Prosim o kontrolu logo
Napsal: 26 dub 2023 00:14
jo a ten rsit nejde stahnout z tech linku ..... nejaky alternativni odkaz ?
=================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16776704 2016-12-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1483264 2016-12-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [649608 2010-06-10] (ELAN Microelectronics Corporation -> ELAN Microelectronic Corp.)
HKLM\...\Run: [NUSB3MON] => C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [97280 2012-04-11] (Advanced Micro Devices, Inc.) [File not signed]
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [117472 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [SonicMasterTray] => C:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe [984400 2010-07-09] (Sonic Focus, Inc. -> Virage Logic Corporation / Sonic Focus)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-07-15] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\Run: [AppEx Accelerator UI] => C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [488640 2015-04-06] (AppEx Networks Corporation -> AppEx Networks Corporation)
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\Run: [GarminExpressTrayApp] => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (No File)
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\Run: [Spotify] => C:\Users\lenka\AppData\Roaming\Spotify\Spotify.exe [20382072 2023-02-20] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\MountPoints2: {61d3787c-0f37-11ea-84c0-9df9b69130e4} - E:\HiSuiteDownLoader.exe
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\MountPoints2: {86e00e51-e438-11e8-8be9-94dbc9ad93df} - E:\HiSuiteDownLoader.exe
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\MountPoints2: {e5d3374e-16da-11ec-a1e5-da8e0ab69bbc} - E:\HiSuiteDownLoader.exe
HKU\S-1-5-18\...\Run: [GarminExpress] => "C:\Program Files (x86)\Garmin\Express\express.exe" /minimized (No File)
HKLM\...\Windows x64\Print Processors\Canon MG2500 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBX.DLL [30208 2013-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG2500 series: C:\Windows\system32\CNMLMBX.DLL [391168 2013-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP240 series: C:\Windows\system32\CNMLM9H.DLL [279040 2008-03-31] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\92.2.11577.159\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\109.0.5414.120\Installer\chrmstp.exe [2023-04-25] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7980.150\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0409B82C-5FC7-45AF-B427-B234FF5E20AD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2023-04-25] (Google Inc -> Google Inc.)
Task: {0F501304-543C-477F-A1F9-991BEAFAC5EA} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs (No File)
Task: {12D47509-6DAF-45A0-B027-7CDF0E248189} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [718752 2023-03-22] (Mozilla Corporation -> Mozilla Foundation)
Task: {2AC5123D-2D4A-494D-818B-61BC162D8428} - System32\Tasks\{A4FAC288-C1E0-49BE-94BC-8266FDDC0F65} => C:\Users\lenka\Downloads\BT_21.40.5_32_Win7.exe (No File)
Task: {46E8222B-FCB5-4CB7-B740-1C74284C265E} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_156_Plugin.exe [1457664 2019-03-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {4D2E7EFE-0BAC-4F58-8421-44A52781F37B} - System32\Tasks\{E01761D2-C9C4-4CFE-9EAA-44B21A056ECC} => D:\ACRORD\AdbeRdr70_enu_full.exe (No File)
Task: {4ECBBB95-7C4D-4206-9546-B079E968E5F0} - System32\Tasks\{84456DE5-4CE4-45AE-908B-110BAA78E481} => C:\Users\lenka\Downloads\72.0.3626.81_chrome_installer.exe (No File)
Task: {67D19552-170C-4584-8993-6EDA0902FEAF} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {6BBE1E77-E18A-4D17-951C-E0746494F7CF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335872 2019-03-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {7136903D-48CF-457A-8C56-91D8464D117E} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676768 2023-03-22] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {7447BA09-30AB-4709-8AC3-09E894E1C4EF} - System32\Tasks\{5653D874-DD14-4838-B72D-4E5E760DAC9A} => C:\Program Files\Google\Chrome\Application\chrome.exe [3151128 2023-01-24] (Google LLC -> Google LLC)
Task: {7BA1901A-D0AB-4B9D-BBFE-197A7A522D88} - System32\Tasks\{72E94E69-85D3-4931-B22C-F8DF8FEA1127} => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (No File)
Task: {7DE5C7D2-56C2-4E38-A6E6-8F3100F0F38C} - System32\Tasks\Mozilla\Firefox Default Browser Agent A6EF1C2686ADAD3 => C:\Users\lenka\AppData\Local\Mozilla Firefox\default-browser-agent.exe do-task "A6EF1C2686ADAD3" (No File)
Task: {86460999-AF59-4570-9698-73947C6B86F8} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2135448 2023-04-13] (Avast Software s.r.o. -> Avast Software)
Task: {971E791E-30BE-422F-B687-A39A73BAA50C} - System32\Tasks\{3E5837BD-A598-4BCA-B084-FF5D3FBAC5A4} => C:\Users\lenka\Downloads\GarminExpressInstaller(2).exe (No File)
Task: {9931C9A0-9161-481E-B7EE-253777A83A32} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2023-04-25] (Google Inc -> Google Inc.)
Task: {A2717B4D-54F9-4C3E-B713-957542145084} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564152 2023-04-03] (Adobe Inc. -> Adobe Inc.)
Task: {ABA1DA37-E37B-41A0-86C3-8FEACA45DD8D} - System32\Tasks\DriverUpdate Scan => C:\Program Files\DriverUpdate\DriverUpdate.exe [37833584 2020-12-03] (Slimware Utilities Holdings, Inc. -> SlimWare Utilities, Inc.) <==== ATTENTION
Task: {ABF366DC-A50A-4AAC-B77A-2ECA233725AB} - System32\Tasks\{43279899-7414-4840-A14A-A72BF7295FA0} => C:\Windows\system32\pcalua.exe -a C:\Users\lenka\AppData\Roaming\Seznam.cz\szninstall.exe -c -X
Task: {C7F3555A-6E88-4732-9B6C-2C647AEF9076} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4686560 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
Task: {CE379029-AE38-44FB-AA0A-B5B3A933AE87} - System32\Tasks\{95D862A2-5D15-474C-96F9-C5FEC416EDFC} => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (No File)
Task: {D621914F-8462-4254-87B3-90AEC170BA52} - System32\Tasks\{5F5BCD51-E6CA-43BB-B37F-67CA44D6EB98} => C:\Program Files\McAfee.com\Agent\mcagent.exe (No File)
Task: {F77027A4-D295-4DE3-83C3-7F135B8D37C1} - System32\Tasks\{985D77D4-D879-490D-A76C-9843A1A95AFD} => C:\Users\lenka\Downloads\GarminExpressInstaller(2).exe (No File)
Task: {FA479260-4370-4B9B-9187-1F73786033DB} - System32\Tasks\{79357F19-1DDE-4C32-95A4-F7F93C8042F2} => D:\ACRORD\AdbeRdr70_enu_full.exe (No File)
Task: {FB392B63-D7BE-43B1-9871-752505E4714A} - System32\Tasks\PC HelpSoft Driver Updater automatic scan and new device notifications => C:\Program Files (x86)\PC HelpSoft Driver Updater\PCHelpSoftDriverUpdater.exe [8851480 2023-03-23] (PC HELPSOFT LABS INC. -> PC HelpSoft) <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5-x64 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{E89B4293-DF88-48B1-B039-6F251F078657}: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF DefaultProfile: jc4idnid.default-1661814546429
FF ProfilePath: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\aguzbha7.default-release-1 [2023-04-26]
FF Homepage: Mozilla\Firefox\Profiles\aguzbha7.default-release-1 -> hxxps://www.google.com
FF Extension: (Překlad obsahu webových stránek přímo v prohlížeči, bez použití cloudu.) - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\aguzbha7.default-release-1\Extensions\firefox-translations-addon@mozilla.org.xpi [2023-04-25]
FF Extension: (To Google Translate) - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\aguzbha7.default-release-1\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2023-04-25]
FF ProfilePath: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\jc4idnid.default-1661814546429 [2022-08-30]
FF ProfilePath: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\1jh1ppmx.default-release [2022-01-23]
FF Extension: (Firefox DevTools ADB Extension) - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\1jh1ppmx.default-release\Extensions\adb@mozilla.org.xpi [2021-11-20] [UpdateUrl:hxxps://ftp.mozilla.org/pub/labs/devtools/adb-extension/win32/update.json]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2018-05-22] [Legacy]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_156.dll [2019-03-26] (Adobe Systems Incorporated -> )
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_156.dll [2019-03-26] (Adobe Systems Incorporated -> )
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-06-29] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
StartMenuInternet: Firefox-A6EF1C2686ADAD3 - C:\Users\lenka\AppData\Local\Mozilla Firefox\firefox.exe
Chrome:
=======
CHR Profile: C:\Users\lenka\AppData\Local\Google\Chrome\User Data\Default [2023-04-26]
CHR StartupUrls: Default -> "hxxps://www.google.com/"
CHR Extension: (Dokumenty Google offline) - C:\Users\lenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-04-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\lenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-04-25]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx <not found>
StartMenuInternet: Google Chrome.DPH6RTYNJ76OYO23PNMY5XRGJQ - C:\Users\lenka\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-04-03] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335872 2019-03-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-07-15] (Advanced Micro Devices, Inc.) [File not signed]
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [7888408 2021-07-13] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [623216 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [353504 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 McAfee SiteAdvisor Service; c:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe [154856 2016-02-12] (McAfee, Inc. -> McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.5.450.0\McCSPServiceHost.exe [207344 2015-04-08] (McAfee, Inc. -> McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [242640 ] (McAfee, Inc. -> McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [394704 ] (McAfee, Inc. -> McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [350160 2017-06-21] (McAfee, Inc. -> McAfee, Inc.)
S3 SlimWareServices; C:\Program Files\SlimWare Utilities\Services\SlimWare.Services.exe [175472 2020-12-03] (Slimware Utilities Holdings, Inc. -> SlimWare Utilities Holdings, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292480 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
S2 McAPExe; "C:\Program Files\McAfee\MSC\McAPExe.exe" [X]
S2 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McNaiAnn; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S3 McODS; "C:\Program Files\McAfee\VirusScan\mcods.exe" [X]
S2 MSK80Service; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [118184 2018-05-14] (Alcorlink Corp. -> )
R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R2 APXACC; C:\Windows\System32\DRIVERS\appexDrv.sys [229056 2015-04-03] (AppEx Networks Corporation -> AppEx Networks Corporation)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [35680 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [208552 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [365520 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [250328 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [99288 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [41304 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [177872 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [524416 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [38152 2020-04-21] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [107808 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [83368 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [850120 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [466696 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [216376 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [53904 2017-02-24] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [326976 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R3 athr; C:\Windows\System32\DRIVERS\athrx.sys [2770944 2011-10-03] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [77800 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [129024 2010-09-08] (Microsoft Windows Hardware Compatibility Publisher -> ELAN Microelectronic Corp.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc. -> McAfee, Inc.)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] (ASUSTeK Computer Inc. -> )
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [44480 2011-05-17] (Akeo Consulting -> hxxp://libusb-win32.sourceforge.net)
R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [487408 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [355312 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [506352 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [933360 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R3 mfeplk; C:\Windows\System32\drivers\mfeplk.sys [116208 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [253424 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [159936 2016-08-16] (NGO -> MBB)
U1 aswbdisk; no ImagePath
S3 AthBTPort; system32\DRIVERS\btath_flt.sys [X]
S3 BTATH_A2DP; system32\drivers\btath_a2dp.sys [X]
S3 BTATH_BUS; system32\DRIVERS\btath_bus.sys [X]
S3 BTATH_HCRP; system32\DRIVERS\btath_hcrp.sys [X]
S3 BTATH_LWFLT; system32\DRIVERS\btath_lwflt.sys [X]
S3 BTATH_RCP; system32\DRIVERS\btath_rcp.sys [X]
S3 BtFilter; system32\DRIVERS\btfilter.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\Users\lenka\Downloads\DriverUpdate-setup-e7504d4b-6541-4036-a3e6-1cb57b4bbd2b.exe"
2023-04-26 00:15 - 2023-04-26 00:16 - 000021321 _____ C:\Users\lenka\Desktop\FRST.txt
2023-04-26 00:14 - 2023-04-26 00:15 - 000000000 ____D C:\FRST
2023-04-26 00:11 - 2023-04-26 00:12 - 002382336 _____ (Farbar) C:\Users\lenka\Desktop\FRST64.exe
2023-04-25 23:43 - 2023-04-25 23:44 - 000000000 ____D C:\Program Files\Google
2023-04-25 23:43 - 2023-04-25 23:43 - 000002257 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-04-25 23:43 - 2023-04-25 23:43 - 000002216 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-04-25 23:41 - 2023-04-25 23:47 - 000003682 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2023-04-25 23:41 - 2023-04-25 23:47 - 000003554 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2023-04-25 23:34 - 2023-04-26 00:11 - 000000000 ____D C:\Users\lenka\AppData\Roaming\PC HelpSoft Driver Updater
2023-04-25 23:34 - 2023-04-25 23:41 - 000003218 _____ C:\Windows\system32\Tasks\PC HelpSoft Driver Updater automatic scan and new device notifications
2023-04-25 23:34 - 2023-04-25 23:34 - 000001223 _____ C:\Users\Public\Desktop\PC HelpSoft Driver Updater.lnk
2023-04-25 23:34 - 2023-04-25 23:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC HelpSoft Driver Updater
2023-04-25 23:34 - 2023-04-25 23:34 - 000000000 ____D C:\Program Files (x86)\PC HelpSoft Driver Updater
2023-04-25 23:33 - 2023-04-25 23:33 - 006950232 _____ (PC HelpSoft ) C:\Users\lenka\Downloads\Driver_Updater_5494(1).exe
2023-04-25 23:31 - 2023-04-25 23:32 - 006950232 _____ (PC HelpSoft ) C:\Users\lenka\Downloads\Driver_Updater_5494.exe
2023-04-25 23:28 - 2023-04-25 23:28 - 000000000 _____ C:\Users\lenka\Downloads\WfW0w5iA.htm
2023-04-25 08:55 - 2023-04-25 08:55 - 000032768 _____ C:\Users\lenka\Downloads\eBwtePoR.doc.part
2023-04-12 18:47 - 2023-04-19 05:57 - 000000000 ____D C:\Users\lenka\Desktop\nerez robota
2023-04-12 18:38 - 2023-04-12 18:38 - 007521318 _____ C:\Users\lenka\Downloads\certifikáty+doklady.zip
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-04-26 00:13 - 2009-07-14 06:45 - 000014192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2023-04-26 00:13 - 2009-07-14 06:45 - 000014192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2023-04-25 23:52 - 2016-08-26 22:35 - 000000000 ____D C:\Program Files (x86)\Google
2023-04-25 23:44 - 2016-09-01 12:16 - 000000000 ____D C:\Users\lenka\AppData\Local\CrashDumps
2023-04-25 22:57 - 2022-02-14 08:17 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2023-04-25 22:56 - 2017-02-18 11:06 - 000000000 ____D C:\Users\lenka\AppData\LocalLow\Mozilla
2023-04-25 22:44 - 2021-09-16 22:05 - 000000000 ____D C:\Users\lenka\AppData\Local\Spotify
2023-04-25 22:44 - 2018-01-30 12:54 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2023-04-25 22:43 - 2021-09-16 22:04 - 000000000 ____D C:\Users\lenka\AppData\Roaming\Spotify
2023-04-25 22:42 - 2016-08-28 09:41 - 000000000 ____D C:\ProgramData\AVAST Software
2023-04-25 22:38 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-04-25 09:21 - 2018-04-09 23:17 - 000000000 ____D C:\Users\lenka\AppData\Local\AVAST Software
2023-04-24 23:18 - 2022-08-30 00:58 - 000002972 _____ C:\Windows\system32\Tasks\{5653D874-DD14-4838-B72D-4E5E760DAC9A}
2023-04-24 23:18 - 2021-11-12 21:07 - 000003116 _____ C:\Windows\system32\Tasks\{43279899-7414-4840-A14A-A72BF7295FA0}
2023-04-24 23:18 - 2021-01-17 12:22 - 000003690 _____ C:\Windows\system32\Tasks\DriverUpdate Scan
2023-04-24 23:18 - 2021-01-17 11:40 - 000002960 _____ C:\Windows\system32\Tasks\{A4FAC288-C1E0-49BE-94BC-8266FDDC0F65}
2023-04-24 23:18 - 2019-09-18 17:07 - 000002982 _____ C:\Windows\system32\Tasks\{84456DE5-4CE4-45AE-908B-110BAA78E481}
2023-04-24 23:18 - 2016-08-27 02:48 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2023-04-24 20:33 - 2016-08-28 09:44 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software
2023-04-24 20:30 - 2022-01-16 09:06 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2023-04-22 15:11 - 2018-08-18 07:47 - 000255488 ___SH C:\Users\lenka\Desktop\Thumbs.db
2023-04-15 18:27 - 2016-08-27 02:25 - 000000000 ____D C:\Users\lenka\AppData\Roaming\vlc
2023-04-04 17:47 - 2009-07-14 07:08 - 000032588 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2023-03-30 19:46 - 2009-07-14 17:18 - 013978380 _____ C:\Windows\system32\perfh005.dat
2023-03-30 19:46 - 2009-07-14 17:18 - 004842736 _____ C:\Windows\system32\perfc005.dat
2023-03-30 19:46 - 2009-07-14 07:13 - 000006212 _____ C:\Windows\system32\PerfStringBackup.INI
==================== Files in the root of some directories ========
2020-03-08 07:58 - 2019-03-12 10:22 - 000000701 _____ () C:\Users\lenka\AppData\Roaming\p2wsound.dll
2018-01-10 00:45 - 2020-07-18 07:42 - 000020913 _____ () C:\Users\lenka\AppData\Roaming\UserTile.png
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2023-04-22 07:17
==================== End of FRST.txt ========================
=================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16776704 2016-12-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1483264 2016-12-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [649608 2010-06-10] (ELAN Microelectronics Corporation -> ELAN Microelectronic Corp.)
HKLM\...\Run: [NUSB3MON] => C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [97280 2012-04-11] (Advanced Micro Devices, Inc.) [File not signed]
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [117472 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [SonicMasterTray] => C:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe [984400 2010-07-09] (Sonic Focus, Inc. -> Virage Logic Corporation / Sonic Focus)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-07-15] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\Run: [AppEx Accelerator UI] => C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [488640 2015-04-06] (AppEx Networks Corporation -> AppEx Networks Corporation)
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\Run: [GarminExpressTrayApp] => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (No File)
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\Run: [Spotify] => C:\Users\lenka\AppData\Roaming\Spotify\Spotify.exe [20382072 2023-02-20] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\MountPoints2: {61d3787c-0f37-11ea-84c0-9df9b69130e4} - E:\HiSuiteDownLoader.exe
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\MountPoints2: {86e00e51-e438-11e8-8be9-94dbc9ad93df} - E:\HiSuiteDownLoader.exe
HKU\S-1-5-21-2883444968-4065124519-3430276072-1000\...\MountPoints2: {e5d3374e-16da-11ec-a1e5-da8e0ab69bbc} - E:\HiSuiteDownLoader.exe
HKU\S-1-5-18\...\Run: [GarminExpress] => "C:\Program Files (x86)\Garmin\Express\express.exe" /minimized (No File)
HKLM\...\Windows x64\Print Processors\Canon MG2500 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBX.DLL [30208 2013-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG2500 series: C:\Windows\system32\CNMLMBX.DLL [391168 2013-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP240 series: C:\Windows\system32\CNMLM9H.DLL [279040 2008-03-31] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\92.2.11577.159\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\109.0.5414.120\Installer\chrmstp.exe [2023-04-25] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7980.150\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0409B82C-5FC7-45AF-B427-B234FF5E20AD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2023-04-25] (Google Inc -> Google Inc.)
Task: {0F501304-543C-477F-A1F9-991BEAFAC5EA} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs (No File)
Task: {12D47509-6DAF-45A0-B027-7CDF0E248189} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [718752 2023-03-22] (Mozilla Corporation -> Mozilla Foundation)
Task: {2AC5123D-2D4A-494D-818B-61BC162D8428} - System32\Tasks\{A4FAC288-C1E0-49BE-94BC-8266FDDC0F65} => C:\Users\lenka\Downloads\BT_21.40.5_32_Win7.exe (No File)
Task: {46E8222B-FCB5-4CB7-B740-1C74284C265E} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_156_Plugin.exe [1457664 2019-03-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {4D2E7EFE-0BAC-4F58-8421-44A52781F37B} - System32\Tasks\{E01761D2-C9C4-4CFE-9EAA-44B21A056ECC} => D:\ACRORD\AdbeRdr70_enu_full.exe (No File)
Task: {4ECBBB95-7C4D-4206-9546-B079E968E5F0} - System32\Tasks\{84456DE5-4CE4-45AE-908B-110BAA78E481} => C:\Users\lenka\Downloads\72.0.3626.81_chrome_installer.exe (No File)
Task: {67D19552-170C-4584-8993-6EDA0902FEAF} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {6BBE1E77-E18A-4D17-951C-E0746494F7CF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335872 2019-03-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {7136903D-48CF-457A-8C56-91D8464D117E} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676768 2023-03-22] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {7447BA09-30AB-4709-8AC3-09E894E1C4EF} - System32\Tasks\{5653D874-DD14-4838-B72D-4E5E760DAC9A} => C:\Program Files\Google\Chrome\Application\chrome.exe [3151128 2023-01-24] (Google LLC -> Google LLC)
Task: {7BA1901A-D0AB-4B9D-BBFE-197A7A522D88} - System32\Tasks\{72E94E69-85D3-4931-B22C-F8DF8FEA1127} => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (No File)
Task: {7DE5C7D2-56C2-4E38-A6E6-8F3100F0F38C} - System32\Tasks\Mozilla\Firefox Default Browser Agent A6EF1C2686ADAD3 => C:\Users\lenka\AppData\Local\Mozilla Firefox\default-browser-agent.exe do-task "A6EF1C2686ADAD3" (No File)
Task: {86460999-AF59-4570-9698-73947C6B86F8} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2135448 2023-04-13] (Avast Software s.r.o. -> Avast Software)
Task: {971E791E-30BE-422F-B687-A39A73BAA50C} - System32\Tasks\{3E5837BD-A598-4BCA-B084-FF5D3FBAC5A4} => C:\Users\lenka\Downloads\GarminExpressInstaller(2).exe (No File)
Task: {9931C9A0-9161-481E-B7EE-253777A83A32} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2023-04-25] (Google Inc -> Google Inc.)
Task: {A2717B4D-54F9-4C3E-B713-957542145084} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564152 2023-04-03] (Adobe Inc. -> Adobe Inc.)
Task: {ABA1DA37-E37B-41A0-86C3-8FEACA45DD8D} - System32\Tasks\DriverUpdate Scan => C:\Program Files\DriverUpdate\DriverUpdate.exe [37833584 2020-12-03] (Slimware Utilities Holdings, Inc. -> SlimWare Utilities, Inc.) <==== ATTENTION
Task: {ABF366DC-A50A-4AAC-B77A-2ECA233725AB} - System32\Tasks\{43279899-7414-4840-A14A-A72BF7295FA0} => C:\Windows\system32\pcalua.exe -a C:\Users\lenka\AppData\Roaming\Seznam.cz\szninstall.exe -c -X
Task: {C7F3555A-6E88-4732-9B6C-2C647AEF9076} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4686560 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
Task: {CE379029-AE38-44FB-AA0A-B5B3A933AE87} - System32\Tasks\{95D862A2-5D15-474C-96F9-C5FEC416EDFC} => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (No File)
Task: {D621914F-8462-4254-87B3-90AEC170BA52} - System32\Tasks\{5F5BCD51-E6CA-43BB-B37F-67CA44D6EB98} => C:\Program Files\McAfee.com\Agent\mcagent.exe (No File)
Task: {F77027A4-D295-4DE3-83C3-7F135B8D37C1} - System32\Tasks\{985D77D4-D879-490D-A76C-9843A1A95AFD} => C:\Users\lenka\Downloads\GarminExpressInstaller(2).exe (No File)
Task: {FA479260-4370-4B9B-9187-1F73786033DB} - System32\Tasks\{79357F19-1DDE-4C32-95A4-F7F93C8042F2} => D:\ACRORD\AdbeRdr70_enu_full.exe (No File)
Task: {FB392B63-D7BE-43B1-9871-752505E4714A} - System32\Tasks\PC HelpSoft Driver Updater automatic scan and new device notifications => C:\Program Files (x86)\PC HelpSoft Driver Updater\PCHelpSoftDriverUpdater.exe [8851480 2023-03-23] (PC HELPSOFT LABS INC. -> PC HelpSoft) <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5-x64 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{E89B4293-DF88-48B1-B039-6F251F078657}: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF DefaultProfile: jc4idnid.default-1661814546429
FF ProfilePath: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\aguzbha7.default-release-1 [2023-04-26]
FF Homepage: Mozilla\Firefox\Profiles\aguzbha7.default-release-1 -> hxxps://www.google.com
FF Extension: (Překlad obsahu webových stránek přímo v prohlížeči, bez použití cloudu.) - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\aguzbha7.default-release-1\Extensions\firefox-translations-addon@mozilla.org.xpi [2023-04-25]
FF Extension: (To Google Translate) - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\aguzbha7.default-release-1\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2023-04-25]
FF ProfilePath: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\jc4idnid.default-1661814546429 [2022-08-30]
FF ProfilePath: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\1jh1ppmx.default-release [2022-01-23]
FF Extension: (Firefox DevTools ADB Extension) - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\1jh1ppmx.default-release\Extensions\adb@mozilla.org.xpi [2021-11-20] [UpdateUrl:hxxps://ftp.mozilla.org/pub/labs/devtools/adb-extension/win32/update.json]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2018-05-22] [Legacy]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_156.dll [2019-03-26] (Adobe Systems Incorporated -> )
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_156.dll [2019-03-26] (Adobe Systems Incorporated -> )
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-06-29] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
StartMenuInternet: Firefox-A6EF1C2686ADAD3 - C:\Users\lenka\AppData\Local\Mozilla Firefox\firefox.exe
Chrome:
=======
CHR Profile: C:\Users\lenka\AppData\Local\Google\Chrome\User Data\Default [2023-04-26]
CHR StartupUrls: Default -> "hxxps://www.google.com/"
CHR Extension: (Dokumenty Google offline) - C:\Users\lenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-04-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\lenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-04-25]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx <not found>
StartMenuInternet: Google Chrome.DPH6RTYNJ76OYO23PNMY5XRGJQ - C:\Users\lenka\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-04-03] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335872 2019-03-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-07-15] (Advanced Micro Devices, Inc.) [File not signed]
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [7888408 2021-07-13] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [623216 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [353504 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 McAfee SiteAdvisor Service; c:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe [154856 2016-02-12] (McAfee, Inc. -> McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.5.450.0\McCSPServiceHost.exe [207344 2015-04-08] (McAfee, Inc. -> McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [242640 ] (McAfee, Inc. -> McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [394704 ] (McAfee, Inc. -> McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [350160 2017-06-21] (McAfee, Inc. -> McAfee, Inc.)
S3 SlimWareServices; C:\Program Files\SlimWare Utilities\Services\SlimWare.Services.exe [175472 2020-12-03] (Slimware Utilities Holdings, Inc. -> SlimWare Utilities Holdings, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292480 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
S2 McAPExe; "C:\Program Files\McAfee\MSC\McAPExe.exe" [X]
S2 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McNaiAnn; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S3 McODS; "C:\Program Files\McAfee\VirusScan\mcods.exe" [X]
S2 MSK80Service; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [118184 2018-05-14] (Alcorlink Corp. -> )
R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R2 APXACC; C:\Windows\System32\DRIVERS\appexDrv.sys [229056 2015-04-03] (AppEx Networks Corporation -> AppEx Networks Corporation)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [35680 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [208552 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [365520 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [250328 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [99288 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [41304 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [177872 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [524416 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [38152 2020-04-21] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [107808 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [83368 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [850120 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [466696 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [216376 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [53904 2017-02-24] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [326976 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R3 athr; C:\Windows\System32\DRIVERS\athrx.sys [2770944 2011-10-03] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [77800 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [129024 2010-09-08] (Microsoft Windows Hardware Compatibility Publisher -> ELAN Microelectronic Corp.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc. -> McAfee, Inc.)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] (ASUSTeK Computer Inc. -> )
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [44480 2011-05-17] (Akeo Consulting -> hxxp://libusb-win32.sourceforge.net)
R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [487408 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [355312 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [506352 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [933360 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R3 mfeplk; C:\Windows\System32\drivers\mfeplk.sys [116208 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [253424 2017-06-26] (McAfee, Inc. -> McAfee, Inc.)
S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [159936 2016-08-16] (NGO -> MBB)
U1 aswbdisk; no ImagePath
S3 AthBTPort; system32\DRIVERS\btath_flt.sys [X]
S3 BTATH_A2DP; system32\drivers\btath_a2dp.sys [X]
S3 BTATH_BUS; system32\DRIVERS\btath_bus.sys [X]
S3 BTATH_HCRP; system32\DRIVERS\btath_hcrp.sys [X]
S3 BTATH_LWFLT; system32\DRIVERS\btath_lwflt.sys [X]
S3 BTATH_RCP; system32\DRIVERS\btath_rcp.sys [X]
S3 BtFilter; system32\DRIVERS\btfilter.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\Users\lenka\Downloads\DriverUpdate-setup-e7504d4b-6541-4036-a3e6-1cb57b4bbd2b.exe"
2023-04-26 00:15 - 2023-04-26 00:16 - 000021321 _____ C:\Users\lenka\Desktop\FRST.txt
2023-04-26 00:14 - 2023-04-26 00:15 - 000000000 ____D C:\FRST
2023-04-26 00:11 - 2023-04-26 00:12 - 002382336 _____ (Farbar) C:\Users\lenka\Desktop\FRST64.exe
2023-04-25 23:43 - 2023-04-25 23:44 - 000000000 ____D C:\Program Files\Google
2023-04-25 23:43 - 2023-04-25 23:43 - 000002257 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-04-25 23:43 - 2023-04-25 23:43 - 000002216 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-04-25 23:41 - 2023-04-25 23:47 - 000003682 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2023-04-25 23:41 - 2023-04-25 23:47 - 000003554 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2023-04-25 23:34 - 2023-04-26 00:11 - 000000000 ____D C:\Users\lenka\AppData\Roaming\PC HelpSoft Driver Updater
2023-04-25 23:34 - 2023-04-25 23:41 - 000003218 _____ C:\Windows\system32\Tasks\PC HelpSoft Driver Updater automatic scan and new device notifications
2023-04-25 23:34 - 2023-04-25 23:34 - 000001223 _____ C:\Users\Public\Desktop\PC HelpSoft Driver Updater.lnk
2023-04-25 23:34 - 2023-04-25 23:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC HelpSoft Driver Updater
2023-04-25 23:34 - 2023-04-25 23:34 - 000000000 ____D C:\Program Files (x86)\PC HelpSoft Driver Updater
2023-04-25 23:33 - 2023-04-25 23:33 - 006950232 _____ (PC HelpSoft ) C:\Users\lenka\Downloads\Driver_Updater_5494(1).exe
2023-04-25 23:31 - 2023-04-25 23:32 - 006950232 _____ (PC HelpSoft ) C:\Users\lenka\Downloads\Driver_Updater_5494.exe
2023-04-25 23:28 - 2023-04-25 23:28 - 000000000 _____ C:\Users\lenka\Downloads\WfW0w5iA.htm
2023-04-25 08:55 - 2023-04-25 08:55 - 000032768 _____ C:\Users\lenka\Downloads\eBwtePoR.doc.part
2023-04-12 18:47 - 2023-04-19 05:57 - 000000000 ____D C:\Users\lenka\Desktop\nerez robota
2023-04-12 18:38 - 2023-04-12 18:38 - 007521318 _____ C:\Users\lenka\Downloads\certifikáty+doklady.zip
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-04-26 00:13 - 2009-07-14 06:45 - 000014192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2023-04-26 00:13 - 2009-07-14 06:45 - 000014192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2023-04-25 23:52 - 2016-08-26 22:35 - 000000000 ____D C:\Program Files (x86)\Google
2023-04-25 23:44 - 2016-09-01 12:16 - 000000000 ____D C:\Users\lenka\AppData\Local\CrashDumps
2023-04-25 22:57 - 2022-02-14 08:17 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2023-04-25 22:56 - 2017-02-18 11:06 - 000000000 ____D C:\Users\lenka\AppData\LocalLow\Mozilla
2023-04-25 22:44 - 2021-09-16 22:05 - 000000000 ____D C:\Users\lenka\AppData\Local\Spotify
2023-04-25 22:44 - 2018-01-30 12:54 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2023-04-25 22:43 - 2021-09-16 22:04 - 000000000 ____D C:\Users\lenka\AppData\Roaming\Spotify
2023-04-25 22:42 - 2016-08-28 09:41 - 000000000 ____D C:\ProgramData\AVAST Software
2023-04-25 22:38 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-04-25 09:21 - 2018-04-09 23:17 - 000000000 ____D C:\Users\lenka\AppData\Local\AVAST Software
2023-04-24 23:18 - 2022-08-30 00:58 - 000002972 _____ C:\Windows\system32\Tasks\{5653D874-DD14-4838-B72D-4E5E760DAC9A}
2023-04-24 23:18 - 2021-11-12 21:07 - 000003116 _____ C:\Windows\system32\Tasks\{43279899-7414-4840-A14A-A72BF7295FA0}
2023-04-24 23:18 - 2021-01-17 12:22 - 000003690 _____ C:\Windows\system32\Tasks\DriverUpdate Scan
2023-04-24 23:18 - 2021-01-17 11:40 - 000002960 _____ C:\Windows\system32\Tasks\{A4FAC288-C1E0-49BE-94BC-8266FDDC0F65}
2023-04-24 23:18 - 2019-09-18 17:07 - 000002982 _____ C:\Windows\system32\Tasks\{84456DE5-4CE4-45AE-908B-110BAA78E481}
2023-04-24 23:18 - 2016-08-27 02:48 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2023-04-24 20:33 - 2016-08-28 09:44 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software
2023-04-24 20:30 - 2022-01-16 09:06 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2023-04-22 15:11 - 2018-08-18 07:47 - 000255488 ___SH C:\Users\lenka\Desktop\Thumbs.db
2023-04-15 18:27 - 2016-08-27 02:25 - 000000000 ____D C:\Users\lenka\AppData\Roaming\vlc
2023-04-04 17:47 - 2009-07-14 07:08 - 000032588 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2023-03-30 19:46 - 2009-07-14 17:18 - 013978380 _____ C:\Windows\system32\perfh005.dat
2023-03-30 19:46 - 2009-07-14 17:18 - 004842736 _____ C:\Windows\system32\perfc005.dat
2023-03-30 19:46 - 2009-07-14 07:13 - 000006212 _____ C:\Windows\system32\PerfStringBackup.INI
==================== Files in the root of some directories ========
2020-03-08 07:58 - 2019-03-12 10:22 - 000000701 _____ () C:\Users\lenka\AppData\Roaming\p2wsound.dll
2018-01-10 00:45 - 2020-07-18 07:42 - 000020913 _____ () C:\Users\lenka\AppData\Roaming\UserTile.png
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2023-04-22 07:17
==================== End of FRST.txt ========================