Po spuštění černá obrazovka+CMD
Napsal: 06 led 2020 22:57
Dobrý den,
dnes jsem při zapnutí počítače zjistil, že po příhlášení naběhne jen černá obrazovka s příkazovým řádkem. Po zadání explorer.exe se systém normálně ukáže a tváří se, že funguje normálně. Podezření ale mám, jelikož jsem stahoval a instaloval hru (neofiko).
Níže posílám log z FRST, děkuji předem za kontrolu.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-12-2019
Ran by HP-OMEN (administrator) on DESKTOP-2J4O5S5 (HP OMEN by HP Laptop) (06-01-2020 22:56:33)
Running from C:\Users\HP-OMEN\Desktop
Loaded Profiles: HP-OMEN (Available Profiles: HP-OMEN)
Platform: Windows 10 Home Version 1903 18362.535 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.5.245.0\AvastBrowserCrashHandler.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.5.245.0\AvastBrowserCrashHandler64.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler64.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(IncognitoVPN) [File not signed] C:\Program Files (x86)\IncognitoVPN\vpn_module.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.1725.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.1725.0_x64__8j3eq9eme6ctt\IGCC.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f3a64c75ee4defb7\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f3a64c75ee4defb7\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_38bfcb542ef4272e\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_38bfcb542ef4272e\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\browserhost.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Popcorn Time) [File not signed] C:\Program Files (x86)\Popcorn Time\Updater.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Reimage Ltd. -> reimage) C:\Program Files\Reimage\Reimage Protector\ReimageApp.exe
(Reimage Ltd. -> Reimage) C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe
(Reimage Ltd. -> Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9269352 2019-07-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320568 2016-09-20] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942864 2016-10-13] (Logitech -> Logitech, Inc.)
HKLM\...\Run: [Reimage] => C:\Program Files\Reimage\Reimage Protector\ReimageApp.exe [263832 2019-07-07] (Reimage Ltd. -> reimage)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [707624 2018-08-08] (HP Inc. -> HP Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-2343376451-2767932507-3490548569-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2343376451-2767932507-3490548569-1001\...\Winlogon: [Shell] %comspec% <==== ATTENTION
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.88\Installer\chrmstp.exe [2019-12-20] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\77.2.2152.121\Installer\chrmstp.exe [2019-11-28] (AVAST Software s.r.o. -> AVAST Software)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0175071C-8254-431F-A44D-6056FE47965C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0416D7B4-EB00-4AC3-86C3-59D5F4617EEB} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [660040 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {18CEEAB5-DBE3-4E6A-A45E-E1AB063319D3} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1930312 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1DDC7373-93BF-4C38-9B14-6CE6715DEDA4} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
Task: {1F1BA11C-5C24-48BD-A370-6DAC7BC56621} - System32\Tasks\KMSPico => C:\Windows\KMS\KMSPico.exe [1454191 2014-02-13] (ByELDI 'nova-s release') [File not signed]
Task: {20D600AF-FE52-443D-8CB6-EF1082B2A3E5} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {28F78EA0-2FF0-4175-BBC2-F7204E6C1307} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [145272 2019-10-31] (HP Inc. -> HP Inc.)
Task: {3C345500-DF95-4DDD-8236-C86677CE0756} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {474B424E-1CF0-4BA5-B01C-F6ED7D62EC36} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2018-05-04] (HP Inc. -> HP Inc.)
Task: {4C93D4C6-B5BF-4CA8-80EC-6DB38B3478E6} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
Task: {4DED6405-D2F8-4D3F-BED9-336F59B3AF8C} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-2343376451-2767932507-3490548569-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\Windows\System32\wpninprc.dll [24064 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Task: {545FA4F7-DF7D-488B-BBF6-48FA6BC0B727} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {616A6AC5-ADB9-44EA-8E76-567665972A6D} - System32\Tasks\HPCeeScheduleForHP-OMEN => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [97656 2018-09-11] (HP Inc. -> HP Inc.)
Task: {62FC85F5-7199-46A8-AFA2-09242D7B0AEB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {6F5CE3D5-21E0-4C5F-AE71-AA75F5D800DF} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1850312 2019-11-05] (AVAST Software s.r.o. -> AVAST Software)
Task: {7031CFF3-D605-46A5-84BD-B948E4F28D79} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519240 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {79F905D8-86EF-492C-B81A-3367E4DDA9EF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-12-11] (Adobe Inc. -> Adobe)
Task: {7D0459C1-60C4-4888-B694-5125C3159387} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [660040 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7EB463B7-73EE-46FB-B2BD-E271FADB9445} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {7F86FB45-5389-4E43-B1BC-E79158A02F66} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [746056 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8C18827C-7AC1-46F7-B8A4-A91FC6DEE620} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [968264 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8F443F0B-DA94-4B3C-A576-11DAB6E7CB95} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {A4CFA836-EAB1-4EFE-8314-C1B3B5A579D5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {AAC514B2-5837-4795-8A0D-475FEE752B75} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [202392 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
Task: {ACCF43F4-E4BB-45ED-B0AB-E47648B82234} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {B5E5B402-EC30-42DD-AB13-D0A97C579BFB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.)
Task: {B8367F0C-821B-4FCD-870C-C86EE8FF2403} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1850312 2019-11-05] (AVAST Software s.r.o. -> AVAST Software)
Task: {B8E26EB7-6BEA-4303-9463-D0BE21EF6C53} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.)
Task: {BB6DC990-2606-4337-AF7B-A2302C0FABD5} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_303_pepper.exe [1453112 2019-12-11] (Adobe Inc. -> Adobe)
Task: {C3DA362E-05FB-4E97-BFB7-3ACD4FB048A4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-10] (Google Inc -> Google LLC)
Task: {D3FB7D92-D8D7-48D5-9C4E-AE1CB2259ECE} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [746056 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D543816A-1B06-45A3-99E5-6091EC2CB8BD} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [524360 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D9788312-0F73-4B00-9415-9F909B0D936A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DC10FB39-5534-4DF1-B770-E8B479396D29} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644472 2019-06-21] (HP Inc. -> HP Inc.)
Task: {DF7C82C4-EE57-49DD-BA3E-2E0075691CC0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-10] (Google Inc -> Google LLC)
Task: {DFA7E8A5-FB75-49F1-9AD1-20F09DA319A6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [277880 2019-11-22] (HP Inc. -> HP Inc.)
Task: {F96B99A4-2ADE-4BD0-885A-B87094161103} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [202392 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
Task: {F9C99893-D0CB-4845-AB42-49C61DA14E59} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {FD2ED8BF-7444-4233-A8FB-A99A357D0634} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\HPCeeScheduleForHP-OMEN.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{42385fa3-dcb6-4586-9555-113afacea9ce}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{af4e668a-ae58-4841-b9d4-4b58dff92a9f}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKU\S-1-5-21-2343376451-2767932507-3490548569-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10454__190810
SearchScopes: HKU\S-1-5-21-2343376451-2767932507-3490548569-1001 -> {993F5746-4C15-42BC-99C1-064A1764271B} URL = hxxps://securesearch.org?q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-12-16] (McAfee, LLC -> McAfee, Inc.)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -> HP Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-12-16] (McAfee, LLC -> McAfee, Inc.)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -> HP Inc.)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-12-16]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2012-09-20] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-21] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-15] (Google LLC -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-15] (Google LLC -> Google LLC)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2012-09-20] (Adobe Systems Incorporated -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.google.cz/","hxxp://www.yandex.ru/? ... VHCH3NVHCX"
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default [2020-01-06]
CHR Extension: (Slides) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-08-10]
CHR Extension: (Just Black) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\aghfnjkcakhmadgdomlmlhhaocbkloab [2019-08-10]
CHR Extension: (Docs) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-08-10]
CHR Extension: (Google Drive) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-08-10]
CHR Extension: (YouTube) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-08-10]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-10-23]
CHR Extension: (Adblock for Youtube™) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2019-08-10]
CHR Extension: (minerBlock) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\emikbbbebcdfohonlaifafnoanocnebl [2019-08-10]
CHR Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2019-12-21]
CHR Extension: (Sheets) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-08-10]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2019-12-16]
CHR Extension: (Google Docs Offline) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-08-11]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-12-18]
CHR Extension: (No Coin - Block miners on the web!) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gojamcfopckidlocpkbelmpjcgmbgjcl [2019-08-10]
CHR Extension: (Avast Online Security) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-12-20]
CHR Extension: (FormApps Extension) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2019-08-10]
CHR Extension: (HP Network Check Launcher) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkfpchpiljkaemlpmpebnglgkomamfeo [2019-08-10]
CHR Extension: (Chrome Web Store Payments) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-10]
CHR Extension: (Chrome Media Router) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-13]
CHR Profile: C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-01-04]
CHR Profile: C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\System Profile [2020-01-04]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
CHR HKLM-x32\...\Chrome\Extension: [jkfpchpiljkaemlpmpebnglgkomamfeo]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2019-10-07] (Apple Inc. -> Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6259592 2019-12-19] (AVAST Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [202392 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [202392 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\77.2.2152.121\elevation_service.exe [970088 2019-11-05] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R2 esifsvc; C:\Windows\System32\Intel\DPTF\esif_uf.exe [1855976 2019-07-25] (Intel Corporation -> Intel Corporation)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (Hewlett-Packard Company -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [361848 2019-12-06] (HP Inc. -> HP Inc.)
R2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [628768 2017-07-13] (HP Inc. -> HP Inc.)
R2 ibtsiva; C:\Windows\System32\ibtsiva.exe [529912 2018-12-21] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R2 IncognitoVPNSvc; C:\Program Files (x86)\IncognitoVPN\vpn_module.exe [221696 2019-11-28] (IncognitoVPN) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [758552 2018-03-02] (Intel(R) Trust Services -> Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [719640 2018-03-02] (Intel(R) Trust Services -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [205968 2017-12-03] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [913208 2019-12-16] (McAfee, LLC -> McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [310880 2018-09-05] (Intel Corporation -> )
S3 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519240 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519240 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
R2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [8944800 2019-05-23] (Reimage Ltd. -> Reimage®)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [268368 2019-07-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [360872 2018-09-21] (Synaptics Incorporated -> Synaptics Incorporated)
R2 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [339968 2019-01-08] (Popcorn Time) [File not signed]
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [4059744 2018-09-05] (Intel Corporation -> Intel® Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Accelerometer; C:\Windows\System32\drivers\Accelerometer.sys [53904 2019-07-22] (HP Inc. -> HP)
S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37616 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [204824 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [274456 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [209552 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [65120 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [16304 2019-10-02] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [276952 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42736 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [161544 2019-11-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [110320 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [83792 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [848432 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [460448 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [236024 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [316528 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [78680 2019-07-25] (Intel Corporation -> Intel Corporation)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [71000 2019-07-25] (Intel Corporation -> Intel Corporation)
R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [402264 2019-07-25] (Intel Corporation -> Intel Corporation)
R0 hpdskflt; C:\Windows\System32\drivers\hpdskflt.sys [41104 2019-07-22] (HP Inc. -> HP)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-07-25] (Martin Malik - REALiX -> REALiX(tm))
R0 iaStorAC; C:\Windows\System32\drivers\iaStorAC.sys [1035768 2019-07-25] (Intel(R) Rapid Storage Technology -> Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [257016 2019-07-25] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 MEIx64; C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_85021432489d6a1c\x64\TeeDriverW8x64.sys [266128 2019-07-25] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [8720384 2019-08-27] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvhmi.inf_amd64_36f227864f86e6b6\nvlddmkm.sys [21854352 2019-07-25] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30280 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [69840 2019-07-26] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [57928 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> )
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [1154336 2019-07-25] (Realtek Semiconductor Corp. -> Realtek )
S3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [779232 2016-08-22] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [56840 2019-07-25] (Synaptics Incorporated -> Synaptics Incorporated)
R3 tap0901; C:\Windows\System32\drivers\tap0901.sys [27136 2014-11-05] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [24576 2019-09-11] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [45664 2020-01-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [355760 2020-01-06] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [54192 2020-01-06] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\Windows\system32\DRIVERS\WirelessButtonDriver64.sys [35392 2019-08-06] (HP Inc. -> HP)
U3 DfSdkS; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-01-06 22:56 - 2020-01-06 22:57 - 000043128 _____ C:\Users\HP-OMEN\Desktop\FRST.txt
2020-01-06 22:56 - 2020-01-06 22:56 - 000000000 ____D C:\FRST
2020-01-06 22:50 - 2020-01-06 22:50 - 002272256 _____ (Farbar) C:\Users\HP-OMEN\Desktop\FRST64.exe
2020-01-06 22:50 - 2020-01-06 22:50 - 000000000 ____D C:\rsit
2020-01-06 22:50 - 2020-01-06 22:50 - 000000000 ____D C:\Program Files\trend micro
2020-01-06 22:49 - 2020-01-06 22:49 - 001222144 _____ C:\Users\HP-OMEN\Desktop\RSITx64.exe
2020-01-06 22:29 - 2020-01-06 22:34 - 000000000 ____D C:\ProgramData\Reimage Protector
2020-01-06 22:29 - 2020-01-06 22:30 - 000000140 _____ C:\Windows\Reimage.ini
2020-01-06 22:29 - 2020-01-06 22:30 - 000000000 ____D C:\rei
2020-01-06 22:29 - 2020-01-06 22:29 - 000001922 _____ C:\Users\Public\Desktop\PC Scan & Repair by Reimage.lnk
2020-01-06 22:29 - 2020-01-06 22:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair
2020-01-06 22:29 - 2020-01-06 22:29 - 000000000 ____D C:\Program Files\Reimage
2020-01-06 22:04 - 2020-01-06 22:04 - 000000000 ____D C:\Windows\pss
2020-01-06 17:50 - 2020-01-06 18:08 - 000000000 ____D C:\Users\HP-OMEN\AppData\Roaming\FileZilla
2020-01-06 17:50 - 2020-01-06 18:08 - 000000000 ____D C:\Users\HP-OMEN\AppData\Local\FileZilla
2020-01-06 17:50 - 2020-01-06 17:50 - 008000936 _____ (Tim Kosse) C:\Users\HP-OMEN\Downloads\FileZilla_3.46.3_win64-setup.exe
2020-01-06 17:50 - 2020-01-06 17:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2020-01-06 17:50 - 2020-01-06 17:50 - 000000000 ____D C:\Program Files\FileZilla FTP Client
2020-01-06 16:48 - 2020-01-06 16:48 - 003673185 _____ C:\Users\HP-OMEN\Desktop\zachrana.pdf
2020-01-06 16:48 - 2020-01-06 16:48 - 002113109 _____ C:\Users\HP-OMEN\Desktop\strategie.pdf
2020-01-06 16:47 - 2020-01-06 16:47 - 003625664 _____ C:\Users\HP-OMEN\Desktop\prevence.pdf
2020-01-06 16:45 - 2020-01-06 16:45 - 000000505 _____ C:\Users\Public\Desktop\Red Dead Redemption 2.lnk
2020-01-06 16:45 - 2020-01-06 16:45 - 000000505 _____ C:\Users\HP-OMEN\AppData\Roaming\Microsoft\Windows\Start Menu\Red Dead Redemption 2.lnk
2020-01-04 21:31 - 2020-01-04 21:33 - 000000000 ____D C:\Users\HP-OMEN\Desktop\Movies
2020-01-04 21:19 - 2020-01-04 21:19 - 000000000 ____D C:\Users\HP-OMEN\Desktop\Surfhouse
2020-01-04 20:52 - 2020-01-04 20:52 - 004840116 _____ C:\Users\HP-OMEN\Desktop\Manual_omnitronic-tmc-02.pdf
2020-01-04 20:16 - 2020-01-04 20:17 - 000000000 ____D C:\Users\HP-OMEN\Desktop\Jested INVERZE
2020-01-04 20:16 - 2019-12-23 18:44 - 049760829 _____ C:\Users\HP-OMEN\Desktop\hprls_harrach_kameny.mp4
2020-01-04 17:40 - 2012-02-02 11:57 - 000000857 _____ C:\Users\HP-OMEN\Desktop\READ-ME.txt
2020-01-04 17:40 - 2012-02-02 11:56 - 000000979 _____ C:\Users\HP-OMEN\Desktop\LIES-MICH.txt
2020-01-04 17:40 - 2012-02-02 11:23 - 032588292 _____ C:\Users\HP-OMEN\Desktop\install_virtualdj_le_v71.0.4.msi
2020-01-04 13:06 - 2020-01-04 13:06 - 000314184 _____ C:\Users\HP-OMEN\Desktop\Byty-Liberec.pdf
2019-12-16 16:00 - 2019-12-16 16:00 - 000000000 ____D C:\Users\HP-OMEN\AppData\Roaming\PowerISO
2019-12-16 14:31 - 2019-12-16 14:31 - 000000000 ____D C:\Program Files\McAfee
2019-12-16 14:30 - 2019-12-16 14:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
2019-12-16 14:30 - 2019-12-16 14:30 - 000000000 ____D C:\ProgramData\McAfee
2019-12-16 14:30 - 2019-12-16 14:30 - 000000000 ____D C:\Program Files\PowerISO
2019-12-16 14:30 - 2017-06-07 01:36 - 000138296 _____ (Power Software Ltd) C:\Windows\system32\Drivers\scdemu.sys
2019-12-15 20:29 - 2019-12-15 20:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2019-12-15 20:29 - 2019-12-15 20:29 - 000000000 ____D C:\Program Files\iTunes
2019-12-15 20:29 - 2019-12-15 20:29 - 000000000 ____D C:\Program Files\iPod
2019-12-14 22:08 - 2019-12-14 22:08 - 000002287 _____ C:\Users\HP-OMEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\safe-watch.lnk
2019-12-14 22:08 - 2019-12-14 22:08 - 000000000 ____D C:\Users\HP-OMEN\AppData\Local\safe-watch-updater
2019-12-14 22:08 - 2019-12-14 22:08 - 000000000 ____D C:\Program Files\TAP-Windows
2019-12-14 22:08 - 2019-12-14 22:08 - 000000000 ____D C:\Program Files (x86)\IncognitoVPN
2019-12-12 11:31 - 2019-12-12 11:31 - 025443840 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 018020352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 009927992 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 007754240 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 007600448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 006516648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 006083832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 005943296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 005914112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 005764664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 004129416 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 002800640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 002762296 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 002698768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 002494432 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 002147328 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 002082208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001743888 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001697280 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001664904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001647072 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001610752 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001539584 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001458688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001413840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001399312 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 001261464 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001098928 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001072952 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 001054864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000921600 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000842552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000822416 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 000797112 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000774456 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000674280 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 000673456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 000646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000593128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\SppExtComObj.Exe
2019-12-12 11:31 - 2019-12-12 11:31 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000511000 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000430080 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000406480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000342528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 000210744 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 000099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000097080 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000089536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000032056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\DMAlertListener.ProxyStub.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DMAlertListener.ProxyStub.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2019-12-12 11:30 - 2019-12-12 11:31 - 007263992 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 007905000 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 007278592 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 003729408 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 003703296 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 002716672 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 002284544 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 001757304 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-12-12 11:30 - 2019-12-12 11:30 - 001748480 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 001656600 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 001512528 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 001451520 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 001366128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-12-12 11:30 - 2019-12-12 11:30 - 001182448 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 001066496 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 001006904 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000986936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refsv1.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 000878080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Service.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000826368 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 000598016 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 000530944 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000524264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000513536 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 000457216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cldflt.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 000422712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 000404480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000127272 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\autopilot.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000067112 _____ (Microsoft Corporation) C:\Windows\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\DevQueryBroker.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\autopilotdiag.dll
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-01-06 22:54 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-01-06 22:40 - 2019-07-25 12:34 - 000000000 ____D C:\Users\HP-OMEN\AppData\Local\D3DSCache
2020-01-06 22:19 - 2019-07-25 12:25 - 000000000 ____D C:\Windows\system32\Drivers\wd
2020-01-06 22:13 - 2019-07-25 14:39 - 000748816 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2020-01-06 22:13 - 2019-07-25 12:32 - 001609600 _____ C:\Windows\system32\PerfStringBackup.INI
2020-01-06 22:13 - 2019-03-19 12:55 - 000686306 _____ C:\Windows\system32\perfh005.dat
2020-01-06 22:13 - 2019-03-19 12:55 - 000138470 _____ C:\Windows\system32\perfc005.dat
2020-01-06 22:13 - 2019-03-19 05:50 - 000000000 ____D C:\Windows\INF
2020-01-06 22:08 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\AppReadiness
2020-01-06 22:08 - 2019-03-19 05:37 - 000032768 _____ C:\Windows\system32\config\ELAM
2020-01-06 22:05 - 2019-07-26 08:41 - 000000000 ____D C:\ProgramData\NVIDIA
2020-01-06 22:05 - 2019-07-26 08:14 - 000000000 __SHD C:\Users\HP-OMEN\IntelGraphicsProfiles
2020-01-06 22:05 - 2019-07-25 12:25 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-01-06 22:05 - 2019-03-19 05:37 - 000786432 _____ C:\Windows\system32\config\BBI
2020-01-06 21:51 - 2019-07-26 16:18 - 000000372 _____ C:\Windows\Tasks\HPCeeScheduleForHP-OMEN.job
2020-01-06 18:04 - 2019-10-05 16:18 - 000002608 _____ C:\Windows\system32\Tasks\AdobeGCInvoker-1.0
2020-01-06 18:04 - 2019-08-10 22:02 - 000003402 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-01-06 18:04 - 2019-08-10 22:02 - 000003178 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-01-06 18:04 - 2019-08-10 21:52 - 000002238 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC
2020-01-06 18:04 - 2019-08-06 13:27 - 000003788 _____ C:\Windows\system32\Tasks\Adobe Flash Player PPAPI Notifier
2020-01-06 18:04 - 2019-08-06 13:27 - 000003488 _____ C:\Windows\system32\Tasks\Adobe Flash Player Updater
2020-01-06 18:04 - 2019-07-26 16:18 - 000002814 _____ C:\Windows\system32\Tasks\HPCeeScheduleForHP-OMEN
2020-01-06 18:04 - 2019-07-26 09:28 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2020-01-06 18:04 - 2019-07-26 09:15 - 000002496 _____ C:\Windows\system32\Tasks\KMSPico
2020-01-06 18:04 - 2019-07-26 08:45 - 000002766 _____ C:\Windows\system32\Tasks\HPAudioSwitch
2020-01-06 18:04 - 2019-07-26 08:41 - 000003398 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000003176 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002984 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002956 _____ C:\Windows\system32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002914 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002838 _____ C:\Windows\system32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002786 _____ C:\Windows\system32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002744 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-25 12:31 - 000002862 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2343376451-2767932507-3490548569-1001
2020-01-06 17:41 - 2019-10-05 16:18 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2020-01-06 13:34 - 2019-07-25 12:35 - 000000000 ____D C:\Users\HP-OMEN\AppData\Roaming\vlc
2020-01-06 13:29 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-01-06 11:08 - 2019-07-25 12:25 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-01-04 20:31 - 2019-07-26 08:31 - 000000000 ____D C:\Users\HP-OMEN\Documents\Adobe
2020-01-04 20:31 - 2019-07-25 12:29 - 000000000 ____D C:\Users\HP-OMEN\AppData\Roaming\Adobe
2020-01-04 19:30 - 2019-07-25 12:29 - 000000000 ____D C:\Users\HP-OMEN\AppData\Local\Packages
2020-01-04 19:26 - 2019-08-06 09:52 - 000000000 ____D C:\Users\HP-OMEN\AppData\Local\CrashDumps
2020-01-04 19:22 - 2019-08-10 21:45 - 000000000 ____D C:\Users\HP-OMEN\AppData\Roaming\uTorrent
2020-01-04 14:45 - 2019-07-26 09:28 - 000004264 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2019-12-27 21:47 - 2019-11-29 11:57 - 000000000 ____D C:\Users\HP-OMEN\Documents\YouTubeDownloads
2019-12-20 16:25 - 2019-08-10 22:03 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-12-17 12:29 - 2019-07-25 12:26 - 000000000 ____D C:\Windows\minidump
2019-12-17 12:29 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\LiveKernelReports
2019-12-16 10:12 - 2019-07-25 12:31 - 000000000 ___RD C:\Users\HP-OMEN\OneDrive
2019-12-14 22:07 - 2019-08-10 20:20 - 000000000 ____D C:\Program Files (x86)\Popcorn Time
2019-12-12 12:53 - 2019-08-05 19:00 - 000629896 _____ C:\Windows\system32\FNTCACHE.DAT
2019-12-12 12:53 - 2019-07-25 12:29 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-12-12 12:53 - 2019-07-25 12:29 - 000000000 ___RD C:\Users\HP-OMEN\3D Objects
2019-12-12 12:52 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SystemResources
2019-12-12 12:52 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\ShellExperiences
2019-12-12 12:52 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\bcastdvr
2019-12-12 11:35 - 2019-07-25 14:46 - 000000000 ____D C:\Windows\system32\MRT
2019-12-12 11:33 - 2019-07-25 14:46 - 129221664 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-12-12 11:33 - 2019-03-19 05:37 - 000000000 ____D C:\Windows\CbsTemp
2019-12-12 11:32 - 2019-07-26 09:03 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2019-12-11 16:01 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-12-11 16:01 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\Macromed
==================== Files in the root of some directories ========
2019-11-29 11:59 - 2019-11-29 12:51 - 000063312 _____ () C:\Users\HP-OMEN\AppData\Roaming\downloads.json
2019-08-09 14:18 - 2019-08-09 14:18 - 000000000 _____ () C:\Users\HP-OMEN\AppData\Local\oobelibMkey.log
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
dnes jsem při zapnutí počítače zjistil, že po příhlášení naběhne jen černá obrazovka s příkazovým řádkem. Po zadání explorer.exe se systém normálně ukáže a tváří se, že funguje normálně. Podezření ale mám, jelikož jsem stahoval a instaloval hru (neofiko).
Níže posílám log z FRST, děkuji předem za kontrolu.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-12-2019
Ran by HP-OMEN (administrator) on DESKTOP-2J4O5S5 (HP OMEN by HP Laptop) (06-01-2020 22:56:33)
Running from C:\Users\HP-OMEN\Desktop
Loaded Profiles: HP-OMEN (Available Profiles: HP-OMEN)
Platform: Windows 10 Home Version 1903 18362.535 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.5.245.0\AvastBrowserCrashHandler.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.5.245.0\AvastBrowserCrashHandler64.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler64.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(IncognitoVPN) [File not signed] C:\Program Files (x86)\IncognitoVPN\vpn_module.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.1725.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.1725.0_x64__8j3eq9eme6ctt\IGCC.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f3a64c75ee4defb7\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f3a64c75ee4defb7\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_38bfcb542ef4272e\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_38bfcb542ef4272e\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\browserhost.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Popcorn Time) [File not signed] C:\Program Files (x86)\Popcorn Time\Updater.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Reimage Ltd. -> reimage) C:\Program Files\Reimage\Reimage Protector\ReimageApp.exe
(Reimage Ltd. -> Reimage) C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe
(Reimage Ltd. -> Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9269352 2019-07-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320568 2016-09-20] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942864 2016-10-13] (Logitech -> Logitech, Inc.)
HKLM\...\Run: [Reimage] => C:\Program Files\Reimage\Reimage Protector\ReimageApp.exe [263832 2019-07-07] (Reimage Ltd. -> reimage)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [707624 2018-08-08] (HP Inc. -> HP Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-2343376451-2767932507-3490548569-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2343376451-2767932507-3490548569-1001\...\Winlogon: [Shell] %comspec% <==== ATTENTION
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.88\Installer\chrmstp.exe [2019-12-20] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\77.2.2152.121\Installer\chrmstp.exe [2019-11-28] (AVAST Software s.r.o. -> AVAST Software)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0175071C-8254-431F-A44D-6056FE47965C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0416D7B4-EB00-4AC3-86C3-59D5F4617EEB} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [660040 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {18CEEAB5-DBE3-4E6A-A45E-E1AB063319D3} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1930312 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1DDC7373-93BF-4C38-9B14-6CE6715DEDA4} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
Task: {1F1BA11C-5C24-48BD-A370-6DAC7BC56621} - System32\Tasks\KMSPico => C:\Windows\KMS\KMSPico.exe [1454191 2014-02-13] (ByELDI 'nova-s release') [File not signed]
Task: {20D600AF-FE52-443D-8CB6-EF1082B2A3E5} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {28F78EA0-2FF0-4175-BBC2-F7204E6C1307} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [145272 2019-10-31] (HP Inc. -> HP Inc.)
Task: {3C345500-DF95-4DDD-8236-C86677CE0756} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {474B424E-1CF0-4BA5-B01C-F6ED7D62EC36} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2018-05-04] (HP Inc. -> HP Inc.)
Task: {4C93D4C6-B5BF-4CA8-80EC-6DB38B3478E6} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
Task: {4DED6405-D2F8-4D3F-BED9-336F59B3AF8C} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-2343376451-2767932507-3490548569-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\Windows\System32\wpninprc.dll [24064 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Task: {545FA4F7-DF7D-488B-BBF6-48FA6BC0B727} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {616A6AC5-ADB9-44EA-8E76-567665972A6D} - System32\Tasks\HPCeeScheduleForHP-OMEN => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [97656 2018-09-11] (HP Inc. -> HP Inc.)
Task: {62FC85F5-7199-46A8-AFA2-09242D7B0AEB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {6F5CE3D5-21E0-4C5F-AE71-AA75F5D800DF} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1850312 2019-11-05] (AVAST Software s.r.o. -> AVAST Software)
Task: {7031CFF3-D605-46A5-84BD-B948E4F28D79} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519240 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {79F905D8-86EF-492C-B81A-3367E4DDA9EF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-12-11] (Adobe Inc. -> Adobe)
Task: {7D0459C1-60C4-4888-B694-5125C3159387} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [660040 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7EB463B7-73EE-46FB-B2BD-E271FADB9445} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {7F86FB45-5389-4E43-B1BC-E79158A02F66} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [746056 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8C18827C-7AC1-46F7-B8A4-A91FC6DEE620} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [968264 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8F443F0B-DA94-4B3C-A576-11DAB6E7CB95} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {A4CFA836-EAB1-4EFE-8314-C1B3B5A579D5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {AAC514B2-5837-4795-8A0D-475FEE752B75} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [202392 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
Task: {ACCF43F4-E4BB-45ED-B0AB-E47648B82234} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {B5E5B402-EC30-42DD-AB13-D0A97C579BFB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.)
Task: {B8367F0C-821B-4FCD-870C-C86EE8FF2403} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1850312 2019-11-05] (AVAST Software s.r.o. -> AVAST Software)
Task: {B8E26EB7-6BEA-4303-9463-D0BE21EF6C53} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.)
Task: {BB6DC990-2606-4337-AF7B-A2302C0FABD5} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_303_pepper.exe [1453112 2019-12-11] (Adobe Inc. -> Adobe)
Task: {C3DA362E-05FB-4E97-BFB7-3ACD4FB048A4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-10] (Google Inc -> Google LLC)
Task: {D3FB7D92-D8D7-48D5-9C4E-AE1CB2259ECE} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [746056 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D543816A-1B06-45A3-99E5-6091EC2CB8BD} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [524360 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D9788312-0F73-4B00-9415-9F909B0D936A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DC10FB39-5534-4DF1-B770-E8B479396D29} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644472 2019-06-21] (HP Inc. -> HP Inc.)
Task: {DF7C82C4-EE57-49DD-BA3E-2E0075691CC0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-10] (Google Inc -> Google LLC)
Task: {DFA7E8A5-FB75-49F1-9AD1-20F09DA319A6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [277880 2019-11-22] (HP Inc. -> HP Inc.)
Task: {F96B99A4-2ADE-4BD0-885A-B87094161103} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [202392 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
Task: {F9C99893-D0CB-4845-AB42-49C61DA14E59} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {FD2ED8BF-7444-4233-A8FB-A99A357D0634} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\HPCeeScheduleForHP-OMEN.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{42385fa3-dcb6-4586-9555-113afacea9ce}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{af4e668a-ae58-4841-b9d4-4b58dff92a9f}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKU\S-1-5-21-2343376451-2767932507-3490548569-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10454__190810
SearchScopes: HKU\S-1-5-21-2343376451-2767932507-3490548569-1001 -> {993F5746-4C15-42BC-99C1-064A1764271B} URL = hxxps://securesearch.org?q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-12-16] (McAfee, LLC -> McAfee, Inc.)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -> HP Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-12-16] (McAfee, LLC -> McAfee, Inc.)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -> HP Inc.)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-12-16]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2012-09-20] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-21] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-15] (Google LLC -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-15] (Google LLC -> Google LLC)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2012-09-20] (Adobe Systems Incorporated -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.google.cz/","hxxp://www.yandex.ru/? ... VHCH3NVHCX"
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default [2020-01-06]
CHR Extension: (Slides) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-08-10]
CHR Extension: (Just Black) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\aghfnjkcakhmadgdomlmlhhaocbkloab [2019-08-10]
CHR Extension: (Docs) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-08-10]
CHR Extension: (Google Drive) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-08-10]
CHR Extension: (YouTube) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-08-10]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-10-23]
CHR Extension: (Adblock for Youtube™) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2019-08-10]
CHR Extension: (minerBlock) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\emikbbbebcdfohonlaifafnoanocnebl [2019-08-10]
CHR Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2019-12-21]
CHR Extension: (Sheets) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-08-10]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2019-12-16]
CHR Extension: (Google Docs Offline) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-08-11]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-12-18]
CHR Extension: (No Coin - Block miners on the web!) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gojamcfopckidlocpkbelmpjcgmbgjcl [2019-08-10]
CHR Extension: (Avast Online Security) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-12-20]
CHR Extension: (FormApps Extension) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2019-08-10]
CHR Extension: (HP Network Check Launcher) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkfpchpiljkaemlpmpebnglgkomamfeo [2019-08-10]
CHR Extension: (Chrome Web Store Payments) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-10]
CHR Extension: (Chrome Media Router) - C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-13]
CHR Profile: C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-01-04]
CHR Profile: C:\Users\HP-OMEN\AppData\Local\Google\Chrome\User Data\System Profile [2020-01-04]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
CHR HKLM-x32\...\Chrome\Extension: [jkfpchpiljkaemlpmpebnglgkomamfeo]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2019-10-07] (Apple Inc. -> Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6259592 2019-12-19] (AVAST Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [202392 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [202392 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\77.2.2152.121\elevation_service.exe [970088 2019-11-05] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R2 esifsvc; C:\Windows\System32\Intel\DPTF\esif_uf.exe [1855976 2019-07-25] (Intel Corporation -> Intel Corporation)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (Hewlett-Packard Company -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [361848 2019-12-06] (HP Inc. -> HP Inc.)
R2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [628768 2017-07-13] (HP Inc. -> HP Inc.)
R2 ibtsiva; C:\Windows\System32\ibtsiva.exe [529912 2018-12-21] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R2 IncognitoVPNSvc; C:\Program Files (x86)\IncognitoVPN\vpn_module.exe [221696 2019-11-28] (IncognitoVPN) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [758552 2018-03-02] (Intel(R) Trust Services -> Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [719640 2018-03-02] (Intel(R) Trust Services -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [205968 2017-12-03] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [913208 2019-12-16] (McAfee, LLC -> McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [310880 2018-09-05] (Intel Corporation -> )
S3 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519240 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519240 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
R2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [8944800 2019-05-23] (Reimage Ltd. -> Reimage®)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [268368 2019-07-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [360872 2018-09-21] (Synaptics Incorporated -> Synaptics Incorporated)
R2 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [339968 2019-01-08] (Popcorn Time) [File not signed]
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-01-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [4059744 2018-09-05] (Intel Corporation -> Intel® Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Accelerometer; C:\Windows\System32\drivers\Accelerometer.sys [53904 2019-07-22] (HP Inc. -> HP)
S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37616 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [204824 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [274456 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [209552 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [65120 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [16304 2019-10-02] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [276952 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42736 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [161544 2019-11-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [110320 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [83792 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [848432 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [460448 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [236024 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [316528 2019-10-02] (AVAST Software s.r.o. -> AVAST Software)
R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [78680 2019-07-25] (Intel Corporation -> Intel Corporation)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [71000 2019-07-25] (Intel Corporation -> Intel Corporation)
R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [402264 2019-07-25] (Intel Corporation -> Intel Corporation)
R0 hpdskflt; C:\Windows\System32\drivers\hpdskflt.sys [41104 2019-07-22] (HP Inc. -> HP)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-07-25] (Martin Malik - REALiX -> REALiX(tm))
R0 iaStorAC; C:\Windows\System32\drivers\iaStorAC.sys [1035768 2019-07-25] (Intel(R) Rapid Storage Technology -> Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [257016 2019-07-25] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 MEIx64; C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_85021432489d6a1c\x64\TeeDriverW8x64.sys [266128 2019-07-25] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [8720384 2019-08-27] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvhmi.inf_amd64_36f227864f86e6b6\nvlddmkm.sys [21854352 2019-07-25] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30280 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [69840 2019-07-26] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [57928 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> )
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [1154336 2019-07-25] (Realtek Semiconductor Corp. -> Realtek )
S3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [779232 2016-08-22] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [56840 2019-07-25] (Synaptics Incorporated -> Synaptics Incorporated)
R3 tap0901; C:\Windows\System32\drivers\tap0901.sys [27136 2014-11-05] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [24576 2019-09-11] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [45664 2020-01-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [355760 2020-01-06] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [54192 2020-01-06] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\Windows\system32\DRIVERS\WirelessButtonDriver64.sys [35392 2019-08-06] (HP Inc. -> HP)
U3 DfSdkS; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-01-06 22:56 - 2020-01-06 22:57 - 000043128 _____ C:\Users\HP-OMEN\Desktop\FRST.txt
2020-01-06 22:56 - 2020-01-06 22:56 - 000000000 ____D C:\FRST
2020-01-06 22:50 - 2020-01-06 22:50 - 002272256 _____ (Farbar) C:\Users\HP-OMEN\Desktop\FRST64.exe
2020-01-06 22:50 - 2020-01-06 22:50 - 000000000 ____D C:\rsit
2020-01-06 22:50 - 2020-01-06 22:50 - 000000000 ____D C:\Program Files\trend micro
2020-01-06 22:49 - 2020-01-06 22:49 - 001222144 _____ C:\Users\HP-OMEN\Desktop\RSITx64.exe
2020-01-06 22:29 - 2020-01-06 22:34 - 000000000 ____D C:\ProgramData\Reimage Protector
2020-01-06 22:29 - 2020-01-06 22:30 - 000000140 _____ C:\Windows\Reimage.ini
2020-01-06 22:29 - 2020-01-06 22:30 - 000000000 ____D C:\rei
2020-01-06 22:29 - 2020-01-06 22:29 - 000001922 _____ C:\Users\Public\Desktop\PC Scan & Repair by Reimage.lnk
2020-01-06 22:29 - 2020-01-06 22:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair
2020-01-06 22:29 - 2020-01-06 22:29 - 000000000 ____D C:\Program Files\Reimage
2020-01-06 22:04 - 2020-01-06 22:04 - 000000000 ____D C:\Windows\pss
2020-01-06 17:50 - 2020-01-06 18:08 - 000000000 ____D C:\Users\HP-OMEN\AppData\Roaming\FileZilla
2020-01-06 17:50 - 2020-01-06 18:08 - 000000000 ____D C:\Users\HP-OMEN\AppData\Local\FileZilla
2020-01-06 17:50 - 2020-01-06 17:50 - 008000936 _____ (Tim Kosse) C:\Users\HP-OMEN\Downloads\FileZilla_3.46.3_win64-setup.exe
2020-01-06 17:50 - 2020-01-06 17:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2020-01-06 17:50 - 2020-01-06 17:50 - 000000000 ____D C:\Program Files\FileZilla FTP Client
2020-01-06 16:48 - 2020-01-06 16:48 - 003673185 _____ C:\Users\HP-OMEN\Desktop\zachrana.pdf
2020-01-06 16:48 - 2020-01-06 16:48 - 002113109 _____ C:\Users\HP-OMEN\Desktop\strategie.pdf
2020-01-06 16:47 - 2020-01-06 16:47 - 003625664 _____ C:\Users\HP-OMEN\Desktop\prevence.pdf
2020-01-06 16:45 - 2020-01-06 16:45 - 000000505 _____ C:\Users\Public\Desktop\Red Dead Redemption 2.lnk
2020-01-06 16:45 - 2020-01-06 16:45 - 000000505 _____ C:\Users\HP-OMEN\AppData\Roaming\Microsoft\Windows\Start Menu\Red Dead Redemption 2.lnk
2020-01-04 21:31 - 2020-01-04 21:33 - 000000000 ____D C:\Users\HP-OMEN\Desktop\Movies
2020-01-04 21:19 - 2020-01-04 21:19 - 000000000 ____D C:\Users\HP-OMEN\Desktop\Surfhouse
2020-01-04 20:52 - 2020-01-04 20:52 - 004840116 _____ C:\Users\HP-OMEN\Desktop\Manual_omnitronic-tmc-02.pdf
2020-01-04 20:16 - 2020-01-04 20:17 - 000000000 ____D C:\Users\HP-OMEN\Desktop\Jested INVERZE
2020-01-04 20:16 - 2019-12-23 18:44 - 049760829 _____ C:\Users\HP-OMEN\Desktop\hprls_harrach_kameny.mp4
2020-01-04 17:40 - 2012-02-02 11:57 - 000000857 _____ C:\Users\HP-OMEN\Desktop\READ-ME.txt
2020-01-04 17:40 - 2012-02-02 11:56 - 000000979 _____ C:\Users\HP-OMEN\Desktop\LIES-MICH.txt
2020-01-04 17:40 - 2012-02-02 11:23 - 032588292 _____ C:\Users\HP-OMEN\Desktop\install_virtualdj_le_v71.0.4.msi
2020-01-04 13:06 - 2020-01-04 13:06 - 000314184 _____ C:\Users\HP-OMEN\Desktop\Byty-Liberec.pdf
2019-12-16 16:00 - 2019-12-16 16:00 - 000000000 ____D C:\Users\HP-OMEN\AppData\Roaming\PowerISO
2019-12-16 14:31 - 2019-12-16 14:31 - 000000000 ____D C:\Program Files\McAfee
2019-12-16 14:30 - 2019-12-16 14:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
2019-12-16 14:30 - 2019-12-16 14:30 - 000000000 ____D C:\ProgramData\McAfee
2019-12-16 14:30 - 2019-12-16 14:30 - 000000000 ____D C:\Program Files\PowerISO
2019-12-16 14:30 - 2017-06-07 01:36 - 000138296 _____ (Power Software Ltd) C:\Windows\system32\Drivers\scdemu.sys
2019-12-15 20:29 - 2019-12-15 20:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2019-12-15 20:29 - 2019-12-15 20:29 - 000000000 ____D C:\Program Files\iTunes
2019-12-15 20:29 - 2019-12-15 20:29 - 000000000 ____D C:\Program Files\iPod
2019-12-14 22:08 - 2019-12-14 22:08 - 000002287 _____ C:\Users\HP-OMEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\safe-watch.lnk
2019-12-14 22:08 - 2019-12-14 22:08 - 000000000 ____D C:\Users\HP-OMEN\AppData\Local\safe-watch-updater
2019-12-14 22:08 - 2019-12-14 22:08 - 000000000 ____D C:\Program Files\TAP-Windows
2019-12-14 22:08 - 2019-12-14 22:08 - 000000000 ____D C:\Program Files (x86)\IncognitoVPN
2019-12-12 11:31 - 2019-12-12 11:31 - 025443840 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 018020352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 009927992 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 007754240 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 007600448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 006516648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 006083832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 005943296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 005914112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 005764664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 004129416 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 002800640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 002762296 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 002698768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 002494432 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 002147328 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 002082208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001743888 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001697280 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001664904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001647072 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001610752 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001539584 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001458688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001413840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001399312 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 001261464 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001098928 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 001072952 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 001054864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000921600 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000842552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000822416 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 000797112 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000774456 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000674280 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 000673456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2019-12-12 11:31 - 2019-12-12 11:31 - 000646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000593128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\SppExtComObj.Exe
2019-12-12 11:31 - 2019-12-12 11:31 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000511000 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000430080 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000406480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000342528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 000210744 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 000099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000097080 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000089536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000032056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2019-12-12 11:31 - 2019-12-12 11:31 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\DMAlertListener.ProxyStub.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DMAlertListener.ProxyStub.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2019-12-12 11:31 - 2019-12-12 11:31 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2019-12-12 11:30 - 2019-12-12 11:31 - 007263992 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 007905000 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 007278592 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 003729408 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 003703296 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 002716672 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 002284544 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 001757304 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-12-12 11:30 - 2019-12-12 11:30 - 001748480 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 001656600 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 001512528 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 001451520 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 001366128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-12-12 11:30 - 2019-12-12 11:30 - 001182448 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 001066496 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 001006904 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000986936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refsv1.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 000878080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Service.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000826368 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 000598016 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 000530944 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000524264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000513536 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 000457216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cldflt.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 000422712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 000404480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2019-12-12 11:30 - 2019-12-12 11:30 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000127272 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2019-12-12 11:30 - 2019-12-12 11:30 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\autopilot.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000067112 _____ (Microsoft Corporation) C:\Windows\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\DevQueryBroker.dll
2019-12-12 11:30 - 2019-12-12 11:30 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\autopilotdiag.dll
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-01-06 22:54 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-01-06 22:40 - 2019-07-25 12:34 - 000000000 ____D C:\Users\HP-OMEN\AppData\Local\D3DSCache
2020-01-06 22:19 - 2019-07-25 12:25 - 000000000 ____D C:\Windows\system32\Drivers\wd
2020-01-06 22:13 - 2019-07-25 14:39 - 000748816 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2020-01-06 22:13 - 2019-07-25 12:32 - 001609600 _____ C:\Windows\system32\PerfStringBackup.INI
2020-01-06 22:13 - 2019-03-19 12:55 - 000686306 _____ C:\Windows\system32\perfh005.dat
2020-01-06 22:13 - 2019-03-19 12:55 - 000138470 _____ C:\Windows\system32\perfc005.dat
2020-01-06 22:13 - 2019-03-19 05:50 - 000000000 ____D C:\Windows\INF
2020-01-06 22:08 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\AppReadiness
2020-01-06 22:08 - 2019-03-19 05:37 - 000032768 _____ C:\Windows\system32\config\ELAM
2020-01-06 22:05 - 2019-07-26 08:41 - 000000000 ____D C:\ProgramData\NVIDIA
2020-01-06 22:05 - 2019-07-26 08:14 - 000000000 __SHD C:\Users\HP-OMEN\IntelGraphicsProfiles
2020-01-06 22:05 - 2019-07-25 12:25 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-01-06 22:05 - 2019-03-19 05:37 - 000786432 _____ C:\Windows\system32\config\BBI
2020-01-06 21:51 - 2019-07-26 16:18 - 000000372 _____ C:\Windows\Tasks\HPCeeScheduleForHP-OMEN.job
2020-01-06 18:04 - 2019-10-05 16:18 - 000002608 _____ C:\Windows\system32\Tasks\AdobeGCInvoker-1.0
2020-01-06 18:04 - 2019-08-10 22:02 - 000003402 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-01-06 18:04 - 2019-08-10 22:02 - 000003178 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-01-06 18:04 - 2019-08-10 21:52 - 000002238 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC
2020-01-06 18:04 - 2019-08-06 13:27 - 000003788 _____ C:\Windows\system32\Tasks\Adobe Flash Player PPAPI Notifier
2020-01-06 18:04 - 2019-08-06 13:27 - 000003488 _____ C:\Windows\system32\Tasks\Adobe Flash Player Updater
2020-01-06 18:04 - 2019-07-26 16:18 - 000002814 _____ C:\Windows\system32\Tasks\HPCeeScheduleForHP-OMEN
2020-01-06 18:04 - 2019-07-26 09:28 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2020-01-06 18:04 - 2019-07-26 09:15 - 000002496 _____ C:\Windows\system32\Tasks\KMSPico
2020-01-06 18:04 - 2019-07-26 08:45 - 000002766 _____ C:\Windows\system32\Tasks\HPAudioSwitch
2020-01-06 18:04 - 2019-07-26 08:41 - 000003398 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000003176 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002984 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002956 _____ C:\Windows\system32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002914 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002838 _____ C:\Windows\system32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002786 _____ C:\Windows\system32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-26 08:41 - 000002744 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-06 18:04 - 2019-07-25 12:31 - 000002862 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2343376451-2767932507-3490548569-1001
2020-01-06 17:41 - 2019-10-05 16:18 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2020-01-06 13:34 - 2019-07-25 12:35 - 000000000 ____D C:\Users\HP-OMEN\AppData\Roaming\vlc
2020-01-06 13:29 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-01-06 11:08 - 2019-07-25 12:25 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-01-04 20:31 - 2019-07-26 08:31 - 000000000 ____D C:\Users\HP-OMEN\Documents\Adobe
2020-01-04 20:31 - 2019-07-25 12:29 - 000000000 ____D C:\Users\HP-OMEN\AppData\Roaming\Adobe
2020-01-04 19:30 - 2019-07-25 12:29 - 000000000 ____D C:\Users\HP-OMEN\AppData\Local\Packages
2020-01-04 19:26 - 2019-08-06 09:52 - 000000000 ____D C:\Users\HP-OMEN\AppData\Local\CrashDumps
2020-01-04 19:22 - 2019-08-10 21:45 - 000000000 ____D C:\Users\HP-OMEN\AppData\Roaming\uTorrent
2020-01-04 14:45 - 2019-07-26 09:28 - 000004264 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2019-12-27 21:47 - 2019-11-29 11:57 - 000000000 ____D C:\Users\HP-OMEN\Documents\YouTubeDownloads
2019-12-20 16:25 - 2019-08-10 22:03 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-12-17 12:29 - 2019-07-25 12:26 - 000000000 ____D C:\Windows\minidump
2019-12-17 12:29 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\LiveKernelReports
2019-12-16 10:12 - 2019-07-25 12:31 - 000000000 ___RD C:\Users\HP-OMEN\OneDrive
2019-12-14 22:07 - 2019-08-10 20:20 - 000000000 ____D C:\Program Files (x86)\Popcorn Time
2019-12-12 12:53 - 2019-08-05 19:00 - 000629896 _____ C:\Windows\system32\FNTCACHE.DAT
2019-12-12 12:53 - 2019-07-25 12:29 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-12-12 12:53 - 2019-07-25 12:29 - 000000000 ___RD C:\Users\HP-OMEN\3D Objects
2019-12-12 12:52 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SystemResources
2019-12-12 12:52 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\ShellExperiences
2019-12-12 12:52 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\bcastdvr
2019-12-12 11:35 - 2019-07-25 14:46 - 000000000 ____D C:\Windows\system32\MRT
2019-12-12 11:33 - 2019-07-25 14:46 - 129221664 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-12-12 11:33 - 2019-03-19 05:37 - 000000000 ____D C:\Windows\CbsTemp
2019-12-12 11:32 - 2019-07-26 09:03 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2019-12-11 16:01 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-12-11 16:01 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\Macromed
==================== Files in the root of some directories ========
2019-11-29 11:59 - 2019-11-29 12:51 - 000063312 _____ () C:\Users\HP-OMEN\AppData\Roaming\downloads.json
2019-08-09 14:18 - 2019-08-09 14:18 - 000000000 _____ () C:\Users\HP-OMEN\AppData\Local\oobelibMkey.log
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================