:OTL
DRV:[b]64bit:[/b] - [2017-01-23 16:34:14 | 000,992,488 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgsnx.sys -- (avgSnx)
DRV:[b]64bit:[/b] - [2017-01-23 16:02:17 | 000,555,152 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgSP.sys -- (avgSP)
DRV:[b]64bit:[/b] - [2017-01-23 16:02:17 | 000,311,472 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\avgVmm.sys -- (avgVmm)
DRV:[b]64bit:[/b] - [2017-01-23 16:02:17 | 000,163,512 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\avgStm.sys -- (avgStm)
DRV:[b]64bit:[/b] - [2017-01-23 16:02:17 | 000,127,072 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgMonFlt.sys -- (avgMonFlt)
DRV:[b]64bit:[/b] - [2017-01-23 16:02:17 | 000,075,664 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\avgRvrt.sys -- (avgRvrt)
DRV:[b]64bit:[/b] - [2017-01-23 16:02:17 | 000,039,288 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\avgHwid.sys -- (avgHwid)
DRV:[b]64bit:[/b] - [2017-01-23 16:02:16 | 000,101,624 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgRdr2.sys -- (avgRdr)
DRV:[b]64bit:[/b] - [2017-01-23 16:01:59 | 000,336,920 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgbloga.sys -- (avgblog)
DRV:[b]64bit:[/b] - [2017-01-23 16:01:59 | 000,311,592 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgbidsdrivera.sys -- (avgbidsdriver)
DRV:[b]64bit:[/b] - [2017-01-23 16:01:59 | 000,192,096 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgbidsha.sys -- (avgbidsh)
DRV:[b]64bit:[/b] - [2017-01-23 16:01:59 | 000,165,624 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgbdiska.sys -- (avgbdisk)
DRV:[b]64bit:[/b] - [2017-01-23 16:01:59 | 000,050,848 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgbuniva.sys -- (avgbuniv)
FF - prefs.js..browser.search.defaultenginename: "AVG Secure Search"
[2017-01-23 16:34:10 | 000,397,800 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\avgBoot.exe
[2017-01-23 16:02:46 | 000,000,000 | ---D | C] -- C:\Users\user\AppData\Roaming\AVG
[2017-01-23 16:02:23 | 000,992,488 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgsnx.sys.148518565401501
[2017-01-23 16:02:23 | 000,992,488 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgsnx.sys
[2017-01-23 16:02:23 | 000,555,152 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgSP.sys
[2017-01-23 16:02:23 | 000,336,920 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgbloga.sys
[2017-01-23 16:02:23 | 000,311,592 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgbidsdrivera.sys
[2017-01-23 16:02:23 | 000,311,472 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgVmm.sys
[2017-01-23 16:02:23 | 000,192,096 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgbidsha.sys
[2017-01-23 16:02:23 | 000,165,624 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgbdiska.sys
[2017-01-23 16:02:23 | 000,163,512 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgStm.sys
[2017-01-23 16:02:23 | 000,127,072 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgMonFlt.sys
[2017-01-23 16:02:23 | 000,101,624 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgRdr2.sys
[2017-01-23 16:02:23 | 000,075,664 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgRvrt.sys
[2017-01-23 16:02:23 | 000,050,848 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgbuniva.sys
[2017-01-23 16:02:23 | 000,039,288 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgHwid.sys
[2017-01-23 16:00:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVG
[2017-01-23 15:52:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Avg
:Services
:Reg
:Files
ipconfig /flushdns /c
C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe
C:\Program Files (x86)\AVG\Antivirus\libcef.dll
C:\Program Files (x86)\AVG\Antivirus\ffl2.dll
C:\Program Files (x86)\AVG\Antivirus\JsonRpcServer.dll
C:\AVG_Remover
C:\Windows\SysNative\drivers\avgsnx.sys
C:\Windows\SysNative\drivers\avgsnx.sys.148518565401501
C:\Windows\SysNative\drivers\avgSP.sys
C:\Windows\SysNative\avgBoot.exe
C:\Windows\SysNative\drivers\avgVmm.sys
C:\Windows\SysNative\drivers\avgStm.sys
C:\Windows\SysNative\drivers\avgMonFlt.sys
C:\Windows\SysNative\drivers\avgRvrt.sys
C:\Windows\SysNative\drivers\avgHwid.sys
C:\Windows\SysNative\drivers\avgRdr2.sys
C:\Windows\SysNative\drivers\avgbloga.sys
C:\Windows\SysNative\drivers\avgbidsdrivera.sys
C:\Windows\SysNative\drivers\avgbidsha.sys
C:\Windows\SysNative\drivers\avgbdiska.sys
C:\Windows\SysNative\drivers\avgbuniva.sys
C:\Windows\SysNative\TURegOpt.exe
C:\Users\user\AppData\Roaming\AVG
:Commands
[purity]
[emptytemp]
[resethosts]
[emptyjava]
[emptyflash]
[createrestorepoint]
[reboot]