Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zpomalený notebook - kontrola logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
mk23
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 10 čer 2021 10:50

Zpomalený notebook - kontrola logu

#1 Příspěvek od mk23 »

Zdravím!
Potýkám se se zpomaleným PC. Mám podezření na hacknutí PC...

Předem díky za kontrolu.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-06-2021
Ran by milak (administrator) on DESKTOP-CCKJQQ9 (LENOVO 20KS007QMC) (10-06-2021 11:46:57)
Running from C:\Users\milak\Downloads
Loaded Profiles: milak
Platform: Windows 10 Pro Version 20H2 19042.1052 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe <4>
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe <2>
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0358895.inf_amd64_23c61970b28ff6e9\B358358\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0358895.inf_amd64_23c61970b28ff6e9\B358358\atiesrxx.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\DiscoverySrv.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3>
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdwtxag.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\seccenter.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe
(Conexant Systems LLC -> Conexant Systems, Inc) C:\Program Files\CONEXANT\SAII\SmartAudio.exe
(Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\SAII\CxUtilSvc.exe
(Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe
(Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.) C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
(Flexera Software LLC -> Flexera) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
(geek software GmbH -> geek software GmbH) C:\Program Files\PDF24\pdf24.exe
(Ghisler Software GmbH -> Ghisler Software GmbH) C:\totalcmd\TOTALCMD64.EXE
(Gstarsoft Co.,Ltd. -> Gstarsoft Co.,Ltd) C:\Program Files\Gstarsoft\GstarCAD2021\gcad.exe
(Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\HPNetworkCommunicatorCom.exe
(Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\ScanToPCActivationApp.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_2e49f48165b8de10\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_2e49f48165b8de10\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_2e49f48165b8de10\igfxext.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_78ff17a5ea060c5f\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_c09cf47d735b4c90\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_c09cf47d735b4c90\IntelCpHeciSvc.exe
(Intel(R) Software Development Products -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_fafb1d329fdfe2c6\aesm_service.exe
(Intel(R) Trust Services -> Intel(R) Corporation) C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\SocketHeciServer.exe
(Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\tphkload.exe
(Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\FN11CD~1.INF\driver\shtctky.exe
(Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\FN11CD~1.INF\driver\tposd.exe
(Lenovo -> Lenovo Group Limited) C:\Windows\SysWOW64\EasyResume.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.7.19.0\LenovoVantageService.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(Lenovo -> Lenovo) C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe
(Lenovo -> Lenovo.) C:\Windows\System32\ApsInsSvc.exe
(Lenovo -> Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(LITE-ON TECHNOLOGY CORP. -> Lenovo) C:\Program Files\Lenovo\Lenovo Calliope USB Keyboard\SklFundKb.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowsstore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe
(Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(Opera Software AS -> Opera Software) C:\Users\milak\AppData\Local\Programs\Opera\76.0.4017.177\opera.exe <52>
(Opera Software AS -> Opera Software) C:\Users\milak\AppData\Local\Programs\Opera\76.0.4017.177\opera_crashreporter.exe
(Pierre GOUGELET -> XnView, hxxp://www.xnview.com) C:\Program Files (x86)\XnView\xnview.exe
(SweetLabs Inc. -> SweetLabs, Inc) C:\Users\milak\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
(WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
(WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe
(WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [PDF24] => C:\Program Files\PDF24\pdf24.exe [564928 2021-03-25] (geek software GmbH -> geek software GmbH)
HKLM\...\Run: [Lenovo Fundamental USB Keyboard] => C:\Program Files\Lenovo\Lenovo Calliope USB Keyboard\SklFundKb.exe [2643784 2016-08-15] (LITE-ON TECHNOLOGY CORP. -> Lenovo)
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Run: [OneDrive] => C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe [1972608 2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Run: [Spotify] => C:\Users\milak\AppData\Roaming\Spotify\Spotify.exe [23976064 2021-06-07] (Spotify AB -> Spotify Ltd) <==== ATTENTION
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Run: [HP OfficeJet Pro 7740 (NET)] => C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\ScanToPCActivationApp.exe [3770504 2018-04-06] (Hewlett Packard -> HP Inc.)
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Run: [Opera Browser Assistant] => C:\Users\milak\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4042960 2021-05-26] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\MountPoints2: {18c4b7f8-b595-11eb-9c9d-645d860fd3df} - "E:\LaunchU3.exe" -a
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodeMeter Control Center.lnk [2021-05-15]
ShortcutTarget: CodeMeter Control Center.lnk -> C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Network Server.lnk [2021-05-15]
ShortcutTarget: Network Server.lnk -> C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01ABBFFE-72BF-4951-A6F0-1DF2ECC6D624} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2020-08-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {05930763-1F50-4F1C-A108-29D466216953} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [62392 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
Task: {0BC6E656-02DB-4090-A73B-C365179A0404} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {0FA7EE8F-0C33-46BA-A405-559D5795EB90} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\f6494ded-f0e4-4092-b1fc-bd443ce71d83 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
Task: {1F926023-8626-4431-9C42-2B81D1192C15} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\5122548c-eca2-4b52-9d46-52e28a643d72 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {4AC82054-7231-4768-BB6A-86EE14729A62} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe [144456 2021-05-19] (Lenovo -> Lenovo Group Ltd.)
Task: {4CF7A3F4-BD7F-47A7-9320-B2C784147AFF} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService
Task: {6450E22B-0E55-45A0-8F76-79BEF6374174} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\5cb680ea-d575-4106-aa9c-cc9e38673f9f => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
Task: {68E7469F-411D-4B6C-9D36-897723FB0A8B} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\WINDOWS\SysWOW64\PowerMgrInst.exe [62152 2020-12-20] (Lenovo -> )
Task: {69D9DB9C-90D7-4B06-91D2-986360545312} - System32\Tasks\Opera scheduled Autoupdate 1621095956 => C:\Users\milak\AppData\Local\Programs\Opera\launcher.exe [2199760 2021-06-02] (Opera Software AS -> Opera Software)
Task: {6B262E10-EF94-42F2-A0FB-4C3312BA0CE8} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [69304 2020-08-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {7F42C566-855A-4813-B9B1-88C6EA66FCBE} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\a8be4f9f-93ff-48b3-b3e8-1b084714a0a3 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
Task: {84951009-54D8-4760-85E3-108C2452B4BC} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files (x86)\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [2819968 2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {8D61C012-3DAE-41CE-810A-1BFE74F5DFAA} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [147288 2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {8F3E1177-B8CD-4D6C-9E95-555F61C61378} - System32\Tasks\Microsoft\Windows\Conexant\AFA => C:\Program Files\CONEXANT\cAudioFilterAgent\SACpl.exe [1823232 2016-07-05] (Conexant Systems, Inc.) [File not signed]
Task: {99F54828-1C95-43EE-9773-E182F78D4C32} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23124336 2021-05-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {9E9883B2-D959-4BE7-B4CF-02B93546917E} - System32\Tasks\Opera scheduled assistant Autoupdate 1621095967 => C:\Users\milak\AppData\Local\Programs\Opera\launcher.exe [2199760 2021-06-02] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\milak\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {A7F09565-5841-4EEE-BEB6-76068294DC32} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\1.6.102\DADUpdater.exe
Task: {AE24767F-5FFE-4B28-B415-1B5FE2E68D1B} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [888232 2021-01-29] (Bitdefender SRL -> Bitdefender)
Task: {B6E67297-4E2A-4BAB-9C4A-63B62EDBF591} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {C08C6A9E-807C-4715-9600-9C1182406296} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\WINDOWS\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [112824 2021-04-20] (Lenovo -> Lenovo)
Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - \Microsoft\Windows\Speech\HeadsetButtonPress -> No File <==== ATTENTION
Task: {C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {CC5BAE6B-199E-4B30-A8D7-9F336AED6BD7} - System32\Tasks\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C => C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [954456 2021-05-07] (Bitdefender SRL -> Bitdefender)
Task: {D27E86E8-3797-4A7F-A003-B05CB62EDACF} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23124336 2021-05-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {D2974240-5CCB-46D7-BEF3-4BA58D135BEA} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
Task: {DC3C8129-1FB3-402E-B40B-8ACE8FDFA916} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\3.7.19.0\ScheduleEventAction.exe [23968 2021-05-17] (Lenovo -> Lenovo Group Ltd.)
Task: {E3CB47F6-AB73-40AC-AB5A-B82606164C95} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {E767C95B-F6DA-4ED9-BC0C-F107729F0015} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [147288 2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {EA7BB9EC-7FC4-44C9-AC7B-37103C33B736} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {FAE71552-FA20-4AE1-9059-CD740BF71760} - \App Explorer -> No File <==== ATTENTION
Task: {FE82ABD1-089C-43E6-8B13-A589254CBAE4} - System32\Tasks\Microsoft\Windows\Conexant\SA2 => C:\Program Files\CONEXANT\SAII\SACpl.exe [1832280 2017-06-08] (Conexant Systems, Inc. -> Conexant Systems, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{2e8f3d0f-93a4-424a-89a8-b6aacc87a35a}: [DhcpNameServer] 192.168.246.58
Tcpip\..\Interfaces\{ab3c6379-23fc-46be-b3de-7c0ed13acfa1}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{c684371d-acaf-4729-b423-7e017c3c0fc4}: [DhcpNameServer] 150.208.1.3
Tcpip\..\Interfaces\{e3e0c467-0668-4576-a122-02064ecf6d0e}: [DhcpNameServer] 10.10.2.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\milak\AppData\Local\Microsoft\Edge\User Data\Default [2021-06-09]
Edge HKLM-x32\...\Edge\Extension: [pdhdldaneekjpoaldekpgomomeabpnek]

FireFox:
========
FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi
FF Extension: (Bitdefender Wallet) - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi [2020-07-16] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/wallet/updates.json ]
FF HKLM\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi
FF Extension: (Bitdefender Anti-tracker) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi [2020-09-17] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ]
FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext
FF Extension: (Bitdefender Antispam Toolbar) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext [2021-05-11] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi
FF HKLM-x32\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-05-28] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl]
CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof]

Opera:
=======
OPR Profile: C:\Users\milak\AppData\Roaming\Opera Software\Opera Stable [2021-06-10]
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Session Restore: Opera Stable -> is enabled.
OPR Extension: (Rich Hints Agent) - C:\Users\milak\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-06-09]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
R2 ApsInsSvc; C:\WINDOWS\System32\ApsInsSvc.exe [150792 2018-04-22] (Lenovo -> Lenovo.)
R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [798640 2020-10-02] (Bitdefender SRL -> Bitdefender)
R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [798640 2020-10-02] (Bitdefender SRL -> Bitdefender)
R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2161256 2018-03-22] (Bitdefender SRL -> Bitdefender)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11279752 2021-05-21] (Microsoft Corporation -> Microsoft Corporation)
R2 CmWebAdmin.exe; C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe [12002208 2019-12-16] (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
R2 Dolby DAX2 API Service; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [189464 2020-06-02] (Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.)
S3 FileSyncHelper; C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\FileSyncHelper.exe [2103168 2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
R2 Lenovo Instant On; C:\WINDOWS\SysWOW64\EasyResume.exe [2351304 2020-12-20] (Lenovo -> Lenovo Group Limited)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.7.19.0\LenovoVantageService.exe [28576 2021-05-17] (Lenovo -> Lenovo Group Ltd.)
S2 LPlatSvc; C:\WINDOWS\System32\LPlatSvc.exe [898776 2021-03-01] (Lenovo -> Lenovo.)
S3 OneDrive Updater Service; C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\OneDriveUpdaterService.exe [2567552 2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
R2 PDF24; C:\Program Files\PDF24\pdf24.exe [564928 2021-03-25] (geek software GmbH -> geek software GmbH)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1358248 2021-01-29] (Bitdefender SRL -> Bitdefender)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5393304 2021-06-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182128 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R2 TPHKLOAD; C:\WINDOWS\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\TPHKLOAD.exe [465200 2020-12-28] (Lenovo -> Lenovo Group Limited)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [301144 2021-05-07] (Bitdefender SRL -> Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [798640 2020-10-02] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\NisSrv.exe [2644760 2021-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MsMpEng.exe [136656 2021-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [2718744 2021-02-26] (Bitdefender SRL -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [802976 2020-12-04] (Bitdefender SRL -> Bitdefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [22976 2020-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender)
R0 bdprivmon; C:\WINDOWS\System32\DRIVERS\bdprivmon.sys [46056 2020-01-17] (Bitdefender SRL -> © Bitdefender SRL)
R3 BHTPCRDR; C:\WINDOWS\System32\drivers\bhtpcrdr.sys [176032 2019-06-12] (BayHub Technology Inc. -> BayHubTech/O2Micro)
S3 CYUSB3; C:\WINDOWS\System32\Drivers\CYUSB3.sys [76520 2017-10-05] (Cypress Semiconductor Technology India Pvt Ltd. -> Cypress Semiconductor)
S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus2.sys [159800 2021-04-22] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R0 Gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [488592 2021-02-16] (Bitdefender SRL -> BitDefender S.R.L. Bucharest, ROMANIA)
R0 gzflt; C:\WINDOWS\System32\DRIVERS\gzflt.sys [195232 2020-09-03] (Bitdefender SRL -> BitDefender LLC)
R2 Ignis; C:\WINDOWS\system32\DRIVERS\ignis.sys [185312 2020-10-07] (Bitdefender SRL -> Bitdefender)
S3 pelmouse; C:\WINDOWS\System32\drivers\pelmouse.sys [26880 2016-07-11] (WDKTestCert idd,131110062695071623 -> TPMX Electronics Ltd.)
S3 pelusblf; C:\WINDOWS\System32\drivers\pelusblf.sys [33048 2016-07-11] (WDKTestCert idd,131110062695071623 -> )
S3 pelvendr; C:\WINDOWS\System32\drivers\pelvendr.sys [15032 2016-07-11] (WDKTestCert idd,131110062695071623 -> TPMX Electronics Ltd.)
S3 phidmice; C:\WINDOWS\System32\drivers\phidmice.sys [33048 2016-07-11] (WDKTestCert idd,131110062695071623 -> )
R1 PMDRVS; C:\WINDOWS\System32\drivers\pmdrvs.sys [37984 2021-03-01] (Lenovo -> Lenovo.)
S3 pmouself; C:\WINDOWS\System32\drivers\pmouself.sys [26880 2016-07-11] (WDKTestCert idd,131110062695071623 -> TPMX Electronics Ltd.)
S3 pvendrlf; C:\WINDOWS\System32\drivers\pvendrlf.sys [15032 2016-07-11] (WDKTestCert idd,131110062695071623 -> TPMX Electronics Ltd.)
S3 ssudcdf; C:\WINDOWS\System32\drivers\ssudcdf.sys [36608 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssuddmgr; C:\WINDOWS\System32\drivers\ssuddmgr.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ssudobex; C:\WINDOWS\System32\drivers\ssudobex.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [65080 2021-04-22] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated)
S3 ssudrmnet; C:\WINDOWS\System32\drivers\ssudrmnet.sys [70400 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.)
S3 ssudserd; C:\WINDOWS\System32\drivers\ssudserd.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ss_conn_usb_driver; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver.sys [26368 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.)
S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43376 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R0 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [641728 2021-02-26] (Bitdefender SRL -> Bitdefender)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49560 2021-06-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [425208 2021-06-06] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [76008 2021-06-06] (Microsoft Windows -> Microsoft Corporation)
R2 WIBUKEY; C:\WINDOWS\System32\DRIVERS\WibuKey64.sys [118200 2016-12-20] (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
S3 Wibukey2_64; C:\WINDOWS\system32\drivers\wibukey2_64.sys [42936 2016-12-20] (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-06-10 11:46 - 2021-06-10 11:49 - 000030044 _____ C:\Users\milak\Downloads\FRST.txt
2021-06-10 11:45 - 2021-06-10 11:47 - 000000000 ____D C:\FRST
2021-06-10 11:45 - 2021-06-10 11:45 - 002300416 _____ (Farbar) C:\Users\milak\Downloads\FRST64.exe
2021-06-10 10:13 - 2021-06-10 10:13 - 000087652 _____ C:\ProgramData\agent.update.1623312787.bdinstall.v2.bin
2021-06-10 10:12 - 2021-06-10 10:12 - 000784732 _____ C:\ProgramData\cl.1623312472.bdinstall.v2.bin
2021-06-10 10:12 - 2021-06-10 10:12 - 000103988 _____ C:\ProgramData\cl.kit.1623312437.bdinstall.v2.bin
2021-06-10 10:12 - 2021-06-10 10:12 - 000003420 _____ C:\WINDOWS\system32\Tasks\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C
2021-06-10 10:12 - 2021-06-10 10:12 - 000000000 ____D C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4
2021-06-10 10:11 - 2021-06-10 10:11 - 000000000 ____D C:\ProgramData\Gemma
2021-06-10 10:11 - 2021-06-10 10:11 - 000000000 ____D C:\ProgramData\Atc
2021-06-10 10:10 - 2021-06-10 11:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Security
2021-06-10 10:10 - 2021-06-10 10:10 - 000002436 _____ C:\Users\Public\Desktop\Bitdefender VPN.lnk
2021-06-10 10:10 - 2021-06-10 10:10 - 000002349 _____ C:\Users\Public\Desktop\Bitdefender.lnk
2021-06-10 10:10 - 2021-06-10 10:10 - 000000000 ____D C:\WINDOWS\system32\elambkup
2021-06-10 10:10 - 2021-06-10 10:10 - 000000000 ____D C:\ProgramData\BDLogging
2021-06-10 10:10 - 2020-12-18 02:33 - 000022976 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bdelam.sys
2021-06-10 10:09 - 2021-02-26 13:40 - 002718744 _____ (Bitdefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\atc.sys
2021-06-10 10:09 - 2021-02-16 14:31 - 000488592 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\gemma.sys
2021-06-10 10:09 - 2020-12-04 16:15 - 000802976 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bddci.sys
2021-06-10 10:09 - 2020-01-17 03:03 - 000046056 _____ (© Bitdefender SRL) C:\WINDOWS\system32\Drivers\bdprivmon.sys
2021-06-10 10:08 - 2021-06-10 10:25 - 000000000 ____D C:\ProgramData\Bitdefender
2021-06-10 10:08 - 2021-06-10 10:08 - 000000000 ____D C:\Users\milak\AppData\Roaming\Bitdefender
2021-06-10 10:08 - 2021-06-10 10:08 - 000000000 ____D C:\Program Files\Bitdefender
2021-06-10 10:08 - 2021-02-26 18:31 - 000641728 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\trufos.sys
2021-06-10 10:08 - 2020-10-07 11:30 - 000185312 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\ignis.sys
2021-06-10 10:08 - 2020-09-03 05:20 - 000195232 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys
2021-06-10 10:07 - 2021-06-10 10:08 - 000000000 ____D C:\Program Files\Common Files\Bitdefender
2021-06-10 10:07 - 2021-06-10 10:07 - 000003802 _____ C:\WINDOWS\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2021-06-10 10:05 - 2021-06-10 10:13 - 000000000 ____D C:\Program Files\Bitdefender Agent
2021-06-10 10:05 - 2021-06-10 10:05 - 000117208 _____ C:\ProgramData\agent.1623312303.bdinstall.v2.bin
2021-06-10 10:05 - 2021-06-10 10:05 - 000000000 ____D C:\ProgramData\Bitdefender Agent
2021-06-10 09:27 - 2021-06-10 09:27 - 004878625 _____ C:\Users\milak\Downloads\Bitdefender_Internet security.pdf
2021-06-10 09:01 - 2021-06-10 09:01 - 000000004 ____H C:\ProgramData\cm-lock
2021-06-10 08:38 - 2021-06-10 08:38 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-06-10 08:38 - 2021-06-10 08:38 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-06-10 08:38 - 2021-06-10 08:38 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2021-06-10 08:38 - 2021-06-10 08:38 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-06-10 08:38 - 2021-06-10 08:38 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2021-06-10 08:38 - 2021-06-10 08:38 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-06-10 08:38 - 2021-06-10 08:38 - 000451072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2021-06-10 08:38 - 2021-06-10 08:38 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-06-10 08:38 - 2021-06-10 08:38 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2021-06-10 08:38 - 2021-06-10 08:38 - 000011353 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-06-10 08:37 - 2021-06-10 08:37 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-06-10 08:37 - 2021-06-10 08:37 - 001823792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-06-10 08:37 - 2021-06-10 08:37 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-06-10 08:37 - 2021-06-10 08:37 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-06-10 08:37 - 2021-06-10 08:37 - 000097280 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-06-10 08:36 - 2021-06-10 08:36 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-06-10 08:36 - 2021-06-10 08:36 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-06-10 08:36 - 2021-06-10 08:36 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2021-06-09 21:42 - 2021-06-09 21:42 - 000000000 ____D C:\Users\milak\Desktop\GodMode.{ED7BA470-8E54-465E-825C-99712043E01C}
2021-06-09 20:56 - 2021-06-09 20:56 - 000000551 _____ C:\Users\milak\Downloads\dotaz no prověření PC.txt
2021-06-09 19:19 - 2021-06-09 19:19 - 000000000 ____D C:\Users\milak\AppData\LocalLow\Lenovo
2021-06-09 13:08 - 2021-06-09 13:08 - 000081339 _____ C:\Users\milak\Downloads\Seznam nemovitostí na LV č. 9659_ Nahlížení do katastru nemovitostí.pdf
2021-06-09 13:07 - 2021-06-09 13:07 - 000070856 _____ C:\Users\milak\Downloads\Informace o jednotce 908-47_ Nahlížení do katastru nemovitostí.pdf
2021-06-09 10:25 - 2021-06-09 10:25 - 000000000 ___HD C:\$WinREAgent
2021-06-09 07:46 - 2021-06-09 07:46 - 000000000 _____ C:\Users\milak\Documents\HPOJ7740_Fax_Port
2021-06-07 10:38 - 2021-06-07 10:39 - 000334016 _____ C:\Users\milak\Downloads\Instruction.pdf
2021-06-05 20:36 - 2021-06-05 20:36 - 000000000 ___HD C:\$Windows.~WS
2021-06-05 20:36 - 2021-06-05 20:36 - 000000000 ____D C:\$WINDOWS.~BT
2021-06-01 10:11 - 2021-06-01 10:11 - 000030328 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RtsUpx.sys
2021-05-26 15:23 - 2021-05-26 15:23 - 000000000 ____D C:\Users\milak\AppData\LocalLow\Temp
2021-05-26 13:51 - 2021-05-26 13:51 - 000180938 _____ C:\WINDOWS\oldcalcuninst.exe
2021-05-25 10:00 - 2021-05-25 10:00 - 000000000 ____D C:\Users\milak\AppData\Local\CrashDumps
2021-05-25 09:01 - 2021-05-25 09:01 - 000002518 _____ C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo App Explorer.lnk
2021-05-25 08:40 - 2021-06-07 19:54 - 000000000 ____D C:\WINDOWS\TempInst
2021-05-25 08:40 - 2021-04-15 01:16 - 000419800 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll
2021-05-25 08:40 - 2021-04-15 01:14 - 000038360 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel_Aux.sys
2021-05-25 08:40 - 2021-04-15 01:14 - 000037336 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_AMDASF_Aux.sys
2021-05-25 08:40 - 2021-04-15 01:13 - 000049624 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynRMIHID_Aux.sys
2021-05-23 20:19 - 2021-05-23 20:19 - 000002524 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002518 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002495 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002490 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002416 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002412 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2021-05-20 07:17 - 2021-05-20 07:26 - 000000000 ____D C:\Users\milak\Desktop\TAPAZA
2021-05-17 14:47 - 2021-05-17 14:47 - 000000000 ____D C:\Users\milak\AppData\Roaming\MAXON
2021-05-17 14:46 - 2021-06-10 11:45 - 000000068 ___SH C:\WINDOWS\system32\Drivers\wof.winsecurity
2021-05-17 14:46 - 2021-06-10 11:14 - 000000068 ___SH C:\WINDOWS\system32\Drivers\WUDFPf.winsecurity
2021-05-17 14:46 - 2021-05-17 14:46 - 000000053 ___SH C:\WINDOWS\system32\Drivers\wcifs.winsecurity
2021-05-17 14:46 - 2021-05-17 14:46 - 000000000 ____D C:\ProgramData\ARCHICAD
2021-05-17 11:42 - 2021-05-17 11:42 - 000002368 _____ C:\Users\Public\Desktop\HP OfficeJet Pro 7740 series.lnk
2021-05-17 11:42 - 2021-05-17 11:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2021-05-17 11:41 - 2021-06-09 07:46 - 000000000 ____D C:\Users\milak\AppData\Local\HP
2021-05-17 11:41 - 2021-05-17 11:41 - 000000000 ____D C:\ProgramData\HP
2021-05-17 11:41 - 2021-05-17 11:41 - 000000000 ____D C:\Program Files\HP
2021-05-17 11:41 - 2021-05-17 11:41 - 000000000 ____D C:\Program Files (x86)\HP
2021-05-17 10:53 - 2021-05-17 11:31 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2021-05-17 09:56 - 2021-05-17 09:56 - 000000000 ____D C:\Users\milak\AppData\Roaming\WinRAR
2021-05-17 09:27 - 2021-05-17 09:27 - 000000000 ____D C:\Users\milak\AppData\Roaming\TeamViewer
2021-05-16 17:39 - 2021-05-16 17:39 - 000000000 ____D C:\Users\milak\AppData\Local\PeerDistRepub
2021-05-16 11:51 - 2021-05-16 11:51 - 000000000 ____D C:\Users\milak\AppData\Local\OneDrive
2021-05-16 11:42 - 2021-06-09 16:44 - 000000000 ____D C:\Users\milak\AppData\Local\Spotify
2021-05-16 11:42 - 2021-05-16 11:42 - 000001857 _____ C:\Users\milak\Desktop\Spotify.lnk
2021-05-16 11:42 - 2021-05-16 11:42 - 000001843 _____ C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2021-05-16 11:41 - 2021-06-09 14:35 - 000000000 ____D C:\Users\milak\AppData\Roaming\Spotify
2021-05-16 10:49 - 2021-05-16 10:49 - 000000000 ____D C:\Users\milak\AppData\Local\ATI
2021-05-16 10:47 - 2021-05-16 10:47 - 000000000 ____D C:\Users\milak\AppData\Local\PDF24
2021-05-16 10:43 - 2021-05-16 10:43 - 000001714 _____ C:\Users\Public\Desktop\PDF24.lnk
2021-05-16 10:43 - 2021-05-16 10:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24
2021-05-16 10:42 - 2021-05-16 10:43 - 000000000 ____D C:\Program Files\PDF24
2021-05-16 10:27 - 2021-05-16 10:27 - 000000000 ____D C:\Users\milak\Documents\GstarCAD Cloud
2021-05-16 10:21 - 2021-05-16 10:21 - 000000000 ____D C:\Users\milak\AppData\Local\ElevatedDiagnostics
2021-05-16 09:48 - 2021-05-16 09:48 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-05-16 09:37 - 2021-06-10 08:19 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Šablony
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Poslední
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Okolní síť
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Dokumenty
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Data aplikací
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Šablony
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Plocha
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Dokumenty
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Data aplikací
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Documents and Settings
2021-05-16 02:14 - 2021-05-16 02:14 - 000022924 _____ C:\WINDOWS\system32\emptyregdb.dat
2021-05-16 02:13 - 2021-05-19 20:12 - 000000288 _____ C:\pefdata.dat
2021-05-16 02:13 - 2021-05-16 02:13 - 000000000 ____D C:\WINDOWS\CSC
2021-05-16 01:55 - 2021-05-16 01:55 - 000003160 _____ C:\WINDOWS\system32\Tasks\StartCN
2021-05-16 01:55 - 2021-05-16 01:55 - 000003080 _____ C:\WINDOWS\system32\Tasks\StartDVR
2021-05-16 01:55 - 2021-05-16 01:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2021-05-16 01:55 - 2021-04-20 02:20 - 005410488 _____ (Lenovo Group Limited) C:\WINDOWS\SysWOW64\PWMTR32V.dll
2021-05-16 01:55 - 2020-12-20 23:57 - 002351304 _____ (Lenovo Group Limited) C:\WINDOWS\SysWOW64\EasyResume.exe
2021-05-16 01:55 - 2020-12-20 23:57 - 000158920 _____ (Lenovo) C:\WINDOWS\SysWOW64\InstHelper.dll
2021-05-16 01:55 - 2020-12-20 23:57 - 000090312 _____ (Lenovo) C:\WINDOWS\SysWOW64\EventLogger.dll
2021-05-16 01:55 - 2020-12-20 23:57 - 000062152 _____ () C:\WINDOWS\SysWOW64\PowerMgrInst.exe
2021-05-16 01:54 - 2021-06-10 09:01 - 000000000 ____D C:\Intel
2021-05-16 01:54 - 2021-05-16 01:54 - 000000000 ____D C:\ProgramData\Validity
2021-05-16 01:54 - 2021-05-15 21:46 - 000000000 ____D C:\ProgramData\Package Cache
2021-05-16 01:53 - 2021-06-10 09:01 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2021-05-16 01:53 - 2021-05-16 02:01 - 000000000 ____D C:\Program Files\AMD
2021-05-16 01:53 - 2021-05-16 01:53 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2021-05-16 01:53 - 2021-05-16 01:53 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2021-05-16 01:52 - 2021-05-16 02:13 - 000000000 ____D C:\ProgramData\Intel
2021-05-16 01:52 - 2021-05-16 01:52 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2021-05-16 01:52 - 2021-05-16 01:52 - 000000000 ____D C:\WINDOWS\UCI
2021-05-16 01:52 - 2021-05-16 01:52 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2021-05-16 01:51 - 2021-05-16 01:51 - 000000102 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.64.bc
2021-05-16 01:51 - 2021-05-16 01:51 - 000000000 ____D C:\ProgramData\Dolby
2021-05-16 01:51 - 2021-05-16 01:51 - 000000000 ____D C:\Program Files\Dolby
2021-05-16 01:51 - 2021-05-15 18:06 - 000000000 ____D C:\ProgramData\Conexant
2021-05-16 01:51 - 2021-03-14 22:27 - 000107936 _____ (Lenovo Group Ltd.) C:\WINDOWS\system32\ImController.CoInstaller.dll
2021-05-16 01:51 - 2017-09-07 18:59 - 000004664 _____ C:\WINDOWS\system32\Drivers\CxSfPt.dat
2021-05-16 01:51 - 2016-12-07 00:55 - 000416576 _____ (Conexant Systems, Inc.) C:\WINDOWS\SysWOW64\SASrv.exe
2021-05-16 01:51 - 2016-12-07 00:55 - 000416576 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\SASrv.exe
2021-05-16 01:51 - 2015-09-17 01:10 - 000225624 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CxAudMsg64.exe
2021-05-16 01:50 - 2021-06-05 13:56 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-05-16 01:50 - 2021-05-21 21:05 - 000018960 _____ (Logitech, Inc.) C:\WINDOWS\system32\Drivers\LNonPnP.sys
2021-05-16 01:50 - 2021-05-17 15:00 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2021-05-16 01:50 - 2021-05-16 01:51 - 000000000 ____D C:\ProgramData\UIU
2021-05-16 01:50 - 2021-05-16 01:51 - 000000000 ____D C:\Program Files\CONEXANT
2021-05-16 01:50 - 2021-05-16 01:50 - 001705080 _____ (TODO: <Company name>) C:\WINDOWS\SysWOW64\RebootPrompt.exe
2021-05-16 01:50 - 2021-05-15 17:55 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-05-16 01:50 - 2021-05-15 17:55 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-05-16 01:49 - 2021-06-10 10:31 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-05-16 01:49 - 2021-06-10 09:01 - 000008192 ___SH C:\DumpStack.log.tmp
2021-05-16 01:49 - 2021-06-10 09:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-05-16 01:49 - 2021-06-10 08:52 - 000444400 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-05-16 01:49 - 2021-06-09 13:47 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-05-16 01:49 - 2021-05-16 01:49 - 000000000 ____D C:\WINDOWS\system32\AMD
2021-05-16 01:49 - 2021-05-16 01:49 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-05-15 22:07 - 2021-06-09 16:38 - 000000000 ____D C:\Users\milak\AppData\Local\GRAPHISOFT
2021-05-15 22:07 - 2021-05-15 22:24 - 000000000 ____D C:\Users\milak\AppData\Roaming\GRAPHISOFT
2021-05-15 22:05 - 2021-05-15 22:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\groupname
2021-05-15 21:47 - 2021-06-09 16:38 - 000000000 ____D C:\Users\milak\GRAPHISOFT
2021-05-15 21:44 - 2021-05-15 22:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeMeter
2021-05-15 21:44 - 2021-05-15 22:36 - 000000000 ____D C:\Program Files (x86)\CodeMeter
2021-05-15 21:44 - 2021-05-15 22:35 - 000000000 ____D C:\ProgramData\CodeMeter
2021-05-15 21:44 - 2021-05-15 21:44 - 000000000 ____D C:\Program Files\CodeMeter
2021-05-15 21:43 - 2021-05-15 21:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WibuKey
2021-05-15 21:43 - 2021-05-15 21:43 - 000000000 ____D C:\Program Files\WIBU-SYSTEMS
2021-05-15 21:43 - 2021-05-15 21:43 - 000000000 ____D C:\Program Files (x86)\WIBU-SYSTEMS
2021-05-15 21:43 - 2021-05-15 21:43 - 000000000 ____D C:\Program Files (x86)\WIBUKEY
2021-05-15 21:43 - 2016-12-22 07:40 - 000606232 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\wibuKJni64.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000501272 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\wibuKJni.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000433112 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkExt64.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000366552 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkExt32.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000222688 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000192480 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000022528 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.lfr
2021-05-15 21:43 - 2016-12-22 07:40 - 000022528 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.les
2021-05-15 21:43 - 2016-12-22 07:40 - 000022528 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.lde
2021-05-15 21:43 - 2016-12-22 07:40 - 000022016 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lfr
2021-05-15 21:43 - 2016-12-22 07:40 - 000022016 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.les
2021-05-15 21:43 - 2016-12-22 07:40 - 000022016 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lde
2021-05-15 21:43 - 2016-12-22 07:40 - 000022016 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.lit
2021-05-15 21:43 - 2016-12-22 07:40 - 000021504 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lit
2021-05-15 21:43 - 2016-12-22 07:40 - 000021504 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lbr
2021-05-15 21:43 - 2016-12-22 07:40 - 000020992 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.ljp
2021-05-15 21:43 - 2016-12-22 07:40 - 000020992 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.lhu
2021-05-15 21:43 - 2016-12-22 07:40 - 000020480 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.ljp
2021-05-15 21:43 - 2016-12-22 07:40 - 000020480 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lhu
2021-05-15 21:43 - 2016-12-22 07:40 - 000015360 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.lcn
2021-05-15 21:43 - 2016-12-22 07:40 - 000014848 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lcn
2021-05-15 21:43 - 2016-12-20 17:29 - 000118200 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\Drivers\WibuKey64.sys
2021-05-15 21:42 - 2021-05-17 10:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GRAPHISOFT
2021-05-15 21:42 - 2021-05-15 21:42 - 000000000 ____D C:\Users\milak\Documents\BIMx
2021-05-15 21:28 - 2021-05-17 10:13 - 000000000 ____D C:\Program Files\GRAPHISOFT
2021-05-15 21:26 - 2021-05-17 10:22 - 000000000 ____D C:\ProgramData\Install.GS
2021-05-15 21:25 - 2021-05-15 21:25 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2021-05-15 20:01 - 2021-05-29 19:40 - 000001013 _____ C:\WINDOWS\system32\Debug.txt
2021-05-15 20:01 - 2021-05-15 20:01 - 000000000 ____D C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo Mouse Suite
2021-05-15 19:20 - 2021-06-09 07:27 - 000000000 ____D C:\Users\milak\AppData\Roaming\XnView
2021-05-15 19:04 - 2021-05-15 19:04 - 000000000 ____D C:\ProgramData\FLEXnet
2021-05-15 18:53 - 2021-05-15 18:53 - 000000000 ____D C:\Users\milak\Documents\Vlastní šablony Office
2021-05-15 18:52 - 2021-06-04 10:50 - 000003206 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2021-05-15 18:52 - 2021-06-04 10:50 - 000002179 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-05-15 18:52 - 2021-05-15 18:52 - 000000000 ___RD C:\Users\Default\OneDrive
2021-05-15 18:51 - 2021-06-09 13:46 - 000000000 ____D C:\Program Files (x86)\Microsoft OneDrive
2021-05-15 18:51 - 2021-05-15 19:04 - 000000000 ____D C:\ProgramData\glmclient
2021-05-15 18:51 - 2021-05-15 18:51 - 000000000 ____D C:\Users\milak\AppData\Local\Gstarsoft
2021-05-15 18:51 - 2021-05-15 18:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GstarCAD 2021
2021-05-15 18:51 - 2021-05-15 18:51 - 000000000 ____D C:\Program Files\Common Files\Macrovision Shared
2021-05-15 18:50 - 2021-05-15 18:50 - 000000000 ____D C:\Users\milak\AppData\Roaming\Gstarsoft
2021-05-15 18:50 - 2021-05-15 18:50 - 000000000 ____D C:\Program Files\Common Files\Gstarsoft
2021-05-15 18:49 - 2021-05-19 12:48 - 000000000 ____D C:\Users\milak\AppData\Local\GHISLER
2021-05-15 18:49 - 2021-05-15 18:49 - 000000000 ____D C:\Program Files\Gstarsoft
2021-05-15 18:48 - 2021-05-15 18:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnView
2021-05-15 18:48 - 2021-05-15 18:48 - 000000000 ____D C:\Program Files (x86)\XnView
2021-05-15 18:46 - 2021-05-19 11:50 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-05-15 18:46 - 2021-05-15 18:47 - 000000000 ____D C:\Users\milak\AppData\LocalLow\Adobe
2021-05-15 18:46 - 2021-05-15 18:46 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2021-05-15 18:45 - 2021-06-09 13:46 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-05-15 18:44 - 2021-05-15 18:44 - 000000000 ____D C:\Program Files (x86)\Adobe
2021-05-15 18:42 - 2021-05-16 09:39 - 000000000 ____D C:\ProgramData\Adobe
2021-05-15 18:42 - 2021-05-15 18:42 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2021-05-15 18:41 - 2021-05-19 11:46 - 000000000 ____D C:\Users\milak\AppData\Local\Adobe
2021-05-15 18:35 - 2021-05-29 16:34 - 000000000 ____D C:\Program Files\Microsoft Office
2021-05-15 18:35 - 2021-05-15 18:35 - 000000000 ____D C:\Program Files\Microsoft Office 15
2021-05-15 18:32 - 2021-05-15 18:32 - 000000000 ____D C:\Users\milak\AppData\Roaming\GHISLER
2021-05-15 18:32 - 2021-05-15 18:32 - 000000000 ____D C:\totalcmd
2021-05-15 18:31 - 2021-05-15 18:31 - 000000000 ____D C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-05-15 18:31 - 2021-05-15 18:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-05-15 18:31 - 2021-05-15 18:31 - 000000000 ____D C:\Program Files\WinRAR
2021-05-15 18:26 - 2021-06-02 19:20 - 000004206 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1621095956
2021-05-15 18:26 - 2021-06-02 19:20 - 000001416 _____ C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2021-05-15 18:26 - 2021-05-29 18:26 - 000004460 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1621095967
2021-05-15 18:26 - 2021-05-15 18:26 - 000000000 ____D C:\Users\milak\AppData\Local\Opera Software
2021-05-15 18:24 - 2021-05-15 18:24 - 000000000 ____D C:\Users\milak\AppData\Roaming\Opera Software
2021-05-15 18:21 - 2021-05-15 18:41 - 000000000 ____D C:\Users\milak\AppData\Local\Comms
2021-05-15 18:11 - 2021-05-15 18:11 - 000000000 ____D C:\Users\milak\AppData\Local\cache
2021-05-15 18:06 - 2021-06-10 09:02 - 000000000 ___RD C:\Users\milak\OneDrive
2021-05-15 18:06 - 2021-05-27 10:40 - 000013934 _____ C:\Users\milak\Documents\Prazdniny 2021_M.xlsx
2021-05-15 18:06 - 2021-05-15 18:10 - 000001622 _____ C:\Users\milak\Desktop\FRACTAL - SERVER.lnk
2021-05-15 18:06 - 2021-05-15 18:06 - 000000000 ___HD C:\OneDriveTemp
2021-05-15 18:06 - 2021-05-15 18:06 - 000000000 ____D C:\Users\milak\AppData\Local\Conexant
2021-05-15 18:06 - 2021-05-15 18:06 - 000000000 ____D C:\ProgramData\Propagation
2021-05-15 18:05 - 2021-05-24 21:31 - 000000000 ____D C:\Users\milak\AppData\Local\PlaceholderTileLogoFolder
2021-05-15 18:05 - 2021-05-17 15:00 - 000000000 ____D C:\Users\milak\AppData\Local\Lenovo
2021-05-15 18:05 - 2021-05-15 18:05 - 000000000 ____D C:\Users\Public\Lenovo App Explorer
2021-05-15 18:05 - 2021-05-15 18:05 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-05-15 18:04 - 2021-05-15 18:11 - 000000000 ____D C:\Users\milak\AppData\Local\AMD
2021-05-15 18:03 - 2021-05-15 18:03 - 000000000 ____D C:\Users\milak\AppData\Local\Publishers
2021-05-15 18:02 - 2021-06-10 09:01 - 000000000 __SHD C:\Users\milak\IntelGraphicsProfiles
2021-05-15 18:02 - 2021-06-07 20:25 - 000000000 ____D C:\Users\milak\AppData\Local\Packages
2021-05-15 18:02 - 2021-06-03 07:50 - 000000000 ____D C:\Users\milak\AppData\Local\D3DSCache
2021-05-15 18:02 - 2021-05-15 20:01 - 000000000 ____D C:\Users\milak\AppData\Local\ConnectedDevicesPlatform
2021-05-15 18:02 - 2021-05-15 18:47 - 000000000 ____D C:\Users\milak\AppData\Roaming\Adobe
2021-05-15 18:02 - 2021-05-15 18:02 - 000000000 ___RD C:\Users\milak\3D Objects
2021-05-15 18:02 - 2021-05-15 18:02 - 000000000 ____D C:\Users\milak\AppData\LocalLow\Intel
2021-05-15 18:02 - 2021-05-15 18:02 - 000000000 ____D C:\Users\milak\AppData\Local\VirtualStore
2021-05-15 17:52 - 2021-05-17 10:46 - 000000000 ____D C:\ProgramData\Packages
2021-05-15 17:51 - 2021-06-10 08:13 - 000000000 ____D C:\Users\milak\AppData\Local\Host App Service
2021-05-15 17:51 - 2021-05-15 21:47 - 000000000 ____D C:\Users\milak
2021-05-15 17:51 - 2021-05-15 17:51 - 000000020 ___SH C:\Users\milak\ntuser.ini
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Šablony
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Soubory cookie
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Poslední
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Okolní tiskárny
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Okolní síť
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Nabídka Start
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Dokumenty
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Documents\Obrázky
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Documents\Hudba
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Documents\Filmy
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Data aplikací
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\AppData\Local\Data aplikací
2021-05-15 17:49 - 2021-05-25 10:18 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2021-05-15 17:31 - 2021-05-17 15:01 - 000000000 ____D C:\ProgramData\Lenovo
2021-05-15 17:31 - 2015-05-12 18:57 - 000043256 _____ C:\WINDOWS\system32\oemlogo.bmp
2021-05-15 17:30 - 2021-06-06 10:13 - 000000000 ____D C:\WINDOWS\Panther
2021-05-15 17:26 - 2021-06-02 12:52 - 000002765 _____ C:\WINDOWS\system32\InstallUtil.InstallLog
2021-05-15 17:25 - 2021-05-15 17:25 - 000000000 ____D C:\ProgramData\ssh
2021-05-15 17:17 - 2021-06-10 09:05 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-05-15 17:17 - 2021-05-15 17:17 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-05-15 17:17 - 2021-05-15 17:17 - 000700928 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-05-15 17:17 - 2021-05-15 17:17 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-05-15 17:17 - 2021-05-15 17:17 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-05-15 17:17 - 2021-05-15 17:17 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-05-15 17:17 - 2021-05-15 17:17 - 000480256 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-05-15 17:17 - 2021-05-15 17:17 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000153600 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-05-15 17:17 - 2021-05-15 17:17 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-05-15 17:17 - 2021-05-15 17:17 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-05-15 17:17 - 2021-05-15 17:17 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-05-15 17:17 - 2021-05-15 17:17 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-05-15 17:16 - 2021-05-15 17:16 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-05-15 17:16 - 2021-05-15 17:16 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-05-15 17:16 - 2021-05-15 17:16 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-05-15 17:15 - 2021-05-15 17:15 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-05-15 17:15 - 2021-05-15 17:15 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-05-15 17:15 - 2021-05-15 17:15 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-05-15 17:15 - 2021-05-15 17:15 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-05-15 17:15 - 2021-05-15 17:15 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-05-15 17:15 - 2021-05-15 17:15 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-05-15 17:14 - 2021-05-15 17:14 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-05-15 17:14 - 2021-05-15 17:14 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-05-15 17:14 - 2021-05-15 17:14 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-05-15 17:14 - 2021-05-15 17:14 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-05-15 17:14 - 2021-05-15 17:14 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-05-15 17:03 - 2021-05-15 17:03 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2021-05-15 17:03 - 2021-05-15 17:03 - 000000000 ____D C:\Program Files\Reference Assemblies
2021-05-15 17:03 - 2021-05-15 17:03 - 000000000 ____D C:\Program Files\MSBuild
2021-05-15 17:03 - 2021-05-15 17:03 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2021-05-15 17:03 - 2021-05-15 17:03 - 000000000 ____D C:\Program Files (x86)\MSBuild
2021-05-15 16:58 - 2021-05-15 16:58 - 000000000 ____D C:\WINDOWS\system32\Samsung
2021-05-15 16:58 - 2021-05-15 16:58 - 000000000 ____D C:\WINDOWS\Firmware
2021-05-15 16:57 - 2021-05-25 09:00 - 000000000 ____D C:\Program Files\Lenovo
2021-05-15 16:57 - 2021-05-15 16:57 - 000000000 ____D C:\WINDOWS\SysWOW64\Lenovo
2021-05-15 16:57 - 2021-05-15 16:57 - 000000000 ____D C:\WINDOWS\system32\Lenovo
2021-05-15 16:56 - 2021-05-15 16:56 - 000000000 ____D C:\WINDOWS\Lenovo
2021-05-15 16:54 - 2021-05-15 16:54 - 000000000 ____D C:\Program Files\Synaptics
2021-05-15 16:50 - 2021-05-15 16:50 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-05-15 15:24 - 2021-05-15 17:31 - 000000000 ___HD C:\$SysReset
2021-05-13 08:21 - 2021-04-22 06:13 - 000065080 _____ (QUALCOMM Incorporated) C:\WINDOWS\system32\Drivers\ssudqcfilter.sys
2021-05-13 08:21 - 2021-04-22 06:12 - 000159800 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudbus2.sys

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-06-10 11:46 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2021-06-10 11:41 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-06-10 10:11 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-06-10 09:05 - 2019-12-07 16:43 - 000717980 _____ C:\WINDOWS\system32\perfh005.dat
2021-06-10 09:05 - 2019-12-07 16:43 - 000145122 _____ C:\WINDOWS\system32\perfc005.dat
2021-06-10 09:01 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-06-10 09:01 - 2019-12-07 11:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2021-06-10 08:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-06-10 08:58 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-06-10 08:51 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-06-10 08:45 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2021-06-10 08:45 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-06-09 06:37 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-06-09 06:33 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-05-29 16:34 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-05-17 14:59 - 2018-09-14 06:28 - 000000000 ____D C:\Program Files (x86)\Lenovo
2021-05-16 09:30 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-05-16 02:15 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Registration
2021-05-16 02:15 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2021-05-16 02:14 - 2019-12-07 11:14 - 000000000 __RSD C:\WINDOWS\Media
2021-05-16 02:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-05-16 02:11 - 2019-12-07 16:45 - 000000000 ____D C:\WINDOWS\OCR
2021-05-16 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-05-16 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DriverState
2021-05-16 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Resources
2021-05-16 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Help
2021-05-16 02:11 - 2018-09-14 07:09 - 000000000 ____D C:\WINDOWS\Favicon_ICON
2021-05-16 02:11 - 2018-09-14 06:28 - 000000000 ____D C:\WINDOWS\system32\Drivers\Lenovo
2021-05-16 02:04 - 2018-09-14 06:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conexant
2021-05-16 02:02 - 2018-09-14 06:40 - 000000000 ____D C:\Program Files (x86)\AMD
2021-05-16 02:02 - 2018-09-14 06:39 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2021-05-16 02:02 - 2018-09-14 06:37 - 000000000 ____D C:\Program Files\Intel
2021-05-16 02:02 - 2018-09-14 06:37 - 000000000 ____D C:\Program Files (x86)\Intel
2021-05-16 02:01 - 2018-09-14 06:41 - 000000000 ____D C:\Users\Default\AppData\Local\Host App Service
2021-05-16 01:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-05-16 01:53 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-05-15 20:33 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-05-15 18:05 - 2018-04-17 21:03 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-05-15 17:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-05-15 17:29 - 2019-12-07 11:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-05-15 17:25 - 2019-12-07 16:47 - 000000000 ___SD C:\WINDOWS\system32\AppV
2021-05-15 17:25 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-05-15 17:25 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-05-15 17:25 - 2019-12-07 16:44 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-05-15 17:23 - 2019-12-07 16:47 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-05-15 17:23 - 2019-12-07 16:47 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-05-15 17:16 - 2018-09-14 06:52 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2021-05-15 17:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2021-05-15 17:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MUI
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\system32\winrm
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\system32\WCN
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\system32\slmgr
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-06-2021
Ran by milak (10-06-2021 11:56:18)
Running from C:\Users\milak\Downloads
Windows 10 Pro Version 20H2 19042.1052 (X64) (2021-05-15 15:16:14)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3172340535-1444666044-2906063667-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3172340535-1444666044-2906063667-503 - Limited - Disabled)
Guest (S-1-5-21-3172340535-1444666044-2906063667-501 - Limited - Disabled)
milak (S-1-5-21-3172340535-1444666044-2906063667-1001 - Administrator - Enabled) => C:\Users\milak
WDAGUtilityAccount (S-1-5-21-3172340535-1444666044-2906063667-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Bitdefender Antivirus (Enabled - Up to date) {BAD274F4-FA00-8560-1CDE-6C830442BEFA}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Bitdefender Firewall (Enabled) {82E9F5D1-B06F-8438-3781-C5B6FA91F981}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 21.005.20048 - Adobe Systems Incorporated)
AMD Settings (HKLM\...\WUCCCApp) (Version: 2020.0825.2346.42803 - Advanced Micro Devices, Inc.)
ARCHICAD 22 R1 CZE (HKLM\...\ARCHICAD 22.0 CZE FULL R1 1) (Version: 22.0.0.7000 - GRAPHISOFT SE)
ARCHICAD 23 R1 CZE (HKLM\...\ARCHICAD 23.0 CZE FULL R1 1) (Version: 23.0.0.3003 - GRAPHISOFT SE)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 25.0.1.177 - Bitdefender)
Bitdefender Internet Security (HKLM\...\Bitdefender) (Version: 25.0.21.78 - Bitdefender)
CodeMeter Runtime Kit v7.00 (HKLM\...\{9054FBAC-C4FD-4FC2-B3F2-E4E41E49A20B}) (Version: 7.00.3918.500 - WIBU-SYSTEMS AG)
Dolby Audio X2 Windows API SDK (HKLM\...\{F994125B-7BF5-4A38-A569-82833CEB24DC}) (Version: 0.8.4.83 - Dolby Laboratories, Inc.) Hidden
Dolby Audio X2 Windows API SDK (HKLM\...\{FA0735B6-9E18-437A-A1CD-9152650FC52B}) (Version: 0.8.8.90 - Dolby Laboratories, Inc.) Hidden
GRAPHISOFT BIMx Desktop Viewer (HKLM\...\BIMx Viewer 23.0 GEN FULL R1 1) (Version: 2019.2.2328.0 - GRAPHISOFT SE)
GRAPHISOFT License Manager Tool (HKLM\...\License Manager Tool 20.0 INT FULL R1 1) (Version: 20.0.0.4800 - GRAPHISOFT SE)
GstarCAD 2021 - Česky (HKLM-x32\...\GstarCAD 2021_cs_cz) (Version: - Gstarsoft Co.,Ltd.)
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{3DAC4F8C-80E6-4204-8A58-747FA4CBAA03}) (Version: 16.0.246 - Intel Corporation)
Intel(R) Chipset Device Software (HKLM-x32\...\{44ded3eb-1686-46a6-9770-fd79096c29f7}) (Version: 10.1.1.45 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1067 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.48.197.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{66129f84-d3f0-4884-ac54-369ae6fc2cf6}) (Version: 1.48.197.0 - Intel Corporation) Hidden
Lenovo App Explorer (HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Host App Service) (Version: 0.273.4.227 - SweetLabs for Lenovo) <==== ATTENTION
Lenovo Calliope USB Keyboard (HKLM\...\{520AA862-0064-4B41-B777-1FAFC1AD1293}) (Version: 1.08 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 3.7.19.0 - Lenovo Group Ltd.)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 91.0.864.41 - Microsoft Corporation)
Microsoft Office 2016 pro profesionály - cs-cz (HKLM\...\ProfessionalRetail - cs-cz) (Version: 16.0.14026.20246 - Microsoft Corporation)
Microsoft OneDrive (HKLM-x32\...\OneDriveSetup.exe) (Version: 21.099.0516.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{A0E1B43D-5F4A-46AF-9925-ABA3423325DC}) (Version: 2.77.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27033 (HKLM-x32\...\{cc3a7c63-31fb-4129-9024-63ebefd86a95}) (Version: 14.16.27033.0 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14026.20246 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14026.20246 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.14026.20246 - Microsoft Corporation) Hidden
Old Calculator for Windows 10 (HKLM-x32\...\OldCalcForWin10) (Version: 1.1 - hxxp://winaero.com)
Opera Stable 76.0.4017.177 (HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Opera 76.0.4017.177) (Version: 76.0.4017.177 - Opera Software)
PDF24 Creator 10.0.12 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: 10.0.12 - PDF24.org)
Spotify (HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Spotify) (Version: 1.1.60.672.g6ad9c215 - Spotify AB)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52 - Ghisler Software GmbH)
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
WibuKey Setup (WibuKey Remove) (HKLM\...\{00060000-0000-1004-8002-0000C06B5161}) (Version: Version 6.40 of 2016-Dec-22 (Build 2402) (Setup) - WIBU-SYSTEMS AG)
WinRAR 6.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH)
XnView 2.50 (HKLM-x32\...\XnView_is1) (Version: 2.50 - Gougelet Pierre-e)
Základní software zařízení HP OfficeJet Pro 7740 series (HKLM\...\{BEF54360-8158-4656-8EAA-29345AC35A80}) (Version: 40.12.1161.1896 - HP Inc.)

Packages:
=========
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2105.16.0_x64__k1h2ywk1493x8 [2021-06-08] (LENOVO INC.)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.5310.0_x64__8wekyb3d8bbwe [2021-06-06] (Microsoft Studios) [MS Ad]
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\microsoft.mpeg2videoextension_1.0.22661.0_x64__8wekyb3d8bbwe [2021-05-15] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2020-08-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2021-05-15 18:48 - 2021-04-28 13:48 - 000237568 _____ () [File not signed] C:\Program Files (x86)\XnView\language\xnviewcs.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 003567616 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2021-02-02 03:45 - 2021-02-02 03:45 - 000421376 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\cctdes.dll
2021-02-02 03:45 - 2021-02-02 03:45 - 004332032 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\DWF.hdi
2021-02-02 03:45 - 2021-02-02 03:45 - 000085504 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\DXBU.hdi
2021-02-02 03:45 - 2021-02-02 03:45 - 000128000 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\EPSU.hdi
2021-02-02 03:45 - 2021-02-02 03:45 - 000101376 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\GcadPlotorDriver.dll
2021-02-02 03:45 - 2021-02-02 03:45 - 000061952 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\GeoAlgo.dll
2021-02-02 03:45 - 2021-02-02 03:45 - 000129024 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\HDIDriver.dll
2021-02-02 03:45 - 2021-02-02 03:45 - 000169472 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\HPGL2U.hdi
2021-02-02 03:45 - 2021-02-02 03:45 - 000202240 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\HPGLU.hdi
2021-02-02 03:45 - 2021-02-02 03:45 - 000150016 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\JwCADU.hdi
2021-02-02 03:45 - 2021-02-02 03:45 - 000153088 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\PDF-HC.hdi
2021-02-02 03:45 - 2021-02-02 03:45 - 000163328 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\PDF-SH.HDI
2021-02-02 03:45 - 2021-02-02 03:45 - 000105472 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\Raster32U.hdi
2021-02-02 03:45 - 2021-02-02 03:45 - 000070144 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\SuperPVHDI.hdi
2021-02-02 03:45 - 2021-02-02 03:45 - 000094720 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\Drivers\SystemHDI.hdi
2021-02-02 03:45 - 2021-02-02 03:45 - 000021504 _____ () [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\mCtrl.dll
2020-08-26 08:36 - 2020-08-26 08:36 - 001562624 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files\AMD\WVR\OpenVR\bin\win64\driver_amdwvr.dll
2021-05-16 01:51 - 2018-03-13 19:21 - 001173504 _____ (Conexant Systems, Inc.) [File not signed] C:\Program Files\Conexant\SAII\CxHDAudioAPI.dll
2021-05-17 10:13 - 2019-08-29 18:44 - 000076288 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\AlgMath.dll
2021-05-17 10:16 - 2019-08-29 18:49 - 001757184 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\GDL.dll
2021-05-17 10:16 - 2019-08-29 18:45 - 002967040 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\Geometry.dll
2021-05-17 10:16 - 2019-08-29 18:46 - 000916992 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\Graphix.dll
2021-05-17 10:13 - 2019-08-29 18:47 - 000039936 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\GSProfiler.dll
2021-05-17 10:16 - 2019-08-29 18:44 - 001792512 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\GSRoot.dll
2021-05-17 10:18 - 2019-08-29 20:11 - 003456512 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\GSShellX64.dll
2021-05-17 10:13 - 2019-08-29 20:13 - 000026112 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\GSTestEnvironment.dll
2021-05-17 10:16 - 2019-08-29 18:45 - 000612864 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\GSUtils.dll
2021-05-17 10:16 - 2019-08-29 18:44 - 002523648 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\GSXML.dll
2021-05-17 10:16 - 2019-08-29 18:45 - 000293376 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\GSXMLUtils.dll
2021-05-17 10:13 - 2019-08-29 18:44 - 000076288 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\GSZLib.dll
2021-05-17 10:13 - 2019-08-29 18:46 - 000061952 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\GX.dll
2021-05-17 10:13 - 2019-08-29 18:46 - 000060416 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\GXImageBase.dll
2021-05-17 10:16 - 2019-08-29 18:44 - 000693248 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\InputOutput.dll
2021-05-17 10:16 - 2019-08-29 18:48 - 000609792 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\JACK.dll
2021-05-17 10:13 - 2019-08-29 18:46 - 000135168 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\JSON.dll
2021-05-17 10:13 - 2019-08-29 18:47 - 000038400 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\JSONConversion.dll
2021-05-17 10:13 - 2019-08-29 18:45 - 000076800 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\Measure.dll
2021-05-17 10:13 - 2019-08-29 18:44 - 000154624 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\Network.dll
2021-05-17 10:16 - 2019-08-29 18:45 - 003585024 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\ObjectDatabase.dll
2021-05-17 10:13 - 2019-08-29 18:48 - 000108032 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\ProjectFile.dll
2021-05-17 10:16 - 2019-08-29 19:11 - 000323072 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\ProjectInfo.dll
2021-05-17 10:16 - 2019-08-29 19:10 - 000494592 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\ProjectIO.dll
2021-05-17 10:16 - 2019-08-29 18:45 - 000468480 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\TextEngine.dll
2021-05-17 10:13 - 2019-08-29 18:48 - 000247808 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\TWRoot.dll
2021-05-17 10:16 - 2019-08-29 18:49 - 000562176 _____ (GRAPHISOFT SE) [File not signed] C:\Program Files\GRAPHISOFT\ARCHICAD 23\VBUtils.dll
2021-05-15 18:43 - 2021-05-15 18:43 - 000000000 ____L (Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\AppVIsvSubsystems64.dll
2021-05-15 18:43 - 2021-05-15 18:43 - 000000000 ____L (Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\c2r64.dll
2021-05-15 17:27 - 2020-05-30 23:58 - 001280000 _____ (Robert Simpson, et al.) [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\GenericMessagingPlugin\x86\x86\SQLite.Interop.dll
2018-09-20 08:32 - 2018-09-20 08:32 - 000217600 _____ (RSA - The Security Division of EMC) [File not signed] C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\ccme_asym.dll
2018-09-20 08:32 - 2018-09-20 08:32 - 000404480 _____ (RSA - The Security Division of EMC) [File not signed] C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\ccme_base.dll
2018-09-20 08:32 - 2018-09-20 08:32 - 000379904 _____ (RSA - The Security Division of EMC) [File not signed] C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\ccme_base_non_fips.dll
2018-09-20 08:32 - 2018-09-20 08:32 - 000504320 _____ (RSA - The Security Division of EMC) [File not signed] C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\ccme_ecc.dll
2018-09-20 08:32 - 2018-09-20 08:32 - 000218624 _____ (RSA - The Security Division of EMC) [File not signed] C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\cryptocme.dll
2021-06-01 10:09 - 2020-11-03 05:08 - 000954864 _____ (SQLite Development Team) [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\LenovoWiFiSecurityPlugin\x86\x86\e_sqlite3.dll
2021-02-02 03:45 - 2021-02-02 03:45 - 001513472 _____ (Square One bv) [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\vgflow.dll
2021-02-02 03:45 - 2021-02-02 03:45 - 003821056 _____ (Square One bv) [File not signed] C:\Program Files\Gstarsoft\GstarCAD2021\vgpsflow.dll
2021-05-27 22:58 - 2021-05-27 22:58 - 001615360 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\LIBEAY32.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000039424 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000413696 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000519168 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 001431040 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 001180672 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000135680 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\styles\qwindowsvistastyle.dll
2020-08-26 08:45 - 2020-08-26 08:45 - 006010880 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 006345216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 001078272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000313856 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 004000256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 003802624 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000171008 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickControls2.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 001083904 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickTemplates2.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000205312 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000329728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000376320 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 092323328 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 005560832 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000463360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000188416 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 002888704 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000053760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000059392 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000017408 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000287232 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls.2\qtquickcontrols2plugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000329216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000136192 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000089088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000312320 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Templates.2\qtquicktemplates2plugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2020-08-26 08:45 - 2020-08-26 08:45 - 000085504 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtWebEngine\qtwebengineplugin.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Windows:CM_2dee4e53dd3acca42e0724c792283465392bce4050f6b30c9ec18bd7a20f6c70 [74]
AlternateDataStreams: C:\Windows:CM_42ddd22ba680615de1b6f5956ec86ccf60ca17ced6b5de7f9e859fc55f9904fe [74]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
BHO: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\bdtbie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
BHO: Bitdefender - Portmonka -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
BHO-x32: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\antispam32\bdtbie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
BHO-x32: Bitdefender - Portmonka -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - Bitdefender - Portmonka - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
Toolbar: HKLM-x32 - Bitdefender - Portmonka - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-12 01:38 - 2021-06-10 11:28 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %INTEL_DEV_REDIST%redist\intel64_win\compiler;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Lenovo\ThinkFamily_Wallpaper.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "PDF24"
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\StartupApproved\Run: => "Spotify"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{86EB58D8-E96A-4A54-84F9-196D880AAEF5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{77E33BC2-FA80-4213-914E-B94803DA50B4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{23CCB051-ADB6-4CC8-9790-200DFF25227D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{4531324B-ECC5-4478-B4CE-50362C5A1806}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{6F913706-9C60-4674-A2D4-4F498B50CFE4}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{998E0392-F8E7-4736-92EE-653D2E3A9D1B}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{C45EF702-74E6-45F9-9D32-EA59B1DAE4AC}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{55BCC710-F851-40BC-B4DE-A4F88FCA69BB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16010.9126.2116.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File
FirewallRules: [{0225D6EC-F8DC-44F0-8C93-ECB29BDFBB25}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 22\ARCHICAD.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{DB0F6AC1-443E-49B2-AB96-375ECA61E1DF}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 22\CineRender\CineRenderNEM.exe (MAXON Computer GmbH -> MAXON Computer GmbH)
FirewallRules: [{96381334-CB96-4478-AB39-7EAA2318DBBE}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 22\BIMxUploader.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{CB05B1F9-D57D-4F66-8C22-EAEFF4851618}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 22\OverwatchServer.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{FCA1A457-9FE4-450A-A884-075D18FD4BFE}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
FirewallRules: [{B6A0AAE8-D7DC-4BB0-9AC7-667734E2C454}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
FirewallRules: [{AA8A111E-3260-4AC9-9DBD-E4A463B13900}] => (Allow) C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
FirewallRules: [{78B1BE0F-FDD4-42F3-878F-9DBA28E3E4F4}] => (Allow) C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
FirewallRules: [{23F4510D-68B3-47EA-A3B6-8E4770F95F7A}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 23\ARCHICAD.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{2B5E3B83-4757-43A2-B43D-885D978E6DD5}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 23\ARCHICAD Starter.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{78576DA7-AA0A-494B-AF99-4DAB72FD5682}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 23\CineRender\CineRenderNEM.exe (MAXON Computer GmbH -> MAXON Computer GmbH)
FirewallRules: [{DCAC468C-319D-40A1-910D-38A811422F71}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 23\BIMxUploader.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{E28F6E34-CB31-4392-BB2D-145704E62BC2}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 23\OverwatchServer.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{3C6C7D1D-DEDC-45AC-96A4-B2BEDA5387EC}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\FaxApplications.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{C402ED0D-46A1-44E9-943A-64DDD2649F84}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\DigitalWizards.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{4307AD1C-8F48-484C-8288-F83B27C2F6D9}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\SendAFax.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{D21594DD-17B8-4943-A20D-2082B32FFD86}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\FaxPrinterUtility.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{DB5B1424-2400-4DF6-8ADA-DA24A858999A}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{C4EE701E-3B21-48C1-B08D-F320FA5F2863}] => (Allow) LPort=5357
FirewallRules: [{E79C3AAC-E5E0-4A35-85B3-07FE8432A8C3}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [TCP Query User{E2CC6309-5905-4FD6-AE8B-D7C289D86505}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File
FirewallRules: [UDP Query User{0C4988E9-6307-4350-8CCD-2761EC37C2BD}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File
FirewallRules: [{C8653BD0-555D-401F-8918-0780B9A6334C}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{1333924F-B3E6-4A83-979C-EABE31FC41E2}C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{B48AE747-DFC6-458A-903A-2509CBD69166}C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [TCP Query User{8545CC72-FCD9-4095-9FEF-AB1F71A660B7}C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{ADAFE782-4172-40FF-9473-95E9A6D44518}C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [TCP Query User{046CEE3D-22C4-41CA-AD0D-D04F1C849499}C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{53DEA131-C3FE-4BC5-B69B-7A0573893977}C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [TCP Query User{96ABFB6D-AA77-4B60-9C2E-8696BA48F2AE}C:\users\milak\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\milak\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{EF48C36A-FF70-4AC6-A478-B3FCEEA07D3F}C:\users\milak\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\milak\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{BCA13CE5-9362-4A36-BD41-A5ACF554281A}C:\users\milak\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\milak\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{B494DF85-8F4F-4985-B735-62CBB13275E2}C:\users\milak\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\milak\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{9EE7F211-9A52-4A74-B718-08C21C9B16C3}C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{09AB43C0-EFB9-418E-81A1-EB4A3B5F7F1C}C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe (Opera Software AS -> Opera Software)
DomainProfile\AuthorizedApplications: [C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe] => Enabled:CodeMeter Runtime Server
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe] => Enabled:CodeMeter Runtime Server

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:90.05 GB) (Free:24.11 GB) (27%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (06/10/2021 10:10:25 AM) (Source: SecurityCenter) (EventID: 16) (User: )
Description: Při aktualizaci stavu na SECURITY_PRODUCT_STATE_SNOOZED došlo k chybě.

Error: (06/10/2021 09:01:08 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (06/10/2021 09:01:08 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (06/09/2021 01:46:19 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (06/09/2021 01:46:19 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (06/03/2021 11:27:38 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program OUTLOOK.EXE verze 16.0.14026.20246 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 41a0

Čas spuštění: 01d756c054b65dda

Čas ukončení: 201

Cesta k aplikaci: C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE

ID hlášení: 53b21b45-9f27-48b1-aaaa-d0dffee16560

Úplný název balíčku s chybou:

ID aplikace relativní podle balíčku s chybou:

Typ zablokování: Cross-thread

Error: (06/02/2021 04:02:40 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program HxCalendarAppImm.exe verze 16.0.13426.20910 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 4378

Čas spuštění: 01d756dcb59b752e

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe

ID hlášení: 649920bc-f110-4422-9f05-44e5849c87ed

Úplný název balíčku s chybou: microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe

ID aplikace relativní podle balíčku s chybou: microsoft.windowslive.calendar

Typ zablokování: Quiesce

Error: (05/28/2021 02:20:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: WINWORD.EXE, verze: 16.0.13929.20386, časové razítko: 0x609c5622
Název chybujícího modulu: wwlib.dll, verze: 16.0.13929.20384, časové razítko: 0x609c3ff2
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000000b3a3
ID chybujícího procesu: 0x1eec
Čas spuštění chybující aplikace: 0x01d753a0de04d8dc
Cesta k chybující aplikaci: C:\Program Files\Microsoft Office\Root\Office16\WINWORD.EXE
Cesta k chybujícímu modulu: C:\Program Files\Microsoft Office\Root\Office16\wwlib.dll
ID zprávy: 34b12d5d-7fd5-4b4d-b380-dc36b2ea40fa
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (06/09/2021 06:58:52 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240017): Aktualizace bezpečnostních informací pro produkt Microsoft Defender Antivirus - KB2267602 (verze 1.341.372.0).

Error: (06/09/2021 12:30:53 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): Aktualizace antimalwarové platformy programu Microsoft Defender Antivirus – KB4052623 (verze 4.18.2105.4).

Error: (06/09/2021 10:25:52 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): Aktualizace bezpečnostních informací pro produkt Microsoft Defender Antivirus - KB2267602 (verze 1.341.372.0).

Error: (06/09/2021 06:33:39 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): Aktualizace bezpečnostních informací pro produkt Microsoft Defender Antivirus - KB2267602 (verze 1.341.301.0).

Error: (06/09/2021 06:33:31 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): Aktualizace antimalwarové platformy programu Microsoft Defender Antivirus – KB4052623 (verze 4.18.2105.4).

Error: (06/09/2021 06:33:08 AM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: NT AUTHORITY)
Description: Na miniportu Intel(R) Dual Band Wireless-AC 3165 #2, {e3e0c467-0668-4576-a122-02064ecf6d0e}, došlo k události 71.

Error: (06/09/2021 06:33:08 AM) (Source: Netwtw04) (EventID: 5002) (User: )
Description: Intel(R) Dual Band Wireless-AC 3165 #2 : Bylo zjištěno, že síťový adaptér nepracuje správně.
5002 - uCode SW error (SysAssert, NMI)

Error: (06/09/2021 06:33:08 AM) (Source: Netwtw04) (EventID: 5032) (User: )
Description: 5032 - Driver Miniport reset watchdog


Windows Defender:
================
Date: 2021-06-09 13:58:03
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {613A1D31-0EFB-473B-86E1-9EE0F481EE86}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-06-04 21:47:57
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {EB3DE4BF-080D-4828-A860-BFD8CBEC5DCB}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-06-04 09:09:35
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {A2EC013A-11E6-4DAA-83AF-A0940BBA4541}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-06-03 07:49:41
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {40BAF7A6-2A38-4950-BDA1-62105ED2FAD1}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-06-01 10:16:22
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {5B070E37-0513-4570-A7A1-410445F1DEC9}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-06-09 10:26:21
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.341.372.0
Předchozí verze bezpečnostních informací: 1.341.115.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18200.4
Předchozí verze modulu: 1.1.18200.4
Kód chyby: 0x80004004
Popis chyby: Operace přerušena

Date: 2021-06-09 10:26:21
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.341.372.0
Předchozí verze bezpečnostních informací: 1.341.115.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18200.4
Předchozí verze modulu: 1.1.18200.4
Kód chyby: 0x80004004
Popis chyby: Operace přerušena

Date: 2021-06-09 06:34:09
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.341.301.0
Předchozí verze bezpečnostních informací: 1.341.115.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18200.4
Předchozí verze modulu: 1.1.18200.4
Kód chyby: 0x80004004
Popis chyby: Operace přerušena

Date: 2021-06-09 06:34:09
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.341.301.0
Předchozí verze bezpečnostních informací: 1.341.115.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18200.4
Předchozí verze modulu: 1.1.18200.4
Kód chyby: 0x80004004
Popis chyby: Operace přerušena

Date: 2021-06-08 17:45:10
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.341.301.0
Předchozí verze bezpečnostních informací: 1.341.115.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18200.4
Předchozí verze modulu: 1.1.18200.4
Kód chyby: 0x80004004
Popis chyby: Operace přerušena

CodeIntegrity:
===============
Date: 2021-05-25 08:35:59
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\mcafee\mfeav\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2021-05-24 21:21:20
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\mcafee\mfeav\AMSIExt.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO R0PET67W (1.44 ) 06/19/2020
Motherboard: LENOVO 20KS007QMC
Processor: Intel(R) Core(TM) i7-8550U CPU @ 1.80GHz
Percentage of memory in use: 61%
Total physical RAM: 16238.06 MB
Available physical RAM: 6328.75 MB
Total Virtual: 21614.06 MB
Available Virtual: 8522.73 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:90.05 GB) (Free:24.11 GB) NTFS
Drive d: () (Fixed) (Total:385.64 GB) (Free:16 GB) NTFS

\\?\Volume{a1be2417-621a-4831-bce3-3fd5be4c71d2}\ (WinRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.49 GB) NTFS
\\?\Volume{12f4dcd1-a9fb-47a6-afc5-2141ca9a5de7}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: 96C3E01C)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 114242
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook - kontrola logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 14145
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Zpomalený notebook - kontrola logu

#3 Příspěvek od JaRon »

ahoj,
citat:
Tvorba fixlistu pro FRST
•Spustte poznamkovy blok (Start-spustit-notepad)
•Zkopirujte skript >>

Kód: Vybrat vše

Start
(SweetLabs Inc. -> SweetLabs, Inc) C:\Users\milak\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe
Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {B6E67297-4E2A-4BAB-9C4A-63B62EDBF591} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - \Microsoft\Windows\Speech\HeadsetButtonPress -> No File <==== ATTENTION
Task: {C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {D2974240-5CCB-46D7-BEF3-4BA58D135BEA} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
AlternateDataStreams: C:\Windows:CM_2dee4e53dd3acca42e0724c792283465392bce4050f6b30c9ec18bd7a20f6c70 [74]
AlternateDataStreams: C:\Windows:CM_42ddd22ba680615de1b6f5956ec86ccf60ca17ced6b5de7f9e859fc55f9904fe [74]
FirewallRules: [{6F913706-9C60-4674-A2D4-4F498B50CFE4}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{998E0392-F8E7-4736-92EE-653D2E3A9D1B}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{C45EF702-74E6-45F9-9D32-EA59B1DAE4AC}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => No File
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File



EmptyTemp:
Reboot:
End
•Ulozte vytvoreny TXT jako fixlist.txt
•Presunte vytvoreny fixlist vedle FRST

:arrow: Spustte znovu FRST.exe
•Kliknete na Fix
•Probehne oprava a vytvori log Fixlog.txt

:arrow: Restart PC a dejte mi sem fixlog.txt
FRST |ADWCleaner |MBAM |CCleaner |Avenger |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

mk23
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 10 čer 2021 10:50

Re: Zpomalený notebook - kontrola logu

#4 Příspěvek od mk23 »

Ahoj, posílám log z adwcleaner:

# -------------------------------
# Malwarebytes AdwCleaner 8.2.0.0
# -------------------------------
# Build: 03-22-2021
# Database: 2021-05-17.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 06-10-2021
# Duration: 00:00:15
# OS: Windows 10 Pro
# Scanned: 31943
# Detected: 21


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

Adware.pokki C:\Users\Default\AppData\Local\Host App Service
Adware.pokki C:\Users\milak\AppData\Local\Host App Service

***** [ Files ] *****

Adware.pokki C:\Windows\System32\Tasks_Migrated\App Explorer

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

Adware.pokki HKCU\Software\App Host Service
Adware.pokki HKCU\Software\Host App Service
Adware.pokki HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Host App Service
Adware.pokki HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FAE71552-FA20-4AE1-9059-CD740BF71760}
Adware.pokki HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\App Explorer

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

Preinstalled.LenovoHotkeyManager Folder C:\Program Files\LENOVO\HOTKEY
Preinstalled.LenovoHotkeyManager Registry HKLM\Software\Classes\CLSID\{53A8E17F-2DE5-4DD7-AF26-74ED2F3223B9}
Preinstalled.LenovoHotkeyManager Registry HKLM\Software\Classes\CLSID\{A48CA1A4-C36B-44f2-8090-19E08DF4365E}
Preinstalled.LenovoIMController Folder C:\Program Files (x86)\LENOVO\IMCONTROLLER
Preinstalled.LenovoIMController Folder C:\Program Files\LENOVO\IMCONTROLLER
Preinstalled.LenovoIMController Folder C:\ProgramData\LENOVO\IMCONTROLLER
Preinstalled.LenovoIMController Folder C:\Users\milak\AppData\Local\LENOVO\IMCONTROLLER
Preinstalled.LenovoIMController Folder C:\Windows\LENOVO\IMCONTROLLER
Preinstalled.LenovoIMController Folder C:\Windows\System32\Tasks\LENOVO\IMCONTROLLER
Preinstalled.LenovoIMController Folder C:\Windows\System32\drivers\LENOVO\IMCONTROLLER
Preinstalled.LenovoIMController Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Lenovo Dependency Package_is1
Preinstalled.LenovoPowerManager Folder C:\Windows\SysWOW64\LENOVO\POWERMGR
Preinstalled.LenovoPowerManager Folder C:\Windows\System32\LENOVO\POWERMGR



########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########

Rudy píše: 10 čer 2021 12:44 Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 114242
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook - kontrola logu

#5 Příspěvek od Rudy »

Nalezené položky (kromě Preinstalled) smažte, restartujte a pak dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

mk23
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 10 čer 2021 10:50

Re: Zpomalený notebook - kontrola logu

#6 Příspěvek od mk23 »

Smazal jsem v logu AdwCleaneru. Je to tak správně? A posílám nové logy z FRST+Addition.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-06-2021
Ran by milak (administrator) on DESKTOP-CCKJQQ9 (LENOVO 20KS007QMC) (10-06-2021 16:22:53)
Running from C:\Users\milak\Downloads
Loaded Profiles: milak
Platform: Windows 10 Pro Version 20H2 19042.1052 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0358895.inf_amd64_23c61970b28ff6e9\B358358\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0358895.inf_amd64_23c61970b28ff6e9\B358358\atiesrxx.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\DiscoverySrv.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3>
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe
(Conexant Systems LLC -> Conexant Systems, Inc) C:\Program Files\CONEXANT\SAII\SmartAudio.exe
(Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\SAII\CxUtilSvc.exe
(Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe
(Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.) C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
(Flexera Software LLC -> Flexera) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
(geek software GmbH -> geek software GmbH) C:\Program Files\PDF24\pdf24.exe
(Ghisler Software GmbH -> Ghisler Software GmbH) C:\totalcmd\TOTALCMD64.EXE
(Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\HPNetworkCommunicatorCom.exe
(Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\ScanToPCActivationApp.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_2e49f48165b8de10\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_2e49f48165b8de10\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_2e49f48165b8de10\igfxext.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_78ff17a5ea060c5f\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_c09cf47d735b4c90\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_c09cf47d735b4c90\IntelCpHeciSvc.exe
(Intel(R) Software Development Products -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_fafb1d329fdfe2c6\aesm_service.exe
(Intel(R) Trust Services -> Intel(R) Corporation) C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\SocketHeciServer.exe
(Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\tphkload.exe
(Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\FN11CD~1.INF\driver\shtctky.exe
(Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\FN11CD~1.INF\driver\tposd.exe
(Lenovo -> Lenovo Group Limited) C:\Windows\SysWOW64\EasyResume.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.7.19.0\LenovoVantageService.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(Lenovo -> Lenovo) C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe
(Lenovo -> Lenovo.) C:\Windows\System32\ApsInsSvc.exe
(Lenovo -> Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(LITE-ON TECHNOLOGY CORP. -> Lenovo) C:\Program Files\Lenovo\Lenovo Calliope USB Keyboard\SklFundKb.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowsstore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\prevhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(SweetLabs Inc. -> SweetLabs, Inc) C:\Users\milak\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
(WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
(WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe
(WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [PDF24] => C:\Program Files\PDF24\pdf24.exe [564928 2021-03-25] (geek software GmbH -> geek software GmbH)
HKLM\...\Run: [Lenovo Fundamental USB Keyboard] => C:\Program Files\Lenovo\Lenovo Calliope USB Keyboard\SklFundKb.exe [2643784 2016-08-15] (LITE-ON TECHNOLOGY CORP. -> Lenovo)
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Run: [OneDrive] => C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe [1972608 2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Run: [Spotify] => C:\Users\milak\AppData\Roaming\Spotify\Spotify.exe [23976064 2021-06-07] (Spotify AB -> Spotify Ltd) <==== ATTENTION
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Run: [HP OfficeJet Pro 7740 (NET)] => C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\ScanToPCActivationApp.exe [3770504 2018-04-06] (Hewlett Packard -> HP Inc.)
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Run: [Opera Browser Assistant] => C:\Users\milak\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4042960 2021-05-26] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\MountPoints2: {18c4b7f8-b595-11eb-9c9d-645d860fd3df} - "E:\LaunchU3.exe" -a
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodeMeter Control Center.lnk [2021-05-15]
ShortcutTarget: CodeMeter Control Center.lnk -> C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Network Server.lnk [2021-05-15]
ShortcutTarget: Network Server.lnk -> C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01ABBFFE-72BF-4951-A6F0-1DF2ECC6D624} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2020-08-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {05930763-1F50-4F1C-A108-29D466216953} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [62392 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
Task: {0BC6E656-02DB-4090-A73B-C365179A0404} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {0FA7EE8F-0C33-46BA-A405-559D5795EB90} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\f6494ded-f0e4-4092-b1fc-bd443ce71d83 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
Task: {1F926023-8626-4431-9C42-2B81D1192C15} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\5122548c-eca2-4b52-9d46-52e28a643d72 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {4AC82054-7231-4768-BB6A-86EE14729A62} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe [144456 2021-05-19] (Lenovo -> Lenovo Group Ltd.)
Task: {4CF7A3F4-BD7F-47A7-9320-B2C784147AFF} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService
Task: {6450E22B-0E55-45A0-8F76-79BEF6374174} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\5cb680ea-d575-4106-aa9c-cc9e38673f9f => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
Task: {68E7469F-411D-4B6C-9D36-897723FB0A8B} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\WINDOWS\SysWOW64\PowerMgrInst.exe [62152 2020-12-20] (Lenovo -> )
Task: {69D9DB9C-90D7-4B06-91D2-986360545312} - System32\Tasks\Opera scheduled Autoupdate 1621095956 => C:\Users\milak\AppData\Local\Programs\Opera\launcher.exe [2199760 2021-06-02] (Opera Software AS -> Opera Software)
Task: {6B262E10-EF94-42F2-A0FB-4C3312BA0CE8} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [69304 2020-08-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {7F42C566-855A-4813-B9B1-88C6EA66FCBE} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\a8be4f9f-93ff-48b3-b3e8-1b084714a0a3 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
Task: {84951009-54D8-4760-85E3-108C2452B4BC} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files (x86)\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [2819968 2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {8D61C012-3DAE-41CE-810A-1BFE74F5DFAA} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [147288 2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {8F3E1177-B8CD-4D6C-9E95-555F61C61378} - System32\Tasks\Microsoft\Windows\Conexant\AFA => C:\Program Files\CONEXANT\cAudioFilterAgent\SACpl.exe [1823232 2016-07-05] (Conexant Systems, Inc.) [File not signed]
Task: {99F54828-1C95-43EE-9773-E182F78D4C32} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23124336 2021-05-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {9E9883B2-D959-4BE7-B4CF-02B93546917E} - System32\Tasks\Opera scheduled assistant Autoupdate 1621095967 => C:\Users\milak\AppData\Local\Programs\Opera\launcher.exe [2199760 2021-06-02] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\milak\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {A7F09565-5841-4EEE-BEB6-76068294DC32} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\1.6.102\DADUpdater.exe
Task: {AE24767F-5FFE-4B28-B415-1B5FE2E68D1B} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [888232 2021-01-29] (Bitdefender SRL -> Bitdefender)
Task: {B6E67297-4E2A-4BAB-9C4A-63B62EDBF591} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {C08C6A9E-807C-4715-9600-9C1182406296} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\WINDOWS\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [112824 2021-04-20] (Lenovo -> Lenovo)
Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - \Microsoft\Windows\Speech\HeadsetButtonPress -> No File <==== ATTENTION
Task: {C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {CC5BAE6B-199E-4B30-A8D7-9F336AED6BD7} - System32\Tasks\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C => C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [954456 2021-05-07] (Bitdefender SRL -> Bitdefender)
Task: {D27E86E8-3797-4A7F-A003-B05CB62EDACF} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23124336 2021-05-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {D2974240-5CCB-46D7-BEF3-4BA58D135BEA} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
Task: {DC3C8129-1FB3-402E-B40B-8ACE8FDFA916} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\3.7.19.0\ScheduleEventAction.exe [23968 2021-05-17] (Lenovo -> Lenovo Group Ltd.)
Task: {E3CB47F6-AB73-40AC-AB5A-B82606164C95} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {E767C95B-F6DA-4ED9-BC0C-F107729F0015} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [147288 2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {EA7BB9EC-7FC4-44C9-AC7B-37103C33B736} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {FAE71552-FA20-4AE1-9059-CD740BF71760} - \App Explorer -> No File <==== ATTENTION
Task: {FE82ABD1-089C-43E6-8B13-A589254CBAE4} - System32\Tasks\Microsoft\Windows\Conexant\SA2 => C:\Program Files\CONEXANT\SAII\SACpl.exe [1832280 2017-06-08] (Conexant Systems, Inc. -> Conexant Systems, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{2e8f3d0f-93a4-424a-89a8-b6aacc87a35a}: [DhcpNameServer] 192.168.246.58
Tcpip\..\Interfaces\{ab3c6379-23fc-46be-b3de-7c0ed13acfa1}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{c684371d-acaf-4729-b423-7e017c3c0fc4}: [DhcpNameServer] 150.208.1.3
Tcpip\..\Interfaces\{e3e0c467-0668-4576-a122-02064ecf6d0e}: [DhcpNameServer] 10.10.2.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\milak\AppData\Local\Microsoft\Edge\User Data\Default [2021-06-10]
Edge HKLM-x32\...\Edge\Extension: [pdhdldaneekjpoaldekpgomomeabpnek]

FireFox:
========
FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi
FF Extension: (Bitdefender Wallet) - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi [2020-07-16] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/wallet/updates.json ]
FF HKLM\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi
FF Extension: (Bitdefender Anti-tracker) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi [2020-09-17] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ]
FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext
FF Extension: (Bitdefender Antispam Toolbar) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext [2021-05-11] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi
FF HKLM-x32\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-05-28] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl]
CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof]

Opera:
=======
OPR Profile: C:\Users\milak\AppData\Roaming\Opera Software\Opera Stable [2021-06-10]
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Session Restore: Opera Stable -> is enabled.
OPR Extension: (Rich Hints Agent) - C:\Users\milak\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-06-09]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
R2 ApsInsSvc; C:\WINDOWS\System32\ApsInsSvc.exe [150792 2018-04-22] (Lenovo -> Lenovo.)
R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [798640 2020-10-02] (Bitdefender SRL -> Bitdefender)
R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [798640 2020-10-02] (Bitdefender SRL -> Bitdefender)
R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2161256 2018-03-22] (Bitdefender SRL -> Bitdefender)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11279752 2021-05-21] (Microsoft Corporation -> Microsoft Corporation)
R2 CmWebAdmin.exe; C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe [12002208 2019-12-16] (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
R2 Dolby DAX2 API Service; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [189464 2020-06-02] (Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.)
S3 FileSyncHelper; C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\FileSyncHelper.exe [2103168 2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.)
R2 Lenovo Instant On; C:\WINDOWS\SysWOW64\EasyResume.exe [2351304 2020-12-20] (Lenovo -> Lenovo Group Limited)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.7.19.0\LenovoVantageService.exe [28576 2021-05-17] (Lenovo -> Lenovo Group Ltd.)
S2 LPlatSvc; C:\WINDOWS\System32\LPlatSvc.exe [898776 2021-03-01] (Lenovo -> Lenovo.)
S3 OneDrive Updater Service; C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\OneDriveUpdaterService.exe [2567552 2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
R2 PDF24; C:\Program Files\PDF24\pdf24.exe [564928 2021-03-25] (geek software GmbH -> geek software GmbH)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1358248 2021-01-29] (Bitdefender SRL -> Bitdefender)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5393304 2021-06-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182128 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R2 TPHKLOAD; C:\WINDOWS\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\TPHKLOAD.exe [465200 2020-12-28] (Lenovo -> Lenovo Group Limited)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [301144 2021-05-07] (Bitdefender SRL -> Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [798640 2020-10-02] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\NisSrv.exe [2644760 2021-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MsMpEng.exe [136656 2021-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [2718744 2021-02-26] (Bitdefender SRL -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [802976 2020-12-04] (Bitdefender SRL -> Bitdefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [22976 2020-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender)
R0 bdprivmon; C:\WINDOWS\System32\DRIVERS\bdprivmon.sys [46056 2020-01-17] (Bitdefender SRL -> © Bitdefender SRL)
R3 BHTPCRDR; C:\WINDOWS\System32\drivers\bhtpcrdr.sys [176032 2019-06-12] (BayHub Technology Inc. -> BayHubTech/O2Micro)
S3 CYUSB3; C:\WINDOWS\System32\Drivers\CYUSB3.sys [76520 2017-10-05] (Cypress Semiconductor Technology India Pvt Ltd. -> Cypress Semiconductor)
S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus2.sys [159800 2021-04-22] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R0 Gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [488592 2021-02-16] (Bitdefender SRL -> BitDefender S.R.L. Bucharest, ROMANIA)
R0 gzflt; C:\WINDOWS\System32\DRIVERS\gzflt.sys [195232 2020-09-03] (Bitdefender SRL -> BitDefender LLC)
R2 Ignis; C:\WINDOWS\system32\DRIVERS\ignis.sys [185312 2020-10-07] (Bitdefender SRL -> Bitdefender)
S3 pelmouse; C:\WINDOWS\System32\drivers\pelmouse.sys [26880 2016-07-11] (WDKTestCert idd,131110062695071623 -> TPMX Electronics Ltd.)
S3 pelusblf; C:\WINDOWS\System32\drivers\pelusblf.sys [33048 2016-07-11] (WDKTestCert idd,131110062695071623 -> )
S3 pelvendr; C:\WINDOWS\System32\drivers\pelvendr.sys [15032 2016-07-11] (WDKTestCert idd,131110062695071623 -> TPMX Electronics Ltd.)
S3 phidmice; C:\WINDOWS\System32\drivers\phidmice.sys [33048 2016-07-11] (WDKTestCert idd,131110062695071623 -> )
R1 PMDRVS; C:\WINDOWS\System32\drivers\pmdrvs.sys [37984 2021-03-01] (Lenovo -> Lenovo.)
S3 pmouself; C:\WINDOWS\System32\drivers\pmouself.sys [26880 2016-07-11] (WDKTestCert idd,131110062695071623 -> TPMX Electronics Ltd.)
S3 pvendrlf; C:\WINDOWS\System32\drivers\pvendrlf.sys [15032 2016-07-11] (WDKTestCert idd,131110062695071623 -> TPMX Electronics Ltd.)
S3 ssudcdf; C:\WINDOWS\System32\drivers\ssudcdf.sys [36608 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssuddmgr; C:\WINDOWS\System32\drivers\ssuddmgr.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ssudobex; C:\WINDOWS\System32\drivers\ssudobex.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [65080 2021-04-22] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated)
S3 ssudrmnet; C:\WINDOWS\System32\drivers\ssudrmnet.sys [70400 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.)
S3 ssudserd; C:\WINDOWS\System32\drivers\ssudserd.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ss_conn_usb_driver; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver.sys [26368 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.)
S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43376 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R0 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [641728 2021-02-26] (Bitdefender SRL -> Bitdefender)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49560 2021-06-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [425208 2021-06-06] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [76008 2021-06-06] (Microsoft Windows -> Microsoft Corporation)
R2 WIBUKEY; C:\WINDOWS\System32\DRIVERS\WibuKey64.sys [118200 2016-12-20] (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
S3 Wibukey2_64; C:\WINDOWS\system32\drivers\wibukey2_64.sys [42936 2016-12-20] (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-06-10 16:22 - 2021-06-10 16:24 - 000028181 _____ C:\Users\milak\Downloads\FRST.txt
2021-06-10 16:22 - 2021-06-10 16:23 - 000000000 ____D C:\FRST
2021-06-10 14:28 - 2021-06-10 14:28 - 000000004 ____H C:\ProgramData\cm-lock
2021-06-10 14:21 - 2021-06-10 14:26 - 000000000 ____D C:\AdwCleaner
2021-06-10 14:21 - 2021-06-10 14:21 - 008534696 _____ (Malwarebytes) C:\Users\milak\Desktop\adwcleaner_8.2.exe
2021-06-10 11:45 - 2021-06-10 11:45 - 002300416 _____ (Farbar) C:\Users\milak\Downloads\FRST64.exe
2021-06-10 10:13 - 2021-06-10 10:13 - 000087652 _____ C:\ProgramData\agent.update.1623312787.bdinstall.v2.bin
2021-06-10 10:12 - 2021-06-10 10:12 - 000784732 _____ C:\ProgramData\cl.1623312472.bdinstall.v2.bin
2021-06-10 10:12 - 2021-06-10 10:12 - 000103988 _____ C:\ProgramData\cl.kit.1623312437.bdinstall.v2.bin
2021-06-10 10:12 - 2021-06-10 10:12 - 000003420 _____ C:\WINDOWS\system32\Tasks\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C
2021-06-10 10:12 - 2021-06-10 10:12 - 000000000 ____D C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4
2021-06-10 10:11 - 2021-06-10 10:11 - 000000000 ____D C:\ProgramData\Gemma
2021-06-10 10:11 - 2021-06-10 10:11 - 000000000 ____D C:\ProgramData\Atc
2021-06-10 10:10 - 2021-06-10 11:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Security
2021-06-10 10:10 - 2021-06-10 10:10 - 000002436 _____ C:\Users\Public\Desktop\Bitdefender VPN.lnk
2021-06-10 10:10 - 2021-06-10 10:10 - 000002349 _____ C:\Users\Public\Desktop\Bitdefender.lnk
2021-06-10 10:10 - 2021-06-10 10:10 - 000000000 ____D C:\WINDOWS\system32\elambkup
2021-06-10 10:10 - 2021-06-10 10:10 - 000000000 ____D C:\ProgramData\BDLogging
2021-06-10 10:10 - 2020-12-18 02:33 - 000022976 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bdelam.sys
2021-06-10 10:09 - 2021-02-26 13:40 - 002718744 _____ (Bitdefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\atc.sys
2021-06-10 10:09 - 2021-02-16 14:31 - 000488592 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\gemma.sys
2021-06-10 10:09 - 2020-12-04 16:15 - 000802976 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bddci.sys
2021-06-10 10:09 - 2020-01-17 03:03 - 000046056 _____ (© Bitdefender SRL) C:\WINDOWS\system32\Drivers\bdprivmon.sys
2021-06-10 10:08 - 2021-06-10 10:25 - 000000000 ____D C:\ProgramData\Bitdefender
2021-06-10 10:08 - 2021-06-10 10:08 - 000000000 ____D C:\Users\milak\AppData\Roaming\Bitdefender
2021-06-10 10:08 - 2021-06-10 10:08 - 000000000 ____D C:\Program Files\Bitdefender
2021-06-10 10:08 - 2021-02-26 18:31 - 000641728 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\trufos.sys
2021-06-10 10:08 - 2020-10-07 11:30 - 000185312 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\ignis.sys
2021-06-10 10:08 - 2020-09-03 05:20 - 000195232 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys
2021-06-10 10:07 - 2021-06-10 10:08 - 000000000 ____D C:\Program Files\Common Files\Bitdefender
2021-06-10 10:07 - 2021-06-10 10:07 - 000003802 _____ C:\WINDOWS\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2021-06-10 10:05 - 2021-06-10 10:13 - 000000000 ____D C:\Program Files\Bitdefender Agent
2021-06-10 10:05 - 2021-06-10 10:05 - 000117208 _____ C:\ProgramData\agent.1623312303.bdinstall.v2.bin
2021-06-10 10:05 - 2021-06-10 10:05 - 000000000 ____D C:\ProgramData\Bitdefender Agent
2021-06-10 09:27 - 2021-06-10 09:27 - 004878625 _____ C:\Users\milak\Downloads\Bitdefender_Internet security.pdf
2021-06-10 08:38 - 2021-06-10 08:38 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-06-10 08:38 - 2021-06-10 08:38 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-06-10 08:38 - 2021-06-10 08:38 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2021-06-10 08:38 - 2021-06-10 08:38 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-06-10 08:38 - 2021-06-10 08:38 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2021-06-10 08:38 - 2021-06-10 08:38 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-06-10 08:38 - 2021-06-10 08:38 - 000451072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2021-06-10 08:38 - 2021-06-10 08:38 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-06-10 08:38 - 2021-06-10 08:38 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2021-06-10 08:38 - 2021-06-10 08:38 - 000011353 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-06-10 08:37 - 2021-06-10 08:37 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-06-10 08:37 - 2021-06-10 08:37 - 001823792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-06-10 08:37 - 2021-06-10 08:37 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-06-10 08:37 - 2021-06-10 08:37 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-06-10 08:37 - 2021-06-10 08:37 - 000097280 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-06-10 08:36 - 2021-06-10 08:36 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-06-10 08:36 - 2021-06-10 08:36 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-06-10 08:36 - 2021-06-10 08:36 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2021-06-09 21:42 - 2021-06-09 21:42 - 000000000 ____D C:\Users\milak\Desktop\GodMode.{ED7BA470-8E54-465E-825C-99712043E01C}
2021-06-09 20:56 - 2021-06-09 20:56 - 000000551 _____ C:\Users\milak\Downloads\dotaz no prověření PC.txt
2021-06-09 19:19 - 2021-06-09 19:19 - 000000000 ____D C:\Users\milak\AppData\LocalLow\Lenovo
2021-06-09 13:08 - 2021-06-09 13:08 - 000081339 _____ C:\Users\milak\Downloads\Seznam nemovitostí na LV č. 9659_ Nahlížení do katastru nemovitostí.pdf
2021-06-09 13:07 - 2021-06-09 13:07 - 000070856 _____ C:\Users\milak\Downloads\Informace o jednotce 908-47_ Nahlížení do katastru nemovitostí.pdf
2021-06-09 10:25 - 2021-06-09 10:25 - 000000000 ___HD C:\$WinREAgent
2021-06-09 07:46 - 2021-06-09 07:46 - 000000000 _____ C:\Users\milak\Documents\HPOJ7740_Fax_Port
2021-06-07 10:38 - 2021-06-07 10:39 - 000334016 _____ C:\Users\milak\Downloads\Instruction.pdf
2021-06-05 20:36 - 2021-06-05 20:36 - 000000000 ___HD C:\$Windows.~WS
2021-06-05 20:36 - 2021-06-05 20:36 - 000000000 ____D C:\$WINDOWS.~BT
2021-06-01 10:11 - 2021-06-01 10:11 - 000030328 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RtsUpx.sys
2021-05-26 15:23 - 2021-05-26 15:23 - 000000000 ____D C:\Users\milak\AppData\LocalLow\Temp
2021-05-26 13:51 - 2021-05-26 13:51 - 000180938 _____ C:\WINDOWS\oldcalcuninst.exe
2021-05-25 10:00 - 2021-05-25 10:00 - 000000000 ____D C:\Users\milak\AppData\Local\CrashDumps
2021-05-25 09:01 - 2021-05-25 09:01 - 000002518 _____ C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo App Explorer.lnk
2021-05-25 08:40 - 2021-06-07 19:54 - 000000000 ____D C:\WINDOWS\TempInst
2021-05-25 08:40 - 2021-04-15 01:16 - 000419800 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll
2021-05-25 08:40 - 2021-04-15 01:14 - 000038360 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel_Aux.sys
2021-05-25 08:40 - 2021-04-15 01:14 - 000037336 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_AMDASF_Aux.sys
2021-05-25 08:40 - 2021-04-15 01:13 - 000049624 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynRMIHID_Aux.sys
2021-05-23 20:19 - 2021-05-23 20:19 - 000002524 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002518 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002495 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002490 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002416 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000002412 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2021-05-23 20:19 - 2021-05-23 20:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2021-05-20 07:17 - 2021-05-20 07:26 - 000000000 ____D C:\Users\milak\Desktop\TAPAZA
2021-05-17 14:47 - 2021-05-17 14:47 - 000000000 ____D C:\Users\milak\AppData\Roaming\MAXON
2021-05-17 14:46 - 2021-06-10 16:20 - 000000068 ___SH C:\WINDOWS\system32\Drivers\WUDFPf.winsecurity
2021-05-17 14:46 - 2021-06-10 16:20 - 000000068 ___SH C:\WINDOWS\system32\Drivers\wof.winsecurity
2021-05-17 14:46 - 2021-05-17 14:46 - 000000053 ___SH C:\WINDOWS\system32\Drivers\wcifs.winsecurity
2021-05-17 14:46 - 2021-05-17 14:46 - 000000000 ____D C:\ProgramData\ARCHICAD
2021-05-17 11:42 - 2021-05-17 11:42 - 000002368 _____ C:\Users\Public\Desktop\HP OfficeJet Pro 7740 series.lnk
2021-05-17 11:42 - 2021-05-17 11:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2021-05-17 11:41 - 2021-06-09 07:46 - 000000000 ____D C:\Users\milak\AppData\Local\HP
2021-05-17 11:41 - 2021-05-17 11:41 - 000000000 ____D C:\ProgramData\HP
2021-05-17 11:41 - 2021-05-17 11:41 - 000000000 ____D C:\Program Files\HP
2021-05-17 11:41 - 2021-05-17 11:41 - 000000000 ____D C:\Program Files (x86)\HP
2021-05-17 10:53 - 2021-05-17 11:31 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2021-05-17 09:56 - 2021-05-17 09:56 - 000000000 ____D C:\Users\milak\AppData\Roaming\WinRAR
2021-05-17 09:27 - 2021-05-17 09:27 - 000000000 ____D C:\Users\milak\AppData\Roaming\TeamViewer
2021-05-16 17:39 - 2021-05-16 17:39 - 000000000 ____D C:\Users\milak\AppData\Local\PeerDistRepub
2021-05-16 11:51 - 2021-05-16 11:51 - 000000000 ____D C:\Users\milak\AppData\Local\OneDrive
2021-05-16 11:42 - 2021-06-09 16:44 - 000000000 ____D C:\Users\milak\AppData\Local\Spotify
2021-05-16 11:42 - 2021-05-16 11:42 - 000001857 _____ C:\Users\milak\Desktop\Spotify.lnk
2021-05-16 11:42 - 2021-05-16 11:42 - 000001843 _____ C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2021-05-16 11:41 - 2021-06-09 14:35 - 000000000 ____D C:\Users\milak\AppData\Roaming\Spotify
2021-05-16 10:49 - 2021-05-16 10:49 - 000000000 ____D C:\Users\milak\AppData\Local\ATI
2021-05-16 10:47 - 2021-05-16 10:47 - 000000000 ____D C:\Users\milak\AppData\Local\PDF24
2021-05-16 10:43 - 2021-05-16 10:43 - 000001714 _____ C:\Users\Public\Desktop\PDF24.lnk
2021-05-16 10:43 - 2021-05-16 10:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24
2021-05-16 10:42 - 2021-05-16 10:43 - 000000000 ____D C:\Program Files\PDF24
2021-05-16 10:27 - 2021-05-16 10:27 - 000000000 ____D C:\Users\milak\Documents\GstarCAD Cloud
2021-05-16 10:21 - 2021-05-16 10:21 - 000000000 ____D C:\Users\milak\AppData\Local\ElevatedDiagnostics
2021-05-16 09:48 - 2021-05-16 09:48 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-05-16 09:37 - 2021-06-10 08:19 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Šablony
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Poslední
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Okolní síť
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Dokumenty
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\Data aplikací
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Šablony
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Plocha
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Dokumenty
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\ProgramData\Data aplikací
2021-05-16 02:15 - 2021-05-16 02:15 - 000000000 _SHDL C:\Documents and Settings
2021-05-16 02:14 - 2021-05-16 02:14 - 000022924 _____ C:\WINDOWS\system32\emptyregdb.dat
2021-05-16 02:13 - 2021-05-19 20:12 - 000000288 _____ C:\pefdata.dat
2021-05-16 02:13 - 2021-05-16 02:13 - 000000000 ____D C:\WINDOWS\CSC
2021-05-16 01:55 - 2021-05-16 01:55 - 000003160 _____ C:\WINDOWS\system32\Tasks\StartCN
2021-05-16 01:55 - 2021-05-16 01:55 - 000003080 _____ C:\WINDOWS\system32\Tasks\StartDVR
2021-05-16 01:55 - 2021-05-16 01:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2021-05-16 01:55 - 2021-04-20 02:20 - 005410488 _____ (Lenovo Group Limited) C:\WINDOWS\SysWOW64\PWMTR32V.dll
2021-05-16 01:55 - 2020-12-20 23:57 - 002351304 _____ (Lenovo Group Limited) C:\WINDOWS\SysWOW64\EasyResume.exe
2021-05-16 01:55 - 2020-12-20 23:57 - 000158920 _____ (Lenovo) C:\WINDOWS\SysWOW64\InstHelper.dll
2021-05-16 01:55 - 2020-12-20 23:57 - 000090312 _____ (Lenovo) C:\WINDOWS\SysWOW64\EventLogger.dll
2021-05-16 01:55 - 2020-12-20 23:57 - 000062152 _____ () C:\WINDOWS\SysWOW64\PowerMgrInst.exe
2021-05-16 01:54 - 2021-06-10 14:28 - 000000000 ____D C:\Intel
2021-05-16 01:54 - 2021-05-16 01:54 - 000000000 ____D C:\ProgramData\Validity
2021-05-16 01:54 - 2021-05-15 21:46 - 000000000 ____D C:\ProgramData\Package Cache
2021-05-16 01:53 - 2021-06-10 14:28 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2021-05-16 01:53 - 2021-05-16 02:01 - 000000000 ____D C:\Program Files\AMD
2021-05-16 01:53 - 2021-05-16 01:53 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2021-05-16 01:53 - 2021-05-16 01:53 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2021-05-16 01:52 - 2021-05-16 02:13 - 000000000 ____D C:\ProgramData\Intel
2021-05-16 01:52 - 2021-05-16 01:52 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2021-05-16 01:52 - 2021-05-16 01:52 - 000000000 ____D C:\WINDOWS\UCI
2021-05-16 01:52 - 2021-05-16 01:52 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2021-05-16 01:51 - 2021-05-16 01:51 - 000000102 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.64.bc
2021-05-16 01:51 - 2021-05-16 01:51 - 000000000 ____D C:\ProgramData\Dolby
2021-05-16 01:51 - 2021-05-16 01:51 - 000000000 ____D C:\Program Files\Dolby
2021-05-16 01:51 - 2021-05-15 18:06 - 000000000 ____D C:\ProgramData\Conexant
2021-05-16 01:51 - 2021-03-14 22:27 - 000107936 _____ (Lenovo Group Ltd.) C:\WINDOWS\system32\ImController.CoInstaller.dll
2021-05-16 01:51 - 2017-09-07 18:59 - 000004664 _____ C:\WINDOWS\system32\Drivers\CxSfPt.dat
2021-05-16 01:51 - 2016-12-07 00:55 - 000416576 _____ (Conexant Systems, Inc.) C:\WINDOWS\SysWOW64\SASrv.exe
2021-05-16 01:51 - 2016-12-07 00:55 - 000416576 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\SASrv.exe
2021-05-16 01:51 - 2015-09-17 01:10 - 000225624 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CxAudMsg64.exe
2021-05-16 01:50 - 2021-06-05 13:56 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-05-16 01:50 - 2021-05-21 21:05 - 000018960 _____ (Logitech, Inc.) C:\WINDOWS\system32\Drivers\LNonPnP.sys
2021-05-16 01:50 - 2021-05-17 15:00 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2021-05-16 01:50 - 2021-05-16 01:51 - 000000000 ____D C:\ProgramData\UIU
2021-05-16 01:50 - 2021-05-16 01:51 - 000000000 ____D C:\Program Files\CONEXANT
2021-05-16 01:50 - 2021-05-16 01:50 - 001705080 _____ (TODO: <Company name>) C:\WINDOWS\SysWOW64\RebootPrompt.exe
2021-05-16 01:50 - 2021-05-15 17:55 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-05-16 01:50 - 2021-05-15 17:55 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-05-16 01:49 - 2021-06-10 15:21 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-05-16 01:49 - 2021-06-10 14:28 - 000008192 ___SH C:\DumpStack.log.tmp
2021-05-16 01:49 - 2021-06-10 14:28 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-05-16 01:49 - 2021-06-10 08:52 - 000444400 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-05-16 01:49 - 2021-06-09 13:47 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-05-16 01:49 - 2021-05-16 01:49 - 000000000 ____D C:\WINDOWS\system32\AMD
2021-05-16 01:49 - 2021-05-16 01:49 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-05-15 22:07 - 2021-06-09 16:38 - 000000000 ____D C:\Users\milak\AppData\Local\GRAPHISOFT
2021-05-15 22:07 - 2021-05-15 22:24 - 000000000 ____D C:\Users\milak\AppData\Roaming\GRAPHISOFT
2021-05-15 22:05 - 2021-05-15 22:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\groupname
2021-05-15 21:47 - 2021-06-09 16:38 - 000000000 ____D C:\Users\milak\GRAPHISOFT
2021-05-15 21:44 - 2021-05-15 22:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeMeter
2021-05-15 21:44 - 2021-05-15 22:36 - 000000000 ____D C:\Program Files (x86)\CodeMeter
2021-05-15 21:44 - 2021-05-15 22:35 - 000000000 ____D C:\ProgramData\CodeMeter
2021-05-15 21:44 - 2021-05-15 21:44 - 000000000 ____D C:\Program Files\CodeMeter
2021-05-15 21:43 - 2021-05-15 21:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WibuKey
2021-05-15 21:43 - 2021-05-15 21:43 - 000000000 ____D C:\Program Files\WIBU-SYSTEMS
2021-05-15 21:43 - 2021-05-15 21:43 - 000000000 ____D C:\Program Files (x86)\WIBU-SYSTEMS
2021-05-15 21:43 - 2021-05-15 21:43 - 000000000 ____D C:\Program Files (x86)\WIBUKEY
2021-05-15 21:43 - 2016-12-22 07:40 - 000606232 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\wibuKJni64.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000501272 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\wibuKJni.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000433112 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkExt64.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000366552 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkExt32.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000222688 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000192480 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.dll
2021-05-15 21:43 - 2016-12-22 07:40 - 000022528 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.lfr
2021-05-15 21:43 - 2016-12-22 07:40 - 000022528 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.les
2021-05-15 21:43 - 2016-12-22 07:40 - 000022528 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.lde
2021-05-15 21:43 - 2016-12-22 07:40 - 000022016 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lfr
2021-05-15 21:43 - 2016-12-22 07:40 - 000022016 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.les
2021-05-15 21:43 - 2016-12-22 07:40 - 000022016 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lde
2021-05-15 21:43 - 2016-12-22 07:40 - 000022016 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.lit
2021-05-15 21:43 - 2016-12-22 07:40 - 000021504 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lit
2021-05-15 21:43 - 2016-12-22 07:40 - 000021504 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lbr
2021-05-15 21:43 - 2016-12-22 07:40 - 000020992 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.ljp
2021-05-15 21:43 - 2016-12-22 07:40 - 000020992 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.lhu
2021-05-15 21:43 - 2016-12-22 07:40 - 000020480 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.ljp
2021-05-15 21:43 - 2016-12-22 07:40 - 000020480 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lhu
2021-05-15 21:43 - 2016-12-22 07:40 - 000015360 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WkWin64.lcn
2021-05-15 21:43 - 2016-12-22 07:40 - 000014848 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\SysWOW64\WkWin32.lcn
2021-05-15 21:43 - 2016-12-20 17:29 - 000118200 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\Drivers\WibuKey64.sys
2021-05-15 21:42 - 2021-05-17 10:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GRAPHISOFT
2021-05-15 21:42 - 2021-05-15 21:42 - 000000000 ____D C:\Users\milak\Documents\BIMx
2021-05-15 21:28 - 2021-05-17 10:13 - 000000000 ____D C:\Program Files\GRAPHISOFT
2021-05-15 21:26 - 2021-05-17 10:22 - 000000000 ____D C:\ProgramData\Install.GS
2021-05-15 21:25 - 2021-05-15 21:25 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2021-05-15 20:01 - 2021-05-29 19:40 - 000001013 _____ C:\WINDOWS\system32\Debug.txt
2021-05-15 20:01 - 2021-05-15 20:01 - 000000000 ____D C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo Mouse Suite
2021-05-15 19:20 - 2021-06-09 07:27 - 000000000 ____D C:\Users\milak\AppData\Roaming\XnView
2021-05-15 19:04 - 2021-05-15 19:04 - 000000000 ____D C:\ProgramData\FLEXnet
2021-05-15 18:53 - 2021-05-15 18:53 - 000000000 ____D C:\Users\milak\Documents\Vlastní šablony Office
2021-05-15 18:52 - 2021-06-04 10:50 - 000003206 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2021-05-15 18:52 - 2021-06-04 10:50 - 000002179 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-05-15 18:52 - 2021-05-15 18:52 - 000000000 ___RD C:\Users\Default\OneDrive
2021-05-15 18:51 - 2021-06-09 13:46 - 000000000 ____D C:\Program Files (x86)\Microsoft OneDrive
2021-05-15 18:51 - 2021-05-15 19:04 - 000000000 ____D C:\ProgramData\glmclient
2021-05-15 18:51 - 2021-05-15 18:51 - 000000000 ____D C:\Users\milak\AppData\Local\Gstarsoft
2021-05-15 18:51 - 2021-05-15 18:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GstarCAD 2021
2021-05-15 18:51 - 2021-05-15 18:51 - 000000000 ____D C:\Program Files\Common Files\Macrovision Shared
2021-05-15 18:50 - 2021-05-15 18:50 - 000000000 ____D C:\Users\milak\AppData\Roaming\Gstarsoft
2021-05-15 18:50 - 2021-05-15 18:50 - 000000000 ____D C:\Program Files\Common Files\Gstarsoft
2021-05-15 18:49 - 2021-05-19 12:48 - 000000000 ____D C:\Users\milak\AppData\Local\GHISLER
2021-05-15 18:49 - 2021-05-15 18:49 - 000000000 ____D C:\Program Files\Gstarsoft
2021-05-15 18:48 - 2021-05-15 18:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnView
2021-05-15 18:48 - 2021-05-15 18:48 - 000000000 ____D C:\Program Files (x86)\XnView
2021-05-15 18:46 - 2021-05-19 11:50 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-05-15 18:46 - 2021-05-15 18:47 - 000000000 ____D C:\Users\milak\AppData\LocalLow\Adobe
2021-05-15 18:46 - 2021-05-15 18:46 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2021-05-15 18:45 - 2021-06-09 13:46 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-05-15 18:44 - 2021-05-15 18:44 - 000000000 ____D C:\Program Files (x86)\Adobe
2021-05-15 18:42 - 2021-05-16 09:39 - 000000000 ____D C:\ProgramData\Adobe
2021-05-15 18:42 - 2021-05-15 18:42 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2021-05-15 18:41 - 2021-05-19 11:46 - 000000000 ____D C:\Users\milak\AppData\Local\Adobe
2021-05-15 18:35 - 2021-05-29 16:34 - 000000000 ____D C:\Program Files\Microsoft Office
2021-05-15 18:35 - 2021-05-15 18:35 - 000000000 ____D C:\Program Files\Microsoft Office 15
2021-05-15 18:32 - 2021-05-15 18:32 - 000000000 ____D C:\Users\milak\AppData\Roaming\GHISLER
2021-05-15 18:32 - 2021-05-15 18:32 - 000000000 ____D C:\totalcmd
2021-05-15 18:31 - 2021-05-15 18:31 - 000000000 ____D C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-05-15 18:31 - 2021-05-15 18:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-05-15 18:31 - 2021-05-15 18:31 - 000000000 ____D C:\Program Files\WinRAR
2021-05-15 18:26 - 2021-06-10 16:26 - 000004460 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1621095967
2021-05-15 18:26 - 2021-06-02 19:20 - 000004206 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1621095956
2021-05-15 18:26 - 2021-06-02 19:20 - 000001416 _____ C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2021-05-15 18:26 - 2021-05-15 18:26 - 000000000 ____D C:\Users\milak\AppData\Local\Opera Software
2021-05-15 18:24 - 2021-05-15 18:24 - 000000000 ____D C:\Users\milak\AppData\Roaming\Opera Software
2021-05-15 18:21 - 2021-05-15 18:41 - 000000000 ____D C:\Users\milak\AppData\Local\Comms
2021-05-15 18:11 - 2021-05-15 18:11 - 000000000 ____D C:\Users\milak\AppData\Local\cache
2021-05-15 18:06 - 2021-06-10 16:21 - 000000000 ___RD C:\Users\milak\OneDrive
2021-05-15 18:06 - 2021-05-27 10:40 - 000013934 _____ C:\Users\milak\Documents\Prazdniny 2021_M.xlsx
2021-05-15 18:06 - 2021-05-15 18:10 - 000001622 _____ C:\Users\milak\Desktop\FRACTAL - SERVER.lnk
2021-05-15 18:06 - 2021-05-15 18:06 - 000000000 ___HD C:\OneDriveTemp
2021-05-15 18:06 - 2021-05-15 18:06 - 000000000 ____D C:\Users\milak\AppData\Local\Conexant
2021-05-15 18:06 - 2021-05-15 18:06 - 000000000 ____D C:\ProgramData\Propagation
2021-05-15 18:05 - 2021-05-24 21:31 - 000000000 ____D C:\Users\milak\AppData\Local\PlaceholderTileLogoFolder
2021-05-15 18:05 - 2021-05-17 15:00 - 000000000 ____D C:\Users\milak\AppData\Local\Lenovo
2021-05-15 18:05 - 2021-05-15 18:05 - 000000000 ____D C:\Users\Public\Lenovo App Explorer
2021-05-15 18:05 - 2021-05-15 18:05 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-05-15 18:04 - 2021-05-15 18:11 - 000000000 ____D C:\Users\milak\AppData\Local\AMD
2021-05-15 18:03 - 2021-05-15 18:03 - 000000000 ____D C:\Users\milak\AppData\Local\Publishers
2021-05-15 18:02 - 2021-06-10 16:20 - 000000000 __SHD C:\Users\milak\IntelGraphicsProfiles
2021-05-15 18:02 - 2021-06-07 20:25 - 000000000 ____D C:\Users\milak\AppData\Local\Packages
2021-05-15 18:02 - 2021-06-03 07:50 - 000000000 ____D C:\Users\milak\AppData\Local\D3DSCache
2021-05-15 18:02 - 2021-05-15 20:01 - 000000000 ____D C:\Users\milak\AppData\Local\ConnectedDevicesPlatform
2021-05-15 18:02 - 2021-05-15 18:47 - 000000000 ____D C:\Users\milak\AppData\Roaming\Adobe
2021-05-15 18:02 - 2021-05-15 18:02 - 000000000 ___RD C:\Users\milak\3D Objects
2021-05-15 18:02 - 2021-05-15 18:02 - 000000000 ____D C:\Users\milak\AppData\LocalLow\Intel
2021-05-15 18:02 - 2021-05-15 18:02 - 000000000 ____D C:\Users\milak\AppData\Local\VirtualStore
2021-05-15 17:52 - 2021-05-17 10:46 - 000000000 ____D C:\ProgramData\Packages
2021-05-15 17:51 - 2021-06-10 08:13 - 000000000 ____D C:\Users\milak\AppData\Local\Host App Service
2021-05-15 17:51 - 2021-05-15 21:47 - 000000000 ____D C:\Users\milak
2021-05-15 17:51 - 2021-05-15 17:51 - 000000020 ___SH C:\Users\milak\ntuser.ini
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Šablony
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Soubory cookie
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Poslední
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Okolní tiskárny
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Okolní síť
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Nabídka Start
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Dokumenty
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Documents\Obrázky
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Documents\Hudba
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Documents\Filmy
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\Data aplikací
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-05-15 17:51 - 2021-05-15 17:51 - 000000000 _SHDL C:\Users\milak\AppData\Local\Data aplikací
2021-05-15 17:49 - 2021-05-25 10:18 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2021-05-15 17:31 - 2021-05-17 15:01 - 000000000 ____D C:\ProgramData\Lenovo
2021-05-15 17:31 - 2015-05-12 18:57 - 000043256 _____ C:\WINDOWS\system32\oemlogo.bmp
2021-05-15 17:30 - 2021-06-06 10:13 - 000000000 ____D C:\WINDOWS\Panther
2021-05-15 17:26 - 2021-06-02 12:52 - 000002765 _____ C:\WINDOWS\system32\InstallUtil.InstallLog
2021-05-15 17:25 - 2021-05-15 17:25 - 000000000 ____D C:\ProgramData\ssh
2021-05-15 17:17 - 2021-06-10 14:33 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-05-15 17:17 - 2021-05-15 17:17 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-05-15 17:17 - 2021-05-15 17:17 - 000700928 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-05-15 17:17 - 2021-05-15 17:17 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-05-15 17:17 - 2021-05-15 17:17 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-05-15 17:17 - 2021-05-15 17:17 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-05-15 17:17 - 2021-05-15 17:17 - 000480256 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-05-15 17:17 - 2021-05-15 17:17 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000153600 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-05-15 17:17 - 2021-05-15 17:17 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-05-15 17:17 - 2021-05-15 17:17 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-05-15 17:17 - 2021-05-15 17:17 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-05-15 17:17 - 2021-05-15 17:17 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-05-15 17:17 - 2021-05-15 17:17 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-05-15 17:17 - 2021-05-15 17:17 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-05-15 17:16 - 2021-05-15 17:16 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-05-15 17:16 - 2021-05-15 17:16 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-05-15 17:16 - 2021-05-15 17:16 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-05-15 17:16 - 2021-05-15 17:16 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-05-15 17:16 - 2021-05-15 17:16 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-05-15 17:15 - 2021-05-15 17:15 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-05-15 17:15 - 2021-05-15 17:15 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-05-15 17:15 - 2021-05-15 17:15 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-05-15 17:15 - 2021-05-15 17:15 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-05-15 17:15 - 2021-05-15 17:15 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-05-15 17:15 - 2021-05-15 17:15 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-05-15 17:15 - 2021-05-15 17:15 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-05-15 17:14 - 2021-05-15 17:14 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-05-15 17:14 - 2021-05-15 17:14 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-05-15 17:14 - 2021-05-15 17:14 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-05-15 17:14 - 2021-05-15 17:14 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-05-15 17:14 - 2021-05-15 17:14 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-05-15 17:14 - 2021-05-15 17:14 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-05-15 17:03 - 2021-05-15 17:03 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2021-05-15 17:03 - 2021-05-15 17:03 - 000000000 ____D C:\Program Files\Reference Assemblies
2021-05-15 17:03 - 2021-05-15 17:03 - 000000000 ____D C:\Program Files\MSBuild
2021-05-15 17:03 - 2021-05-15 17:03 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2021-05-15 17:03 - 2021-05-15 17:03 - 000000000 ____D C:\Program Files (x86)\MSBuild
2021-05-15 16:58 - 2021-05-15 16:58 - 000000000 ____D C:\WINDOWS\system32\Samsung
2021-05-15 16:58 - 2021-05-15 16:58 - 000000000 ____D C:\WINDOWS\Firmware
2021-05-15 16:57 - 2021-05-25 09:00 - 000000000 ____D C:\Program Files\Lenovo
2021-05-15 16:57 - 2021-05-15 16:57 - 000000000 ____D C:\WINDOWS\SysWOW64\Lenovo
2021-05-15 16:57 - 2021-05-15 16:57 - 000000000 ____D C:\WINDOWS\system32\Lenovo
2021-05-15 16:56 - 2021-05-15 16:56 - 000000000 ____D C:\WINDOWS\Lenovo
2021-05-15 16:54 - 2021-05-15 16:54 - 000000000 ____D C:\Program Files\Synaptics
2021-05-15 16:50 - 2021-05-15 16:50 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-05-15 15:24 - 2021-05-15 17:31 - 000000000 ___HD C:\$SysReset
2021-05-13 08:21 - 2021-04-22 06:13 - 000065080 _____ (QUALCOMM Incorporated) C:\WINDOWS\system32\Drivers\ssudqcfilter.sys
2021-05-13 08:21 - 2021-04-22 06:12 - 000159800 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudbus2.sys

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-06-10 16:19 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-06-10 14:33 - 2019-12-07 16:43 - 000717980 _____ C:\WINDOWS\system32\perfh005.dat
2021-06-10 14:33 - 2019-12-07 16:43 - 000145122 _____ C:\WINDOWS\system32\perfc005.dat
2021-06-10 14:33 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2021-06-10 14:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-06-10 14:28 - 2019-12-07 11:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2021-06-10 10:11 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-06-10 08:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-06-10 08:58 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-06-10 08:51 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-06-10 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-06-10 08:45 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2021-06-10 08:45 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-06-09 06:37 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-06-09 06:33 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-05-29 16:34 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-05-17 14:59 - 2018-09-14 06:28 - 000000000 ____D C:\Program Files (x86)\Lenovo
2021-05-16 09:30 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-05-16 02:15 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Registration
2021-05-16 02:15 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2021-05-16 02:14 - 2019-12-07 11:14 - 000000000 __RSD C:\WINDOWS\Media
2021-05-16 02:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-05-16 02:11 - 2019-12-07 16:45 - 000000000 ____D C:\WINDOWS\OCR
2021-05-16 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-05-16 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DriverState
2021-05-16 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Resources
2021-05-16 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Help
2021-05-16 02:11 - 2018-09-14 07:09 - 000000000 ____D C:\WINDOWS\Favicon_ICON
2021-05-16 02:11 - 2018-09-14 06:28 - 000000000 ____D C:\WINDOWS\system32\Drivers\Lenovo
2021-05-16 02:04 - 2018-09-14 06:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conexant
2021-05-16 02:02 - 2018-09-14 06:40 - 000000000 ____D C:\Program Files (x86)\AMD
2021-05-16 02:02 - 2018-09-14 06:39 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2021-05-16 02:02 - 2018-09-14 06:37 - 000000000 ____D C:\Program Files\Intel
2021-05-16 02:02 - 2018-09-14 06:37 - 000000000 ____D C:\Program Files (x86)\Intel
2021-05-16 02:01 - 2018-09-14 06:41 - 000000000 ____D C:\Users\Default\AppData\Local\Host App Service
2021-05-16 01:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-05-16 01:53 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-05-15 20:33 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-05-15 18:05 - 2018-04-17 21:03 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-05-15 17:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-05-15 17:29 - 2019-12-07 11:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-05-15 17:25 - 2019-12-07 16:47 - 000000000 ___SD C:\WINDOWS\system32\AppV
2021-05-15 17:25 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-05-15 17:25 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-05-15 17:25 - 2019-12-07 16:44 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-05-15 17:25 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-05-15 17:23 - 2019-12-07 16:47 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-05-15 17:23 - 2019-12-07 16:47 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-05-15 17:16 - 2018-09-14 06:52 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2021-05-15 17:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2021-05-15 17:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MUI
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\system32\winrm
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\system32\WCN
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\system32\slmgr
2021-05-15 17:01 - 2019-12-07 16:43 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-06-2021
Ran by milak (10-06-2021 16:30:53)
Running from C:\Users\milak\Downloads
Windows 10 Pro Version 20H2 19042.1052 (X64) (2021-05-15 15:16:14)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3172340535-1444666044-2906063667-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3172340535-1444666044-2906063667-503 - Limited - Disabled)
Guest (S-1-5-21-3172340535-1444666044-2906063667-501 - Limited - Disabled)
milak (S-1-5-21-3172340535-1444666044-2906063667-1001 - Administrator - Enabled) => C:\Users\milak
WDAGUtilityAccount (S-1-5-21-3172340535-1444666044-2906063667-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Bitdefender Antivirus (Enabled - Up to date) {BAD274F4-FA00-8560-1CDE-6C830442BEFA}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Bitdefender Firewall (Enabled) {82E9F5D1-B06F-8438-3781-C5B6FA91F981}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 21.005.20048 - Adobe Systems Incorporated)
AMD Settings (HKLM\...\WUCCCApp) (Version: 2020.0825.2346.42803 - Advanced Micro Devices, Inc.)
ARCHICAD 22 R1 CZE (HKLM\...\ARCHICAD 22.0 CZE FULL R1 1) (Version: 22.0.0.7000 - GRAPHISOFT SE)
ARCHICAD 23 R1 CZE (HKLM\...\ARCHICAD 23.0 CZE FULL R1 1) (Version: 23.0.0.3003 - GRAPHISOFT SE)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 25.0.1.177 - Bitdefender)
Bitdefender Internet Security (HKLM\...\Bitdefender) (Version: 25.0.21.78 - Bitdefender)
CodeMeter Runtime Kit v7.00 (HKLM\...\{9054FBAC-C4FD-4FC2-B3F2-E4E41E49A20B}) (Version: 7.00.3918.500 - WIBU-SYSTEMS AG)
Dolby Audio X2 Windows API SDK (HKLM\...\{F994125B-7BF5-4A38-A569-82833CEB24DC}) (Version: 0.8.4.83 - Dolby Laboratories, Inc.) Hidden
Dolby Audio X2 Windows API SDK (HKLM\...\{FA0735B6-9E18-437A-A1CD-9152650FC52B}) (Version: 0.8.8.90 - Dolby Laboratories, Inc.) Hidden
GRAPHISOFT BIMx Desktop Viewer (HKLM\...\BIMx Viewer 23.0 GEN FULL R1 1) (Version: 2019.2.2328.0 - GRAPHISOFT SE)
GRAPHISOFT License Manager Tool (HKLM\...\License Manager Tool 20.0 INT FULL R1 1) (Version: 20.0.0.4800 - GRAPHISOFT SE)
GstarCAD 2021 - Česky (HKLM-x32\...\GstarCAD 2021_cs_cz) (Version: - Gstarsoft Co.,Ltd.)
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{3DAC4F8C-80E6-4204-8A58-747FA4CBAA03}) (Version: 16.0.246 - Intel Corporation)
Intel(R) Chipset Device Software (HKLM-x32\...\{44ded3eb-1686-46a6-9770-fd79096c29f7}) (Version: 10.1.1.45 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1067 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.48.197.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{66129f84-d3f0-4884-ac54-369ae6fc2cf6}) (Version: 1.48.197.0 - Intel Corporation) Hidden
Lenovo App Explorer (HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Host App Service) (Version: 0.273.4.227 - SweetLabs for Lenovo) <==== ATTENTION
Lenovo Calliope USB Keyboard (HKLM\...\{520AA862-0064-4B41-B777-1FAFC1AD1293}) (Version: 1.08 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 3.7.19.0 - Lenovo Group Ltd.)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 91.0.864.41 - Microsoft Corporation)
Microsoft Office 2016 pro profesionály - cs-cz (HKLM\...\ProfessionalRetail - cs-cz) (Version: 16.0.14026.20246 - Microsoft Corporation)
Microsoft OneDrive (HKLM-x32\...\OneDriveSetup.exe) (Version: 21.099.0516.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{A0E1B43D-5F4A-46AF-9925-ABA3423325DC}) (Version: 2.77.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27033 (HKLM-x32\...\{cc3a7c63-31fb-4129-9024-63ebefd86a95}) (Version: 14.16.27033.0 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14026.20246 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14026.20246 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.14026.20246 - Microsoft Corporation) Hidden
Old Calculator for Windows 10 (HKLM-x32\...\OldCalcForWin10) (Version: 1.1 - hxxp://winaero.com)
Opera Stable 76.0.4017.177 (HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Opera 76.0.4017.177) (Version: 76.0.4017.177 - Opera Software)
PDF24 Creator 10.0.12 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: 10.0.12 - PDF24.org)
Spotify (HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\Spotify) (Version: 1.1.60.672.g6ad9c215 - Spotify AB)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52 - Ghisler Software GmbH)
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
WibuKey Setup (WibuKey Remove) (HKLM\...\{00060000-0000-1004-8002-0000C06B5161}) (Version: Version 6.40 of 2016-Dec-22 (Build 2402) (Setup) - WIBU-SYSTEMS AG)
WinRAR 6.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH)
XnView 2.50 (HKLM-x32\...\XnView_is1) (Version: 2.50 - Gougelet Pierre-e)
Základní software zařízení HP OfficeJet Pro 7740 series (HKLM\...\{BEF54360-8158-4656-8EAA-29345AC35A80}) (Version: 40.12.1161.1896 - HP Inc.)

Packages:
=========
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2105.16.0_x64__k1h2ywk1493x8 [2021-06-08] (LENOVO INC.)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.5310.0_x64__8wekyb3d8bbwe [2021-06-06] (Microsoft Studios) [MS Ad]
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\microsoft.mpeg2videoextension_1.0.22661.0_x64__8wekyb3d8bbwe [2021-05-15] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\21.099.0516.0003\amd64\FileSyncShell64.dll [2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2020-08-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-08-18 22:22 - 2020-08-18 22:22 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 003567616 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2020-08-26 08:36 - 2020-08-26 08:36 - 001562624 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files\AMD\WVR\OpenVR\bin\win64\driver_amdwvr.dll
2021-05-16 01:51 - 2018-03-13 19:21 - 001173504 _____ (Conexant Systems, Inc.) [File not signed] C:\Program Files\Conexant\SAII\CxHDAudioAPI.dll
2021-05-15 17:27 - 2020-05-30 23:58 - 001280000 _____ (Robert Simpson, et al.) [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\GenericMessagingPlugin\x86\x86\SQLite.Interop.dll
2021-06-01 10:09 - 2020-11-03 05:08 - 000954864 _____ (SQLite Development Team) [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\LenovoWiFiSecurityPlugin\x86\x86\e_sqlite3.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000039424 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000413696 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000519168 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 001431040 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 001180672 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000135680 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\styles\qwindowsvistastyle.dll
2020-08-26 08:45 - 2020-08-26 08:45 - 006010880 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 006345216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 001078272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000313856 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 004000256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 003802624 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000171008 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickControls2.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 001083904 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickTemplates2.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000205312 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000329728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000376320 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 092323328 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 005560832 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000463360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000188416 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 002888704 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000053760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000059392 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000017408 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000287232 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls.2\qtquickcontrols2plugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000329216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000136192 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000089088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000312320 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Templates.2\qtquicktemplates2plugin.dll
2020-08-18 22:22 - 2020-08-18 22:22 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2020-08-26 08:45 - 2020-08-26 08:45 - 000085504 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtWebEngine\qtwebengineplugin.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Windows:CM_2dee4e53dd3acca42e0724c792283465392bce4050f6b30c9ec18bd7a20f6c70 [74]
AlternateDataStreams: C:\Windows:CM_42ddd22ba680615de1b6f5956ec86ccf60ca17ced6b5de7f9e859fc55f9904fe [74]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
BHO: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\bdtbie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
BHO: Bitdefender - Portmonka -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
BHO-x32: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\antispam32\bdtbie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
BHO-x32: Bitdefender - Portmonka -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - Bitdefender - Portmonka - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
Toolbar: HKLM-x32 - Bitdefender - Portmonka - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2021-05-07] (Bitdefender SRL -> Bitdefender)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-12 01:38 - 2021-06-10 16:28 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %INTEL_DEV_REDIST%redist\intel64_win\compiler;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Lenovo\ThinkFamily_Wallpaper.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "PDF24"
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\StartupApproved\Run: => "Spotify"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{86EB58D8-E96A-4A54-84F9-196D880AAEF5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{77E33BC2-FA80-4213-914E-B94803DA50B4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{23CCB051-ADB6-4CC8-9790-200DFF25227D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{4531324B-ECC5-4478-B4CE-50362C5A1806}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{6F913706-9C60-4674-A2D4-4F498B50CFE4}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{998E0392-F8E7-4736-92EE-653D2E3A9D1B}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{C45EF702-74E6-45F9-9D32-EA59B1DAE4AC}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{55BCC710-F851-40BC-B4DE-A4F88FCA69BB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16010.9126.2116.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File
FirewallRules: [{0225D6EC-F8DC-44F0-8C93-ECB29BDFBB25}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 22\ARCHICAD.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{DB0F6AC1-443E-49B2-AB96-375ECA61E1DF}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 22\CineRender\CineRenderNEM.exe (MAXON Computer GmbH -> MAXON Computer GmbH)
FirewallRules: [{96381334-CB96-4478-AB39-7EAA2318DBBE}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 22\BIMxUploader.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{CB05B1F9-D57D-4F66-8C22-EAEFF4851618}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 22\OverwatchServer.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{FCA1A457-9FE4-450A-A884-075D18FD4BFE}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
FirewallRules: [{B6A0AAE8-D7DC-4BB0-9AC7-667734E2C454}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
FirewallRules: [{AA8A111E-3260-4AC9-9DBD-E4A463B13900}] => (Allow) C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
FirewallRules: [{78B1BE0F-FDD4-42F3-878F-9DBA28E3E4F4}] => (Allow) C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
FirewallRules: [{23F4510D-68B3-47EA-A3B6-8E4770F95F7A}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 23\ARCHICAD.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{2B5E3B83-4757-43A2-B43D-885D978E6DD5}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 23\ARCHICAD Starter.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{78576DA7-AA0A-494B-AF99-4DAB72FD5682}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 23\CineRender\CineRenderNEM.exe (MAXON Computer GmbH -> MAXON Computer GmbH)
FirewallRules: [{DCAC468C-319D-40A1-910D-38A811422F71}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 23\BIMxUploader.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{E28F6E34-CB31-4392-BB2D-145704E62BC2}] => (Block) C:\Program Files\GRAPHISOFT\ARCHICAD 23\OverwatchServer.exe (GRAPHISOFT SE) [File not signed]
FirewallRules: [{3C6C7D1D-DEDC-45AC-96A4-B2BEDA5387EC}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\FaxApplications.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{C402ED0D-46A1-44E9-943A-64DDD2649F84}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\DigitalWizards.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{4307AD1C-8F48-484C-8288-F83B27C2F6D9}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\SendAFax.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{D21594DD-17B8-4943-A20D-2082B32FFD86}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\FaxPrinterUtility.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{DB5B1424-2400-4DF6-8ADA-DA24A858999A}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{C4EE701E-3B21-48C1-B08D-F320FA5F2863}] => (Allow) LPort=5357
FirewallRules: [{E79C3AAC-E5E0-4A35-85B3-07FE8432A8C3}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [TCP Query User{E2CC6309-5905-4FD6-AE8B-D7C289D86505}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File
FirewallRules: [UDP Query User{0C4988E9-6307-4350-8CCD-2761EC37C2BD}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File
FirewallRules: [{C8653BD0-555D-401F-8918-0780B9A6334C}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{1333924F-B3E6-4A83-979C-EABE31FC41E2}C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{B48AE747-DFC6-458A-903A-2509CBD69166}C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [TCP Query User{8545CC72-FCD9-4095-9FEF-AB1F71A660B7}C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{ADAFE782-4172-40FF-9473-95E9A6D44518}C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.154\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [TCP Query User{046CEE3D-22C4-41CA-AD0D-D04F1C849499}C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{53DEA131-C3FE-4BC5-B69B-7A0573893977}C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [TCP Query User{96ABFB6D-AA77-4B60-9C2E-8696BA48F2AE}C:\users\milak\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\milak\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{EF48C36A-FF70-4AC6-A478-B3FCEEA07D3F}C:\users\milak\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\milak\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{BCA13CE5-9362-4A36-BD41-A5ACF554281A}C:\users\milak\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\milak\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{B494DF85-8F4F-4985-B735-62CBB13275E2}C:\users\milak\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\milak\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{9EE7F211-9A52-4A74-B718-08C21C9B16C3}C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{09AB43C0-EFB9-418E-81A1-EB4A3B5F7F1C}C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\milak\appdata\local\programs\opera\76.0.4017.177\opera.exe (Opera Software AS -> Opera Software)
DomainProfile\AuthorizedApplications: [C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe] => Enabled:CodeMeter Runtime Server
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe] => Enabled:CodeMeter Runtime Server

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:90.05 GB) (Free:24.25 GB) (27%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (06/10/2021 10:10:25 AM) (Source: SecurityCenter) (EventID: 16) (User: )
Description: Při aktualizaci stavu na SECURITY_PRODUCT_STATE_SNOOZED došlo k chybě.

Error: (06/10/2021 09:01:08 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (06/10/2021 09:01:08 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (06/09/2021 01:46:19 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (06/09/2021 01:46:19 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (06/03/2021 11:27:38 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program OUTLOOK.EXE verze 16.0.14026.20246 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 41a0

Čas spuštění: 01d756c054b65dda

Čas ukončení: 201

Cesta k aplikaci: C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE

ID hlášení: 53b21b45-9f27-48b1-aaaa-d0dffee16560

Úplný název balíčku s chybou:

ID aplikace relativní podle balíčku s chybou:

Typ zablokování: Cross-thread

Error: (06/02/2021 04:02:40 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program HxCalendarAppImm.exe verze 16.0.13426.20910 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 4378

Čas spuštění: 01d756dcb59b752e

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe

ID hlášení: 649920bc-f110-4422-9f05-44e5849c87ed

Úplný název balíčku s chybou: microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe

ID aplikace relativní podle balíčku s chybou: microsoft.windowslive.calendar

Typ zablokování: Quiesce

Error: (05/28/2021 02:20:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: WINWORD.EXE, verze: 16.0.13929.20386, časové razítko: 0x609c5622
Název chybujícího modulu: wwlib.dll, verze: 16.0.13929.20384, časové razítko: 0x609c3ff2
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000000b3a3
ID chybujícího procesu: 0x1eec
Čas spuštění chybující aplikace: 0x01d753a0de04d8dc
Cesta k chybující aplikaci: C:\Program Files\Microsoft Office\Root\Office16\WINWORD.EXE
Cesta k chybujícímu modulu: C:\Program Files\Microsoft Office\Root\Office16\wwlib.dll
ID zprávy: 34b12d5d-7fd5-4b4d-b380-dc36b2ea40fa
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (06/09/2021 06:58:52 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240017): Aktualizace bezpečnostních informací pro produkt Microsoft Defender Antivirus - KB2267602 (verze 1.341.372.0).

Error: (06/09/2021 12:30:53 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): Aktualizace antimalwarové platformy programu Microsoft Defender Antivirus – KB4052623 (verze 4.18.2105.4).

Error: (06/09/2021 10:25:52 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): Aktualizace bezpečnostních informací pro produkt Microsoft Defender Antivirus - KB2267602 (verze 1.341.372.0).

Error: (06/09/2021 06:33:39 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): Aktualizace bezpečnostních informací pro produkt Microsoft Defender Antivirus - KB2267602 (verze 1.341.301.0).

Error: (06/09/2021 06:33:31 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): Aktualizace antimalwarové platformy programu Microsoft Defender Antivirus – KB4052623 (verze 4.18.2105.4).

Error: (06/09/2021 06:33:08 AM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: NT AUTHORITY)
Description: Na miniportu Intel(R) Dual Band Wireless-AC 3165 #2, {e3e0c467-0668-4576-a122-02064ecf6d0e}, došlo k události 71.

Error: (06/09/2021 06:33:08 AM) (Source: Netwtw04) (EventID: 5002) (User: )
Description: Intel(R) Dual Band Wireless-AC 3165 #2 : Bylo zjištěno, že síťový adaptér nepracuje správně.
5002 - uCode SW error (SysAssert, NMI)

Error: (06/09/2021 06:33:08 AM) (Source: Netwtw04) (EventID: 5032) (User: )
Description: 5032 - Driver Miniport reset watchdog


Windows Defender:
================
Date: 2021-06-09 13:58:03
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {613A1D31-0EFB-473B-86E1-9EE0F481EE86}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-06-04 21:47:57
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {EB3DE4BF-080D-4828-A860-BFD8CBEC5DCB}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-06-04 09:09:35
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {A2EC013A-11E6-4DAA-83AF-A0940BBA4541}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-06-03 07:49:41
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {40BAF7A6-2A38-4950-BDA1-62105ED2FAD1}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-06-01 10:16:22
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {5B070E37-0513-4570-A7A1-410445F1DEC9}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-06-09 10:26:21
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.341.372.0
Předchozí verze bezpečnostních informací: 1.341.115.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18200.4
Předchozí verze modulu: 1.1.18200.4
Kód chyby: 0x80004004
Popis chyby: Operace přerušena

Date: 2021-06-09 10:26:21
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.341.372.0
Předchozí verze bezpečnostních informací: 1.341.115.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18200.4
Předchozí verze modulu: 1.1.18200.4
Kód chyby: 0x80004004
Popis chyby: Operace přerušena

Date: 2021-06-09 06:34:09
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.341.301.0
Předchozí verze bezpečnostních informací: 1.341.115.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18200.4
Předchozí verze modulu: 1.1.18200.4
Kód chyby: 0x80004004
Popis chyby: Operace přerušena

Date: 2021-06-09 06:34:09
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.341.301.0
Předchozí verze bezpečnostních informací: 1.341.115.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18200.4
Předchozí verze modulu: 1.1.18200.4
Kód chyby: 0x80004004
Popis chyby: Operace přerušena

Date: 2021-06-08 17:45:10
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.341.301.0
Předchozí verze bezpečnostních informací: 1.341.115.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18200.4
Předchozí verze modulu: 1.1.18200.4
Kód chyby: 0x80004004
Popis chyby: Operace přerušena

CodeIntegrity:
===============
Date: 2021-05-25 08:35:59
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\mcafee\mfeav\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2021-05-24 21:21:20
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\mcafee\mfeav\AMSIExt.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO R0PET67W (1.44 ) 06/19/2020
Motherboard: LENOVO 20KS007QMC
Processor: Intel(R) Core(TM) i7-8550U CPU @ 1.80GHz
Percentage of memory in use: 32%
Total physical RAM: 16238.06 MB
Available physical RAM: 10929.25 MB
Total Virtual: 21614.06 MB
Available Virtual: 14302.99 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:90.05 GB) (Free:24.25 GB) NTFS
Drive d: () (Fixed) (Total:385.64 GB) (Free:16 GB) NTFS

\\?\Volume{a1be2417-621a-4831-bce3-3fd5be4c71d2}\ (WinRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.49 GB) NTFS
\\?\Volume{12f4dcd1-a9fb-47a6-afc5-2141ca9a5de7}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: 96C3E01C)

Partition: GPT.

==================== End of Addition.txt =======================
Rudy píše: 10 čer 2021 14:04 Nalezené položky (kromě Preinstalled) smažte, restartujte a pak dejte nové logy FRST+Addition.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 114242
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook - kontrola logu

#7 Příspěvek od Rudy »

Neřekl jsem vám, abyste mazal log, ale položky, které ADW nalezl. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\MountPoints2: {18c4b7f8-b595-11eb-9c9d-645d860fd3df} - "E:\LaunchU3.exe" -a
Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {B6E67297-4E2A-4BAB-9C4A-63B62EDBF591} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - \Microsoft\Windows\Speech\HeadsetButtonPress -> No File <==== ATTENTION
Task: {C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {D2974240-5CCB-46D7-BEF3-4BA58D135BEA} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
Task: {FAE71552-FA20-4AE1-9059-CD740BF71760} - \App Explorer -> No File <==== ATTENTION
C:\DumpStack.log.tmp
AlternateDataStreams: C:\Windows:CM_2dee4e53dd3acca42e0724c792283465392bce4050f6b30c9ec18bd7a20f6c70 [74]
AlternateDataStreams: C:\Windows:CM_42ddd22ba680615de1b6f5956ec86ccf60ca17ced6b5de7f9e859fc55f9904fe [74]
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File
FirewallRules: [{6F913706-9C60-4674-A2D4-4F498B50CFE4}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{998E0392-F8E7-4736-92EE-653D2E3A9D1B}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{C45EF702-74E6-45F9-9D32-EA59B1DAE4AC}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{55BCC710-F851-40BC-B4DE-A4F88FCA69BB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16010.9126.2116.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File
FirewallRules: [TCP Query User{E2CC6309-5905-4FD6-AE8B-D7C289D86505}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File
FirewallRules: [UDP Query User{0C4988E9-6307-4350-8CCD-2761EC37C2BD}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File

EmptyTemp:
End
Uložte do C:\Users\milak\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

mk23
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 10 čer 2021 10:50

Re: Zpomalený notebook - kontrola logu

#8 Příspěvek od mk23 »

Provedeno a posílám log:

Fix result of Farbar Recovery Scan Tool (x64) Version: 09-06-2021
Ran by milak (11-06-2021 09:37:23) Run:1
Running from C:\Users\milak\Downloads
Loaded Profiles: milak
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\MountPoints2: {18c4b7f8-b595-11eb-9c9d-645d860fd3df} - "E:\LaunchU3.exe" -a
Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {B6E67297-4E2A-4BAB-9C4A-63B62EDBF591} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - \Microsoft\Windows\Speech\HeadsetButtonPress -> No File <==== ATTENTION
Task: {C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {D2974240-5CCB-46D7-BEF3-4BA58D135BEA} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
Task: {FAE71552-FA20-4AE1-9059-CD740BF71760} - \App Explorer -> No File <==== ATTENTION
C:\DumpStack.log.tmp
AlternateDataStreams: C:\Windows:CM_2dee4e53dd3acca42e0724c792283465392bce4050f6b30c9ec18bd7a20f6c70 [74]
AlternateDataStreams: C:\Windows:CM_42ddd22ba680615de1b6f5956ec86ccf60ca17ced6b5de7f9e859fc55f9904fe [74]
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File
FirewallRules: [{6F913706-9C60-4674-A2D4-4F498B50CFE4}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{998E0392-F8E7-4736-92EE-653D2E3A9D1B}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{C45EF702-74E6-45F9-9D32-EA59B1DAE4AC}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{55BCC710-F851-40BC-B4DE-A4F88FCA69BB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16010.9126.2116.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File
FirewallRules: [TCP Query User{E2CC6309-5905-4FD6-AE8B-D7C289D86505}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File
FirewallRules: [UDP Query User{0C4988E9-6307-4350-8CCD-2761EC37C2BD}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File

EmptyTemp:
End
*****************

Processes closed successfully.
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{18c4b7f8-b595-11eb-9c9d-645d860fd3df} => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2BB692C1-F60F-479E-ADC2-1CAF9422A2AC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2BB692C1-F60F-479E-ADC2-1CAF9422A2AC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{B6E67297-4E2A-4BAB-9C4A-63B62EDBF591}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B6E67297-4E2A-4BAB-9C4A-63B62EDBF591}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Management\Provisioning\PostResetBoot" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C2098BE2-A29A-4EB1-97F6-F0C57E086D4F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C2098BE2-A29A-4EB1-97F6-F0C57E086D4F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Speech\HeadsetButtonPress" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsUpdate\sih" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D2974240-5CCB-46D7-BEF3-4BA58D135BEA}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D2974240-5CCB-46D7-BEF3-4BA58D135BEA}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FAE71552-FA20-4AE1-9059-CD740BF71760}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FAE71552-FA20-4AE1-9059-CD740BF71760}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\App Explorer" => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
C:\Windows => ":CM_2dee4e53dd3acca42e0724c792283465392bce4050f6b30c9ec18bd7a20f6c70" ADS removed successfully
C:\Windows => ":CM_42ddd22ba680615de1b6f5956ec86ccf60ca17ced6b5de7f9e859fc55f9904fe" ADS removed successfully
"HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Software\Microsoft\Internet Explorer\Main\\Secondary Start Pages" => removed successfully
HKLM\Software\Classes\PROTOCOLS\Filter\application/x-mfe-ipt => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6F913706-9C60-4674-A2D4-4F498B50CFE4}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{998E0392-F8E7-4736-92EE-653D2E3A9D1B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C45EF702-74E6-45F9-9D32-EA59B1DAE4AC}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{55BCC710-F851-40BC-B4DE-A4F88FCA69BB}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E2CC6309-5905-4FD6-AE8B-D7C289D86505}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0C4988E9-6307-4350-8CCD-2761EC37C2BD}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe" => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 7888896 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 246734776 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 65538147 B
Edge => 0 B
Firefox => 0 B
Opera => 352296966 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 3360 B
LocalService => 12416 B
NetworkService => 66086 B
milak => 1063276271 B

RecycleBin => 4365930 B
EmptyTemp: => 1.6 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 11-06-2021 09:43:31)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 09:43:31 ====


Rudy píše: 10 čer 2021 16:04 Neřekl jsem vám, abyste mazal log, ale položky, které ADW nalezl. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\...\MountPoints2: {18c4b7f8-b595-11eb-9c9d-645d860fd3df} - "E:\LaunchU3.exe" -a
Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {B6E67297-4E2A-4BAB-9C4A-63B62EDBF591} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - \Microsoft\Windows\Speech\HeadsetButtonPress -> No File <==== ATTENTION
Task: {C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {D2974240-5CCB-46D7-BEF3-4BA58D135BEA} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
Task: {FAE71552-FA20-4AE1-9059-CD740BF71760} - \App Explorer -> No File <==== ATTENTION
C:\DumpStack.log.tmp
AlternateDataStreams: C:\Windows:CM_2dee4e53dd3acca42e0724c792283465392bce4050f6b30c9ec18bd7a20f6c70 [74]
AlternateDataStreams: C:\Windows:CM_42ddd22ba680615de1b6f5956ec86ccf60ca17ced6b5de7f9e859fc55f9904fe [74]
HKU\S-1-5-21-3172340535-1444666044-2906063667-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File
FirewallRules: [{6F913706-9C60-4674-A2D4-4F498B50CFE4}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{998E0392-F8E7-4736-92EE-653D2E3A9D1B}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{C45EF702-74E6-45F9-9D32-EA59B1DAE4AC}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{55BCC710-F851-40BC-B4DE-A4F88FCA69BB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16010.9126.2116.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File
FirewallRules: [TCP Query User{E2CC6309-5905-4FD6-AE8B-D7C289D86505}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File
FirewallRules: [UDP Query User{0C4988E9-6307-4350-8CCD-2761EC37C2BD}C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\milak\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File

EmptyTemp:
End
Uložte do C:\Users\milak\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 114242
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook - kontrola logu

#9 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

mk23
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 10 čer 2021 10:50

Re: Zpomalený notebook - kontrola logu

#10 Příspěvek od mk23 »

Mám pocit, že je to stejné. Možná je to HW věc. Třeba špatně fungující dedikovaná grafická karta... Projevuje se to hodně u grafických CAD programů (ještě tak před rokem žádný problém nebyl (notebook mám cca 2,5 roku), nebo při přehrávání na YouTube...(přepínání na fullscreen a naopak)...

Ale každopádně díky za pomoc.

Rudy píše: 11 čer 2021 09:19 Smazáno. Nastala nějaká změna?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 114242
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook - kontrola logu

#11 Příspěvek od Rudy »

Zkuste ještě defragmentovat disk.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

mk23
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 10 čer 2021 10:50

Re: Zpomalený notebook - kontrola logu

#12 Příspěvek od mk23 »

Zdravím, optimalizoval jsem disk pomocí nástroje ve Win10. Mám SSD disk. Provedl jsem i test rychlosti disku pomocí Crystal Disk Mark. Vypadá OK – čtení/zápis = 1720/1450 MB/s. Ještě mě napadá, že je špatné chlazení procesoru. Při zátěži (i menší) jede větrák chlazení naplno, ale to bych asi musel řešit pomocí záruční opravy (3 roky a trvá do 12/2021)...

Rudy píše: 12 čer 2021 11:17 Zkuste ještě defragmentovat disk.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 114242
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook - kontrola logu

#13 Příspěvek od Rudy »

Dost záleží na tom, čemu říkáte "plná zátěž". Navíc obvykle chlazení nemá s rychlostí chodu prakticky žádnou souvislost. Moderní NB se při přehřátí jednoduše vypne a zařídí to nastavení v biosu. Od kdy máte tento problém? Může totiž souviset s aktualitzací systému. Poslední aktualizace si totiž u některých chipsetů nerozumí se systémem.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

mk23
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 10 čer 2021 10:50

Re: Zpomalený notebook - kontrola logu

#14 Příspěvek od mk23 »

Problém mám tak 10 měsíců. I jsem zkoušel notebook kompletně přeinstalovat. Zvolil jsem úplně novou instalaci, je to asi 5 týdnů.
Rudy píše: 16 čer 2021 09:26 Dost záleží na tom, čemu říkáte "plná zátěž". Navíc obvykle chlazení nemá s rychlostí chodu prakticky žádnou souvislost. Moderní NB se při přehřátí jednoduše vypne a zařídí to nastavení v biosu. Od kdy máte tento problém? Může totiž souviset s aktualitzací systému. Poslední aktualizace si totiž u některých chipsetů nerozumí se systémem.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 114242
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook - kontrola logu

#15 Příspěvek od Rudy »

OK. Můžete tedy ještě zkusit aktualizaci ovladačů.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět