má

#7 Příspěvek od martinJmenoMe »

Vypadá to, že je to v pohodě. Promazaly se nějaké dočasné soubory a problém jsem zatím znovu nezaregistroval. Děkuji moc!

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zřejmě keylogger – klávesnice nedělá, co má

#8 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno