HJT - prosím o kontrolu, pomalý PC
Napsal: 23 říj 2020 20:53
Zdravím, prosím o kontrolu logu, poslední dobou je notebook strašně pomalý.
Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.26
Platform: x64 Windows 10 (Home N), 10.0.18363.1139 (ReleaseId: 1909), Service Pack: 0
Time: 23.10.2020 - 19:16 (UTC+02:00)
Language: OS: Czech (0x405). Display: Czech (0x405). Non-Unicode: Czech (0x405)
Elevated: Yes
Ran by: roady (group: Administrator) on DESKTOP-87H938I, FirstRun: yes
Chrome: 86.0.4240.75
Firefox: 81.0.2.7590
Edge: 11.0.18362.1016
Internet Explorer: 11.0.18362.1
Default: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --single-argument %1 (Google Chrome)
Boot mode: Normal
Running processes:
Number | Path
1 C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
1 C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
1 C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe
1 C:\Program Files (x86)\Citrix\ICA Client\AuthManager\AuthManSvr.exe
1 C:\Program Files (x86)\Citrix\ICA Client\Receiver\Receiver.exe
1 C:\Program Files (x86)\Citrix\ICA Client\SelfServicePlugin\SelfService.exe
1 C:\Program Files (x86)\Citrix\ICA Client\SelfServicePlugin\SelfServicePlugin.exe
1 C:\Program Files (x86)\Citrix\ICA Client\concentr.exe
1 C:\Program Files (x86)\Citrix\ICA Client\redirector.exe
1 C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe
1 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
1 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
1 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
1 C:\Program Files (x86)\Google\Update\1.3.36.32\GoogleCrashHandler.exe
1 C:\Program Files (x86)\Google\Update\1.3.36.32\GoogleCrashHandler64.exe
3 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
1 C:\Program Files (x86)\Google\Update\Install\{F2D54860-D485-430C-88CF-433475C96A43}\86.0.4240.111_86.0.4240.75_chrome_updater.exe
2 C:\Program Files (x86)\Google\Update\Install\{F2D54860-D485-430C-88CF-433475C96A43}\CR_95693.tmp\setup.exe
1 C:\Program Files (x86)\Lenovo\System Update\SUService.exe
1 C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe
1 C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\OLicenseHeartbeat.exe
2 C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{A8429F27-C442-45C7-A888-CF7E063554E3}\EDGEMITMP_0C3E5.tmp\setup.exe
1 C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{A8429F27-C442-45C7-A888-CF7E063554E3}\MicrosoftEdge_X64_86.0.622.51_86.0.622.43.exe
4 C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
1 C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
1 C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
1 C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\TWCU.exe
1 C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
1 C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
1 C:\Program Files\AVAST Software\Avast\AvastSvc.exe
3 C:\Program Files\AVAST Software\Avast\AvastUI.exe
1 C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
1 C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
1 C:\Program Files\AVAST Software\Avast\aswidsagent.exe
1 C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
1 C:\Program Files\Aladdin\eToken\PKIClient\x64\PKIMonitor.exe
1 C:\Program Files\Aladdin\eToken\PKIClient\x64\eTSrv.exe
1 C:\Program Files\CCleaner\CCleaner64.exe
1 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
2 C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe
1 C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
1 C:\Program Files\Elantech\ETDCtrl.exe
1 C:\Program Files\Elantech\ETDCtrlHelper.exe
1 C:\Program Files\Elantech\ETDIntelligent.exe
1 C:\Program Files\Elantech\ETDService.exe
1 C:\Program Files\NVIDIA Corporation\Drs\dbInstaller.exe
1 C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
1 C:\Users\roady\AppData\Local\Microsoft\OneDrive\OneDrive.exe
1 C:\Users\roady\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe
1 C:\Users\roady\Downloads\HiJackThis.exe
1 C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
1 C:\Windows\RTFTrack.exe
1 C:\Windows\RtkBtManServ.exe
1 C:\Windows\SysWOW64\F5FltSrv.exe
1 C:\Windows\SysWOW64\F5InstallerService.exe
1 C:\Windows\SysWOW64\F5TrafficSrv.exe
1 C:\Windows\SysWOW64\PnkBstrA.exe
2 C:\Windows\System32\CompatTelRunner.exe
1 C:\Windows\System32\DeviceCensus.exe
5 C:\Windows\System32\RuntimeBroker.exe
1 C:\Windows\System32\SearchFilterHost.exe
1 C:\Windows\System32\SearchIndexer.exe
1 C:\Windows\System32\SearchProtocolHost.exe
1 C:\Windows\System32\SecurityHealthService.exe
1 C:\Windows\System32\SecurityHealthSystray.exe
1 C:\Windows\System32\SettingSyncHost.exe
1 C:\Windows\System32\SgrmBroker.exe
1 C:\Windows\System32\SpatialAudioLicenseSrv.exe
1 C:\Windows\System32\UNP\UpdateNotificationMgr.exe
1 C:\Windows\System32\WUDFHost.exe
1 C:\Windows\System32\audiodg.exe
2 C:\Windows\System32\backgroundTaskHost.exe
2 C:\Windows\System32\conhost.exe
2 C:\Windows\System32\csrss.exe
1 C:\Windows\System32\ctfmon.exe
1 C:\Windows\System32\dasHost.exe
3 C:\Windows\System32\dllhost.exe
1 C:\Windows\System32\dwm.exe
2 C:\Windows\System32\fontdrvhost.exe
1 C:\Windows\System32\igfxCUIService.exe
1 C:\Windows\System32\igfxEM.exe
1 C:\Windows\System32\igfxHK.exe
1 C:\Windows\System32\lsass.exe
1 C:\Windows\System32\services.exe
1 C:\Windows\System32\sihost.exe
1 C:\Windows\System32\smartscreen.exe
1 C:\Windows\System32\smss.exe
1 C:\Windows\System32\spoolsv.exe
81 C:\Windows\System32\svchost.exe
3 C:\Windows\System32\taskhostw.exe
1 C:\Windows\System32\usocoreworker.exe
2 C:\Windows\System32\wbem\WmiPrvSE.exe
1 C:\Windows\System32\wbem\unsecapp.exe
1 C:\Windows\System32\wermgr.exe
1 C:\Windows\System32\wininit.exe
1 C:\Windows\System32\winlogon.exe
1 C:\Windows\System32\wlanext.exe
1 C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
1 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
1 C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
1 C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
1 C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.1130_none_1710e2332a1b5882\TiWorker.exe
1 C:\Windows\explorer.exe
1 C:\Windows\servicing\TrustedInstaller.exe
O2 - HKLM\..\BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.43\BHO\ie_to_edge_bho_64.dll
O2-32 - HKLM\..\BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.43\BHO\ie_to_edge_bho.dll
O2-32 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll
O2-32 - HKLM\..\BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR
O4 - HKCU\..\Run: [OneDrive] = C:\Users\roady\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background (Microsoft)
O4 - HKCU\..\Run: [com.squirrel.Teams.Teams] = C:\Users\roady\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated"
O4 - HKCU\..\StartupApproved\Run: [Steam] = C:\Program Files (x86)\Steam\steam.exe -silent (2019/05/02)
O4 - HKLM\..\Run: [AvastUI.exe] = C:\Program Files\AVAST Software\Avast\AvLaunch.exe /gui
O4 - HKLM\..\Run: [RtsFT] = C:\WINDOWS\RTFTrack.exe
O4 - HKLM\..\Run: [ShadowPlay] = C:\Windows\system32\nvspcap64.dll C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
O4 - HKLM\..\Run: [eTMonitor] = C:\Program Files\Aladdin\eToken\PKIClient\x64\PKIMonitor.exe
O4-32 - HKLM\..\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] = C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe -minimized
O4-32 - HKLM\..\Run: [ConnectionCenter] = C:\Program Files (x86)\Citrix\ICA Client\concentr.exe /startup
O4-32 - HKLM\..\Run: [ICAMaintenance_ICAPKIService_RegKeysRefresh] = C:\Program Files (x86)\I.CA\I.CA Maintenance\ICAMaintenance.exe -mode loader -op refreshICAPKIServiceRegistryKeys
O4-32 - HKLM\..\Run: [Redirector] = C:\Program Files (x86)\Citrix\ICA Client\redirector.exe /startup
O4-32 - HKLM\..\Run: [SunJavaUpdateSched] = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4-32 - HKLM\..\Run: [WPSTool] = C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\TWCU.exe
O15 - Trusted Zone: https://*.capgemini.com
O15 - Trusted Zone: https://*.csob.cz
O15 - Trusted Zone: https://*.csob.sk
O15 - Trusted Zone: https://*.erasvet.cz
O15 - Trusted Zone: https://*.ica.cz
O15 - Trusted Zone: https://*.postovnisporitelna.cz
O15 - Trusted Zone: https://*.proebiz.com
O15 - Trusted Zone: https://czuvpraze-files.sharepoint.com
O15 - Trusted Zone: https://czuvpraze-myfiles.sharepoint.com
O15 - Trusted Zone: https://vpna.sukl.cz
O15 - Trusted Zone: https://vpnb.sukl.cz
O16-32 - DPF: HKLM\..\{00627E89-A19D-4A2B-938B-059CB7B1B493}\DownloadInformation: F5 Networks Certificate Checker [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/f5certchk.cab
O16-32 - DPF: HKLM\..\{2A0B9B82-D5C8-4D3D-8338-AD55B23662B1}\DownloadInformation: F5 Networks CacheCleaner [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/cachecleaner.cab
O16-32 - DPF: HKLM\..\{2BCDB465-81F9-41CB-832C-8037A4064446}\DownloadInformation: F5 Networks VPN Manager [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\urxvpn.cab (file missing)
O16-32 - DPF: HKLM\..\{2c8ffa64-e3f7-49ae-87c2-49018fde3aea}\DownloadInformation: OesisInspectorCom Class [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\OesisInspector.cab (file missing)
O16-32 - DPF: HKLM\..\{41EF3CD2-D8CC-4438-84B1-280BB4E77C8E}\DownloadInformation: F5 Networks Dynamic Application Tunnel Control [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\f5tunsrv.cab (file missing)
O16-32 - DPF: HKLM\..\{45B69029-F3AB-4204-92DE-D5140C3E8E74}\DownloadInformation: F5 Networks Auto Update [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/InstallerControl.cab
O16-32 - DPF: HKLM\..\{57C76689-F052-487B-A19F-855AFDDF28EE}\DownloadInformation: F5 Networks Policy Agent Host Class [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\f5InspectionHost.cab (file missing)
O16-32 - DPF: HKLM\..\{7E73BE8F-FD87-44EC-8E22-023D5FF960FF}\DownloadInformation: F5 Virtual Sandbox Class [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/vdeskctrl.cab
O16-32 - DPF: HKLM\..\{A83FB16F-F96A-4724-A5B1-AC999860A218}\DownloadInformation: OesisInspectorCom4 Class [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\OesisInspector.cab (file missing)
O16-32 - DPF: HKLM\..\{CC85ACDF-B277-486F-8C70-2C9B2ED2A4E7}\DownloadInformation: F5 Networks SuperHost Class [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/urxshost.cab
O16-32 - DPF: HKLM\..\{E0FF21FA-B857-45C5-8621-F120A0C17FF2}\DownloadInformation: F5 Networks Host Control [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\urxhost.cab (file missing)
O16-32 - DPF: HKLM\..\{E615C9EA-AD69-4AE9-83C9-9D906A0ACA6D}\DownloadInformation: F5 Networks OS Policy Agent [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/f5syschk.cab
O17 - DHCP DNS 1: 192.168.10.1
O17 - DHCP DNS 2: 94.142.233.120
O17 - DHCP DNS 3: 94.142.233.140
O17 - DHCP DNS 4: 8.8.8.8 (Well-known DNS: Google)
O17 - HKLM\System\CCS\Services\Tcpip\..\{0dec171e-3369-47b8-a47b-a454e6a3eeb3}: [NameServer] = 10.8.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{0dec171e-3369-47b8-a47b-a454e6a3eeb3}: [NameServer] = 10.9.0.1
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=ISO-8859-1: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=MS936: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=MS949: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=MS950: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=UTF-8: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=UTF8: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=euc-jp: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=ISO-8859-1: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=MS936: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=MS949: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=MS950: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=UTF-8: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=UTF8: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=euc-jp: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\ica: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\00asw: avast - {472083B0-C522-11CF-8763-00608CC02F24} - C:\Program Files\AVAST Software\Avast\ashShell.dll
O22 - Task: (disabled) (update) \Microsoft\Windows\UpdateOrchestrator\Reboot_AC - C:\WINDOWS\system32\MusNotification.exe /RunOnAC RebootDialog (Microsoft)
O22 - Task: (disabled) (update) \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery - C:\WINDOWS\system32\MusNotification.exe /RunOnBattery RebootDialog (Microsoft)
O22 - Task: (disabled) \S-1-5-21-578814274-650679424-3857808525-1001\DataSenseLiveTileTask - C:\WINDOWS\System32\DataUsageLiveTileTask.exe
O22 - Task: (telemetry) \Microsoft\Office\Office Subscription Maintenance - C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe (Microsoft)
O22 - Task: (update) \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\WINDOWS\system32\MusNotification.exe (Microsoft)
O22 - Task: Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O22 - Task: Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
O22 - Task: CCleaner Update - C:\Program Files\CCleaner\CCUpdate.exe
O22 - Task: CCleanerSkipUAC - C:\Program Files\CCleaner\CCleaner.exe $(Arg0)
O22 - Task: GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
O22 - Task: GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
O22 - Task: Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
O22 - Task: \Avast Software\Overseer - C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe /from_scheduler:1
O22 - Task: \Lenovo\Lenovo Service Bridge\S-1-5-21-578814274-650679424-3857808525-1001 - C:\Users\roady\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe
O22 - Task: \Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB - C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
O22 - Task: \TVT\TVSUUpdateTask - C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe /CM -search R -action INSTALL -includerebootpackages 1,3,4,5 -noicon -noreboot -nolicense -defaultupdate -schtask
O22 - Task: \TVT\TVSUUpdateTask_UserLogOn - C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe PendingTask
O23 - Service R2: "Realtek Bluetooth Device Manager Service" ;RtkServ - (RtkBtManServ) - C:\WINDOWS\RtkBtManServ.exe
O23 - Service R2: Adobe Acrobat Update Service - (AdobeARMservice) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service R2: Avast Antivirus - (avast! Antivirus) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe /runassvc
O23 - Service R2: Avast Tools - (avast! Tools) - C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe /runassvc
O23 - Service R2: AvastWscReporter - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe /runassvc /rpcserver
O23 - Service R2: Cisco AnyConnect Secure Mobility Agent - (vpnagent) - C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
O23 - Service R2: ETOKSRV - (eTSrv) - C:\Program Files\Aladdin\eToken\PKIClient\x64\eTSrv.exe
O23 - Service R2: Elan Service - (ETDService) - C:\Program Files\Elantech\ETDService.exe
O23 - Service R2: F5 Networks Component Installer - C:\Windows\SysWOW64\F5InstallerService.exe
O23 - Service R2: F5 Networks DNS Relay Proxy Service - (F5FltSrv) - C:\Windows\SysWOW64\F5FltSrv.exe
O23 - Service R2: F5 Networks Traffic Control Service - (F5TrafficSrv) - C:\Windows\SysWOW64\F5TrafficSrv.exe
O23 - Service R2: Intel(R) HD Graphics Control Panel Service - (igfxCUIService2.0.0.0) - C:\WINDOWS\system32\igfxCUIService.exe
O23 - Service R2: NVIDIA GeForce Experience Service - (GfExperienceService) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service R2: NVIDIA Network Service - (NvNetworkService) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service R2: PnkBstrA - C:\WINDOWS\system32\PnkBstrA.exe (file missing)
O23 - Service R2: Služba Aktualizace Google (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc
O23 - Service R2: TeamViewer 14 - (TeamViewer) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service R3: System Update - (SUService) - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service R3: aswbIDSAgent - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service S2: NVIDIA Display Driver Service - (nvsvc) - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service S2: NVIDIA Streamer Service - (NvStreamSvc) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service S3: Google Chrome Elevation Service - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.75\elevation_service.exe
O23 - Service S3: I.CA Maintenance Service - C:\Program Files (x86)\I.CA\I.CA Maintenance\ICAMaintenance.exe Files (x86)\I.CA\I.CA Maintenance\ICAMaintenance.exe -mode service
O23 - Service S3: Intel(R) Content Protection HECI Service - (cphs) - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service S3: Mozilla Maintenance Service - (MozillaMaintenance) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service S3: Služba Aktualizace Google (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc
O23 - Service S3: Steam Client Service - C:\Program Files (x86)\Common Files\Steam\SteamService.exe /RunAsService
--
End of file - Time spent: 57,4 sec. - 42104 bytes, CRC32: FFFFFFFF. Sign: ᳅썍
Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.26
Platform: x64 Windows 10 (Home N), 10.0.18363.1139 (ReleaseId: 1909), Service Pack: 0
Time: 23.10.2020 - 19:16 (UTC+02:00)
Language: OS: Czech (0x405). Display: Czech (0x405). Non-Unicode: Czech (0x405)
Elevated: Yes
Ran by: roady (group: Administrator) on DESKTOP-87H938I, FirstRun: yes
Chrome: 86.0.4240.75
Firefox: 81.0.2.7590
Edge: 11.0.18362.1016
Internet Explorer: 11.0.18362.1
Default: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --single-argument %1 (Google Chrome)
Boot mode: Normal
Running processes:
Number | Path
1 C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
1 C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
1 C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe
1 C:\Program Files (x86)\Citrix\ICA Client\AuthManager\AuthManSvr.exe
1 C:\Program Files (x86)\Citrix\ICA Client\Receiver\Receiver.exe
1 C:\Program Files (x86)\Citrix\ICA Client\SelfServicePlugin\SelfService.exe
1 C:\Program Files (x86)\Citrix\ICA Client\SelfServicePlugin\SelfServicePlugin.exe
1 C:\Program Files (x86)\Citrix\ICA Client\concentr.exe
1 C:\Program Files (x86)\Citrix\ICA Client\redirector.exe
1 C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe
1 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
1 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
1 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
1 C:\Program Files (x86)\Google\Update\1.3.36.32\GoogleCrashHandler.exe
1 C:\Program Files (x86)\Google\Update\1.3.36.32\GoogleCrashHandler64.exe
3 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
1 C:\Program Files (x86)\Google\Update\Install\{F2D54860-D485-430C-88CF-433475C96A43}\86.0.4240.111_86.0.4240.75_chrome_updater.exe
2 C:\Program Files (x86)\Google\Update\Install\{F2D54860-D485-430C-88CF-433475C96A43}\CR_95693.tmp\setup.exe
1 C:\Program Files (x86)\Lenovo\System Update\SUService.exe
1 C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe
1 C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\OLicenseHeartbeat.exe
2 C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{A8429F27-C442-45C7-A888-CF7E063554E3}\EDGEMITMP_0C3E5.tmp\setup.exe
1 C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{A8429F27-C442-45C7-A888-CF7E063554E3}\MicrosoftEdge_X64_86.0.622.51_86.0.622.43.exe
4 C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
1 C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
1 C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
1 C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\TWCU.exe
1 C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
1 C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
1 C:\Program Files\AVAST Software\Avast\AvastSvc.exe
3 C:\Program Files\AVAST Software\Avast\AvastUI.exe
1 C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
1 C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
1 C:\Program Files\AVAST Software\Avast\aswidsagent.exe
1 C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
1 C:\Program Files\Aladdin\eToken\PKIClient\x64\PKIMonitor.exe
1 C:\Program Files\Aladdin\eToken\PKIClient\x64\eTSrv.exe
1 C:\Program Files\CCleaner\CCleaner64.exe
1 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
2 C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe
1 C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
1 C:\Program Files\Elantech\ETDCtrl.exe
1 C:\Program Files\Elantech\ETDCtrlHelper.exe
1 C:\Program Files\Elantech\ETDIntelligent.exe
1 C:\Program Files\Elantech\ETDService.exe
1 C:\Program Files\NVIDIA Corporation\Drs\dbInstaller.exe
1 C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
1 C:\Users\roady\AppData\Local\Microsoft\OneDrive\OneDrive.exe
1 C:\Users\roady\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe
1 C:\Users\roady\Downloads\HiJackThis.exe
1 C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
1 C:\Windows\RTFTrack.exe
1 C:\Windows\RtkBtManServ.exe
1 C:\Windows\SysWOW64\F5FltSrv.exe
1 C:\Windows\SysWOW64\F5InstallerService.exe
1 C:\Windows\SysWOW64\F5TrafficSrv.exe
1 C:\Windows\SysWOW64\PnkBstrA.exe
2 C:\Windows\System32\CompatTelRunner.exe
1 C:\Windows\System32\DeviceCensus.exe
5 C:\Windows\System32\RuntimeBroker.exe
1 C:\Windows\System32\SearchFilterHost.exe
1 C:\Windows\System32\SearchIndexer.exe
1 C:\Windows\System32\SearchProtocolHost.exe
1 C:\Windows\System32\SecurityHealthService.exe
1 C:\Windows\System32\SecurityHealthSystray.exe
1 C:\Windows\System32\SettingSyncHost.exe
1 C:\Windows\System32\SgrmBroker.exe
1 C:\Windows\System32\SpatialAudioLicenseSrv.exe
1 C:\Windows\System32\UNP\UpdateNotificationMgr.exe
1 C:\Windows\System32\WUDFHost.exe
1 C:\Windows\System32\audiodg.exe
2 C:\Windows\System32\backgroundTaskHost.exe
2 C:\Windows\System32\conhost.exe
2 C:\Windows\System32\csrss.exe
1 C:\Windows\System32\ctfmon.exe
1 C:\Windows\System32\dasHost.exe
3 C:\Windows\System32\dllhost.exe
1 C:\Windows\System32\dwm.exe
2 C:\Windows\System32\fontdrvhost.exe
1 C:\Windows\System32\igfxCUIService.exe
1 C:\Windows\System32\igfxEM.exe
1 C:\Windows\System32\igfxHK.exe
1 C:\Windows\System32\lsass.exe
1 C:\Windows\System32\services.exe
1 C:\Windows\System32\sihost.exe
1 C:\Windows\System32\smartscreen.exe
1 C:\Windows\System32\smss.exe
1 C:\Windows\System32\spoolsv.exe
81 C:\Windows\System32\svchost.exe
3 C:\Windows\System32\taskhostw.exe
1 C:\Windows\System32\usocoreworker.exe
2 C:\Windows\System32\wbem\WmiPrvSE.exe
1 C:\Windows\System32\wbem\unsecapp.exe
1 C:\Windows\System32\wermgr.exe
1 C:\Windows\System32\wininit.exe
1 C:\Windows\System32\winlogon.exe
1 C:\Windows\System32\wlanext.exe
1 C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
1 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
1 C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
1 C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
1 C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.1130_none_1710e2332a1b5882\TiWorker.exe
1 C:\Windows\explorer.exe
1 C:\Windows\servicing\TrustedInstaller.exe
O2 - HKLM\..\BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.43\BHO\ie_to_edge_bho_64.dll
O2-32 - HKLM\..\BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.43\BHO\ie_to_edge_bho.dll
O2-32 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll
O2-32 - HKLM\..\BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR
O4 - HKCU\..\Run: [OneDrive] = C:\Users\roady\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background (Microsoft)
O4 - HKCU\..\Run: [com.squirrel.Teams.Teams] = C:\Users\roady\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated"
O4 - HKCU\..\StartupApproved\Run: [Steam] = C:\Program Files (x86)\Steam\steam.exe -silent (2019/05/02)
O4 - HKLM\..\Run: [AvastUI.exe] = C:\Program Files\AVAST Software\Avast\AvLaunch.exe /gui
O4 - HKLM\..\Run: [RtsFT] = C:\WINDOWS\RTFTrack.exe
O4 - HKLM\..\Run: [ShadowPlay] = C:\Windows\system32\nvspcap64.dll C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
O4 - HKLM\..\Run: [eTMonitor] = C:\Program Files\Aladdin\eToken\PKIClient\x64\PKIMonitor.exe
O4-32 - HKLM\..\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] = C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe -minimized
O4-32 - HKLM\..\Run: [ConnectionCenter] = C:\Program Files (x86)\Citrix\ICA Client\concentr.exe /startup
O4-32 - HKLM\..\Run: [ICAMaintenance_ICAPKIService_RegKeysRefresh] = C:\Program Files (x86)\I.CA\I.CA Maintenance\ICAMaintenance.exe -mode loader -op refreshICAPKIServiceRegistryKeys
O4-32 - HKLM\..\Run: [Redirector] = C:\Program Files (x86)\Citrix\ICA Client\redirector.exe /startup
O4-32 - HKLM\..\Run: [SunJavaUpdateSched] = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4-32 - HKLM\..\Run: [WPSTool] = C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\TWCU.exe
O15 - Trusted Zone: https://*.capgemini.com
O15 - Trusted Zone: https://*.csob.cz
O15 - Trusted Zone: https://*.csob.sk
O15 - Trusted Zone: https://*.erasvet.cz
O15 - Trusted Zone: https://*.ica.cz
O15 - Trusted Zone: https://*.postovnisporitelna.cz
O15 - Trusted Zone: https://*.proebiz.com
O15 - Trusted Zone: https://czuvpraze-files.sharepoint.com
O15 - Trusted Zone: https://czuvpraze-myfiles.sharepoint.com
O15 - Trusted Zone: https://vpna.sukl.cz
O15 - Trusted Zone: https://vpnb.sukl.cz
O16-32 - DPF: HKLM\..\{00627E89-A19D-4A2B-938B-059CB7B1B493}\DownloadInformation: F5 Networks Certificate Checker [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/f5certchk.cab
O16-32 - DPF: HKLM\..\{2A0B9B82-D5C8-4D3D-8338-AD55B23662B1}\DownloadInformation: F5 Networks CacheCleaner [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/cachecleaner.cab
O16-32 - DPF: HKLM\..\{2BCDB465-81F9-41CB-832C-8037A4064446}\DownloadInformation: F5 Networks VPN Manager [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\urxvpn.cab (file missing)
O16-32 - DPF: HKLM\..\{2c8ffa64-e3f7-49ae-87c2-49018fde3aea}\DownloadInformation: OesisInspectorCom Class [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\OesisInspector.cab (file missing)
O16-32 - DPF: HKLM\..\{41EF3CD2-D8CC-4438-84B1-280BB4E77C8E}\DownloadInformation: F5 Networks Dynamic Application Tunnel Control [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\f5tunsrv.cab (file missing)
O16-32 - DPF: HKLM\..\{45B69029-F3AB-4204-92DE-D5140C3E8E74}\DownloadInformation: F5 Networks Auto Update [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/InstallerControl.cab
O16-32 - DPF: HKLM\..\{57C76689-F052-487B-A19F-855AFDDF28EE}\DownloadInformation: F5 Networks Policy Agent Host Class [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\f5InspectionHost.cab (file missing)
O16-32 - DPF: HKLM\..\{7E73BE8F-FD87-44EC-8E22-023D5FF960FF}\DownloadInformation: F5 Virtual Sandbox Class [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/vdeskctrl.cab
O16-32 - DPF: HKLM\..\{A83FB16F-F96A-4724-A5B1-AC999860A218}\DownloadInformation: OesisInspectorCom4 Class [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\OesisInspector.cab (file missing)
O16-32 - DPF: HKLM\..\{CC85ACDF-B277-486F-8C70-2C9B2ED2A4E7}\DownloadInformation: F5 Networks SuperHost Class [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/urxshost.cab
O16-32 - DPF: HKLM\..\{E0FF21FA-B857-45C5-8621-F120A0C17FF2}\DownloadInformation: F5 Networks Host Control [CODEBASE] = C:\WINDOWS\TEMP\f5tmp\urxhost.cab (file missing)
O16-32 - DPF: HKLM\..\{E615C9EA-AD69-4AE9-83C9-9D906A0ACA6D}\DownloadInformation: F5 Networks OS Policy Agent [CODEBASE] = file://C:/Program Files (x86)/F5 VPN/F5_TMP/f5syschk.cab
O17 - DHCP DNS 1: 192.168.10.1
O17 - DHCP DNS 2: 94.142.233.120
O17 - DHCP DNS 3: 94.142.233.140
O17 - DHCP DNS 4: 8.8.8.8 (Well-known DNS: Google)
O17 - HKLM\System\CCS\Services\Tcpip\..\{0dec171e-3369-47b8-a47b-a454e6a3eeb3}: [NameServer] = 10.8.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{0dec171e-3369-47b8-a47b-a454e6a3eeb3}: [NameServer] = 10.9.0.1
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=ISO-8859-1: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=MS936: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=MS949: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=MS950: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=UTF-8: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=UTF8: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica; charset=euc-jp: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=ISO-8859-1: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=MS936: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=MS949: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=MS950: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=UTF-8: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=UTF8: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-ica;charset=euc-jp: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - HKLM\Software\Classes\Protocols\Filter\ica: [CLSID] = {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\00asw: avast - {472083B0-C522-11CF-8763-00608CC02F24} - C:\Program Files\AVAST Software\Avast\ashShell.dll
O22 - Task: (disabled) (update) \Microsoft\Windows\UpdateOrchestrator\Reboot_AC - C:\WINDOWS\system32\MusNotification.exe /RunOnAC RebootDialog (Microsoft)
O22 - Task: (disabled) (update) \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery - C:\WINDOWS\system32\MusNotification.exe /RunOnBattery RebootDialog (Microsoft)
O22 - Task: (disabled) \S-1-5-21-578814274-650679424-3857808525-1001\DataSenseLiveTileTask - C:\WINDOWS\System32\DataUsageLiveTileTask.exe
O22 - Task: (telemetry) \Microsoft\Office\Office Subscription Maintenance - C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe (Microsoft)
O22 - Task: (update) \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\WINDOWS\system32\MusNotification.exe (Microsoft)
O22 - Task: Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O22 - Task: Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
O22 - Task: CCleaner Update - C:\Program Files\CCleaner\CCUpdate.exe
O22 - Task: CCleanerSkipUAC - C:\Program Files\CCleaner\CCleaner.exe $(Arg0)
O22 - Task: GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
O22 - Task: GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
O22 - Task: Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
O22 - Task: \Avast Software\Overseer - C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe /from_scheduler:1
O22 - Task: \Lenovo\Lenovo Service Bridge\S-1-5-21-578814274-650679424-3857808525-1001 - C:\Users\roady\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe
O22 - Task: \Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB - C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
O22 - Task: \TVT\TVSUUpdateTask - C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe /CM -search R -action INSTALL -includerebootpackages 1,3,4,5 -noicon -noreboot -nolicense -defaultupdate -schtask
O22 - Task: \TVT\TVSUUpdateTask_UserLogOn - C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe PendingTask
O23 - Service R2: "Realtek Bluetooth Device Manager Service" ;RtkServ - (RtkBtManServ) - C:\WINDOWS\RtkBtManServ.exe
O23 - Service R2: Adobe Acrobat Update Service - (AdobeARMservice) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service R2: Avast Antivirus - (avast! Antivirus) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe /runassvc
O23 - Service R2: Avast Tools - (avast! Tools) - C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe /runassvc
O23 - Service R2: AvastWscReporter - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe /runassvc /rpcserver
O23 - Service R2: Cisco AnyConnect Secure Mobility Agent - (vpnagent) - C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
O23 - Service R2: ETOKSRV - (eTSrv) - C:\Program Files\Aladdin\eToken\PKIClient\x64\eTSrv.exe
O23 - Service R2: Elan Service - (ETDService) - C:\Program Files\Elantech\ETDService.exe
O23 - Service R2: F5 Networks Component Installer - C:\Windows\SysWOW64\F5InstallerService.exe
O23 - Service R2: F5 Networks DNS Relay Proxy Service - (F5FltSrv) - C:\Windows\SysWOW64\F5FltSrv.exe
O23 - Service R2: F5 Networks Traffic Control Service - (F5TrafficSrv) - C:\Windows\SysWOW64\F5TrafficSrv.exe
O23 - Service R2: Intel(R) HD Graphics Control Panel Service - (igfxCUIService2.0.0.0) - C:\WINDOWS\system32\igfxCUIService.exe
O23 - Service R2: NVIDIA GeForce Experience Service - (GfExperienceService) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service R2: NVIDIA Network Service - (NvNetworkService) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service R2: PnkBstrA - C:\WINDOWS\system32\PnkBstrA.exe (file missing)
O23 - Service R2: Služba Aktualizace Google (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc
O23 - Service R2: TeamViewer 14 - (TeamViewer) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service R3: System Update - (SUService) - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service R3: aswbIDSAgent - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service S2: NVIDIA Display Driver Service - (nvsvc) - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service S2: NVIDIA Streamer Service - (NvStreamSvc) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service S3: Google Chrome Elevation Service - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.75\elevation_service.exe
O23 - Service S3: I.CA Maintenance Service - C:\Program Files (x86)\I.CA\I.CA Maintenance\ICAMaintenance.exe Files (x86)\I.CA\I.CA Maintenance\ICAMaintenance.exe -mode service
O23 - Service S3: Intel(R) Content Protection HECI Service - (cphs) - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service S3: Mozilla Maintenance Service - (MozillaMaintenance) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service S3: Služba Aktualizace Google (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc
O23 - Service S3: Steam Client Service - C:\Program Files (x86)\Common Files\Steam\SteamService.exe /RunAsService
--
End of file - Time spent: 57,4 sec. - 42104 bytes, CRC32: FFFFFFFF. Sign: ᳅썍