prosim o kontrolu & obcas problem wifi (nahodne)
Napsal: 27 dub 2020 18:41
prosim o kontrolu logu, obcas sa po zapnuti neda pripojit k wifi a je potrebny restart, dakujem:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.01.2018
Ran by uzivatel (administrator) on ZERO1 (27-04-2020 19:38:29)
Running from C:\Users\uzivatel\Desktop
Loaded Profiles: uzivatel & SQLTELEMETRY$SQLEXPRESS & SQLTELEMETRY & MSSQLFDLauncher & MSSQLLaunchpad & MSSQL$SQLEXPRESS & MSSQLSERVER & MSSQLLaunchpad$SQLEXPRESS & MSSQLFDLauncher$SQLEXPRESS (Available Profiles: uzivatel & Administrator & SQLTELEMETRY$SQLEXPRESS & SQLTELEMETRY & MSSQLFDLauncher & MSSQLLaunchpad & MSSQL$SQLEXPRESS & MSSQLSERVER & MSSQLLaunchpad$SQLEXPRESS & MSSQLFDLauncher$SQLEXPRESS)
Platform: Windows 8.1 Pro (Update) (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\sqlceip.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlceip.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel) C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\Launchpad.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\Launchpad.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\fdlauncher.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\fdhost.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\fdhost.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Pixart Imaging Inc) C:\Windows\System32\TiltWheelMouse.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(f.lux Software LLC) C:\Users\uzivatel\AppData\Local\FluxSoftware\Flux\flux.exe
(Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(alch) C:\Program Files (x86)\ClamWin\bin\ClamTray.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [MouseDriver] => C:\Windows\system32\TiltWheelMouse.exe [241152 2013-04-09] (Pixart Imaging Inc)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [309560 2020-03-22] (Apple Inc.)
HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe"
HKLM-x32\...\Run: [ClamWin] => C:\Program Files (x86)\ClamWin\bin\ClamTray.exe [86016 2018-03-03] (alch)
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd)
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\...\Run: [f.lux] => C:\Users\uzivatel\AppData\Local\FluxSoftware\Flux\flux.exe [1385480 2019-08-30] (f.lux Software LLC)
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2020-03-22] (Apple Inc.)
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\...\Run: [OEXPRESS] => [X]
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\...\MountPoints2: {1b8b6c10-8736-11e8-88c6-edb37e02d125} - "E:\Setup.exe"
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\SysWOW64\ACTUAL~1.SCR [111616 2017-06-21] ()
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
GroupPolicy: Restriction <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 213.151.233.251 192.168.0.1
Tcpip\..\Interfaces\{AE1B6697-3F17-41CD-9040-9266881E316F}: [DhcpNameServer] 213.151.233.251 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus13.msn.com/?pc=ASJB
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
URLSearchHook: [S-1-5-80-1985561900-798682989-2213159822-1904180398-3434236965] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-2652535364-2169709536-2857650723-2622804123-1107741775] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-3263513310-3392720605-1798839546-683002060-3227631582] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-3477044410-376262199-2110164357-2030828471-4165405235] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-3880006512-4290199581-1648723128-3569869737-3631323133] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-3880718306-3832830129-1677859214-2598158968-1052248003] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-3919359670-3540430778-4246408611-3681914861-206046543] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-997390408-2153310517-3119169589-2253446180-2226563786] ATTENTION => Default URLSearchHook is missing
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Filter: text/xml - No CLSID Value
FireFox:
========
FF DefaultProfile: 7h7ex4z3.default-1552668782976
FF ProfilePath: Profiles/7h7ex4z3.default-1552668782976 [not found] <==== ATTENTION
FF ProfilePath: C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976 [2020-04-27]
FF NewTabOverride: Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976 -> Enabled: @contain-facebook
FF Extension: (Facebook Container) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\@contain-facebook.xpi [2019-12-08]
FF Extension: (Dark Reader) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\addon@darkreader.org.xpi [2019-12-08]
FF Extension: (Name) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\firefox@ghostery.com.xpi [2019-06-24]
FF Extension: (HTTPS Everywhere) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\https-everywhere@eff.org.xpi [2020-04-03]
FF Extension: (Privacy Badger) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2019-12-08]
FF Extension: (No Name) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\tranquility@ushnisha.com.xpi [2020-02-08]
FF Extension: (uBlock Origin) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\uBlock0@raymondhill.net.xpi [2019-07-26]
FF Extension: (NoScript) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2019-07-26]
FF Extension: (DoH Roll-Out) - C:\Program Files\Mozilla Firefox\browser\features\doh-rollout@mozilla.org.xpi [2020-02-20] [not signed]
FF Extension: (WebCompat Reporter) - C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi [2020-03-14] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_363.dll [2020-04-19] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_363.dll [2020-04-19] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-09-03] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-09-03] (Intel Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-04-19] (Adobe)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-03-12] (Apple Inc.)
S2 edgeupdate; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223120 2020-04-09] (Microsoft Corporation)
S3 edgeupdatem; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223120 2020-04-09] (Microsoft Corporation)
R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1037568 2014-09-18] (Intel Corporation)
R2 ibtsiva.exe; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [121288 2014-08-13] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [329104 2014-11-19] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation)
R2 IntelUSBoverIP; C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe [394184 2014-10-15] (Intel)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-09-03] (Intel Corporation)
S3 MicrosoftEdgeElevationService; C:\Program Files (x86)\Microsoft\Edge\Application\81.0.416.64\elevation_service.exe [1125264 2020-04-23] (Microsoft Corporation)
S3 MsMpiLaunchSvc; C:\Program Files\Microsoft MPI\Bin\msmpilaunchsvc.exe [23040 2016-03-04] () [File not signed]
R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [485048 2017-08-22] (Microsoft Corporation)
R3 MSSQLFDLauncher; C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe [60592 2017-08-22] (Microsoft Corporation)
R3 MSSQLFDLauncher$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\fdlauncher.exe [60592 2017-08-22] (Microsoft Corporation)
R2 MSSQLLaunchpad; C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\launchpad.exe [1121464 2017-08-22] (Microsoft Corporation)
R2 MSSQLLaunchpad$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\launchpad.exe [1121464 2017-08-22] (Microsoft Corporation)
R2 MSSQLSERVER; C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [485048 2017-08-22] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [265936 2014-10-29] ()
S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [578744 2017-08-22] (Microsoft Corporation)
S4 SQLSERVERAGENT; C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [578744 2017-08-22] (Microsoft Corporation)
R2 SQLTELEMETRY; C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\sqlceip.exe [246968 2017-08-22] (Microsoft Corporation)
R2 SQLTELEMETRY$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlceip.exe [246968 2017-08-22] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3818704 2014-10-29] (Intel® Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ATP; C:\Windows\System32\drivers\AsusTP.sys [69904 2014-11-21] (ASUS Corporation)
S3 AX88772; C:\Windows\system32\DRIVERS\ax88772.sys [113864 2013-07-18] (ASIX Electronics Corp.)
S3 BthMtpEnum; C:\Windows\system32\DRIVERS\BthMtpEnum.sys [62976 2013-08-22] (Microsoft Corporation)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [38720 2014-09-18] (Intel Corporation)
R3 dptf_pch; C:\Windows\System32\drivers\dptf_pch.sys [38208 2014-09-18] (Intel Corporation)
R3 esif_lf; C:\Windows\System32\drivers\esif_lf.sys [216360 2014-09-18] (Intel Corporation)
S3 GeneStor; C:\Windows\System32\drivers\GeneStor.sys [130648 2016-08-22] (GenesysLogic)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [219592 2014-08-13] (Intel Corporation)
R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [79016 2014-08-26] (Intel Corporation)
S1 ISODisk; C:\Windows\SysWow64\Drivers\ISODisk.sys [9600 2006-04-26] () [File not signed]
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80920 2015-07-02] (McAfee, Inc.)
R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3482600 2014-11-06] (Intel Corporation)
S4 RsFx0500; C:\Windows\System32\DRIVERS\RsFx0500.sys [261848 2017-08-22] (Microsoft Corporation)
S3 RTLU3E8023-W8-64; C:\Windows\system32\DRIVERS\rtu30x64w8.sys [70656 2013-06-18] (Realtek )
S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [14368 1999-09-14] () [File not signed]
R3 SensorsAlsDriver; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation)
R3 t_mouse.sys; C:\Windows\system32\DRIVERS\t_mouse.sys [6144 2013-04-09] ()
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [213296 2014-10-15] (Windows (R) Win 7 DDK provider)
S3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [237312 2020-02-19] (Oracle Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation)
U0 msahci; system32\drivers\msahci.sys [X]
S3 VirtualDVD; \SystemRoot\system32\DRIVERS\VirtualDVD.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-04-27 19:38 - 2020-04-27 19:38 - 000019081 _____ C:\Users\uzivatel\Desktop\FRST.txt
2020-04-16 10:50 - 2020-04-16 10:50 - 000032464 _____ C:\Users\uzivatel\Downloads\PK_2020_03_20.pdf
2020-04-13 15:52 - 2020-04-13 15:52 - 000000947 _____ C:\Users\Public\Desktop\ISODisk.lnk
2020-04-13 15:52 - 2020-04-13 15:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISODisk
2020-04-13 15:52 - 2020-04-13 15:52 - 000000000 ____D C:\Program Files (x86)\ISODisk
2020-04-13 15:52 - 2006-04-26 01:03 - 000009600 _____ C:\Windows\SysWOW64\Drivers\ISODisk.sys
2020-04-13 15:19 - 2020-04-13 15:51 - 000000000 ____D C:\Program Files (x86)\WinISO Computing
2020-04-13 15:19 - 2020-04-13 15:19 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\WinISO Computing
2020-04-13 15:19 - 2020-04-13 15:19 - 000000000 ____D C:\Users\uzivatel\AppData\Local\WinISO Computing
2020-04-13 15:10 - 2020-04-13 15:17 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Seznam.cz
2020-04-13 14:10 - 2020-04-13 14:10 - 000001133 _____ C:\Users\Public\Desktop\MiniTool Power Data Recovery 6.8.lnk
2020-04-13 14:10 - 2020-04-13 14:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Power Data Recovery 6.8
2020-04-13 14:10 - 2020-04-13 14:10 - 000000000 ____D C:\Program Files (x86)\PowerDataRecovery
2020-04-13 13:49 - 2020-04-13 13:57 - 000000000 ____D C:\Program Files (x86)\DiskInternals
2020-04-13 11:53 - 2020-04-13 11:58 - 000000000 ____D C:\Program Files\Wondershare
2020-04-12 22:06 - 2020-04-12 22:06 - 000003032 _____ C:\Windows\System32\Tasks\{43A172EE-326E-41F5-A02C-6D02CE3E1C2B}
2020-04-11 21:06 - 2020-04-13 11:54 - 000000000 ____D C:\ProgramData\Wondershare
2020-04-11 21:01 - 2020-04-11 21:10 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Wondershare
2020-04-10 22:07 - 1999-09-14 17:43 - 000014368 ____R C:\Windows\SysWOW64\Drivers\SECDRV.SYS
2020-04-09 22:55 - 2020-04-09 22:55 - 001376256 _____ C:\Windows\SysWOW64\glide3x.dll
2020-04-09 22:55 - 2020-04-09 22:55 - 001310720 _____ C:\Windows\SysWOW64\glide.dll
2020-04-09 22:20 - 2020-04-09 22:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Return to Castle Wolfenstein
2020-04-09 22:15 - 2020-04-13 15:28 - 000000635 _____ C:\Windows\Rtcw.INI
2020-04-09 22:14 - 2020-04-24 14:19 - 000002251 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-04-09 22:14 - 2020-04-24 14:19 - 000002210 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-04-09 22:13 - 2020-04-16 10:02 - 000003380 _____ C:\Windows\System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-04-09 22:13 - 2020-04-16 10:02 - 000003252 _____ C:\Windows\System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-04-09 19:29 - 2020-04-09 19:30 - 000002235 _____ C:\Windows\diagwrn.xml
2020-04-09 19:29 - 2020-04-09 19:30 - 000001908 _____ C:\Windows\diagerr.xml
2020-04-07 22:47 - 2020-04-07 22:47 - 000001375 _____ C:\Windows\Ncss97.ini
2020-04-07 22:47 - 2020-04-07 22:47 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCSS 97
2020-04-07 22:47 - 2020-04-07 22:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSS 97
2020-04-07 22:47 - 1998-04-01 12:33 - 000254976 _____ (heilerSoftware) C:\Windows\SysWOW64\h5ocx32.ocx
2020-04-07 22:47 - 1998-04-01 12:32 - 001028096 _____ (heilerSoftware) C:\Windows\SysWOW64\h5krnl32.dll
2020-04-07 22:47 - 1998-04-01 12:31 - 000114688 _____ (heilerSoftware) C:\Windows\SysWOW64\h5dlg32.dll
2020-04-07 22:47 - 1998-04-01 12:31 - 000051200 _____ (heilerSoftware) C:\Windows\SysWOW64\h5tool32.dll
2020-04-07 22:47 - 1998-03-16 17:59 - 000093696 _____ (heilerSoftware) C:\Windows\SysWOW64\h5rtf32.dll
2020-04-07 22:47 - 1998-03-16 17:58 - 000175104 _____ (heilerSoftware) C:\Windows\SysWOW64\h5menu32.dll
2020-04-07 22:47 - 1998-03-16 17:57 - 000188928 _____ (heilerSoftware) C:\Windows\SysWOW64\h5icon32.dll
2020-04-07 22:47 - 1997-04-18 05:00 - 000622536 _____ (Bits Per Second Ltd) C:\Windows\SysWOW64\Graphs32.ocx
2020-04-07 22:47 - 1997-04-16 05:00 - 000468928 _____ (Bits Per Second Ltd) C:\Windows\SysWOW64\Gsw32.exe
2020-04-07 22:47 - 1997-04-16 05:00 - 000263120 _____ (Bits Per Second Ltd) C:\Windows\SysWOW64\Gswag32.dll
2020-04-07 22:47 - 1997-04-16 05:00 - 000104384 _____ (Bits Per Second Ltd) C:\Windows\SysWOW64\Gswdll32.dll
2020-04-07 22:47 - 1997-04-15 05:00 - 000107008 _____ (Bits Per Second Ltd) C:\Windows\SysWOW64\Gsjpg32.dll
2020-04-07 22:47 - 1997-04-09 05:00 - 000974967 _____ C:\Windows\SysWOW64\Graphppd.hlp
2020-04-07 22:47 - 1997-04-01 05:00 - 000000666 _____ C:\Windows\SysWOW64\Graphppd.cnt
2020-04-07 22:47 - 1996-11-17 00:00 - 000006931 _____ C:\Windows\SysWOW64\Odbcjet.cnt
2020-04-07 22:47 - 1996-11-17 00:00 - 000003176 _____ C:\Windows\SysWOW64\Odbcjtnw.cnt
2020-04-07 22:47 - 1996-10-10 11:41 - 000240640 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\imgman31.dll
2020-04-07 22:47 - 1996-10-10 11:41 - 000036352 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\IM31xjpg.del
2020-04-07 22:47 - 1996-10-10 11:40 - 000055808 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\IM31tif.dil
2020-04-07 22:47 - 1996-10-10 11:39 - 000033792 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\IM31pcx.dil
2020-04-07 22:47 - 1996-10-10 11:39 - 000021504 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\IM31tga.dil
2020-04-07 22:47 - 1996-10-10 11:39 - 000020992 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\IM31bmp.dil
2020-04-07 22:47 - 1996-07-25 10:50 - 000118272 _____ (Crescent Division of Progress Software Corporation) C:\Windows\SysWOW64\Qpro32.dll
2020-04-07 22:47 - 1996-07-24 14:27 - 000100352 _____ (Crescent Division of Progress Software Corporation.) C:\Windows\SysWOW64\Csform32.ocx
2020-04-07 22:47 - 1995-10-11 02:00 - 000133904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mfcans32.dll
2020-04-07 22:47 - 1995-05-22 02:00 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Oc30.dll
2020-04-07 22:46 - 2020-04-07 22:47 - 000000000 ____D C:\Program Files (x86)\NCSS97
2020-04-07 22:46 - 1998-01-05 11:49 - 000054784 _____ (Circle Systems, Inc. ) C:\Windows\SysWOW64\Stodbc32.dll
2020-04-07 22:46 - 1998-01-05 11:47 - 000427008 _____ (Circle Systems, Inc. ) C:\Windows\SysWOW64\Statrn32.dll
2020-04-07 22:46 - 1997-07-31 10:46 - 000101888 _____ (MicroDexterity, Inc.) C:\Windows\SysWOW64\stamin32.dll
2020-04-07 22:46 - 1997-07-19 17:00 - 000129808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Comdlg32.ocx
2020-04-07 22:46 - 1997-07-19 16:55 - 001347344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Msvbvm50.dll
2020-04-07 22:46 - 1997-07-01 21:52 - 000238080 _____ (EllTech Development, Inc.) C:\Windows\SysWOW64\Comppl32.dll
2020-04-07 22:46 - 1997-07-01 12:01 - 000816640 _____ (Visual Components, Inc.) C:\Windows\SysWOW64\Vcf132.ocx
2020-04-07 22:46 - 1997-03-11 10:52 - 000152576 _____ (VideoSoft) C:\Windows\SysWOW64\Vsocx32.ocx
2020-04-07 16:25 - 2020-04-09 22:08 - 000000000 ____D C:\Users\uzivatel\VirtualBox VMs
2020-04-07 16:25 - 2020-04-09 22:08 - 000000000 ____D C:\Users\uzivatel\.VirtualBox
2020-04-07 16:25 - 2020-04-09 20:16 - 000000000 ____D C:\ProgramData\VirtualBox
2020-04-07 16:18 - 2020-04-09 23:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Finale 2000
2020-04-07 16:18 - 1998-04-30 14:56 - 000129024 _____ C:\Windows\UNWISE.EXE
2020-04-06 23:12 - 2020-04-06 23:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chessmaster 5500
2020-04-06 23:12 - 2020-04-06 23:12 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chessmaster 5500
2020-04-06 23:08 - 2020-04-07 22:47 - 000000209 _____ C:\Windows\ODBCINST.INI
2020-04-06 23:08 - 2020-04-06 23:08 - 000000232 _____ C:\Windows\ODBC.INI
2020-04-06 23:08 - 1997-04-25 00:00 - 000230672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0011.TMP
2020-04-06 23:08 - 1997-04-25 00:00 - 000184832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0010.TMP
2020-04-06 23:08 - 1997-04-25 00:00 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0005.TMP
2020-04-06 23:08 - 1997-04-25 00:00 - 000087824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0007.TMP
2020-04-06 23:08 - 1997-04-25 00:00 - 000067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH000f.TMP
2020-04-06 23:08 - 1997-04-25 00:00 - 000026224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ODBC16GT.DLL
2020-04-06 23:08 - 1997-04-25 00:00 - 000011536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ODBCCP32.CPL
2020-04-06 23:08 - 1997-04-25 00:00 - 000010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ODBC32GT.DLL
2020-04-06 23:08 - 1997-04-25 00:00 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DS32GT.DLL
2020-04-06 23:08 - 1997-04-25 00:00 - 000004656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DS16GT.DLL
2020-04-06 23:08 - 1996-12-03 13:07 - 000403216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrepl35.dll
2020-04-06 23:08 - 1996-11-17 00:00 - 001038848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSJET35.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000368912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBAR332.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000251664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSRD2X35.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000163384 _____ C:\Windows\SysWOW64\Odbcjet.hlp
2020-04-06 23:08 - 1996-11-17 00:00 - 000077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ODBCTL32.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000061269 _____ C:\Windows\SysWOW64\Odbcjtnw.hlp
2020-04-06 23:08 - 1996-11-17 00:00 - 000036624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSJINT35.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000026340 _____ C:\Windows\SysWOW64\Odbcinst.hlp
2020-04-06 23:08 - 1996-11-17 00:00 - 000024336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSJTER35.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000000244 _____ C:\Windows\SysWOW64\Odbcinst.cnt
2020-04-06 23:08 - 1996-10-31 00:00 - 000032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0004.TMP
2020-04-06 23:08 - 1996-09-18 00:00 - 000018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0006.TMP
2020-04-06 23:08 - 1996-08-24 00:00 - 000002233 _____ C:\Windows\SysWOW64\~GLH0002.TMP
2020-04-06 23:08 - 1996-08-24 00:00 - 000002151 _____ C:\Windows\SysWOW64\~GLH0003.TMP
2020-04-06 23:08 - 1995-12-04 14:08 - 000027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.000
2020-04-06 22:17 - 2013-08-22 13:42 - 000003072 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll
2020-04-06 22:17 - 2013-08-22 13:42 - 000003072 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2020-04-06 22:17 - 2013-08-22 13:22 - 000461312 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2020-04-06 22:17 - 2013-08-22 13:22 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe
2020-04-06 22:17 - 2013-08-22 13:17 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll
2020-04-06 22:17 - 2013-08-22 13:17 - 000009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll
2020-04-06 22:17 - 2013-08-22 13:17 - 000009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll
2020-04-06 22:17 - 2013-08-22 06:13 - 000003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll
2020-04-06 22:17 - 2013-08-22 06:13 - 000003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2020-04-06 22:17 - 2013-08-22 05:56 - 000377856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2020-04-06 22:17 - 2013-08-22 05:55 - 000033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe
2020-04-06 22:17 - 2013-08-22 05:51 - 000009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll
2020-04-06 22:17 - 2013-08-22 05:51 - 000009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll
2020-04-06 22:17 - 2013-08-22 05:50 - 000059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll
2020-04-06 22:08 - 2020-04-06 22:08 - 000000000 ____D C:\Users\uzivatel\AppData\Local\DOSBox
2020-04-01 19:43 - 2020-04-01 19:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2020-04-01 19:19 - 2020-04-01 19:19 - 000001761 _____ C:\Users\Public\Desktop\iTunes.lnk
2020-04-01 19:19 - 2020-04-01 19:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2020-04-01 19:19 - 2020-04-01 19:19 - 000000000 ____D C:\Program Files\iTunes
2020-04-01 19:19 - 2020-04-01 19:19 - 000000000 ____D C:\Program Files\iPod
2020-03-29 15:34 - 2020-03-29 15:34 - 000751680 _____ C:\Users\uzivatel\Downloads\ProLite XB2483HSU-B3 - cz_cs.pdf
2020-03-28 12:35 - 2011-05-09 16:44 - 001837296 _____ (Microsoft Corporation) C:\Windows\system32\WUDFUpdate_01009.dll
2020-03-28 12:14 - 2020-03-28 12:54 - 000000000 ____D C:\Program Files (x86)\DriverToolkit
2020-03-28 12:14 - 2020-03-28 12:14 - 000000000 ____D C:\Users\uzivatel\AppData\Local\DriverToolkit
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-04-27 19:38 - 2017-07-25 22:18 - 000000000 ____D C:\FRST
2020-04-27 19:38 - 2014-03-18 17:25 - 001243990 _____ C:\Windows\system32\PerfStringBackup.INI
2020-04-27 19:38 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2020-04-27 19:33 - 2016-11-15 19:41 - 000000000 ____D C:\Users\uzivatel\AppData\LocalLow\Mozilla
2020-04-27 19:31 - 2018-03-28 20:32 - 000004128 _____ C:\Windows\System32\Tasks\CCleaner Update
2020-04-27 19:31 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-04-27 19:29 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\system32\NDF
2020-04-27 19:27 - 2018-06-01 16:01 - 000508936 _____ C:\Windows\system32\FNTCACHE.DAT
2020-04-27 13:00 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2020-04-25 10:35 - 2015-09-02 18:48 - 000003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4176085001-3363555415-2058170901-1001
2020-04-24 15:21 - 2017-06-30 22:07 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Mp3tag
2020-04-19 10:02 - 2015-09-03 21:51 - 000000000 ____D C:\Users\uzivatel\AppData\Local\Adobe
2020-04-19 09:55 - 2018-05-18 21:28 - 000004462 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2020-04-19 09:55 - 2015-09-30 17:16 - 000004288 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2020-04-19 09:55 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2020-04-19 09:55 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\system32\Macromed
2020-04-18 20:04 - 2018-08-31 14:18 - 000131200 _____ C:\Users\uzivatel\AppData\Local\GDIPFONTCACHEV1.DAT
2020-04-13 13:46 - 2019-07-07 17:04 - 000000000 ____D C:\Program Files\Recuva
2020-04-13 11:53 - 2018-01-12 23:13 - 000000000 ____D C:\Users\Public\Documents\Wondershare
2020-04-12 22:15 - 2019-04-28 19:01 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\vlc
2020-04-12 22:07 - 2015-05-13 11:07 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2020-04-11 21:13 - 2017-07-18 21:59 - 000000000 ____D C:\Program Files (x86)\Adobe
2020-04-11 21:01 - 2018-01-12 23:13 - 000000000 ____D C:\Program Files (x86)\Wondershare
2020-04-11 21:01 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\system32\FxsTmp
2020-04-11 11:40 - 2017-03-04 22:24 - 000000432 __RSH C:\ProgramData\ntuser.pol
2020-04-10 00:01 - 2020-03-27 14:03 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Visual Studio Setup
2020-04-10 00:01 - 2014-11-16 14:09 - 000000000 ____D C:\Program Files (x86)\MSBuild
2020-04-10 00:01 - 2014-11-16 08:56 - 000000000 ____D C:\ProgramData\Package Cache
2020-04-10 00:01 - 2013-08-22 17:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-09 23:59 - 2015-09-06 13:31 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Foxit Software
2020-04-09 23:58 - 2020-03-27 14:54 - 000000000 ____D C:\Program Files\IIS Express
2020-04-09 23:58 - 2020-03-27 14:54 - 000000000 ____D C:\Program Files (x86)\IIS Express
2020-04-09 23:58 - 2018-03-28 17:06 - 000000000 ____D C:\Windows\SysWOW64\1033
2020-04-09 23:58 - 2018-03-28 17:06 - 000000000 ____D C:\Windows\system32\1033
2020-04-09 23:58 - 2018-03-28 16:52 - 000000000 ____D C:\Program Files\Microsoft SQL Server
2020-04-09 23:06 - 2015-09-02 19:09 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-04-09 23:03 - 2016-06-12 11:14 - 000000000 ____D C:\Users\uzivatel\AppData\Local\CrashDumps
2020-04-09 22:55 - 2017-12-17 20:04 - 002953216 _____ (3Dfx Interactive, Inc.) C:\Windows\SysWOW64\glide2x.dll
2020-04-09 22:54 - 2017-09-24 19:14 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-04-09 22:54 - 2015-09-02 19:09 - 000000950 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-04-09 19:44 - 2013-08-22 17:36 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2020-04-09 19:44 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2020-04-07 16:25 - 2015-09-02 18:42 - 000000000 ____D C:\Users\uzivatel
2020-04-07 09:03 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\rescache
2020-04-06 22:17 - 2015-09-02 19:15 - 000220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplayx.dll
2020-04-06 22:17 - 2015-09-02 19:15 - 000046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpwsockx.dll
2020-04-06 22:17 - 2015-09-02 19:14 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplaysvr.exe
2020-04-06 22:17 - 2015-09-02 19:14 - 000024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpmodemx.dll
2020-04-06 22:17 - 2013-08-22 17:20 - 000000000 ____D C:\Windows\CbsTemp
2020-04-02 01:49 - 2017-10-14 13:27 - 000744808 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2020-04-01 19:45 - 2017-07-16 19:13 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Apple Computer
2020-03-28 12:22 - 2013-08-22 17:36 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
==================== Files in the root of some directories =======
2015-09-02 18:43 - 2019-10-27 20:27 - 000000125 _____ () C:\Users\uzivatel\AppData\Roaming\sp_data.sys
2015-10-01 15:42 - 2015-10-01 15:42 - 000000017 _____ () C:\Users\uzivatel\AppData\Local\resmon.resmoncfg
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2020-04-13 09:44
==================== End of FRST.txt ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.01.2018
Ran by uzivatel (administrator) on ZERO1 (27-04-2020 19:38:29)
Running from C:\Users\uzivatel\Desktop
Loaded Profiles: uzivatel & SQLTELEMETRY$SQLEXPRESS & SQLTELEMETRY & MSSQLFDLauncher & MSSQLLaunchpad & MSSQL$SQLEXPRESS & MSSQLSERVER & MSSQLLaunchpad$SQLEXPRESS & MSSQLFDLauncher$SQLEXPRESS (Available Profiles: uzivatel & Administrator & SQLTELEMETRY$SQLEXPRESS & SQLTELEMETRY & MSSQLFDLauncher & MSSQLLaunchpad & MSSQL$SQLEXPRESS & MSSQLSERVER & MSSQLLaunchpad$SQLEXPRESS & MSSQLFDLauncher$SQLEXPRESS)
Platform: Windows 8.1 Pro (Update) (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\sqlceip.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlceip.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel) C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\Launchpad.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\Launchpad.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\fdlauncher.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\fdhost.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\fdhost.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Pixart Imaging Inc) C:\Windows\System32\TiltWheelMouse.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(f.lux Software LLC) C:\Users\uzivatel\AppData\Local\FluxSoftware\Flux\flux.exe
(Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(alch) C:\Program Files (x86)\ClamWin\bin\ClamTray.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [MouseDriver] => C:\Windows\system32\TiltWheelMouse.exe [241152 2013-04-09] (Pixart Imaging Inc)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [309560 2020-03-22] (Apple Inc.)
HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe"
HKLM-x32\...\Run: [ClamWin] => C:\Program Files (x86)\ClamWin\bin\ClamTray.exe [86016 2018-03-03] (alch)
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd)
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\...\Run: [f.lux] => C:\Users\uzivatel\AppData\Local\FluxSoftware\Flux\flux.exe [1385480 2019-08-30] (f.lux Software LLC)
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2020-03-22] (Apple Inc.)
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\...\Run: [OEXPRESS] => [X]
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\...\MountPoints2: {1b8b6c10-8736-11e8-88c6-edb37e02d125} - "E:\Setup.exe"
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\SysWOW64\ACTUAL~1.SCR [111616 2017-06-21] ()
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
GroupPolicy: Restriction <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 213.151.233.251 192.168.0.1
Tcpip\..\Interfaces\{AE1B6697-3F17-41CD-9040-9266881E316F}: [DhcpNameServer] 213.151.233.251 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus13.msn.com/?pc=ASJB
HKU\S-1-5-21-4176085001-3363555415-2058170901-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
URLSearchHook: [S-1-5-80-1985561900-798682989-2213159822-1904180398-3434236965] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-2652535364-2169709536-2857650723-2622804123-1107741775] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-3263513310-3392720605-1798839546-683002060-3227631582] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-3477044410-376262199-2110164357-2030828471-4165405235] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-3880006512-4290199581-1648723128-3569869737-3631323133] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-3880718306-3832830129-1677859214-2598158968-1052248003] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-3919359670-3540430778-4246408611-3681914861-206046543] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-80-997390408-2153310517-3119169589-2253446180-2226563786] ATTENTION => Default URLSearchHook is missing
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Filter: text/xml - No CLSID Value
FireFox:
========
FF DefaultProfile: 7h7ex4z3.default-1552668782976
FF ProfilePath: Profiles/7h7ex4z3.default-1552668782976 [not found] <==== ATTENTION
FF ProfilePath: C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976 [2020-04-27]
FF NewTabOverride: Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976 -> Enabled: @contain-facebook
FF Extension: (Facebook Container) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\@contain-facebook.xpi [2019-12-08]
FF Extension: (Dark Reader) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\addon@darkreader.org.xpi [2019-12-08]
FF Extension: (Name) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\firefox@ghostery.com.xpi [2019-06-24]
FF Extension: (HTTPS Everywhere) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\https-everywhere@eff.org.xpi [2020-04-03]
FF Extension: (Privacy Badger) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2019-12-08]
FF Extension: (No Name) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\tranquility@ushnisha.com.xpi [2020-02-08]
FF Extension: (uBlock Origin) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\uBlock0@raymondhill.net.xpi [2019-07-26]
FF Extension: (NoScript) - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\7h7ex4z3.default-1552668782976\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2019-07-26]
FF Extension: (DoH Roll-Out) - C:\Program Files\Mozilla Firefox\browser\features\doh-rollout@mozilla.org.xpi [2020-02-20] [not signed]
FF Extension: (WebCompat Reporter) - C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi [2020-03-14] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_363.dll [2020-04-19] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_363.dll [2020-04-19] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-09-03] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-09-03] (Intel Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-04-19] (Adobe)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-03-12] (Apple Inc.)
S2 edgeupdate; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223120 2020-04-09] (Microsoft Corporation)
S3 edgeupdatem; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223120 2020-04-09] (Microsoft Corporation)
R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1037568 2014-09-18] (Intel Corporation)
R2 ibtsiva.exe; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [121288 2014-08-13] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [329104 2014-11-19] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation)
R2 IntelUSBoverIP; C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe [394184 2014-10-15] (Intel)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-09-03] (Intel Corporation)
S3 MicrosoftEdgeElevationService; C:\Program Files (x86)\Microsoft\Edge\Application\81.0.416.64\elevation_service.exe [1125264 2020-04-23] (Microsoft Corporation)
S3 MsMpiLaunchSvc; C:\Program Files\Microsoft MPI\Bin\msmpilaunchsvc.exe [23040 2016-03-04] () [File not signed]
R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [485048 2017-08-22] (Microsoft Corporation)
R3 MSSQLFDLauncher; C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe [60592 2017-08-22] (Microsoft Corporation)
R3 MSSQLFDLauncher$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\fdlauncher.exe [60592 2017-08-22] (Microsoft Corporation)
R2 MSSQLLaunchpad; C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\launchpad.exe [1121464 2017-08-22] (Microsoft Corporation)
R2 MSSQLLaunchpad$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\launchpad.exe [1121464 2017-08-22] (Microsoft Corporation)
R2 MSSQLSERVER; C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [485048 2017-08-22] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [265936 2014-10-29] ()
S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [578744 2017-08-22] (Microsoft Corporation)
S4 SQLSERVERAGENT; C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [578744 2017-08-22] (Microsoft Corporation)
R2 SQLTELEMETRY; C:\Program Files\Microsoft SQL Server\MSSQL14.MSSQLSERVER\MSSQL\Binn\sqlceip.exe [246968 2017-08-22] (Microsoft Corporation)
R2 SQLTELEMETRY$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlceip.exe [246968 2017-08-22] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3818704 2014-10-29] (Intel® Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ATP; C:\Windows\System32\drivers\AsusTP.sys [69904 2014-11-21] (ASUS Corporation)
S3 AX88772; C:\Windows\system32\DRIVERS\ax88772.sys [113864 2013-07-18] (ASIX Electronics Corp.)
S3 BthMtpEnum; C:\Windows\system32\DRIVERS\BthMtpEnum.sys [62976 2013-08-22] (Microsoft Corporation)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [38720 2014-09-18] (Intel Corporation)
R3 dptf_pch; C:\Windows\System32\drivers\dptf_pch.sys [38208 2014-09-18] (Intel Corporation)
R3 esif_lf; C:\Windows\System32\drivers\esif_lf.sys [216360 2014-09-18] (Intel Corporation)
S3 GeneStor; C:\Windows\System32\drivers\GeneStor.sys [130648 2016-08-22] (GenesysLogic)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [219592 2014-08-13] (Intel Corporation)
R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [79016 2014-08-26] (Intel Corporation)
S1 ISODisk; C:\Windows\SysWow64\Drivers\ISODisk.sys [9600 2006-04-26] () [File not signed]
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80920 2015-07-02] (McAfee, Inc.)
R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3482600 2014-11-06] (Intel Corporation)
S4 RsFx0500; C:\Windows\System32\DRIVERS\RsFx0500.sys [261848 2017-08-22] (Microsoft Corporation)
S3 RTLU3E8023-W8-64; C:\Windows\system32\DRIVERS\rtu30x64w8.sys [70656 2013-06-18] (Realtek )
S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [14368 1999-09-14] () [File not signed]
R3 SensorsAlsDriver; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation)
R3 t_mouse.sys; C:\Windows\system32\DRIVERS\t_mouse.sys [6144 2013-04-09] ()
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [213296 2014-10-15] (Windows (R) Win 7 DDK provider)
S3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [237312 2020-02-19] (Oracle Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation)
U0 msahci; system32\drivers\msahci.sys [X]
S3 VirtualDVD; \SystemRoot\system32\DRIVERS\VirtualDVD.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-04-27 19:38 - 2020-04-27 19:38 - 000019081 _____ C:\Users\uzivatel\Desktop\FRST.txt
2020-04-16 10:50 - 2020-04-16 10:50 - 000032464 _____ C:\Users\uzivatel\Downloads\PK_2020_03_20.pdf
2020-04-13 15:52 - 2020-04-13 15:52 - 000000947 _____ C:\Users\Public\Desktop\ISODisk.lnk
2020-04-13 15:52 - 2020-04-13 15:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISODisk
2020-04-13 15:52 - 2020-04-13 15:52 - 000000000 ____D C:\Program Files (x86)\ISODisk
2020-04-13 15:52 - 2006-04-26 01:03 - 000009600 _____ C:\Windows\SysWOW64\Drivers\ISODisk.sys
2020-04-13 15:19 - 2020-04-13 15:51 - 000000000 ____D C:\Program Files (x86)\WinISO Computing
2020-04-13 15:19 - 2020-04-13 15:19 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\WinISO Computing
2020-04-13 15:19 - 2020-04-13 15:19 - 000000000 ____D C:\Users\uzivatel\AppData\Local\WinISO Computing
2020-04-13 15:10 - 2020-04-13 15:17 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Seznam.cz
2020-04-13 14:10 - 2020-04-13 14:10 - 000001133 _____ C:\Users\Public\Desktop\MiniTool Power Data Recovery 6.8.lnk
2020-04-13 14:10 - 2020-04-13 14:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Power Data Recovery 6.8
2020-04-13 14:10 - 2020-04-13 14:10 - 000000000 ____D C:\Program Files (x86)\PowerDataRecovery
2020-04-13 13:49 - 2020-04-13 13:57 - 000000000 ____D C:\Program Files (x86)\DiskInternals
2020-04-13 11:53 - 2020-04-13 11:58 - 000000000 ____D C:\Program Files\Wondershare
2020-04-12 22:06 - 2020-04-12 22:06 - 000003032 _____ C:\Windows\System32\Tasks\{43A172EE-326E-41F5-A02C-6D02CE3E1C2B}
2020-04-11 21:06 - 2020-04-13 11:54 - 000000000 ____D C:\ProgramData\Wondershare
2020-04-11 21:01 - 2020-04-11 21:10 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Wondershare
2020-04-10 22:07 - 1999-09-14 17:43 - 000014368 ____R C:\Windows\SysWOW64\Drivers\SECDRV.SYS
2020-04-09 22:55 - 2020-04-09 22:55 - 001376256 _____ C:\Windows\SysWOW64\glide3x.dll
2020-04-09 22:55 - 2020-04-09 22:55 - 001310720 _____ C:\Windows\SysWOW64\glide.dll
2020-04-09 22:20 - 2020-04-09 22:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Return to Castle Wolfenstein
2020-04-09 22:15 - 2020-04-13 15:28 - 000000635 _____ C:\Windows\Rtcw.INI
2020-04-09 22:14 - 2020-04-24 14:19 - 000002251 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-04-09 22:14 - 2020-04-24 14:19 - 000002210 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-04-09 22:13 - 2020-04-16 10:02 - 000003380 _____ C:\Windows\System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-04-09 22:13 - 2020-04-16 10:02 - 000003252 _____ C:\Windows\System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-04-09 19:29 - 2020-04-09 19:30 - 000002235 _____ C:\Windows\diagwrn.xml
2020-04-09 19:29 - 2020-04-09 19:30 - 000001908 _____ C:\Windows\diagerr.xml
2020-04-07 22:47 - 2020-04-07 22:47 - 000001375 _____ C:\Windows\Ncss97.ini
2020-04-07 22:47 - 2020-04-07 22:47 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCSS 97
2020-04-07 22:47 - 2020-04-07 22:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSS 97
2020-04-07 22:47 - 1998-04-01 12:33 - 000254976 _____ (heilerSoftware) C:\Windows\SysWOW64\h5ocx32.ocx
2020-04-07 22:47 - 1998-04-01 12:32 - 001028096 _____ (heilerSoftware) C:\Windows\SysWOW64\h5krnl32.dll
2020-04-07 22:47 - 1998-04-01 12:31 - 000114688 _____ (heilerSoftware) C:\Windows\SysWOW64\h5dlg32.dll
2020-04-07 22:47 - 1998-04-01 12:31 - 000051200 _____ (heilerSoftware) C:\Windows\SysWOW64\h5tool32.dll
2020-04-07 22:47 - 1998-03-16 17:59 - 000093696 _____ (heilerSoftware) C:\Windows\SysWOW64\h5rtf32.dll
2020-04-07 22:47 - 1998-03-16 17:58 - 000175104 _____ (heilerSoftware) C:\Windows\SysWOW64\h5menu32.dll
2020-04-07 22:47 - 1998-03-16 17:57 - 000188928 _____ (heilerSoftware) C:\Windows\SysWOW64\h5icon32.dll
2020-04-07 22:47 - 1997-04-18 05:00 - 000622536 _____ (Bits Per Second Ltd) C:\Windows\SysWOW64\Graphs32.ocx
2020-04-07 22:47 - 1997-04-16 05:00 - 000468928 _____ (Bits Per Second Ltd) C:\Windows\SysWOW64\Gsw32.exe
2020-04-07 22:47 - 1997-04-16 05:00 - 000263120 _____ (Bits Per Second Ltd) C:\Windows\SysWOW64\Gswag32.dll
2020-04-07 22:47 - 1997-04-16 05:00 - 000104384 _____ (Bits Per Second Ltd) C:\Windows\SysWOW64\Gswdll32.dll
2020-04-07 22:47 - 1997-04-15 05:00 - 000107008 _____ (Bits Per Second Ltd) C:\Windows\SysWOW64\Gsjpg32.dll
2020-04-07 22:47 - 1997-04-09 05:00 - 000974967 _____ C:\Windows\SysWOW64\Graphppd.hlp
2020-04-07 22:47 - 1997-04-01 05:00 - 000000666 _____ C:\Windows\SysWOW64\Graphppd.cnt
2020-04-07 22:47 - 1996-11-17 00:00 - 000006931 _____ C:\Windows\SysWOW64\Odbcjet.cnt
2020-04-07 22:47 - 1996-11-17 00:00 - 000003176 _____ C:\Windows\SysWOW64\Odbcjtnw.cnt
2020-04-07 22:47 - 1996-10-10 11:41 - 000240640 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\imgman31.dll
2020-04-07 22:47 - 1996-10-10 11:41 - 000036352 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\IM31xjpg.del
2020-04-07 22:47 - 1996-10-10 11:40 - 000055808 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\IM31tif.dil
2020-04-07 22:47 - 1996-10-10 11:39 - 000033792 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\IM31pcx.dil
2020-04-07 22:47 - 1996-10-10 11:39 - 000021504 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\IM31tga.dil
2020-04-07 22:47 - 1996-10-10 11:39 - 000020992 _____ (Data Techniques, Inc.) C:\Windows\SysWOW64\IM31bmp.dil
2020-04-07 22:47 - 1996-07-25 10:50 - 000118272 _____ (Crescent Division of Progress Software Corporation) C:\Windows\SysWOW64\Qpro32.dll
2020-04-07 22:47 - 1996-07-24 14:27 - 000100352 _____ (Crescent Division of Progress Software Corporation.) C:\Windows\SysWOW64\Csform32.ocx
2020-04-07 22:47 - 1995-10-11 02:00 - 000133904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mfcans32.dll
2020-04-07 22:47 - 1995-05-22 02:00 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Oc30.dll
2020-04-07 22:46 - 2020-04-07 22:47 - 000000000 ____D C:\Program Files (x86)\NCSS97
2020-04-07 22:46 - 1998-01-05 11:49 - 000054784 _____ (Circle Systems, Inc. ) C:\Windows\SysWOW64\Stodbc32.dll
2020-04-07 22:46 - 1998-01-05 11:47 - 000427008 _____ (Circle Systems, Inc. ) C:\Windows\SysWOW64\Statrn32.dll
2020-04-07 22:46 - 1997-07-31 10:46 - 000101888 _____ (MicroDexterity, Inc.) C:\Windows\SysWOW64\stamin32.dll
2020-04-07 22:46 - 1997-07-19 17:00 - 000129808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Comdlg32.ocx
2020-04-07 22:46 - 1997-07-19 16:55 - 001347344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Msvbvm50.dll
2020-04-07 22:46 - 1997-07-01 21:52 - 000238080 _____ (EllTech Development, Inc.) C:\Windows\SysWOW64\Comppl32.dll
2020-04-07 22:46 - 1997-07-01 12:01 - 000816640 _____ (Visual Components, Inc.) C:\Windows\SysWOW64\Vcf132.ocx
2020-04-07 22:46 - 1997-03-11 10:52 - 000152576 _____ (VideoSoft) C:\Windows\SysWOW64\Vsocx32.ocx
2020-04-07 16:25 - 2020-04-09 22:08 - 000000000 ____D C:\Users\uzivatel\VirtualBox VMs
2020-04-07 16:25 - 2020-04-09 22:08 - 000000000 ____D C:\Users\uzivatel\.VirtualBox
2020-04-07 16:25 - 2020-04-09 20:16 - 000000000 ____D C:\ProgramData\VirtualBox
2020-04-07 16:18 - 2020-04-09 23:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Finale 2000
2020-04-07 16:18 - 1998-04-30 14:56 - 000129024 _____ C:\Windows\UNWISE.EXE
2020-04-06 23:12 - 2020-04-06 23:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chessmaster 5500
2020-04-06 23:12 - 2020-04-06 23:12 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chessmaster 5500
2020-04-06 23:08 - 2020-04-07 22:47 - 000000209 _____ C:\Windows\ODBCINST.INI
2020-04-06 23:08 - 2020-04-06 23:08 - 000000232 _____ C:\Windows\ODBC.INI
2020-04-06 23:08 - 1997-04-25 00:00 - 000230672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0011.TMP
2020-04-06 23:08 - 1997-04-25 00:00 - 000184832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0010.TMP
2020-04-06 23:08 - 1997-04-25 00:00 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0005.TMP
2020-04-06 23:08 - 1997-04-25 00:00 - 000087824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0007.TMP
2020-04-06 23:08 - 1997-04-25 00:00 - 000067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH000f.TMP
2020-04-06 23:08 - 1997-04-25 00:00 - 000026224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ODBC16GT.DLL
2020-04-06 23:08 - 1997-04-25 00:00 - 000011536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ODBCCP32.CPL
2020-04-06 23:08 - 1997-04-25 00:00 - 000010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ODBC32GT.DLL
2020-04-06 23:08 - 1997-04-25 00:00 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DS32GT.DLL
2020-04-06 23:08 - 1997-04-25 00:00 - 000004656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DS16GT.DLL
2020-04-06 23:08 - 1996-12-03 13:07 - 000403216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrepl35.dll
2020-04-06 23:08 - 1996-11-17 00:00 - 001038848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSJET35.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000368912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBAR332.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000251664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSRD2X35.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000163384 _____ C:\Windows\SysWOW64\Odbcjet.hlp
2020-04-06 23:08 - 1996-11-17 00:00 - 000077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ODBCTL32.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000061269 _____ C:\Windows\SysWOW64\Odbcjtnw.hlp
2020-04-06 23:08 - 1996-11-17 00:00 - 000036624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSJINT35.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000026340 _____ C:\Windows\SysWOW64\Odbcinst.hlp
2020-04-06 23:08 - 1996-11-17 00:00 - 000024336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSJTER35.DLL
2020-04-06 23:08 - 1996-11-17 00:00 - 000000244 _____ C:\Windows\SysWOW64\Odbcinst.cnt
2020-04-06 23:08 - 1996-10-31 00:00 - 000032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0004.TMP
2020-04-06 23:08 - 1996-09-18 00:00 - 000018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\~GLH0006.TMP
2020-04-06 23:08 - 1996-08-24 00:00 - 000002233 _____ C:\Windows\SysWOW64\~GLH0002.TMP
2020-04-06 23:08 - 1996-08-24 00:00 - 000002151 _____ C:\Windows\SysWOW64\~GLH0003.TMP
2020-04-06 23:08 - 1995-12-04 14:08 - 000027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\temp.000
2020-04-06 22:17 - 2013-08-22 13:42 - 000003072 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll
2020-04-06 22:17 - 2013-08-22 13:42 - 000003072 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2020-04-06 22:17 - 2013-08-22 13:22 - 000461312 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2020-04-06 22:17 - 2013-08-22 13:22 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe
2020-04-06 22:17 - 2013-08-22 13:17 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll
2020-04-06 22:17 - 2013-08-22 13:17 - 000009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll
2020-04-06 22:17 - 2013-08-22 13:17 - 000009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll
2020-04-06 22:17 - 2013-08-22 06:13 - 000003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll
2020-04-06 22:17 - 2013-08-22 06:13 - 000003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2020-04-06 22:17 - 2013-08-22 05:56 - 000377856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2020-04-06 22:17 - 2013-08-22 05:55 - 000033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe
2020-04-06 22:17 - 2013-08-22 05:51 - 000009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll
2020-04-06 22:17 - 2013-08-22 05:51 - 000009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll
2020-04-06 22:17 - 2013-08-22 05:50 - 000059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll
2020-04-06 22:08 - 2020-04-06 22:08 - 000000000 ____D C:\Users\uzivatel\AppData\Local\DOSBox
2020-04-01 19:43 - 2020-04-01 19:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2020-04-01 19:19 - 2020-04-01 19:19 - 000001761 _____ C:\Users\Public\Desktop\iTunes.lnk
2020-04-01 19:19 - 2020-04-01 19:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2020-04-01 19:19 - 2020-04-01 19:19 - 000000000 ____D C:\Program Files\iTunes
2020-04-01 19:19 - 2020-04-01 19:19 - 000000000 ____D C:\Program Files\iPod
2020-03-29 15:34 - 2020-03-29 15:34 - 000751680 _____ C:\Users\uzivatel\Downloads\ProLite XB2483HSU-B3 - cz_cs.pdf
2020-03-28 12:35 - 2011-05-09 16:44 - 001837296 _____ (Microsoft Corporation) C:\Windows\system32\WUDFUpdate_01009.dll
2020-03-28 12:14 - 2020-03-28 12:54 - 000000000 ____D C:\Program Files (x86)\DriverToolkit
2020-03-28 12:14 - 2020-03-28 12:14 - 000000000 ____D C:\Users\uzivatel\AppData\Local\DriverToolkit
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-04-27 19:38 - 2017-07-25 22:18 - 000000000 ____D C:\FRST
2020-04-27 19:38 - 2014-03-18 17:25 - 001243990 _____ C:\Windows\system32\PerfStringBackup.INI
2020-04-27 19:38 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2020-04-27 19:33 - 2016-11-15 19:41 - 000000000 ____D C:\Users\uzivatel\AppData\LocalLow\Mozilla
2020-04-27 19:31 - 2018-03-28 20:32 - 000004128 _____ C:\Windows\System32\Tasks\CCleaner Update
2020-04-27 19:31 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-04-27 19:29 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\system32\NDF
2020-04-27 19:27 - 2018-06-01 16:01 - 000508936 _____ C:\Windows\system32\FNTCACHE.DAT
2020-04-27 13:00 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2020-04-25 10:35 - 2015-09-02 18:48 - 000003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4176085001-3363555415-2058170901-1001
2020-04-24 15:21 - 2017-06-30 22:07 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Mp3tag
2020-04-19 10:02 - 2015-09-03 21:51 - 000000000 ____D C:\Users\uzivatel\AppData\Local\Adobe
2020-04-19 09:55 - 2018-05-18 21:28 - 000004462 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2020-04-19 09:55 - 2015-09-30 17:16 - 000004288 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2020-04-19 09:55 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2020-04-19 09:55 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\system32\Macromed
2020-04-18 20:04 - 2018-08-31 14:18 - 000131200 _____ C:\Users\uzivatel\AppData\Local\GDIPFONTCACHEV1.DAT
2020-04-13 13:46 - 2019-07-07 17:04 - 000000000 ____D C:\Program Files\Recuva
2020-04-13 11:53 - 2018-01-12 23:13 - 000000000 ____D C:\Users\Public\Documents\Wondershare
2020-04-12 22:15 - 2019-04-28 19:01 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\vlc
2020-04-12 22:07 - 2015-05-13 11:07 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2020-04-11 21:13 - 2017-07-18 21:59 - 000000000 ____D C:\Program Files (x86)\Adobe
2020-04-11 21:01 - 2018-01-12 23:13 - 000000000 ____D C:\Program Files (x86)\Wondershare
2020-04-11 21:01 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\system32\FxsTmp
2020-04-11 11:40 - 2017-03-04 22:24 - 000000432 __RSH C:\ProgramData\ntuser.pol
2020-04-10 00:01 - 2020-03-27 14:03 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Visual Studio Setup
2020-04-10 00:01 - 2014-11-16 14:09 - 000000000 ____D C:\Program Files (x86)\MSBuild
2020-04-10 00:01 - 2014-11-16 08:56 - 000000000 ____D C:\ProgramData\Package Cache
2020-04-10 00:01 - 2013-08-22 17:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-09 23:59 - 2015-09-06 13:31 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Foxit Software
2020-04-09 23:58 - 2020-03-27 14:54 - 000000000 ____D C:\Program Files\IIS Express
2020-04-09 23:58 - 2020-03-27 14:54 - 000000000 ____D C:\Program Files (x86)\IIS Express
2020-04-09 23:58 - 2018-03-28 17:06 - 000000000 ____D C:\Windows\SysWOW64\1033
2020-04-09 23:58 - 2018-03-28 17:06 - 000000000 ____D C:\Windows\system32\1033
2020-04-09 23:58 - 2018-03-28 16:52 - 000000000 ____D C:\Program Files\Microsoft SQL Server
2020-04-09 23:06 - 2015-09-02 19:09 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-04-09 23:03 - 2016-06-12 11:14 - 000000000 ____D C:\Users\uzivatel\AppData\Local\CrashDumps
2020-04-09 22:55 - 2017-12-17 20:04 - 002953216 _____ (3Dfx Interactive, Inc.) C:\Windows\SysWOW64\glide2x.dll
2020-04-09 22:54 - 2017-09-24 19:14 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-04-09 22:54 - 2015-09-02 19:09 - 000000950 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-04-09 19:44 - 2013-08-22 17:36 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2020-04-09 19:44 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2020-04-07 16:25 - 2015-09-02 18:42 - 000000000 ____D C:\Users\uzivatel
2020-04-07 09:03 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\rescache
2020-04-06 22:17 - 2015-09-02 19:15 - 000220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplayx.dll
2020-04-06 22:17 - 2015-09-02 19:15 - 000046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpwsockx.dll
2020-04-06 22:17 - 2015-09-02 19:14 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplaysvr.exe
2020-04-06 22:17 - 2015-09-02 19:14 - 000024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpmodemx.dll
2020-04-06 22:17 - 2013-08-22 17:20 - 000000000 ____D C:\Windows\CbsTemp
2020-04-02 01:49 - 2017-10-14 13:27 - 000744808 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2020-04-01 19:45 - 2017-07-16 19:13 - 000000000 ____D C:\Users\uzivatel\AppData\Roaming\Apple Computer
2020-03-28 12:22 - 2013-08-22 17:36 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
==================== Files in the root of some directories =======
2015-09-02 18:43 - 2019-10-27 20:27 - 000000125 _____ () C:\Users\uzivatel\AppData\Roaming\sp_data.sys
2015-10-01 15:42 - 2015-10-01 15:42 - 000000017 _____ () C:\Users\uzivatel\AppData\Local\resmon.resmoncfg
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2020-04-13 09:44
==================== End of FRST.txt ============================