Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-10-2019 02
Ran by Tomas (administrator) on DESKTOP-54QJTJL (13-10-2019 22:42:58)
Running from C:\Users\Tomas\Desktop
Loaded Profiles: Tomas (Available Profiles: defaultuser0 & Tomas)
Platform: Windows 10 Home Version 1803 17134.285 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
() [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(ASUSTeK Computer Inc. -> ) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe
(ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
(ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.28\AsusFanControlService.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
(Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrB.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Huawei Technologies Co., Ltd. -> ) [File not signed] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Intel(R) Intel Network Drivers -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Intel(R) Software -> Intel(R) Corporation) C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
(Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(ManyCam -> Visicom Media Inc.) C:\ProgramData\ManyCam\Service\ManyCamService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Tomas\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) [File not signed] C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18082.10311.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [193024 2018-09-30] (Microsoft Corporation) [File not signed]
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8899592 2016-08-19] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163800 2016-07-30] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2013-01-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-21] (Microsoft Corporation -> Microsoft Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\...\Run: [DAEMON Tools Lite Automount] => D:\Programy\DAEMON Tools Lite\DTAgent.exe [4701888 2017-02-07] (Disc Soft Ltd -> Disc Soft Ltd)
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\...\Run: [ManyCam] => C:\Program Files (x86)\ManyCam\ManyCam.exe [12498960 2017-08-24] (ManyCam (VISICOM MÉDIA INC.) -> Visicom Media Inc.)
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\...\Run: [Chromium] => "c:\users\tomas\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory=Default --restore-last-session
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\...\Run: [Discord] => C:\Users\Tomas\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22714912 2019-08-15] (Piriform Software Ltd -> Piriform Ltd)
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\...\Policies\Explorer: [NoSecurityTab] 1
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\...\MountPoints2: {7e675cad-3dc6-11e9-b507-38d547e05235} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\...\MountPoints2: {9fc70acf-2ca0-11e7-b3bd-38d547e05235} - "E:\autorun.exe"
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\...\MountPoints2: {9fc70b14-2ca0-11e7-b3bd-38d547e05235} - "F:\MafiaLauncher.EXE"
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\...\MountPoints2: {9fc70b5a-2ca0-11e7-b3bd-38d547e05235} - "G:\m.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.90\Installer\chrmstp.exe [2019-09-24] (Google LLC -> Google LLC)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0CFB0104-4D41-44F5-887B-81991B3AB808} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {19602858-A3BE-4A01-A506-BBEFC3510BC8} - System32\Tasks\AMHelper => C:\Program Files (x86)\Zemana\AntiMalware\AntiMalware.exe [656968 2019-08-27] (Zemana D.O.O. Sarajevo -> Zemana Ltd.)
Task: {21315387-77F4-450E-A90D-8FC7132B3CFD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1809.2-0\MpCmdRun.exe [464448 2018-09-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {374E42FD-35D9-4757-B8D7-364F8B36BBDB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1809.2-0\MpCmdRun.exe [464448 2018-09-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {3DEAE3A1-5C6C-458F-9D95-002F23B3E501} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1236048 2019-07-24] (Adobe Inc. -> Adobe Systems)
Task: {4AFED862-290A-4FC2-B66C-59AFF4C2A3DD} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [1871800 2015-08-06] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {50A775DF-AA7B-41F8-A2E0-79774BEEC4E2} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {51968B7F-3660-4F95-9199-E9E9BE9BB3B4} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5CBF0789-D151-42A4-998B-627FAC437C93} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-10-09] (Adobe Inc. -> Adobe)
Task: {627EDAD6-5952-47D4-8C30-C1D0A706028A} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6E5C083E-45D7-48BE-BAEE-131101829BF5} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7048E167-14DD-4A52-A8C1-FD6A56727BF0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1809.2-0\MpCmdRun.exe [464448 2018-09-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {73A3793E-5D3E-4681-9305-9B0B4111BC1F} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Tomas\Downloads\esetonlinescanner_csy.exe
Task: {746EF9BB-EA81-4260-A2CB-DBDB4EF7AAD9} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-08-15] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {7BA31C85-8F68-4CF9-A0B3-444967F549E0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-08-23] (Google Inc -> Google Inc.)
Task: {7D74AA67-9631-434B-BCE8-212178868BB9} - System32\Tasks\ASUS\GpuFanHelper => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe [4331288 2015-08-20] (ASUSTeK Computer Inc. -> TODO: <Company name>)
Task: {82AEC64E-FB1D-4980-BC4F-E83C5D4C37F1} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {83DAB4D3-430E-4CCA-AD3D-CB130F6EA1ED} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-08-23] (Google Inc -> Google Inc.)
Task: {8420C8FE-41ED-4035-B02C-B4C2E11BC6F0} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Tomas\Downloads\esetonlinescanner_csy.exe
Task: {8ABBC853-E7EF-4A3F-80DE-19C7848095C1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1809.2-0\MpCmdRun.exe [464448 2018-09-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {9482B63C-B573-4081-ABA4-A027EC0BE132} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A58D607E-719D-4018-9C49-6A412035DFDA} - System32\Tasks\ASUS\Ez Update => C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe [1459152 2015-09-10] (ASUSTeK Computer Inc. -> )
Task: {A631A3CE-8FF1-423A-8466-A0E9E286E44F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653864 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AE45743A-7135-41C0-8BB1-15B9422E9217} - System32\Tasks\ASUS\Push Notice Server Execute => C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe [3646264 2014-05-28] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {B14B7E2D-5356-485B-8354-88C19C10A8C5} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3310688 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BA9A16AD-3B1E-4F9E-B5BE-036676F88438} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C19FE2C6-81F3-4F10-93DA-E2958D7D27E7} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [1310720 2015-09-20] () [File not signed]
Task: {C27C4947-8266-4E81-93C9-4ACB51643A69} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_270_pepper.exe [1453112 2019-10-09] (Adobe Inc. -> Adobe)
Task: {C29756D8-7C90-43CC-87B8-056F9BB76568} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16585328 2019-08-15] (Piriform Software Ltd -> Piriform Ltd)
Task: {E31E25C1-C10B-4482-9BDF-503B54DFE5E5} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr.exe [238392 2013-07-24] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {E77E4A4A-5D1A-467B-98C5-C5E5B4FD7407} - System32\Tasks\Opera scheduled Autoupdate 1483644754 => C:\Program Files (x86)\Opera\launcher.exe [1348632 2019-10-04] (Opera Software AS -> Opera Software)
Task: {E9DCD09A-D46B-4C16-BAEA-857735E4D645} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{9e49061e-58de-4752-ad9c-141cbf5e0300}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{9e49061e-58de-4752-ad9c-141cbf5e0300}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Internet Explorer:
==================
HKU\S-1-5-21-526796258-3125621912-3622189555-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
hxxp://www.msn.com/?ocid=iehpSearchScopes: HKU\S-1-5-21-526796258-3125621912-3622189555-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL =
hxxp://www.google.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation -> Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files\Microsoft Office\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-08] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-08] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Chrome:
=======
CHR HomePage: Default ->
hxxp://www.google.com/CHR StartupUrls: Default -> "hxxp://team.setzer.cz/","hxxp://websearch.simplespeedy.info/","hxxp://www.motious.com/","hxxps://www.google.com/"
CHR Profile: C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default [2019-10-13]
CHR Extension: (Prezentace) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-10-13]
CHR Extension: (Dokumenty) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-10-13]
CHR Extension: (Disk Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-10-13]
CHR Extension: (YouTube) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-10-13]
CHR Extension: (Tabulky) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-10-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-10-13]
CHR Extension: (AdBlock) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-10-13]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-13]
CHR Extension: (Gmail) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-10-13]
CHR Extension: (Chrome Media Router) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-13]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2015-05-08] (ASUSTeK Computer Inc. -> )
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [954648 2015-05-08] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.28\AsusFanControlService.exe [398648 2015-08-20] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8577760 2019-07-21] (BattlEye Innovations e.K. -> )
S3 Disc Soft Lite Bus Service; D:\Programy\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1471168 2017-02-07] (Disc Soft Ltd -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2018-08-26] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2018-12-12] (Huawei Technologies Co., Ltd. -> ) [File not signed]
R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [3877768 2016-12-12] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
R2 ManyCam Service; C:\ProgramData\ManyCam\Service\ManyCamService.exe [544984 2016-03-31] (ManyCam -> Visicom Media Inc.)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [66872 2017-10-07] (Even Balance, Inc. -> )
R2 PnkBstrB; C:\WINDOWS\SysWOW64\PnkBstrB.exe [107832 2017-10-07] (Even Balance, Inc. -> )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1809.2-0\NisSrv.exe [3847376 2018-09-26] (Microsoft Corporation -> Microsoft Corporation)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [19192 2015-09-21] (Intel(R) Software -> Intel(R) Corporation)
S3 cphs; %SystemRoot%\System32\DriverStore\FileRepository\igdlh64.inf_amd64_0745f11ce6fc197c\IntelCpHeciSvc.exe [X]
S3 cplspcon; %SystemRoot%\System32\DriverStore\FileRepository\igdlh64.inf_amd64_0745f11ce6fc197c\IntelCpHDCPSvc.exe [X]
S2 igfxCUIService2.0.0.0; %SystemRoot%\System32\DriverStore\FileRepository\igdlh64.inf_amd64_0745f11ce6fc197c\igfxCUIService.exe [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2013-01-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R1 amsdk; C:\WINDOWS\system32\drivers\amsdk.sys [232792 2019-10-13] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
R3 AndroidAFD; C:\Windows\SysWow64\drivers\AndroidAFDx64.sys [28600 2015-08-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-04-18] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] (ASUSTeK Computer Inc. -> )
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2014-02-24] (ASUSTeK Computer Inc. -> )
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-12-26] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-12-26] (Disc Soft Ltd -> Disc Soft Ltd)
S3 EasyAntiCheatSys; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys [1052784 2019-06-30] (EasyAntiCheat Oy -> EasyAntiCheat Oy)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2018-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2018-12-12] (Huawei Technologies Co., Ltd.) [File not signed]
R2 iocbios2; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [30224 2015-09-21] (Intel(R) Software -> Intel Corporation)
R4 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [24824 2015-08-20] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R3 ManyCam; C:\WINDOWS\system32\DRIVERS\mcvidrv.sys [58792 2017-03-05] (ManyCam (VISICOM MÉDIA INC.) -> Visicom Media Inc.)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 mcaudrv_simple; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [35960 2014-12-29] (ManyCam -> Visicom Media Inc.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_827405c7c65146ab\nvlddmkm.sys [22377352 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
S2 SecDrv; C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS [12464 2019-09-09] (Macrovision Europe Ltd) [File not signed]
R3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\vmdrv.sys [45408 2019-07-02] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46184 2018-09-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [352424 2018-09-26] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60584 2018-09-26] (Microsoft Windows -> Microsoft Corporation)
S3 igfx; \SystemRoot\System32\DriverStore\FileRepository\igdlh64.inf_amd64_0745f11ce6fc197c\igdkmd64.sys [X]
S1 MpKsl059d16c5; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C8103F08-E313-467E-B293-07EF63D1BB7B}\MpKsl059d16c5.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-13 22:42 - 2019-10-13 22:43 - 000029321 _____ C:\Users\Tomas\Desktop\FRST.txt
2019-10-13 22:42 - 2019-10-13 22:43 - 000000000 ____D C:\FRST
2019-10-13 22:22 - 2019-10-13 22:22 - 001616384 _____ (Farbar) C:\Users\Tomas\Downloads\FRST64.exe
2019-10-13 22:22 - 2019-10-13 22:22 - 001616384 _____ (Farbar) C:\Users\Tomas\Desktop\FRST64.exe
2019-10-13 21:42 - 2019-10-13 21:43 - 000001373 _____ C:\Users\Tomas\Desktop\zeman.txt
2019-10-13 21:39 - 2019-10-13 22:42 - 000102350 _____ C:\WINDOWS\ZAM.krnl.trace
2019-10-13 21:39 - 2019-10-13 21:39 - 000232792 _____ (Copyright 2018.) C:\WINDOWS\system32\Drivers\amsdk.sys
2019-10-13 21:39 - 2019-10-13 21:39 - 000003558 _____ C:\WINDOWS\system32\Tasks\AMHelper
2019-10-13 21:39 - 2019-10-13 21:39 - 000001329 _____ C:\Users\Public\Desktop\Zemana AntiMalware.lnk
2019-10-13 21:39 - 2019-10-13 21:39 - 000000000 ____D C:\Users\Tomas\AppData\Local\Zemana
2019-10-13 21:39 - 2019-10-13 21:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
2019-10-13 21:39 - 2019-10-13 21:39 - 000000000 ____D C:\Program Files (x86)\Zemana
2019-10-13 21:38 - 2019-10-13 21:39 - 000000000 ____D C:\Users\Tomas\AppData\Local\AMSDK
2019-10-13 21:35 - 2019-10-13 21:35 - 012668536 _____ (Zemana Ltd. ) C:\Users\Tomas\Downloads\AntiMalware_Setup.exe
2019-10-13 18:02 - 2019-10-13 18:02 - 000008966 _____ C:\Users\Tomas\Desktop\zoek-results.txt
2019-10-13 18:01 - 2014-02-13 23:59 - 000024064 _____ C:\WINDOWS\zoek-delete.exe
2019-10-13 17:48 - 2019-10-13 17:59 - 000000000 ____D C:\zoek_backup
2019-10-13 17:48 - 2019-10-13 17:48 - 002038755 _____ C:\Users\Tomas\Downloads\zoek.exe
2019-10-13 17:48 - 2019-10-13 17:48 - 002038755 _____ C:\Users\Tomas\Desktop\zoek.exe
2019-10-13 17:47 - 2019-10-13 17:47 - 000003418 _____ C:\Users\Tomas\Desktop\rogue.txt
2019-10-13 12:07 - 2019-10-13 12:07 - 000000769 _____ C:\Users\Tomas\Documents\3D objekty – zástupce.lnk
2019-10-13 11:57 - 2019-10-13 11:57 - 000000000 ____D C:\Users\Tomas\Documents\League of Legends
2019-10-13 11:54 - 2019-10-13 12:07 - 000001675 _____ C:\Users\Public\Desktop\League of Legends.lnk
2019-10-13 11:52 - 2019-10-13 11:52 - 099303624 _____ (Riot Games, Inc) C:\Users\Tomas\Downloads\League of Legends installer NA.exe
2019-10-13 10:53 - 2019-10-13 10:53 - 000000000 ____D C:\Users\Tomas\AppData\Local\Adobe
2019-10-13 10:45 - 2019-10-13 10:51 - 000000000 ____D C:\ProgramData\RogueKiller
2019-10-13 10:44 - 2019-10-13 10:44 - 035074616 _____ C:\Users\Tomas\Desktop\RogueKiller_portable64.exe
2019-10-13 10:43 - 2019-10-13 10:44 - 035074616 _____ C:\Users\Tomas\Downloads\RogueKiller_portable64.exe
2019-10-13 10:21 - 2019-10-13 10:21 - 000000000 ____D C:\ProgramData\Sophos
2019-10-13 10:20 - 2019-10-13 10:20 - 000002775 _____ C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
2019-10-13 10:20 - 2019-10-13 10:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2019-10-13 10:20 - 2019-10-13 10:20 - 000000000 ____D C:\Program Files (x86)\Sophos
2019-10-13 10:19 - 2019-10-13 10:20 - 206758184 _____ (Sophos Limited) C:\Users\Tomas\Downloads\Sophos Virus Removal Tool.exe
2019-10-13 10:09 - 2019-10-13 10:09 - 001790024 _____ (Malwarebytes) C:\Users\Tomas\Downloads\JRT.exe
2019-10-13 10:09 - 2019-10-13 10:09 - 001790024 _____ (Malwarebytes) C:\Users\Tomas\Desktop\JRT.exe
2019-10-13 10:03 - 2019-10-12 22:26 - 007622344 _____ (Malwarebytes) C:\Users\Tomas\Desktop\AdwCleaner.exe
2019-10-13 02:15 - 2019-10-13 02:15 - 000000218 _____ C:\Users\Tomas\AppData\Local\recently-used.xbel
2019-10-12 22:33 - 2019-10-12 22:33 - 000001912 _____ C:\Users\Tomas\Desktop\Malwarebytes.lnk
2019-10-12 22:33 - 2019-10-12 22:33 - 000000000 ____D C:\Users\Tomas\AppData\Local\mbamtray
2019-10-12 22:33 - 2019-10-12 22:33 - 000000000 ____D C:\Users\Tomas\AppData\Local\mbam
2019-10-12 22:33 - 2019-10-12 22:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-10-12 22:33 - 2019-10-12 22:33 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-10-12 22:33 - 2019-10-12 22:33 - 000000000 ____D C:\Program Files\Malwarebytes
2019-10-12 22:33 - 2019-08-27 05:50 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-10-12 22:33 - 2019-06-26 13:00 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2019-10-12 22:32 - 2019-10-12 22:32 - 066367928 _____ (Malwarebytes ) C:\Users\Tomas\Downloads\mb3-setup-37469.37469-3.8.3.2965-1.0.627-1.0.12633.exe
2019-10-12 22:26 - 2019-10-13 10:05 - 000000000 ____D C:\AdwCleaner
2019-10-12 22:26 - 2019-10-12 22:26 - 007622344 _____ (Malwarebytes) C:\Users\Tomas\Downloads\AdwCleaner.exe
2019-10-12 22:24 - 2019-10-12 22:24 - 000000000 ____D C:\Users\Tomas\AppData\Local\CEF
2019-10-12 22:21 - 2019-10-12 22:21 - 000448512 _____ (OldTimer Tools) C:\Users\Tomas\Downloads\TFC.exe
2019-10-12 22:20 - 2019-10-13 22:34 - 000000000 ____D C:\Users\Tomas\AppData\Local\ClassicShell
2019-10-12 22:17 - 2019-10-12 22:17 - 000050688 _____ (Atribune.org) C:\Users\Tomas\Downloads\ATF-Cleaner.exe
2019-10-12 21:10 - 2019-10-12 21:10 - 000388608 _____ (Trend Micro Inc.) C:\Users\Tomas\Downloads\HijackThis.exe
2019-10-12 14:06 - 2019-10-12 14:06 - 000000000 ___HD C:\$AV_ASW
2019-10-12 08:35 - 2019-10-13 10:13 - 000000000 ____D C:\Users\Tomas\Desktop\antivir
2019-10-09 03:35 - 2019-10-09 03:36 - 000000000 ____D C:\Users\Tomas\AppData\Local\Riot Games
2019-10-02 11:04 - 2019-09-27 23:15 - 011561728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-10-02 11:04 - 2019-09-27 23:15 - 009936640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-10-02 11:04 - 2019-09-27 23:15 - 001012640 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-10-02 11:04 - 2019-09-27 23:15 - 001012640 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-10-02 11:04 - 2019-09-27 23:15 - 000876448 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-10-02 11:04 - 2019-09-27 23:15 - 000876448 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-10-02 11:04 - 2019-09-27 23:15 - 000447120 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-10-02 11:04 - 2019-09-27 23:15 - 000351888 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-10-02 11:04 - 2019-09-27 23:15 - 000301472 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-10-02 11:04 - 2019-09-27 23:15 - 000301472 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-10-02 11:04 - 2019-09-27 23:15 - 000273312 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-10-02 11:04 - 2019-09-27 23:15 - 000273312 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-10-02 11:04 - 2019-09-27 23:14 - 000823552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2019-10-02 11:04 - 2019-09-27 23:14 - 000676744 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-10-02 11:04 - 2019-09-27 23:14 - 000633224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-10-02 11:04 - 2019-09-27 23:14 - 000544456 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 040445128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 035333888 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 017301248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 014922440 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 005358464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 004697288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 002051512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 001726720 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6443648.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 001551240 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 001491144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6443648.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 001477512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 001246976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 001140424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 000959416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 000812800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 000659328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-10-02 11:04 - 2019-09-27 23:13 - 000523520 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-09-30 03:35 - 2019-09-30 03:36 - 000000000 ____D C:\ProgramData\SUPERSetup
2019-09-30 03:07 - 2019-09-30 03:07 - 000000000 ____D C:\Users\Tomas\AppData\Roaming\SUPERAntiSpyware.com
2019-09-30 03:07 - 2019-09-30 03:07 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2019-09-30 03:06 - 2019-09-30 03:06 - 042087312 _____ (SUPERAntiSpyware) C:\Users\Tomas\Downloads\SUPERAntiSpyware.exe
2019-09-30 02:58 - 2019-10-13 10:05 - 000000000 ____D C:\Users\Tomas\AppData\LocalLow\IObit
2019-09-30 02:58 - 2019-09-30 02:58 - 000000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled
2019-09-30 02:57 - 2019-10-13 10:05 - 000000000 ____D C:\Users\Tomas\AppData\Roaming\IObit
2019-09-30 02:57 - 2019-10-13 10:05 - 000000000 ____D C:\ProgramData\IObit
2019-09-30 01:57 - 2019-09-30 01:59 - 000000000 ____D C:\ProgramData\Wondershare
2019-09-30 01:57 - 2019-09-30 01:57 - 001388272 _____ C:\Users\Tomas\Downloads\recoverit_setup_full4134.exe
2019-09-30 01:57 - 2019-09-30 01:57 - 000000000 ____D C:\Users\Public\Documents\Wondershare
2019-09-29 23:07 - 2019-09-29 23:07 - 007622344 _____ (Malwarebytes) C:\Users\Tomas\Downloads\adwcleaner_7.4.1.exe
2019-09-25 01:13 - 2019-09-26 04:18 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2019-09-25 01:13 - 2019-09-25 01:13 - 000002888 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2019-09-25 01:13 - 2019-09-25 01:13 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-09-25 01:13 - 2019-09-25 01:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2019-09-25 01:13 - 2019-09-25 01:13 - 000000000 ____D C:\Program Files\CCleaner
2019-09-20 01:58 - 2019-10-13 11:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2019-09-14 14:40 - 2019-10-13 21:44 - 000000000 ____D C:\Users\Tomas\Documents\videa
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-13 22:20 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-13 21:48 - 2018-05-17 14:04 - 001689050 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-10-13 21:48 - 2018-04-12 17:50 - 000715034 _____ C:\WINDOWS\system32\perfh005.dat
2019-10-13 21:48 - 2018-04-12 17:50 - 000144328 _____ C:\WINDOWS\system32\perfc005.dat
2019-10-13 21:48 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF
2019-10-13 21:44 - 2017-07-21 20:14 - 000000000 ____D C:\ProgramData\NVIDIA
2019-10-13 21:43 - 2018-05-17 14:00 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-10-13 21:43 - 2018-04-11 23:04 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-10-13 21:32 - 2018-05-17 23:26 - 000004210 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{68D3B090-47E2-48AF-B1D0-4F1791684609}
2019-10-13 17:59 - 2018-05-17 13:56 - 000000000 ____D C:\Users\Tomas
2019-10-13 17:39 - 2018-05-17 13:54 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-10-13 11:50 - 2016-12-21 21:52 - 000000000 ____D C:\Users\Tomas\AppData\Local\CrashDumps
2019-10-13 02:15 - 2018-11-17 23:38 - 000000000 ____D C:\KMPlayer
2019-10-12 22:33 - 2018-04-12 01:38 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-10-12 22:22 - 2017-07-11 16:38 - 000000000 ____D C:\ProgramData\AVAST Software
2019-10-12 22:19 - 2016-12-21 20:46 - 000000000 ____D C:\Users\Tomas\AppData\Local\Comms
2019-10-12 15:34 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-10-12 09:51 - 2018-05-31 11:45 - 000000000 ____D C:\Users\Tomas\AppData\Local\D3DSCache
2019-10-09 15:54 - 2018-05-17 14:00 - 000004666 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier
2019-10-09 15:54 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-10-09 15:54 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-10-09 03:35 - 2016-12-26 15:59 - 000000000 ____D C:\ProgramData\Riot Games
2019-10-08 13:56 - 2018-05-17 14:00 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-526796258-3125621912-3622189555-1001
2019-10-08 13:56 - 2018-05-17 13:56 - 000002361 _____ C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-08 13:56 - 2016-12-21 20:30 - 000000000 ___RD C:\Users\Tomas\OneDrive
2019-10-08 01:19 - 2018-08-23 10:20 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-10-08 01:19 - 2018-08-23 10:20 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-10-08 01:19 - 2016-12-21 20:32 - 000000000 ____D C:\Program Files (x86)\Google
2019-10-07 07:44 - 2018-05-17 14:00 - 000003970 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1483644754
2019-10-07 07:44 - 2017-06-30 17:44 - 000001149 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2019-10-07 07:44 - 2017-01-05 21:32 - 000000000 ____D C:\Program Files (x86)\Opera
2019-10-02 11:05 - 2017-07-21 20:14 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-09-30 03:33 - 2018-05-17 13:54 - 000410064 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-09-30 03:03 - 2019-06-02 15:17 - 000000000 ____D C:\Users\Tomas\Desktop\GAMES
2019-09-30 03:03 - 2018-11-27 20:33 - 000000000 ____D C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mafia
2019-09-30 03:03 - 2018-05-16 09:46 - 000000000 ___DC C:\WINDOWS\Panther
2019-09-30 03:03 - 2017-01-25 04:09 - 000000000 ____D C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
2019-09-30 03:02 - 2018-05-17 14:00 - 000003256 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-30 03:02 - 2018-05-17 14:00 - 000000000 ____D C:\WINDOWS\system32\Tasks\ferobedo
2019-09-27 23:09 - 2019-09-12 07:44 - 004263512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-09-27 23:09 - 2018-05-09 18:37 - 005002192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-09-27 03:27 - 2018-05-09 18:37 - 000054700 _____ C:\WINDOWS\system32\nvinfo.pb
2019-09-27 01:23 - 2017-07-21 20:14 - 005468016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-09-27 01:23 - 2017-07-21 20:14 - 002635248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2019-09-27 01:23 - 2017-07-21 20:14 - 001767464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2019-09-27 01:23 - 2017-07-21 20:14 - 000653680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2019-09-27 01:23 - 2017-07-21 20:14 - 000451056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2019-09-27 01:23 - 2017-07-21 20:14 - 000124784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2019-09-27 01:23 - 2017-07-21 20:14 - 000083440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2019-09-26 09:55 - 2017-07-21 20:14 - 008716712 _____ C:\WINDOWS\system32\nvcoproc.bin
2019-09-26 00:02 - 2017-07-21 20:14 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2019-09-25 01:15 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-09-25 01:15 - 2016-12-26 17:28 - 000000000 ____D C:\Users\Tomas\AppData\Roaming\DAEMON Tools Lite
2019-09-24 22:18 - 2018-08-23 10:20 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-22 17:50 - 2019-08-30 20:41 - 000003812 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn
2019-09-22 17:50 - 2019-08-30 20:41 - 000003370 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime
2019-09-14 23:06 - 2016-12-26 21:08 - 000000000 ____D C:\Users\Tomas\AppData\Roaming\TS3Client
2019-09-14 14:42 - 2019-08-01 14:23 - 000000000 ____D C:\Users\Tomas\Documents\Aspyr
2019-09-14 14:42 - 2017-07-06 19:01 - 000000000 ____D C:\ProgramData\.mono
==================== Files in the root of some directories ================
2018-11-23 12:56 - 2003-04-09 05:28 - 000233472 ____R () C:\Users\Tomas\AppData\Roaming\MafiaSetup.exe
2017-05-04 00:43 - 2017-05-04 00:43 - 000000009 _____ () C:\Users\Tomas\AppData\Roaming\update.dat
2017-05-04 00:44 - 2017-05-05 00:18 - 000000004 _____ () C:\Users\Tomas\AppData\Roaming\Microsoft\notaut.txt
2018-08-13 19:40 - 2018-08-13 19:40 - 000000036 _____ () C:\Users\Tomas\AppData\Local\housecall.guid.cache
2019-10-13 02:15 - 2019-10-13 02:15 - 000000218 _____ () C:\Users\Tomas\AppData\Local\recently-used.xbel
2018-08-13 19:45 - 2018-08-13 19:45 - 000000010 _____ () C:\Users\Tomas\AppData\Local\sponge.last.runtime.cache
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ============================