Po zapnutí prohlížeče vyskakuje nechtěná reklama
Napsal: 14 dub 2021 11:01
Dobrý den,
nejspíše sem někde klikl na něco co jsem neměl a při zapnutí prohlížeče mi vyskakuje záložka se stránkou na Aporasal.net. Zkoušel jsem to nějak smazal v google chrome, ale nenašel jsem to.
Moc Vás teda prosím o radu, jak se toho zbavit a kontrolu logu.
Děkuji.
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [117472 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [ZELOTES C-12] => C:\Program Files (x86)\ZELOTES C-12\Monitor.exe [770048 2019-01-23] () [File not signed]
HKLM-x32\...\Run: [V0770Mon.exe] => C:\WINDOWS\V0770Mon.exe
HKU\S-1-5-21-2407153952-1791725706-3334685836-1001\...\Run: [Discord] => C:\Users\drEd\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-2407153952-1791725706-3334685836-1001\...\Run: [Steam] => E:\steam\steam.exe [4087528 2021-04-12] (Valve -> Valve Corporation)
HKU\S-1-5-21-2407153952-1791725706-3334685836-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [90952552 2020-11-12] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-2407153952-1791725706-3334685836-1001\...\Run: [Facebook.MessengerDesktop] => C:\Users\drEd\AppData\Local\Programs\Messenger\Messenger.exe [110793448 2021-04-06] (Facebook, Inc. -> Facebook, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\89.0.4389.128\Installer\chrmstp.exe [2021-04-13] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\updateSteam.bat [2018-02-04] () [File not signed]
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {2E14EFB0-309E-4794-B7B3-B76BFA2C2FDF} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1791712 2021-02-23] (Avast Software s.r.o. -> Avast Software)
Task: {536680FF-032C-4802-AE57-AE6130731225} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114008 2021-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {580E915C-21B4-4EF8-BF97-6B087760B221} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4002240 2021-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {60704DC3-5F9F-4553-80DA-190FF81CDE55} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [69304 2020-09-09] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {77903F29-A1FA-46BF-9357-B0A295BFD50A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114008 2021-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {91AC261D-289B-4BA3-AB4D-15CF8715D485} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1645240 2020-09-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {A906EEEF-E708-4485-ACEE-F23B584DAC5A} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4686560 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
Task: {B0175340-17D9-45B1-A78A-AC82B6363988} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1645240 2020-09-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {C0A3EC81-FF77-4870-A168-43D12CFD045C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248760 2021-04-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {CB8E6FEB-1C8B-4E90-BD4F-47E1AAB29C45} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-10-29] (Google LLC -> Google LLC)
Task: {D22E559D-A975-40F0-AD90-26BD81127960} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1645240 2020-09-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {D2D95BAD-4D4E-4AFA-96FE-28E20A46ED8E} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2020-09-09] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {D7408E6B-1F5B-4A46-977A-94D24AF7B378} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-10-29] (Google LLC -> Google LLC)
Task: {ED1865D0-C53F-4FC4-AC3F-DC3680B77DBF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4002240 2021-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {F68B69AF-CA50-424E-A257-7913287EE857} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248760 2021-04-01] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: 46.28.109.117 master.gamespy.com
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{c80269c4-30e3-4f35-b975-b622b49e8bf1}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Profile: C:\Users\drEd\AppData\Local\Microsoft\Edge\User Data\Default [2021-04-13]
FireFox:
========
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-03-04] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-03-04] (Microsoft Corporation -> Microsoft Corporation)
Chrome:
=======
CHR Profile: C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default [2021-04-14]
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Prezentace) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-10-29]
CHR Extension: (Dokumenty) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-10-29]
CHR Extension: (Disk Google) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-29]
CHR Extension: (YouTube) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-10-29]
CHR Extension: (Tabulky) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-10-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-03-16]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-04-13]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31]
CHR Extension: (Gmail) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-29]
CHR Extension: (Chrome Media Router) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-14]
CHR Profile: C:\Users\drEd\AppData\Local\Google\Chrome\User Data\System Profile [2020-10-29]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2015-05-08] (ASUSTeK Computer Inc. -> )
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-04-24] (ASUSTeK Computer Inc. -> ) [File not signed]
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7888408 2021-04-05] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [623216 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56920 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8788368 2021-03-29] (Microsoft Corporation -> Microsoft Corporation)
S3 Origin Client Service; E:\Origin\OriginClientService.exe [2533952 2021-02-10] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; E:\Origin\OriginWebHelperService.exe [3479624 2021-02-10] (Electronic Arts, Inc. -> Electronic Arts)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5352528 2021-04-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13273104 2020-10-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2015-05-08] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [35680 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [208552 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [365520 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [250328 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [99288 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16832 2020-12-16] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [41304 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [177872 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [107808 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83368 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [850120 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [466696 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [216376 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [326976 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
S3 CtClsFlt; C:\WINDOWS\system32\DRIVERS\CtClsFlt.sys [188408 2015-08-12] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-04-14 11:55 - 2021-04-14 11:56 - 000013090 _____ C:\Users\drEd\Desktop\FRST.txt
2021-04-14 11:55 - 2021-04-14 11:55 - 000000000 ____D C:\FRST
2021-04-14 11:53 - 2021-04-14 11:53 - 002297856 _____ (Farbar) C:\Users\drEd\Desktop\FRST64.exe
2021-04-14 11:43 - 2021-04-14 11:43 - 000388608 _____ (Trend Micro Inc.) C:\Users\drEd\Desktop\hijackthis.exe
2021-04-14 09:26 - 2021-04-14 09:26 - 013534314 _____ C:\Users\drEd\Downloads\Parker.rar
2021-04-14 09:26 - 2021-04-14 09:26 - 000000000 ____D C:\Users\drEd\Downloads\Parker
2021-04-13 17:20 - 2021-04-13 16:28 - 000000000 ____D C:\Windows.old
2021-04-13 17:16 - 2021-04-13 17:20 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2021-04-13 17:15 - 2021-04-13 17:16 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-04-13 17:15 - 2021-04-13 17:15 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-04-13 17:13 - 2021-04-13 17:13 - 000000000 ____D C:\ProgramData\ssh
2021-04-13 17:09 - 2021-04-13 17:09 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-04-13 17:09 - 2021-04-13 17:09 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-04-13 17:09 - 2021-04-13 17:09 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-04-13 17:09 - 2021-04-13 17:09 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-04-13 17:09 - 2021-04-13 17:09 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-04-13 17:09 - 2021-04-13 17:09 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-04-13 17:09 - 2021-04-13 17:09 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-04-13 17:09 - 2021-04-13 17:09 - 000480256 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000111616 _____ C:\WINDOWS\system32\RDVGHelper.exe
2021-04-13 17:09 - 2021-04-13 17:09 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-04-13 17:09 - 2021-04-13 17:09 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-04-13 17:09 - 2021-04-13 17:09 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000011359 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-04-13 17:08 - 2021-04-13 17:08 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-04-13 17:08 - 2021-04-13 17:08 - 001394024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-04-13 17:08 - 2021-04-13 17:08 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-04-13 17:08 - 2021-04-13 17:08 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-04-13 17:08 - 2021-04-13 17:08 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-04-13 17:08 - 2021-04-13 17:08 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-04-13 17:08 - 2021-04-13 17:08 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-04-13 17:08 - 2021-04-13 17:08 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000091136 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-04-13 17:08 - 2021-04-13 17:08 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-04-13 17:08 - 2021-04-13 17:08 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-04-13 17:08 - 2021-04-13 17:08 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-04-13 17:08 - 2021-04-13 17:08 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-04-13 17:07 - 2021-04-13 17:07 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-04-13 17:07 - 2021-04-13 17:07 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-04-13 17:07 - 2021-04-13 17:07 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-04-13 17:07 - 2021-04-13 17:07 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-04-13 17:07 - 2021-04-13 17:07 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-04-13 17:07 - 2021-04-13 17:07 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-04-13 16:59 - 2021-04-13 16:59 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2021-04-13 16:59 - 2021-04-13 16:59 - 000000000 ____D C:\Program Files\Reference Assemblies
2021-04-13 16:59 - 2021-04-13 16:59 - 000000000 ____D C:\Program Files\MSBuild
2021-04-13 16:59 - 2021-04-13 16:59 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2021-04-13 16:59 - 2021-04-13 16:59 - 000000000 ____D C:\Program Files (x86)\MSBuild
2021-04-13 16:30 - 2021-04-14 11:48 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-04-13 16:30 - 2021-04-13 16:30 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-04-13 16:28 - 2021-04-14 11:41 - 000003124 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2021-04-13 16:28 - 2021-04-14 11:41 - 000003110 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2021-04-13 16:28 - 2021-04-14 11:41 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-04-13 16:28 - 2021-04-13 16:28 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2021-04-13 16:28 - 2021-04-13 16:28 - 000007623 _____ C:\WINDOWS\diagerr.xml
2021-04-13 16:28 - 2021-04-13 16:28 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-04-13 16:28 - 2021-04-13 16:28 - 000003400 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-04-13 16:28 - 2021-04-13 16:28 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-04-13 16:28 - 2021-04-13 16:28 - 000003176 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-04-13 16:28 - 2021-04-13 16:28 - 000003042 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-04-13 16:28 - 2021-04-13 16:28 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2407153952-1791725706-3334685836-1001
2021-04-13 16:28 - 2021-04-13 16:28 - 000002388 _____ C:\WINDOWS\system32\Tasks\ModifyLinkUpdate
2021-04-13 16:28 - 2021-04-13 16:28 - 000002202 _____ C:\WINDOWS\system32\Tasks\StartCN
2021-04-13 16:28 - 2021-04-13 16:28 - 000002122 _____ C:\WINDOWS\system32\Tasks\StartDVR
2021-04-13 16:28 - 2021-04-13 16:28 - 000000020 ___SH C:\Users\drEd\ntuser.ini
2021-04-13 16:28 - 2021-04-13 16:28 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2021-04-13 16:21 - 2021-04-13 16:28 - 000000000 ____D C:\Users\drEd
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Šablony
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Soubory cookie
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Poslední
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Okolní tiskárny
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Okolní síť
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Nabídka Start
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Dokumenty
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Documents\Obrázky
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Documents\Hudba
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Documents\Filmy
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Data aplikací
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\AppData\Local\Data aplikací
2021-04-13 16:21 - 2019-12-07 11:10 - 000001105 _____ C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-13 16:20 - 2021-04-14 11:41 - 000008192 ___SH C:\DumpStack.log.tmp
2021-04-13 16:20 - 2021-04-14 10:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-04-13 16:20 - 2021-04-13 16:20 - 000444936 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-04-13 12:42 - 2021-04-13 14:48 - 2274557952 _____ C:\Users\drEd\Downloads\Vietcong-(Zlatá-edice).iso
2021-04-13 12:33 - 2021-04-13 12:33 - 004285100 _____ C:\Users\drEd\Downloads\(wf)starwarsMaze.rar
2021-04-13 09:12 - 2021-04-13 09:12 - 000000000 ____D C:\ProgramData\Caphyon
2021-04-13 09:11 - 2021-04-13 09:12 - 000000000 ____D C:\Program Files (x86)\Warcraft III - The Frozen Throne
2021-04-13 09:10 - 2021-04-13 09:10 - 000000000 ___HD C:\$AV_ASW
2021-04-13 09:08 - 2021-04-13 09:08 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Blizzard
2021-04-12 18:15 - 2021-04-12 18:15 - 000009397 _____ C:\Users\drEd\Desktop\hry.xlsx
2021-04-12 17:33 - 2021-04-12 17:34 - 318974275 _____ C:\Users\drEd\Downloads\Čeština do Age of Empires II Definitive Edition 1.13.rar
2021-04-07 16:41 - 2021-04-13 17:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CZC
2021-04-07 16:41 - 2021-04-07 16:41 - 000000000 ____D C:\Program Files (x86)\CZC
2021-04-05 15:31 - 2021-04-13 16:28 - 000000000 ___DC C:\WINDOWS\Panther
2021-04-05 15:24 - 2021-04-05 15:24 - 000000000 ___HD C:\$WinREAgent
2021-03-25 17:22 - 2021-03-25 17:22 - 007180024 _____ (FastStone Soft) C:\Users\drEd\Downloads\FSViewerSetup75.exe
2021-03-25 15:09 - 2021-03-25 15:09 - 000339680 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2021-03-25 15:09 - 2021-03-25 15:09 - 000216376 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2021-03-23 14:00 - 2021-03-23 14:00 - 000000695 _____ C:\Users\drEd\Desktop\vietcong_old – zástupce.lnk
2021-03-23 13:53 - 2021-03-23 13:53 - 002017840 _____ C:\Users\drEd\Downloads\vcstarterv1.65.1_cz.zip
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-04-14 11:58 - 2020-12-14 13:47 - 000000000 ____D C:\Users\drEd\AppData\Local\Messenger
2021-04-14 11:57 - 2020-12-14 13:47 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Messenger
2021-04-14 11:55 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2021-04-14 11:53 - 2020-10-29 17:50 - 000000000 ____D C:\ProgramData\Avast Software
2021-04-14 11:48 - 2019-12-07 16:43 - 000716726 _____ C:\WINDOWS\system32\perfh005.dat
2021-04-14 11:48 - 2019-12-07 16:43 - 000144904 _____ C:\WINDOWS\system32\perfc005.dat
2021-04-14 11:45 - 2020-10-29 17:41 - 000000000 ____D C:\Users\drEd\AppData\Local\ClassicShell
2021-04-14 11:43 - 2020-10-29 16:58 - 000000000 ____D C:\Users\drEd\AppData\Local\VirtualStore
2021-04-14 11:43 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-04-14 11:41 - 2020-11-23 11:44 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-04-14 11:41 - 2020-10-29 17:03 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2021-04-14 11:41 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-04-14 09:16 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-04-14 00:05 - 2020-11-11 21:00 - 000000000 ____D C:\Users\drEd\AppData\Roaming\TS3Client
2021-04-13 23:44 - 2020-10-29 17:14 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-04-13 18:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-04-13 17:26 - 2020-10-29 17:00 - 000000000 ____D C:\Users\drEd\AppData\Local\PlaceholderTileLogoFolder
2021-04-13 17:20 - 2021-01-03 15:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\STAR WARS Battlefront II
2021-04-13 17:20 - 2020-11-12 23:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
2021-04-13 17:20 - 2020-11-10 15:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2021-04-13 17:20 - 2020-11-02 21:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Modern Warfare
2021-04-13 17:20 - 2020-10-30 15:40 - 000000000 ____D C:\Program Files\UNP
2021-04-13 17:20 - 2020-10-29 19:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-04-13 17:20 - 2020-10-29 18:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2021-04-13 17:20 - 2020-10-29 17:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2021-04-13 17:20 - 2020-10-29 17:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2021-04-13 17:20 - 2020-10-29 17:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Software
2021-04-13 17:20 - 2020-10-29 17:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2021-04-13 17:20 - 2020-10-29 17:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZELOTES C-12
2021-04-13 17:20 - 2019-12-07 11:18 - 000000000 ____D C:\WINDOWS\Setup
2021-04-13 17:20 - 2019-12-07 11:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-04-13 17:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-04-13 17:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-04-13 17:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-04-13 17:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-04-13 17:20 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-04-13 17:20 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-04-13 17:20 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2021-04-13 17:16 - 2020-11-06 16:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Line 6
2021-04-13 17:16 - 2020-10-29 17:03 - 000000000 ____D C:\WINDOWS\system32\AMD
2021-04-13 17:13 - 2019-12-07 16:47 - 000000000 ___SD C:\WINDOWS\system32\AppV
2021-04-13 17:13 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-04-13 17:13 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-04-13 17:13 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-04-13 17:13 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2021-04-13 17:12 - 2019-12-07 16:47 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-04-13 17:12 - 2019-12-07 16:47 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-04-13 16:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2021-04-13 16:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MUI
2021-04-13 16:45 - 2020-10-29 16:58 - 000000000 ____D C:\Users\drEd\AppData\Local\Packages
2021-04-13 16:45 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-04-13 16:29 - 2020-10-29 17:06 - 000000000 ____D C:\ProgramData\Packages
2021-04-13 16:29 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-04-13 16:28 - 2020-10-29 17:05 - 000000000 ____D C:\Users\drEd\AppData\Local\D3DSCache
2021-04-13 16:28 - 2020-10-29 16:58 - 000000000 ___RD C:\Users\drEd\3D Objects
2021-04-13 16:28 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-04-13 16:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-04-13 16:28 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-04-13 16:28 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2021-04-13 16:28 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-04-13 16:25 - 2020-11-12 23:06 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-04-13 16:22 - 2021-02-10 10:56 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ascaron Entertainment
2021-04-13 16:22 - 2020-11-21 15:43 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
2021-04-13 16:22 - 2020-10-29 19:08 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-04-13 16:22 - 2020-10-29 18:24 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2021-04-13 16:22 - 2020-10-29 17:44 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2021-04-13 15:46 - 2020-11-21 15:42 - 000000000 ____D C:\Users\drEd\AppData\Local\JDownloader 2.0
2021-04-13 08:58 - 2020-11-01 12:57 - 000000000 ____D C:\Users\drEd\AppData\Local\CrashDumps
2021-04-12 20:18 - 2020-10-29 17:00 - 000000000 ___RD C:\Users\drEd\OneDrive
2021-04-12 20:00 - 2020-10-29 17:44 - 000000000 ____D C:\Users\drEd\AppData\Roaming\discord
2021-04-11 15:13 - 2020-11-10 15:04 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2021-04-06 10:21 - 2020-12-14 13:47 - 000002324 _____ C:\Users\drEd\Desktop\Messenger.lnk
2021-04-06 10:21 - 2020-11-11 18:56 - 000011415 _____ C:\Users\drEd\Desktop\platby zk.xlsx
2021-04-06 10:10 - 2020-12-03 18:54 - 000011127 _____ C:\Users\drEd\Desktop\vánoce2020.xlsx
2021-04-05 16:19 - 2020-10-29 20:17 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-03-25 15:09 - 2020-10-29 17:51 - 000466696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000326976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000250328 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000177872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000107808 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000099288 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000083368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000041304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2021-03-25 15:08 - 2020-10-29 17:51 - 000850120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2021-03-25 15:08 - 2020-10-29 17:51 - 000365520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2021-03-25 15:08 - 2020-10-29 17:51 - 000208552 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2021-03-25 15:08 - 2020-10-29 17:51 - 000035680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2021-03-23 02:28 - 2020-10-29 20:17 - 000916304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll
2021-03-23 02:28 - 2020-10-29 20:17 - 000437072 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll
2021-03-22 11:48 - 2020-10-29 18:27 - 000000000 ____D C:\Users\drEd\AppData\Local\Battle.net
==================== Files in the root of some directories ========
2020-11-01 13:12 - 2020-11-01 13:12 - 018081280 _____ (Luigi Auriemma, e-mail: me@aluigi.org, web: aluigi.org) C:\Users\drEd\AppData\Roaming\extractor.exe
2021-02-09 15:48 - 2021-02-09 15:48 - 000000099 _____ () C:\Users\drEd\AppData\Roaming\LauncherSettings_live.cfg
2020-11-01 13:12 - 2020-11-01 13:12 - 000008999 _____ () C:\Users\drEd\AppData\Roaming\script.bms
2021-02-09 15:42 - 2021-02-09 15:42 - 000002577 _____ () C:\Users\drEd\AppData\Roaming\TheHunterSettings_live.bin
2020-11-12 23:48 - 2020-11-12 23:48 - 000003584 _____ () C:\Users\drEd\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2020-11-06 18:18 - 2020-11-06 18:19 - 000000071 _____ () C:\Users\drEd\AppData\Local\userPresetInfo.json
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
nejspíše sem někde klikl na něco co jsem neměl a při zapnutí prohlížeče mi vyskakuje záložka se stránkou na Aporasal.net. Zkoušel jsem to nějak smazal v google chrome, ale nenašel jsem to.
Moc Vás teda prosím o radu, jak se toho zbavit a kontrolu logu.
Děkuji.
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [117472 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [ZELOTES C-12] => C:\Program Files (x86)\ZELOTES C-12\Monitor.exe [770048 2019-01-23] () [File not signed]
HKLM-x32\...\Run: [V0770Mon.exe] => C:\WINDOWS\V0770Mon.exe
HKU\S-1-5-21-2407153952-1791725706-3334685836-1001\...\Run: [Discord] => C:\Users\drEd\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-2407153952-1791725706-3334685836-1001\...\Run: [Steam] => E:\steam\steam.exe [4087528 2021-04-12] (Valve -> Valve Corporation)
HKU\S-1-5-21-2407153952-1791725706-3334685836-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [90952552 2020-11-12] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-2407153952-1791725706-3334685836-1001\...\Run: [Facebook.MessengerDesktop] => C:\Users\drEd\AppData\Local\Programs\Messenger\Messenger.exe [110793448 2021-04-06] (Facebook, Inc. -> Facebook, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\89.0.4389.128\Installer\chrmstp.exe [2021-04-13] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\updateSteam.bat [2018-02-04] () [File not signed]
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {2E14EFB0-309E-4794-B7B3-B76BFA2C2FDF} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1791712 2021-02-23] (Avast Software s.r.o. -> Avast Software)
Task: {536680FF-032C-4802-AE57-AE6130731225} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114008 2021-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {580E915C-21B4-4EF8-BF97-6B087760B221} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4002240 2021-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {60704DC3-5F9F-4553-80DA-190FF81CDE55} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [69304 2020-09-09] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {77903F29-A1FA-46BF-9357-B0A295BFD50A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114008 2021-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {91AC261D-289B-4BA3-AB4D-15CF8715D485} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1645240 2020-09-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {A906EEEF-E708-4485-ACEE-F23B584DAC5A} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4686560 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
Task: {B0175340-17D9-45B1-A78A-AC82B6363988} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1645240 2020-09-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {C0A3EC81-FF77-4870-A168-43D12CFD045C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248760 2021-04-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {CB8E6FEB-1C8B-4E90-BD4F-47E1AAB29C45} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-10-29] (Google LLC -> Google LLC)
Task: {D22E559D-A975-40F0-AD90-26BD81127960} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1645240 2020-09-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {D2D95BAD-4D4E-4AFA-96FE-28E20A46ED8E} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2020-09-09] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {D7408E6B-1F5B-4A46-977A-94D24AF7B378} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-10-29] (Google LLC -> Google LLC)
Task: {ED1865D0-C53F-4FC4-AC3F-DC3680B77DBF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4002240 2021-04-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {F68B69AF-CA50-424E-A257-7913287EE857} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248760 2021-04-01] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: 46.28.109.117 master.gamespy.com
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{c80269c4-30e3-4f35-b975-b622b49e8bf1}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Profile: C:\Users\drEd\AppData\Local\Microsoft\Edge\User Data\Default [2021-04-13]
FireFox:
========
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-03-04] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-03-04] (Microsoft Corporation -> Microsoft Corporation)
Chrome:
=======
CHR Profile: C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default [2021-04-14]
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Prezentace) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-10-29]
CHR Extension: (Dokumenty) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-10-29]
CHR Extension: (Disk Google) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-29]
CHR Extension: (YouTube) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-10-29]
CHR Extension: (Tabulky) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-10-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-03-16]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-04-13]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31]
CHR Extension: (Gmail) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-29]
CHR Extension: (Chrome Media Router) - C:\Users\drEd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-14]
CHR Profile: C:\Users\drEd\AppData\Local\Google\Chrome\User Data\System Profile [2020-10-29]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2015-05-08] (ASUSTeK Computer Inc. -> )
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-04-24] (ASUSTeK Computer Inc. -> ) [File not signed]
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7888408 2021-04-05] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [623216 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56920 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8788368 2021-03-29] (Microsoft Corporation -> Microsoft Corporation)
S3 Origin Client Service; E:\Origin\OriginClientService.exe [2533952 2021-02-10] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; E:\Origin\OriginWebHelperService.exe [3479624 2021-02-10] (Electronic Arts, Inc. -> Electronic Arts)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5352528 2021-04-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13273104 2020-10-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2015-05-08] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [35680 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [208552 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [365520 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [250328 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [99288 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16832 2020-12-16] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [41304 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [177872 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [107808 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83368 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [850120 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [466696 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [216376 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [326976 2021-03-25] (Avast Software s.r.o. -> AVAST Software)
S3 CtClsFlt; C:\WINDOWS\system32\DRIVERS\CtClsFlt.sys [188408 2015-08-12] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-04-14 11:55 - 2021-04-14 11:56 - 000013090 _____ C:\Users\drEd\Desktop\FRST.txt
2021-04-14 11:55 - 2021-04-14 11:55 - 000000000 ____D C:\FRST
2021-04-14 11:53 - 2021-04-14 11:53 - 002297856 _____ (Farbar) C:\Users\drEd\Desktop\FRST64.exe
2021-04-14 11:43 - 2021-04-14 11:43 - 000388608 _____ (Trend Micro Inc.) C:\Users\drEd\Desktop\hijackthis.exe
2021-04-14 09:26 - 2021-04-14 09:26 - 013534314 _____ C:\Users\drEd\Downloads\Parker.rar
2021-04-14 09:26 - 2021-04-14 09:26 - 000000000 ____D C:\Users\drEd\Downloads\Parker
2021-04-13 17:20 - 2021-04-13 16:28 - 000000000 ____D C:\Windows.old
2021-04-13 17:16 - 2021-04-13 17:20 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2021-04-13 17:15 - 2021-04-13 17:16 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-04-13 17:15 - 2021-04-13 17:15 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-04-13 17:13 - 2021-04-13 17:13 - 000000000 ____D C:\ProgramData\ssh
2021-04-13 17:09 - 2021-04-13 17:09 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-04-13 17:09 - 2021-04-13 17:09 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-04-13 17:09 - 2021-04-13 17:09 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-04-13 17:09 - 2021-04-13 17:09 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-04-13 17:09 - 2021-04-13 17:09 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-04-13 17:09 - 2021-04-13 17:09 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-04-13 17:09 - 2021-04-13 17:09 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-04-13 17:09 - 2021-04-13 17:09 - 000480256 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-04-13 17:09 - 2021-04-13 17:09 - 000111616 _____ C:\WINDOWS\system32\RDVGHelper.exe
2021-04-13 17:09 - 2021-04-13 17:09 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-04-13 17:09 - 2021-04-13 17:09 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-04-13 17:09 - 2021-04-13 17:09 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-04-13 17:09 - 2021-04-13 17:09 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-04-13 17:09 - 2021-04-13 17:09 - 000011359 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-04-13 17:08 - 2021-04-13 17:08 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-04-13 17:08 - 2021-04-13 17:08 - 001394024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-04-13 17:08 - 2021-04-13 17:08 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-04-13 17:08 - 2021-04-13 17:08 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-04-13 17:08 - 2021-04-13 17:08 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-04-13 17:08 - 2021-04-13 17:08 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-04-13 17:08 - 2021-04-13 17:08 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-04-13 17:08 - 2021-04-13 17:08 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-04-13 17:08 - 2021-04-13 17:08 - 000091136 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-04-13 17:08 - 2021-04-13 17:08 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-04-13 17:08 - 2021-04-13 17:08 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-04-13 17:08 - 2021-04-13 17:08 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-04-13 17:08 - 2021-04-13 17:08 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-04-13 17:08 - 2021-04-13 17:08 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-04-13 17:07 - 2021-04-13 17:07 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-04-13 17:07 - 2021-04-13 17:07 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-04-13 17:07 - 2021-04-13 17:07 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-04-13 17:07 - 2021-04-13 17:07 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-04-13 17:07 - 2021-04-13 17:07 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-04-13 17:07 - 2021-04-13 17:07 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-04-13 17:07 - 2021-04-13 17:07 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-04-13 16:59 - 2021-04-13 16:59 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2021-04-13 16:59 - 2021-04-13 16:59 - 000000000 ____D C:\Program Files\Reference Assemblies
2021-04-13 16:59 - 2021-04-13 16:59 - 000000000 ____D C:\Program Files\MSBuild
2021-04-13 16:59 - 2021-04-13 16:59 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2021-04-13 16:59 - 2021-04-13 16:59 - 000000000 ____D C:\Program Files (x86)\MSBuild
2021-04-13 16:30 - 2021-04-14 11:48 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-04-13 16:30 - 2021-04-13 16:30 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-04-13 16:28 - 2021-04-14 11:41 - 000003124 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2021-04-13 16:28 - 2021-04-14 11:41 - 000003110 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2021-04-13 16:28 - 2021-04-14 11:41 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-04-13 16:28 - 2021-04-13 16:28 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2021-04-13 16:28 - 2021-04-13 16:28 - 000007623 _____ C:\WINDOWS\diagerr.xml
2021-04-13 16:28 - 2021-04-13 16:28 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-04-13 16:28 - 2021-04-13 16:28 - 000003400 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-04-13 16:28 - 2021-04-13 16:28 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-04-13 16:28 - 2021-04-13 16:28 - 000003176 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-04-13 16:28 - 2021-04-13 16:28 - 000003042 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-04-13 16:28 - 2021-04-13 16:28 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2407153952-1791725706-3334685836-1001
2021-04-13 16:28 - 2021-04-13 16:28 - 000002388 _____ C:\WINDOWS\system32\Tasks\ModifyLinkUpdate
2021-04-13 16:28 - 2021-04-13 16:28 - 000002202 _____ C:\WINDOWS\system32\Tasks\StartCN
2021-04-13 16:28 - 2021-04-13 16:28 - 000002122 _____ C:\WINDOWS\system32\Tasks\StartDVR
2021-04-13 16:28 - 2021-04-13 16:28 - 000000020 ___SH C:\Users\drEd\ntuser.ini
2021-04-13 16:28 - 2021-04-13 16:28 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2021-04-13 16:21 - 2021-04-13 16:28 - 000000000 ____D C:\Users\drEd
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Šablony
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Soubory cookie
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Poslední
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Okolní tiskárny
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Okolní síť
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Nabídka Start
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Dokumenty
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Documents\Obrázky
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Documents\Hudba
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Documents\Filmy
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\Data aplikací
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-04-13 16:21 - 2021-04-13 16:21 - 000000000 _SHDL C:\Users\drEd\AppData\Local\Data aplikací
2021-04-13 16:21 - 2019-12-07 11:10 - 000001105 _____ C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-13 16:20 - 2021-04-14 11:41 - 000008192 ___SH C:\DumpStack.log.tmp
2021-04-13 16:20 - 2021-04-14 10:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-04-13 16:20 - 2021-04-13 16:20 - 000444936 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-04-13 12:42 - 2021-04-13 14:48 - 2274557952 _____ C:\Users\drEd\Downloads\Vietcong-(Zlatá-edice).iso
2021-04-13 12:33 - 2021-04-13 12:33 - 004285100 _____ C:\Users\drEd\Downloads\(wf)starwarsMaze.rar
2021-04-13 09:12 - 2021-04-13 09:12 - 000000000 ____D C:\ProgramData\Caphyon
2021-04-13 09:11 - 2021-04-13 09:12 - 000000000 ____D C:\Program Files (x86)\Warcraft III - The Frozen Throne
2021-04-13 09:10 - 2021-04-13 09:10 - 000000000 ___HD C:\$AV_ASW
2021-04-13 09:08 - 2021-04-13 09:08 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Blizzard
2021-04-12 18:15 - 2021-04-12 18:15 - 000009397 _____ C:\Users\drEd\Desktop\hry.xlsx
2021-04-12 17:33 - 2021-04-12 17:34 - 318974275 _____ C:\Users\drEd\Downloads\Čeština do Age of Empires II Definitive Edition 1.13.rar
2021-04-07 16:41 - 2021-04-13 17:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CZC
2021-04-07 16:41 - 2021-04-07 16:41 - 000000000 ____D C:\Program Files (x86)\CZC
2021-04-05 15:31 - 2021-04-13 16:28 - 000000000 ___DC C:\WINDOWS\Panther
2021-04-05 15:24 - 2021-04-05 15:24 - 000000000 ___HD C:\$WinREAgent
2021-03-25 17:22 - 2021-03-25 17:22 - 007180024 _____ (FastStone Soft) C:\Users\drEd\Downloads\FSViewerSetup75.exe
2021-03-25 15:09 - 2021-03-25 15:09 - 000339680 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2021-03-25 15:09 - 2021-03-25 15:09 - 000216376 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2021-03-23 14:00 - 2021-03-23 14:00 - 000000695 _____ C:\Users\drEd\Desktop\vietcong_old – zástupce.lnk
2021-03-23 13:53 - 2021-03-23 13:53 - 002017840 _____ C:\Users\drEd\Downloads\vcstarterv1.65.1_cz.zip
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-04-14 11:58 - 2020-12-14 13:47 - 000000000 ____D C:\Users\drEd\AppData\Local\Messenger
2021-04-14 11:57 - 2020-12-14 13:47 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Messenger
2021-04-14 11:55 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2021-04-14 11:53 - 2020-10-29 17:50 - 000000000 ____D C:\ProgramData\Avast Software
2021-04-14 11:48 - 2019-12-07 16:43 - 000716726 _____ C:\WINDOWS\system32\perfh005.dat
2021-04-14 11:48 - 2019-12-07 16:43 - 000144904 _____ C:\WINDOWS\system32\perfc005.dat
2021-04-14 11:45 - 2020-10-29 17:41 - 000000000 ____D C:\Users\drEd\AppData\Local\ClassicShell
2021-04-14 11:43 - 2020-10-29 16:58 - 000000000 ____D C:\Users\drEd\AppData\Local\VirtualStore
2021-04-14 11:43 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-04-14 11:41 - 2020-11-23 11:44 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-04-14 11:41 - 2020-10-29 17:03 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2021-04-14 11:41 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-04-14 09:16 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-04-14 00:05 - 2020-11-11 21:00 - 000000000 ____D C:\Users\drEd\AppData\Roaming\TS3Client
2021-04-13 23:44 - 2020-10-29 17:14 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-04-13 18:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-04-13 17:26 - 2020-10-29 17:00 - 000000000 ____D C:\Users\drEd\AppData\Local\PlaceholderTileLogoFolder
2021-04-13 17:20 - 2021-01-03 15:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\STAR WARS Battlefront II
2021-04-13 17:20 - 2020-11-12 23:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
2021-04-13 17:20 - 2020-11-10 15:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2021-04-13 17:20 - 2020-11-02 21:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Modern Warfare
2021-04-13 17:20 - 2020-10-30 15:40 - 000000000 ____D C:\Program Files\UNP
2021-04-13 17:20 - 2020-10-29 19:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-04-13 17:20 - 2020-10-29 18:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2021-04-13 17:20 - 2020-10-29 17:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2021-04-13 17:20 - 2020-10-29 17:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2021-04-13 17:20 - 2020-10-29 17:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Software
2021-04-13 17:20 - 2020-10-29 17:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2021-04-13 17:20 - 2020-10-29 17:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZELOTES C-12
2021-04-13 17:20 - 2019-12-07 11:18 - 000000000 ____D C:\WINDOWS\Setup
2021-04-13 17:20 - 2019-12-07 11:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-04-13 17:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-04-13 17:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-04-13 17:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-04-13 17:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-04-13 17:20 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-04-13 17:20 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-04-13 17:20 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2021-04-13 17:16 - 2020-11-06 16:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Line 6
2021-04-13 17:16 - 2020-10-29 17:03 - 000000000 ____D C:\WINDOWS\system32\AMD
2021-04-13 17:13 - 2019-12-07 16:47 - 000000000 ___SD C:\WINDOWS\system32\AppV
2021-04-13 17:13 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-04-13 17:13 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-04-13 17:13 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-04-13 17:13 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-04-13 17:13 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2021-04-13 17:12 - 2019-12-07 16:47 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-04-13 17:12 - 2019-12-07 16:47 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-04-13 16:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2021-04-13 16:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MUI
2021-04-13 16:45 - 2020-10-29 16:58 - 000000000 ____D C:\Users\drEd\AppData\Local\Packages
2021-04-13 16:45 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-04-13 16:29 - 2020-10-29 17:06 - 000000000 ____D C:\ProgramData\Packages
2021-04-13 16:29 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-04-13 16:28 - 2020-10-29 17:05 - 000000000 ____D C:\Users\drEd\AppData\Local\D3DSCache
2021-04-13 16:28 - 2020-10-29 16:58 - 000000000 ___RD C:\Users\drEd\3D Objects
2021-04-13 16:28 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-04-13 16:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-04-13 16:28 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-04-13 16:28 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2021-04-13 16:28 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-04-13 16:25 - 2020-11-12 23:06 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-04-13 16:22 - 2021-02-10 10:56 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ascaron Entertainment
2021-04-13 16:22 - 2020-11-21 15:43 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
2021-04-13 16:22 - 2020-10-29 19:08 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-04-13 16:22 - 2020-10-29 18:24 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2021-04-13 16:22 - 2020-10-29 17:44 - 000000000 ____D C:\Users\drEd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2021-04-13 15:46 - 2020-11-21 15:42 - 000000000 ____D C:\Users\drEd\AppData\Local\JDownloader 2.0
2021-04-13 08:58 - 2020-11-01 12:57 - 000000000 ____D C:\Users\drEd\AppData\Local\CrashDumps
2021-04-12 20:18 - 2020-10-29 17:00 - 000000000 ___RD C:\Users\drEd\OneDrive
2021-04-12 20:00 - 2020-10-29 17:44 - 000000000 ____D C:\Users\drEd\AppData\Roaming\discord
2021-04-11 15:13 - 2020-11-10 15:04 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2021-04-06 10:21 - 2020-12-14 13:47 - 000002324 _____ C:\Users\drEd\Desktop\Messenger.lnk
2021-04-06 10:21 - 2020-11-11 18:56 - 000011415 _____ C:\Users\drEd\Desktop\platby zk.xlsx
2021-04-06 10:10 - 2020-12-03 18:54 - 000011127 _____ C:\Users\drEd\Desktop\vánoce2020.xlsx
2021-04-05 16:19 - 2020-10-29 20:17 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-03-25 15:09 - 2020-10-29 17:51 - 000466696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000326976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000250328 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000177872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000107808 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000099288 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000083368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2021-03-25 15:09 - 2020-10-29 17:51 - 000041304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2021-03-25 15:08 - 2020-10-29 17:51 - 000850120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2021-03-25 15:08 - 2020-10-29 17:51 - 000365520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2021-03-25 15:08 - 2020-10-29 17:51 - 000208552 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2021-03-25 15:08 - 2020-10-29 17:51 - 000035680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2021-03-23 02:28 - 2020-10-29 20:17 - 000916304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll
2021-03-23 02:28 - 2020-10-29 20:17 - 000437072 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll
2021-03-22 11:48 - 2020-10-29 18:27 - 000000000 ____D C:\Users\drEd\AppData\Local\Battle.net
==================== Files in the root of some directories ========
2020-11-01 13:12 - 2020-11-01 13:12 - 018081280 _____ (Luigi Auriemma, e-mail: me@aluigi.org, web: aluigi.org) C:\Users\drEd\AppData\Roaming\extractor.exe
2021-02-09 15:48 - 2021-02-09 15:48 - 000000099 _____ () C:\Users\drEd\AppData\Roaming\LauncherSettings_live.cfg
2020-11-01 13:12 - 2020-11-01 13:12 - 000008999 _____ () C:\Users\drEd\AppData\Roaming\script.bms
2021-02-09 15:42 - 2021-02-09 15:42 - 000002577 _____ () C:\Users\drEd\AppData\Roaming\TheHunterSettings_live.bin
2020-11-12 23:48 - 2020-11-12 23:48 - 000003584 _____ () C:\Users\drEd\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2020-11-06 18:18 - 2020-11-06 18:19 - 000000071 _____ () C:\Users\drEd\AppData\Local\userPresetInfo.json
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================