Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-09-2021
Ran by ASUS (administrator) on ASUS-PC (ASUSTeK Computer Inc. K52De) (17-09-2021 18:39:04)
Running from D:\Stažené soubory
Loaded Profiles: ASUS
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <38>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10810912 2019-06-28] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKU\S-1-5-19\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-20\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-21-957794653-3658390102-4247516689-500\...\MountPoints2: {5a4e0120-ac98-11eb-b31b-bcaec535cdc5} - F:\Lenovo_Suite.exe
HKU\S-1-5-21-957794653-3658390102-4247516689-500\...\MountPoints2: {7887b40e-7e43-11eb-8698-bcaec535cdc5} - F:\setup_vmb_lite.exe /checkApplicationPresence
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\92.0.4515.131\Installer\chrmstp.exe [2021-08-03] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\92.1.27.109\Installer\chrmstp.exe [2021-07-28] (Brave Software, Inc. -> Brave Software, Inc.)
AppInit_DLLs-x32: C:\PROGRA~1\COMMON~1\System\symsrv.dll => C:\Program Files\Common Files\System\symsrv.dll [69337 2021-08-07] (Microsoft Corporation) [File not signed] <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0899C539-E049-4C37-8D24-A9FA0976F086} - System32\Tasks\{30AEF8FF-2A5C-45A3-803A-888D5B491391} => C:\Users\Administrator\Desktop\MediaCreationTool21H1.exe [19463448 2021-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {1CFAE806-C1F1-4AD0-8240-2AC183AB2C34} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [232719 2021-02-24] (Google LLC) [File not signed]
Task: {4D2A1E8E-CA58-4D6E-BF34-F146F83C0F3E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [29214279 2021-07-16] (Piriform Software Ltd) [File not signed]
Task: {61A6D54A-BDAF-4D73-B02A-B71C6F7BD14E} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-07-26] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {77DDCA80-07A5-45A2-AFC4-14EDCFCA8E6B} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [763255 2021-07-16] (Piriform) [File not signed]
Task: {8CBB9234-CB41-43A0-AEF5-E428260CB786} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-07-26] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {AEAE69CA-5213-4C18-ADDF-A5C1CCD0B263} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [232719 2021-02-24] (Google LLC) [File not signed]
Task: {E3DB5CC4-4F03-4F62-A34B-558680C6525F} - System32\Tasks\Smart Clock => C:\Users\Administrator\AppData\Roaming\Smart Clock\SmartClock.exe [329216 2021-06-05] () [File not signed] <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 05 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [200407 2015-08-12] (Apple Inc.) [File not signed]
Winsock: Catalog5-x64 05 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1EC790A7-A597-4911-B474-5FDCFB47C749}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{C65EB574-8DD7-4E32-9F13-FE05AF6EE1EB}: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF DefaultProfile: 6k7q4gvg.default
FF ProfilePath: C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\6k7q4gvg.default [2021-01-06]
FF ProfilePath: C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cfrlh2d6.default-release [2021-09-13]
FF DownloadDir: D:\Download Mozilla
FF Homepage: Mozilla\Firefox\Profiles\cfrlh2d6.default-release ->
www.seznam.cz
FF Plugin: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-03-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-03-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default [2021-09-17]
CHR DownloadDir: D:\Stažené soubory
CHR Notifications: Default -> hxxps://
www.facebook.com
CHR HomePage: Default -> hxxp://
www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://
www.seznam.cz/"
CHR Extension: (Safe Torrent Scanner) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2021-09-17]
CHR Extension: (Disk Google) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-02-24]
CHR Extension: (YouTube) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-02-24]
CHR Extension: (Dokumenty Google offline) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-06-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-24]
CHR Extension: (Gmail) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-02-24]
CHR Extension: (Chrome Media Router) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-07-24]
CHR Profile: C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-09-10]
CHR Profile: C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\System Profile [2021-09-10]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
Brave:
=======
BRA Profile: C:\Users\Administrator\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2021-07-26]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Administrator\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2021-07-26]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Administrator\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2021-07-26]
BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Administrator\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2021-07-26]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Administrator\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2021-07-26]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\Administrator\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2021-07-26]
BRA Extension: (Brave Ad Block Updater (CZE, SVK: EasyList Czech and Slovak)) - C:\Users\Administrator\AppData\Local\BraveSoftware\Brave-Browser\User Data\omkkefoeihpbpebhhbhmjekpnegokpbj [2021-07-26]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Administrator\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2021-07-26]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-03-16] (Apple Inc. -> Apple Inc.)
S2 ASLDRService; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [162815 2009-06-15] (ASUS) [File not signed]
S2 ATKGFNEXSrv; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [175175 2009-12-15] (ASUS) [File not signed]
S3 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-07-26] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-07-26] (Brave Software, Inc. -> BraveSoftware Inc.)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4582080 2020-08-15] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [232719 2021-02-24] (Google LLC) [File not signed]
S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [232719 2021-02-24] (Google LLC) [File not signed]
S2 VyprVPN; C:\Program Files (x86)\VyprVPN\VyprVPNService.exe [417368 2021-06-15] (Golden Frog GmbH -> Golden Frog, GmbH.)
S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2016-03-25] (Microsoft Windows -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 athr; C:\Windows\System32\DRIVERS\athrx.sys [1594368 2010-03-02] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [42256 2020-08-15] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [59360 2020-08-15] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 hmatap; C:\Windows\System32\DRIVERS\hmatap.sys [45560 2020-07-16] (Privax Limited -> The OpenVPN Project)
S3 libusbK; C:\Windows\System32\DRIVERS\libusbK.sys [47200 2020-08-17] (Travis Lee Robinson -> hxxp://libusb-win32.sourceforge.net)
S3 nlwt; C:\Windows\System32\DRIVERS\nlwt.sys [29888 2020-06-10] (TEFINCOM S.A. -> WireGuard LLC)
S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [28160 2020-08-10] (OpenVPN Inc. -> The OpenVPN Project)
S3 tapnordvpn; C:\Windows\System32\DRIVERS\tapnordvpn.sys [35592 2020-06-09] (TEFINCOM S.A. -> The OpenVPN Project)
S3 tapvyprvpn; C:\Windows\System32\DRIVERS\tapvyprvpn.sys [44896 2020-08-10] (Golden Frog, GmbH -> The OpenVPN Project)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2020-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 wintun; C:\Windows\System32\DRIVERS\wintun.sys [29576 2021-06-30] (WireGuard LLC -> WireGuard LLC)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-09-17 18:38 - 2021-09-17 18:39 - 000000000 ____D C:\FRST
2021-09-17 18:37 - 2021-09-17 18:34 - 008631959 _____ (Malwarebytes) C:\Users\Administrator\Desktop\adwcleaner_8.3.0.exe
2021-09-17 18:35 - 2021-07-29 07:12 - 000002990 _____ C:\Windows\system32\Tasks\SMART CLOCK
2021-09-17 18:34 - 2021-09-17 18:35 - 000000000 ____D C:\AdwCleaner
2021-09-17 17:33 - 2021-09-17 17:33 - 000058128 _____ C:\Users\ADMIN\AppData\Local\GDIPFONTCACHEV1.DAT
2021-09-17 17:32 - 2021-09-17 17:32 - 000000020 ___SH C:\Users\ADMIN\ntuser.ini
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\Šablony
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\Soubory cookie
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\Poslední
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\Okolní tiskárny
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\Okolní síť
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\Nabídka Start
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\Dokumenty
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\Documents\Obrázky
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\Documents\Hudba
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\Documents\Filmy
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\Data aplikací
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 _SHDL C:\Users\ADMIN\AppData\Local\Data aplikací
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 ____D C:\Users\ADMIN\AppData\Local\Google
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 ____D C:\Users\ADMIN\AppData\Local\BraveSoftware
2021-09-17 17:32 - 2021-09-17 17:32 - 000000000 ____D C:\Users\ADMIN
2021-09-17 17:19 - 2021-09-17 17:45 - 000000000 ___HD C:\Windows\msdownld.tmp
2021-09-17 14:58 - 2021-09-17 14:58 - 000000000 ____D C:\Users\Administrator\AppData\Local\UT008
2021-09-17 13:21 - 2021-09-17 13:21 - 000000000 ____D C:\SWSetup
2021-09-15 17:58 - 2021-09-16 08:16 - 000000000 ____D C:\Users\Administrator\Desktop\HPBR
2021-09-14 18:25 - 2021-09-14 18:25 - 000000000 ___HD C:\$Windows.~WS
2021-09-14 18:11 - 2021-09-14 18:11 - 000002974 _____ C:\Windows\system32\Tasks\{30AEF8FF-2A5C-45A3-803A-888D5B491391}
2021-09-12 15:58 - 2021-09-12 15:58 - 000000000 ___SD C:\Windows\system32\CompatTel
2021-09-12 15:58 - 2021-09-12 15:58 - 000000000 ____D C:\Windows\system32\appraiser
2021-09-12 15:55 - 2019-07-30 04:25 - 000627424 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2021-09-12 15:55 - 2019-07-30 04:23 - 000710072 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2021-09-12 15:55 - 2019-07-13 10:37 - 000311008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2021-09-12 15:55 - 2019-07-13 10:35 - 000385464 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2021-09-12 15:55 - 2019-07-13 10:31 - 000046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2021-09-12 15:55 - 2019-07-13 10:07 - 000034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2021-09-12 15:55 - 2019-06-12 17:08 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2021-09-12 15:55 - 2019-06-12 17:06 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2021-09-12 15:55 - 2019-04-16 15:15 - 000419648 _____ C:\Windows\SysWOW64\locale.nls
2021-09-12 15:55 - 2019-04-16 15:15 - 000419648 _____ C:\Windows\system32\locale.nls
2021-09-12 15:55 - 2019-02-16 08:02 - 000443904 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2021-09-12 15:55 - 2019-02-16 07:50 - 000321536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2021-09-12 15:55 - 2018-12-08 05:08 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\ndptsp.tsp
2021-09-12 15:55 - 2018-12-08 05:08 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2021-09-12 15:55 - 2018-12-08 04:56 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndptsp.tsp
2021-09-12 15:55 - 2018-12-08 04:41 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp
2021-09-12 15:55 - 2018-10-27 05:42 - 000150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2021-09-12 15:55 - 2018-10-27 05:27 - 000121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2021-09-12 15:55 - 2018-04-18 18:03 - 000701952 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx
2021-09-12 15:55 - 2018-04-18 17:51 - 000523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx
2021-09-12 15:55 - 2018-02-10 19:36 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsraLegacy.tlb
2021-09-12 15:55 - 2018-02-10 19:25 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\MsraLegacy.tlb
2021-09-11 11:33 - 2016-03-25 21:02 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2021-09-11 11:33 - 2016-03-25 21:00 - 000101376 _____ (Microsoft Corporation) C:\Windows\system32\ncpa.cpl
2021-09-11 11:33 - 2016-03-25 20:59 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2021-09-11 11:33 - 2016-03-25 20:59 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax
2021-09-11 11:33 - 2016-03-25 20:59 - 000075776 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2021-09-11 11:33 - 2016-03-25 20:59 - 000066048 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax
2021-09-11 11:33 - 2016-03-25 20:31 - 000075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2021-09-11 11:33 - 2016-03-25 20:30 - 000100352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncpa.cpl
2021-09-11 11:33 - 2016-03-25 20:28 - 000193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2021-09-11 11:33 - 2016-03-25 20:28 - 000084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kstvtune.ax
2021-09-11 11:33 - 2016-03-25 20:28 - 000048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksxbar.ax
2021-09-11 11:33 - 2016-03-25 20:27 - 000082944 _____ (Radius Inc.) C:\Windows\SysWOW64\iccvid.dll
2021-09-11 11:33 - 2016-03-25 19:59 - 000046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2021-09-11 11:33 - 2016-03-25 19:59 - 000040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2021-09-11 11:33 - 2016-03-25 19:59 - 000021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2021-09-11 11:33 - 2016-03-25 19:42 - 000046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
2021-09-11 11:33 - 2016-03-25 19:42 - 000040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
2021-09-11 11:33 - 2016-03-25 19:42 - 000021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
2021-09-11 11:33 - 2016-03-25 19:40 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\format.com
2021-09-11 11:33 - 2016-03-25 19:29 - 000035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\format.com
2021-09-11 11:32 - 2016-03-25 21:09 - 000166120 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2021-09-11 11:32 - 2016-03-25 21:09 - 000107752 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2021-09-11 11:32 - 2016-03-25 21:09 - 000017128 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viaide.sys
2021-09-11 11:32 - 2016-03-25 21:09 - 000017128 _____ (CMD Technology, Inc.) C:\Windows\system32\Drivers\cmdide.sys
2021-09-11 11:32 - 2016-03-25 21:09 - 000015080 _____ (Acer Laboratories Inc.) C:\Windows\system32\Drivers\aliide.sys
2021-09-11 11:32 - 2016-03-25 21:04 - 000217088 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv
2021-09-11 11:32 - 2016-03-25 21:04 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax
2021-09-11 11:32 - 2016-03-25 21:03 - 000321536 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2021-09-11 11:32 - 2016-03-25 21:03 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax
2021-09-11 11:32 - 2016-03-25 21:00 - 000288256 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2021-09-11 11:32 - 2016-03-25 20:59 - 000104960 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2021-09-11 11:32 - 2016-03-25 20:55 - 000069632 _____ C:\Windows\system32\BWContextHandler.dll
2021-09-11 11:32 - 2016-03-25 20:33 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdmaud.drv
2021-09-11 11:32 - 2016-03-25 20:33 - 000153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax
2021-09-11 11:32 - 2016-03-25 20:32 - 000281088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2021-09-11 11:32 - 2016-03-25 20:29 - 000204288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSNP.ax
2021-09-11 11:32 - 2016-03-25 20:28 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mpeg2Data.ax
2021-09-11 11:32 - 2016-03-25 20:28 - 000059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSDvbNP.ax
2021-09-11 11:32 - 2016-03-25 20:26 - 000064000 _____ C:\Windows\SysWOW64\BWContextHandler.dll
2021-09-11 11:32 - 2016-03-25 19:59 - 000055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2021-09-11 11:32 - 2016-03-25 19:59 - 000051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2021-09-11 11:32 - 2016-03-25 19:59 - 000045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2021-09-11 11:32 - 2016-03-25 19:59 - 000044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2021-09-11 11:32 - 2016-03-25 19:59 - 000043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2021-09-11 11:32 - 2016-03-25 19:59 - 000030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2021-09-11 11:32 - 2016-03-25 19:59 - 000023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2021-09-11 11:32 - 2016-03-25 19:59 - 000020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2021-09-11 11:32 - 2016-03-25 19:59 - 000020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2021-09-11 11:32 - 2016-03-25 19:59 - 000020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2021-09-11 11:32 - 2016-03-25 19:59 - 000015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2021-09-11 11:32 - 2016-03-25 19:58 - 000111616 _____ (Microsoft Corporation) C:\Windows\system32\activeds.tlb
2021-09-11 11:32 - 2016-03-25 19:56 - 000068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSTPager.ax
2021-09-11 11:32 - 2016-03-25 19:56 - 000033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbisurf.ax
2021-09-11 11:32 - 2016-03-25 19:44 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\rendezvousSession.tlb
2021-09-11 11:32 - 2016-03-25 19:42 - 000055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
2021-09-11 11:32 - 2016-03-25 19:42 - 000051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
2021-09-11 11:32 - 2016-03-25 19:42 - 000045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
2021-09-11 11:32 - 2016-03-25 19:42 - 000044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
2021-09-11 11:32 - 2016-03-25 19:42 - 000043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
2021-09-11 11:32 - 2016-03-25 19:42 - 000030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
2021-09-11 11:32 - 2016-03-25 19:42 - 000023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
2021-09-11 11:32 - 2016-03-25 19:42 - 000020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
2021-09-11 11:32 - 2016-03-25 19:42 - 000020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
2021-09-11 11:32 - 2016-03-25 19:42 - 000020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
2021-09-11 11:32 - 2016-03-25 19:42 - 000015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2021-09-11 11:32 - 2016-03-25 19:41 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\activeds.tlb
2021-09-11 11:32 - 2016-03-25 19:31 - 000006144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rendezvousSession.tlb
2021-09-11 11:31 - 2016-03-25 21:09 - 000410344 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2021-09-11 11:31 - 2016-03-25 21:09 - 000148200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2021-09-11 11:31 - 2016-03-25 21:09 - 000026856 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2021-09-11 11:31 - 2016-03-25 21:03 - 000683520 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl
2021-09-11 11:31 - 2016-03-25 21:03 - 000352768 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl
2021-09-11 11:31 - 2016-03-25 21:03 - 000196096 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2021-09-11 11:31 - 2016-03-25 20:59 - 000259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2021-09-11 11:31 - 2016-03-25 20:32 - 000326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysdm.cpl
2021-09-11 11:31 - 2016-03-25 20:28 - 000200192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2021-09-11 11:31 - 2016-03-25 20:28 - 000197632 _____ (Intel(R) Corporation) C:\Windows\SysWOW64\ir32_32.dll
2021-09-11 11:30 - 2016-03-25 21:03 - 000515072 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2021-09-11 11:30 - 2016-03-25 20:32 - 000478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2021-09-11 11:20 - 2021-09-12 15:59 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-09-11 11:09 - 2021-09-11 11:09 - 000000000 ____D C:\Windows\system32\EventProviders
2021-09-11 11:09 - 2021-09-11 11:09 - 000000000 ____D C:\b6d9daa064ac9a01d0d4c289a9a34f
2021-08-23 17:43 - 2021-08-23 17:43 - 000001760 _____ C:\Users\Public\Desktop\iTunes.lnk
2021-08-23 17:43 - 2021-08-23 17:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2021-08-23 17:43 - 2021-08-23 17:43 - 000000000 ____D C:\Program Files\iPod
2021-08-23 17:42 - 2021-08-23 17:43 - 000000000 ____D C:\Program Files\iTunes
2021-08-23 17:41 - 2021-08-24 06:51 - 000000000 ____D C:\Program Files (x86)\Apple Software Update
2021-08-23 17:39 - 2021-08-23 17:39 - 000000000 ____D C:\Tenorshare
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-09-17 18:38 - 2021-06-05 17:15 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\Smart Clock
2021-09-17 18:38 - 2009-07-14 05:20 - 000000000 ____D C:\Program Files\Common Files\System
2021-09-17 18:32 - 2009-07-14 06:45 - 000033840 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2021-09-17 18:32 - 2009-07-14 06:45 - 000033840 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2021-09-17 18:29 - 2020-08-15 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\uTorrent
2021-09-17 17:46 - 2020-08-15 14:31 - 000000000 ____D C:\Windows\SysWOW64\directx
2021-09-17 17:43 - 2011-04-12 10:34 - 000647902 _____ C:\Windows\system32\perfh005.dat
2021-09-17 17:43 - 2011-04-12 10:34 - 000133230 _____ C:\Windows\system32\perfc005.dat
2021-09-17 17:43 - 2009-07-14 07:13 - 001524356 _____ C:\Windows\system32\PerfStringBackup.INI
2021-09-17 17:43 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2021-09-17 17:42 - 2021-02-05 21:56 - 000000000 ____D C:\Users\Administrator\AppData\Local\CrashDumps
2021-09-17 17:39 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-09-17 17:25 - 2020-10-24 15:42 - 000000000 ____D C:\Program Files (x86)\3uTools
2021-09-17 14:59 - 2020-08-15 11:55 - 000000870 _____ C:\Users\Administrator\Desktop\µTorrent.lnk
2021-09-17 14:59 - 2020-08-15 11:55 - 000000850 _____ C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2021-09-17 12:12 - 2020-08-15 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\vlc
2021-09-15 21:43 - 2021-06-27 14:03 - 000000000 ____D C:\Users\Administrator\Desktop\Nová složka
2021-09-14 18:11 - 2020-10-07 11:11 - 000000000 ____D C:\Users\Administrator\AppData\Local\ElevatedDiagnostics
2021-09-14 18:10 - 2020-08-30 11:53 - 000000412 __RSH C:\ProgramData\ntuser.pol
2021-09-14 18:08 - 2009-07-14 07:08 - 000032584 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2021-09-13 11:49 - 2020-08-15 11:30 - 000000000 ____D C:\ProgramData\Mozilla
2021-09-13 11:48 - 2020-08-15 11:30 - 000000000 ____D C:\Users\Administrator\AppData\LocalLow\Mozilla
2021-09-13 11:13 - 2021-07-29 07:11 - 000000000 ____D C:\Program Files\CCleaner
2021-09-13 08:04 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\AppCompat
2021-09-12 17:02 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\rescache
2021-09-12 16:14 - 2020-08-15 14:46 - 000000000 ____D C:\ProgramData\Package Cache
2021-09-12 16:00 - 2020-08-18 17:13 - 000001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2021-09-12 15:59 - 2020-08-15 11:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-09-12 15:59 - 2009-07-14 06:45 - 000270032 _____ C:\Windows\system32\FNTCACHE.DAT
2021-09-12 15:58 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\Dism
2021-09-12 15:58 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\Dism
2021-09-12 15:58 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\PolicyDefinitions
2021-09-11 17:35 - 2020-08-15 11:33 - 001499314 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2021-09-11 12:03 - 2020-08-15 11:32 - 000058128 _____ C:\Users\Administrator\AppData\Local\GDIPFONTCACHEV1.DAT
2021-09-11 11:59 - 2009-07-14 07:32 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-09-11 11:59 - 2009-07-14 07:32 - 000000000 ____D C:\Program Files\Windows Defender
2021-09-11 11:59 - 2009-07-14 07:32 - 000000000 ____D C:\Program Files\DVD Maker
2021-09-11 11:59 - 2009-07-14 07:32 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-09-11 11:59 - 2009-07-14 07:32 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-09-11 11:58 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\Setup
2021-09-11 11:58 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\Setup
2021-09-11 11:58 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\oobe
2021-09-11 11:58 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\AdvancedInstallers
2021-09-11 11:39 - 2009-07-14 04:36 - 000181760 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2021-09-11 11:39 - 2009-07-14 04:36 - 000157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2021-09-09 17:24 - 2020-08-15 12:53 - 000000000 ____D C:\Windows\system32\MRT
2021-09-09 17:19 - 2020-08-15 12:53 - 133215968 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-09-05 18:06 - 2021-08-12 13:20 - 000000000 ____D C:\Users\Administrator\Desktop\Nová složka (2)
2021-08-31 16:54 - 2021-04-24 09:35 - 000000039 _____ C:\Users\Administrator\Desktop\Nový textový dokument (2).txt
2021-08-23 17:41 - 2021-08-17 11:10 - 000002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2021-08-23 17:39 - 2021-05-27 10:52 - 000000000 ____D C:\Program Files (x86)\Tenorshare ReiBoot
==================== Files in the root of some directories ========
2020-12-11 18:05 - 2020-12-11 18:05 - 000001584 _____ () C:\Users\Administrator\AppData\Local\recently-used.xbel
2021-02-20 19:26 - 2021-02-20 19:26 - 000007602 _____ () C:\Users\Administrator\AppData\Local\Resmon.ResmonCfg
2021-07-28 12:07 - 2021-08-14 09:47 - 000017408 _____ () C:\Users\Administrator\AppData\Local\WebpageIcons.db
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2021-09-09 10:51
==================== End of FRST.txt ========================