Pomaly NTB
Napsal: 26 led 2021 21:04
Prosim kontrolu logu, velmi spomaleny ntb....
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-01-2021 01
Ran by acer (administrator) on DESKTOP-T5A6533 (Acer Aspire V3-371) (26-01-2021 20:48:34)
Running from C:\Users\acer\Desktop
Loaded Profiles: acer
Platform: Windows 10 Home Version 1909 18363.1256 (X64) Language: Slovenčina (Slovensko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <16>
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\avp.exe
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\avpui.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\acer\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\acer\AppData\Local\Microsoft\Teams\current\Teams.exe <10>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\usocoreworker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Viber Media S.à r.l. -> Viber Media S.Ã r.l.) C:\Users\acer\AppData\Local\Viber\Viber.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-01-14] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1410304 2016-01-14] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-09-17] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3844774036-794628965-2151850631-1001\...\Run: [Viber] => C:\Users\acer\AppData\Local\Viber\Viber.exe [46949592 2021-01-11] (Viber Media S.à r.l. -> Viber Media S.Ã r.l.)
HKU\S-1-5-21-3844774036-794628965-2151850631-1001\...\Run: [Spotify] => C:\Users\acer\AppData\Roaming\Spotify\Spotify.exe [23232232 2020-11-18] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3844774036-794628965-2151850631-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\acer\AppData\Local\Microsoft\Teams\Update.exe [2453688 2021-01-26] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-3844774036-794628965-2151850631-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32440376 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3844774036-794628965-2151850631-1001\...\MountPoints2: {2cc16ddb-98ed-11ea-b71c-3065ec7397f0} - "D:\HiSuiteDownLoader.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.141\Installer\chrmstp.exe [2021-01-12] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {007876E8-1003-40BF-A39A-3215618A794F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {28B4BE6C-5246-45B6-BFD7-2914C50E42D3} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26913848 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {35BA3915-23ED-436D-AEA1-7CDD3607978B} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [693216 2021-01-12] (Mozilla Corporation -> Mozilla Foundation)
Task: {55654066-AEB5-4105-BD2B-DBF809E4E2BA} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1149336 2021-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {5BC6AF53-C444-47CA-9BCF-833E501B3267} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-29] (Google Inc -> Google Inc.)
Task: {7EF0C9AB-D94C-42F5-8F73-C12C596BD4F6} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {851B464E-7EE5-45ED-9505-4D240CE740F3} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116584 2021-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {89AFC335-DEED-4A26-9E47-017284242366} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116584 2021-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {C1832A18-598B-4585-AB95-0F22A61D2633} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-29] (Google Inc -> Google Inc.)
Task: {C571A34C-3294-4E7F-A3D6-313F643F9A1E} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [791232 2020-12-30] (Kaspersky Lab -> AO Kaspersky Lab)
Task: {D0A8AAA7-A101-42B7-9DC6-DB1A07084D7F} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-19] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{12df5c38-5e6a-424d-9319-602ef231834f}: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{77be927b-7b0f-42d8-a2f0-27abf226b333}: [DhcpNameServer] 10.0.0.20
Tcpip\..\Interfaces\{7c0abf8f-7e89-463f-83ee-6edc9192a774}: [NameServer] 8.8.8.8,8.8.4.4
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\acer\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-26]
Edge Extension: (Kaspersky Protection) - C:\Users\acer\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\elhpdacimkjpccooodognopfhbdgnpbk [2020-07-10]
Edge HKU\S-1-5-21-3844774036-794628965-2151850631-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm]
FireFox:
========
FF DefaultProfile: ymolk6b3.default
FF ProfilePath: C:\Users\acer\AppData\Roaming\Mozilla\Firefox\Profiles\ymolk6b3.default [2021-01-26]
FF HKLM\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\FFExt\light_plugin_firefox\addon.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\FFExt\light_plugin_firefox\addon.xpi => not found
FF Plugin: @java.com/JavaPlugin,version=11.251.2 -> C:\Program Files\Java\jre1.8.0_251\bin\plugin2\npjp2.dll [2020-05-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.271.2 -> C:\Program Files (x86)\Java\jre1.8.0_271\bin\dtplugin\npDeployJava1.dll [2020-11-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.271.2 -> C:\Program Files (x86)\Java\jre1.8.0_271\bin\plugin2\npjp2.dll [2020-11-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-09-16] (Microsoft Corporation -> Microsoft Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2020-06-03] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2020-06-03] <==== ATTENTION
Chrome:
=======
CHR Profile: C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default [2021-01-26]
CHR Notifications: Default -> hxxps://cz.pinterest.com
CHR Extension: (Prezentácie) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-06-29]
CHR Extension: (Kaspersky Protection) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2021-01-26]
CHR Extension: (Dokumenty) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-06-29]
CHR Extension: (Disk Google) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-23]
CHR Extension: (YouTube) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-06-29]
CHR Extension: (Tabuľky) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-06-29]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-17]
CHR Extension: (EPUBReader) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhhclmfgfllimlhabjkgkeebkbiadflb [2020-06-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Gmail) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Extension: (Chrome Media Router) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-01-26]
CHR Profile: C:\Users\acer\AppData\Local\Google\Chrome\User Data\System Profile [2021-01-26]
CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AVP21.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\avp.exe [381928 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9105800 2020-12-01] (Microsoft Corporation -> Microsoft Corporation)
S3 klvssbridge64_21.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\x64\vssbridge64.exe [467352 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 KSDE3.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksde.exe [617016 2018-02-28] (Kaspersky Lab -> AO Kaspersky Lab)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12757520 2020-12-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [251608 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klbackupdisk; C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys [110392 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [212280 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [127288 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [37496 2020-10-21] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab)
R1 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [523576 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klgse; C:\WINDOWS\System32\DRIVERS\klgse.sys [659768 2020-12-25] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klhk; C:\WINDOWS\System32\drivers\klhk.sys [1341232 2020-12-25] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klids; C:\ProgramData\Kaspersky Lab\AVP21.2\Bases\klids.sys [245784 2021-01-26] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [1025336 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klim6; C:\WINDOWS\system32\DRIVERS\klim6.sys [95544 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [113464 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [113464 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [85288 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klpnpflt; C:\WINDOWS\system32\DRIVERS\klpnpflt.sys [97080 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 kltap; C:\WINDOWS\System32\drivers\kltap.sys [48080 2018-02-12] (AnchorFree Inc -> The OpenVPN Project)
R0 klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [257208 2020-10-26] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klupd_klif_kimul; C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys [99152 2019-03-11] (Kaspersky Lab -> AO Kaspersky Lab)
R3 klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [310232 2021-01-26] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klupd_klif_klark_71E5DD95; C:\ProgramData\Kaspersky Lab\AVP21.2\Temp\71E5DD959D5FEB17161B68BA5E58A569\klupd_klif_klark.sys [310232 2021-01-26] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [116888 2021-01-26] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [207352 2020-11-08] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [153400 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [250168 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [300856 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46688 2019-10-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [350136 2019-10-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-07] (Microsoft Windows -> Microsoft Corporation)
U3 avgbdisk; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-01-26 20:48 - 2021-01-26 20:51 - 000018416 _____ C:\Users\acer\Desktop\FRST.txt
2021-01-26 20:44 - 2021-01-26 20:44 - 002297344 _____ (Farbar) C:\Users\acer\Desktop\FRST64.exe
2021-01-26 13:56 - 2021-01-26 13:56 - 000310232 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klark.sys
2021-01-26 13:55 - 2021-01-26 13:55 - 000116888 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klbg.sys
2021-01-26 13:40 - 2021-01-26 13:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2021-01-26 13:40 - 2020-12-30 14:33 - 000002251 _____ C:\Users\Public\Desktop\Ochrana financí.lnk
2021-01-26 13:40 - 2020-12-30 14:33 - 000002251 _____ C:\ProgramData\Desktop\Ochrana financí.lnk
2021-01-26 13:40 - 2020-12-30 14:33 - 000002215 _____ C:\Users\Public\Desktop\Kaspersky Internet Security.lnk
2021-01-26 13:40 - 2020-12-30 14:33 - 000002215 _____ C:\ProgramData\Desktop\Kaspersky Internet Security.lnk
2021-01-17 17:35 - 2021-01-17 17:36 - 000000000 ____D C:\Users\acer\AppData\Local\Viber
2021-01-16 17:48 - 2021-01-16 17:50 - 001523482 _____ C:\Users\acer\Downloads\Men-Who-Hate-Women-and-the-Women-Who-Love-Them-When-Loving-Hurts-And-You-Dont-Know-Why-BenjaminMadeira-com.pdf
2021-01-16 17:38 - 2021-01-16 17:38 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-01-12 14:00 - 2021-01-26 13:33 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-01-10 17:41 - 2021-01-10 17:41 - 001134459 _____ C:\Users\acer\Downloads\55912798.pdf
2021-01-03 17:17 - 2021-01-03 17:17 - 000001878 _____ C:\Users\acer\Downloads\Objednávka Agama - COOP Jednota OD Slimák (1).txt
2021-01-03 17:10 - 2021-01-03 17:10 - 000192396 _____ C:\Users\acer\Downloads\Objednávka Agama - COOP Jednota OD Slimák.pdf
2021-01-03 17:10 - 2021-01-03 17:10 - 000192396 _____ C:\Users\acer\Downloads\Objednávka Agama - COOP Jednota OD Slimák (1).pdf
2021-01-03 15:57 - 2021-01-03 15:57 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002492 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002435 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2020-12-29 12:44 - 2020-12-29 12:44 - 000000000 ____D C:\Users\acer\Documents\recept
2020-12-28 18:47 - 2021-01-25 17:36 - 000952832 _____ C:\Users\acer\Documents\Kniha došlých FA TUN 20.xls
2020-12-28 18:40 - 2020-12-28 18:40 - 000955392 _____ C:\Users\acer\Downloads\Kniha došlých FA TUN 20.xls
2020-12-28 18:40 - 2020-12-28 18:40 - 000955392 _____ C:\Users\acer\Downloads\Kniha došlých FA TUN 20 (1).xls
2020-12-28 14:39 - 2020-12-28 14:39 - 000000000 ____D C:\Users\acer\AppData\Roaming\OpenOffice
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-01-26 20:53 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-01-26 20:50 - 2020-05-24 09:11 - 000000000 ____D C:\FRST
2021-01-26 20:43 - 2020-12-14 17:53 - 000000000 ____D C:\Program Files\CCleaner
2021-01-26 20:39 - 2020-12-15 15:33 - 000000000 ____D C:\Users\acer\AppData\Local\CrashDumps
2021-01-26 20:39 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2021-01-26 20:34 - 2019-01-05 12:16 - 000000000 ____D C:\Users\acer\AppData\Local\Spotify
2021-01-26 20:23 - 2019-01-05 12:15 - 000000000 ____D C:\Users\acer\AppData\Roaming\Spotify
2021-01-26 19:08 - 2019-08-12 03:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-01-26 14:10 - 2020-10-04 17:31 - 000002351 _____ C:\Users\acer\Desktop\Microsoft Teams.lnk
2021-01-26 14:10 - 2020-03-25 10:28 - 000002359 _____ C:\Users\acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk
2021-01-26 13:56 - 2019-03-19 05:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-01-26 13:51 - 2019-10-31 08:56 - 000000000 ____D C:\Users\acer\Desktop\MA
2021-01-26 13:51 - 2018-07-11 19:10 - 000000000 ____D C:\Users\acer\AppData\LocalLow\Mozilla
2021-01-26 13:48 - 2019-02-06 22:02 - 000000000 ____D C:\ProgramData\Mozilla
2021-01-26 13:45 - 2020-01-05 12:29 - 000003392 _____ C:\WINDOWS\system32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}
2021-01-26 13:45 - 2018-07-11 22:23 - 000000000 ____D C:\Program Files\Common Files\AV
2021-01-26 13:39 - 2018-07-11 22:22 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2021-01-26 13:39 - 2018-07-11 22:22 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab
2021-01-26 13:38 - 2018-07-15 21:53 - 000000000 ____D C:\Users\acer\AppData\Roaming\ViberPC
2021-01-26 13:34 - 2020-05-24 12:59 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2021-01-26 13:34 - 2019-08-12 03:26 - 000000000 ____D C:\Users\acer
2021-01-26 13:34 - 2018-06-29 15:55 - 000000000 __SHD C:\Users\acer\IntelGraphicsProfiles
2021-01-26 13:33 - 2019-08-12 04:20 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-01-26 13:33 - 2018-06-29 16:14 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-01-26 13:33 - 2018-06-29 16:08 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-01-26 12:53 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-01-25 22:01 - 2019-08-12 03:39 - 000795992 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-01-25 21:40 - 2020-12-14 17:54 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-01-25 19:51 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-01-25 17:54 - 2018-06-29 15:48 - 000000000 ____D C:\Users\acer\AppData\Local\Packages
2021-01-24 23:56 - 2020-10-24 16:23 - 000000000 ____D C:\Users\acer\Documents\STOPPARD
2021-01-24 23:25 - 2020-05-22 12:53 - 000000000 ____D C:\Users\acer\Documents\iris murdoch
2021-01-24 23:25 - 2020-05-22 12:49 - 000000000 ____D C:\Users\acer\Documents\arthur miller
2021-01-23 12:28 - 2020-10-22 09:21 - 000000000 ____D C:\Users\acer\Documents\language and ideology
2021-01-22 21:04 - 2020-03-24 10:04 - 000000000 ____D C:\Users\acer\AppData\Local\SquirrelTemp
2021-01-19 22:35 - 2020-06-07 00:52 - 000003576 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-01-19 22:35 - 2020-06-07 00:52 - 000003452 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-01-16 17:36 - 2018-06-29 16:08 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-01-15 23:06 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-01-15 14:11 - 2020-02-19 22:56 - 000000000 ____D C:\Users\acer\Documents\lit and culture 2
2021-01-12 09:50 - 2018-06-29 16:09 - 000002313 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-01-12 09:50 - 2018-06-29 16:09 - 000002272 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-01-12 09:50 - 2018-06-29 16:09 - 000002272 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2021-01-11 21:35 - 2019-05-23 15:11 - 000000000 ____D C:\Users\acer\Desktop\pikosky
2021-01-09 17:47 - 2019-07-10 08:24 - 000000000 ____D C:\Users\acer\AppData\Local\D3DSCache
2021-01-05 13:39 - 2018-06-29 15:51 - 000000000 ____D C:\Users\acer\AppData\Local\PlaceholderTileLogoFolder
2021-01-03 15:55 - 2018-07-11 19:54 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-12-30 14:32 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-01-2021 01
Ran by acer (administrator) on DESKTOP-T5A6533 (Acer Aspire V3-371) (26-01-2021 20:48:34)
Running from C:\Users\acer\Desktop
Loaded Profiles: acer
Platform: Windows 10 Home Version 1909 18363.1256 (X64) Language: Slovenčina (Slovensko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <16>
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\avp.exe
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\avpui.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\acer\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\acer\AppData\Local\Microsoft\Teams\current\Teams.exe <10>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\usocoreworker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Viber Media S.à r.l. -> Viber Media S.Ã r.l.) C:\Users\acer\AppData\Local\Viber\Viber.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-01-14] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1410304 2016-01-14] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-09-17] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3844774036-794628965-2151850631-1001\...\Run: [Viber] => C:\Users\acer\AppData\Local\Viber\Viber.exe [46949592 2021-01-11] (Viber Media S.à r.l. -> Viber Media S.Ã r.l.)
HKU\S-1-5-21-3844774036-794628965-2151850631-1001\...\Run: [Spotify] => C:\Users\acer\AppData\Roaming\Spotify\Spotify.exe [23232232 2020-11-18] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3844774036-794628965-2151850631-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\acer\AppData\Local\Microsoft\Teams\Update.exe [2453688 2021-01-26] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-3844774036-794628965-2151850631-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32440376 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3844774036-794628965-2151850631-1001\...\MountPoints2: {2cc16ddb-98ed-11ea-b71c-3065ec7397f0} - "D:\HiSuiteDownLoader.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.141\Installer\chrmstp.exe [2021-01-12] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {007876E8-1003-40BF-A39A-3215618A794F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {28B4BE6C-5246-45B6-BFD7-2914C50E42D3} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26913848 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {35BA3915-23ED-436D-AEA1-7CDD3607978B} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [693216 2021-01-12] (Mozilla Corporation -> Mozilla Foundation)
Task: {55654066-AEB5-4105-BD2B-DBF809E4E2BA} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1149336 2021-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {5BC6AF53-C444-47CA-9BCF-833E501B3267} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-29] (Google Inc -> Google Inc.)
Task: {7EF0C9AB-D94C-42F5-8F73-C12C596BD4F6} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {851B464E-7EE5-45ED-9505-4D240CE740F3} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116584 2021-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {89AFC335-DEED-4A26-9E47-017284242366} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116584 2021-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {C1832A18-598B-4585-AB95-0F22A61D2633} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-29] (Google Inc -> Google Inc.)
Task: {C571A34C-3294-4E7F-A3D6-313F643F9A1E} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [791232 2020-12-30] (Kaspersky Lab -> AO Kaspersky Lab)
Task: {D0A8AAA7-A101-42B7-9DC6-DB1A07084D7F} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-19] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{12df5c38-5e6a-424d-9319-602ef231834f}: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{77be927b-7b0f-42d8-a2f0-27abf226b333}: [DhcpNameServer] 10.0.0.20
Tcpip\..\Interfaces\{7c0abf8f-7e89-463f-83ee-6edc9192a774}: [NameServer] 8.8.8.8,8.8.4.4
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\acer\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-26]
Edge Extension: (Kaspersky Protection) - C:\Users\acer\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\elhpdacimkjpccooodognopfhbdgnpbk [2020-07-10]
Edge HKU\S-1-5-21-3844774036-794628965-2151850631-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm]
FireFox:
========
FF DefaultProfile: ymolk6b3.default
FF ProfilePath: C:\Users\acer\AppData\Roaming\Mozilla\Firefox\Profiles\ymolk6b3.default [2021-01-26]
FF HKLM\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\FFExt\light_plugin_firefox\addon.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\FFExt\light_plugin_firefox\addon.xpi => not found
FF Plugin: @java.com/JavaPlugin,version=11.251.2 -> C:\Program Files\Java\jre1.8.0_251\bin\plugin2\npjp2.dll [2020-05-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.271.2 -> C:\Program Files (x86)\Java\jre1.8.0_271\bin\dtplugin\npDeployJava1.dll [2020-11-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.271.2 -> C:\Program Files (x86)\Java\jre1.8.0_271\bin\plugin2\npjp2.dll [2020-11-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-09-16] (Microsoft Corporation -> Microsoft Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2020-06-03] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2020-06-03] <==== ATTENTION
Chrome:
=======
CHR Profile: C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default [2021-01-26]
CHR Notifications: Default -> hxxps://cz.pinterest.com
CHR Extension: (Prezentácie) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-06-29]
CHR Extension: (Kaspersky Protection) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2021-01-26]
CHR Extension: (Dokumenty) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-06-29]
CHR Extension: (Disk Google) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-23]
CHR Extension: (YouTube) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-06-29]
CHR Extension: (Tabuľky) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-06-29]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-17]
CHR Extension: (EPUBReader) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhhclmfgfllimlhabjkgkeebkbiadflb [2020-06-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Gmail) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Extension: (Chrome Media Router) - C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-01-26]
CHR Profile: C:\Users\acer\AppData\Local\Google\Chrome\User Data\System Profile [2021-01-26]
CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AVP21.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\avp.exe [381928 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9105800 2020-12-01] (Microsoft Corporation -> Microsoft Corporation)
S3 klvssbridge64_21.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.2\x64\vssbridge64.exe [467352 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 KSDE3.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksde.exe [617016 2018-02-28] (Kaspersky Lab -> AO Kaspersky Lab)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12757520 2020-12-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [251608 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klbackupdisk; C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys [110392 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [212280 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [127288 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [37496 2020-10-21] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab)
R1 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [523576 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klgse; C:\WINDOWS\System32\DRIVERS\klgse.sys [659768 2020-12-25] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klhk; C:\WINDOWS\System32\drivers\klhk.sys [1341232 2020-12-25] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klids; C:\ProgramData\Kaspersky Lab\AVP21.2\Bases\klids.sys [245784 2021-01-26] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [1025336 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klim6; C:\WINDOWS\system32\DRIVERS\klim6.sys [95544 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [113464 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [113464 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [85288 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klpnpflt; C:\WINDOWS\system32\DRIVERS\klpnpflt.sys [97080 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 kltap; C:\WINDOWS\System32\drivers\kltap.sys [48080 2018-02-12] (AnchorFree Inc -> The OpenVPN Project)
R0 klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [257208 2020-10-26] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klupd_klif_kimul; C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys [99152 2019-03-11] (Kaspersky Lab -> AO Kaspersky Lab)
R3 klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [310232 2021-01-26] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klupd_klif_klark_71E5DD95; C:\ProgramData\Kaspersky Lab\AVP21.2\Temp\71E5DD959D5FEB17161B68BA5E58A569\klupd_klif_klark.sys [310232 2021-01-26] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [116888 2021-01-26] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [207352 2020-11-08] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [153400 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [250168 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [300856 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46688 2019-10-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [350136 2019-10-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-07] (Microsoft Windows -> Microsoft Corporation)
U3 avgbdisk; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-01-26 20:48 - 2021-01-26 20:51 - 000018416 _____ C:\Users\acer\Desktop\FRST.txt
2021-01-26 20:44 - 2021-01-26 20:44 - 002297344 _____ (Farbar) C:\Users\acer\Desktop\FRST64.exe
2021-01-26 13:56 - 2021-01-26 13:56 - 000310232 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klark.sys
2021-01-26 13:55 - 2021-01-26 13:55 - 000116888 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klbg.sys
2021-01-26 13:40 - 2021-01-26 13:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2021-01-26 13:40 - 2020-12-30 14:33 - 000002251 _____ C:\Users\Public\Desktop\Ochrana financí.lnk
2021-01-26 13:40 - 2020-12-30 14:33 - 000002251 _____ C:\ProgramData\Desktop\Ochrana financí.lnk
2021-01-26 13:40 - 2020-12-30 14:33 - 000002215 _____ C:\Users\Public\Desktop\Kaspersky Internet Security.lnk
2021-01-26 13:40 - 2020-12-30 14:33 - 000002215 _____ C:\ProgramData\Desktop\Kaspersky Internet Security.lnk
2021-01-17 17:35 - 2021-01-17 17:36 - 000000000 ____D C:\Users\acer\AppData\Local\Viber
2021-01-16 17:48 - 2021-01-16 17:50 - 001523482 _____ C:\Users\acer\Downloads\Men-Who-Hate-Women-and-the-Women-Who-Love-Them-When-Loving-Hurts-And-You-Dont-Know-Why-BenjaminMadeira-com.pdf
2021-01-16 17:38 - 2021-01-16 17:38 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-01-12 14:00 - 2021-01-26 13:33 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-01-10 17:41 - 2021-01-10 17:41 - 001134459 _____ C:\Users\acer\Downloads\55912798.pdf
2021-01-03 17:17 - 2021-01-03 17:17 - 000001878 _____ C:\Users\acer\Downloads\Objednávka Agama - COOP Jednota OD Slimák (1).txt
2021-01-03 17:10 - 2021-01-03 17:10 - 000192396 _____ C:\Users\acer\Downloads\Objednávka Agama - COOP Jednota OD Slimák.pdf
2021-01-03 17:10 - 2021-01-03 17:10 - 000192396 _____ C:\Users\acer\Downloads\Objednávka Agama - COOP Jednota OD Slimák (1).pdf
2021-01-03 15:57 - 2021-01-03 15:57 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002492 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000002435 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2021-01-03 15:57 - 2021-01-03 15:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2020-12-29 12:44 - 2020-12-29 12:44 - 000000000 ____D C:\Users\acer\Documents\recept
2020-12-28 18:47 - 2021-01-25 17:36 - 000952832 _____ C:\Users\acer\Documents\Kniha došlých FA TUN 20.xls
2020-12-28 18:40 - 2020-12-28 18:40 - 000955392 _____ C:\Users\acer\Downloads\Kniha došlých FA TUN 20.xls
2020-12-28 18:40 - 2020-12-28 18:40 - 000955392 _____ C:\Users\acer\Downloads\Kniha došlých FA TUN 20 (1).xls
2020-12-28 14:39 - 2020-12-28 14:39 - 000000000 ____D C:\Users\acer\AppData\Roaming\OpenOffice
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-01-26 20:53 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-01-26 20:50 - 2020-05-24 09:11 - 000000000 ____D C:\FRST
2021-01-26 20:43 - 2020-12-14 17:53 - 000000000 ____D C:\Program Files\CCleaner
2021-01-26 20:39 - 2020-12-15 15:33 - 000000000 ____D C:\Users\acer\AppData\Local\CrashDumps
2021-01-26 20:39 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2021-01-26 20:34 - 2019-01-05 12:16 - 000000000 ____D C:\Users\acer\AppData\Local\Spotify
2021-01-26 20:23 - 2019-01-05 12:15 - 000000000 ____D C:\Users\acer\AppData\Roaming\Spotify
2021-01-26 19:08 - 2019-08-12 03:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-01-26 14:10 - 2020-10-04 17:31 - 000002351 _____ C:\Users\acer\Desktop\Microsoft Teams.lnk
2021-01-26 14:10 - 2020-03-25 10:28 - 000002359 _____ C:\Users\acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk
2021-01-26 13:56 - 2019-03-19 05:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-01-26 13:51 - 2019-10-31 08:56 - 000000000 ____D C:\Users\acer\Desktop\MA
2021-01-26 13:51 - 2018-07-11 19:10 - 000000000 ____D C:\Users\acer\AppData\LocalLow\Mozilla
2021-01-26 13:48 - 2019-02-06 22:02 - 000000000 ____D C:\ProgramData\Mozilla
2021-01-26 13:45 - 2020-01-05 12:29 - 000003392 _____ C:\WINDOWS\system32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}
2021-01-26 13:45 - 2018-07-11 22:23 - 000000000 ____D C:\Program Files\Common Files\AV
2021-01-26 13:39 - 2018-07-11 22:22 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2021-01-26 13:39 - 2018-07-11 22:22 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab
2021-01-26 13:38 - 2018-07-15 21:53 - 000000000 ____D C:\Users\acer\AppData\Roaming\ViberPC
2021-01-26 13:34 - 2020-05-24 12:59 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2021-01-26 13:34 - 2019-08-12 03:26 - 000000000 ____D C:\Users\acer
2021-01-26 13:34 - 2018-06-29 15:55 - 000000000 __SHD C:\Users\acer\IntelGraphicsProfiles
2021-01-26 13:33 - 2019-08-12 04:20 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-01-26 13:33 - 2018-06-29 16:14 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-01-26 13:33 - 2018-06-29 16:08 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-01-26 12:53 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-01-25 22:01 - 2019-08-12 03:39 - 000795992 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-01-25 21:40 - 2020-12-14 17:54 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-01-25 19:51 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-01-25 17:54 - 2018-06-29 15:48 - 000000000 ____D C:\Users\acer\AppData\Local\Packages
2021-01-24 23:56 - 2020-10-24 16:23 - 000000000 ____D C:\Users\acer\Documents\STOPPARD
2021-01-24 23:25 - 2020-05-22 12:53 - 000000000 ____D C:\Users\acer\Documents\iris murdoch
2021-01-24 23:25 - 2020-05-22 12:49 - 000000000 ____D C:\Users\acer\Documents\arthur miller
2021-01-23 12:28 - 2020-10-22 09:21 - 000000000 ____D C:\Users\acer\Documents\language and ideology
2021-01-22 21:04 - 2020-03-24 10:04 - 000000000 ____D C:\Users\acer\AppData\Local\SquirrelTemp
2021-01-19 22:35 - 2020-06-07 00:52 - 000003576 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-01-19 22:35 - 2020-06-07 00:52 - 000003452 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-01-16 17:36 - 2018-06-29 16:08 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-01-15 23:06 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-01-15 14:11 - 2020-02-19 22:56 - 000000000 ____D C:\Users\acer\Documents\lit and culture 2
2021-01-12 09:50 - 2018-06-29 16:09 - 000002313 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-01-12 09:50 - 2018-06-29 16:09 - 000002272 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-01-12 09:50 - 2018-06-29 16:09 - 000002272 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2021-01-11 21:35 - 2019-05-23 15:11 - 000000000 ____D C:\Users\acer\Desktop\pikosky
2021-01-09 17:47 - 2019-07-10 08:24 - 000000000 ____D C:\Users\acer\AppData\Local\D3DSCache
2021-01-05 13:39 - 2018-06-29 15:51 - 000000000 ____D C:\Users\acer\AppData\Local\PlaceholderTileLogoFolder
2021-01-03 15:55 - 2018-07-11 19:54 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-12-30 14:32 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================