Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zavirované PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Volny256
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 15 úno 2017 17:11

Zavirované PC

#1 Příspěvek od Volny256 »

Dobrý den,

v mém PC se nejspíše vyskytla nějaká havěť.
Blokuje spouštění jakéhokoliv antiviru a CPU jede pořád na 100%.

LOG FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.01.2018
Ran by StriX (administrator) on STRIX-PC (06-01-2018 17:04:46)
Running from C:\Users\StriX\Desktop
Loaded Profiles: StriX (Available Profiles: StriX)
Platform: Windows 10 Education Version 1709 16299.125 (X64) Language: Angličtina (Spojené státy)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2e329e8610bbb375\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2e329e8610bbb375\IntelCpHDCPSvc.exe
(Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Mystic Light2\MysticLight_Service.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\DPC Latency Tuner\DPCLT_Service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
() C:\Windows\System32\spacedeskService.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\VideoCardMonitorII.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\EyeRest.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\TriggerModeMonitor.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
() C:\Windows\System32\SpaceDeskServiceTray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe
() C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
(MSI) C:\Windows\SysWOW64\muachost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
() C:\Program Files (x86)\Multitimer\80062.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.257.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Valve Corporation) C:\Steam\Steam.exe
() C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
(Valve Corporation) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files (x86)\uRage Illuminated Driver\Monitor.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI X Boost\X_Boost.exe
(Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Mystic Light2\Mystic Light.exe
(MSI) C:\Windows\SysWOW64\muachost.exe
(MSI) C:\Windows\SysWOW64\muachost.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(MSI) C:\Windows\SysWOW64\muachost.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
() C:\Windows\Temp\g783.tmp.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
() C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe
() C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe
() C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe
() C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe
() C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe
() C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe
() C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe
() C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235936 2017-08-09] (Realtek Semiconductor)
HKLM-x32\...\Run: [Dare-U mouse] => C:\Program Files (x86)\uRage Illuminated Driver\Monitor.exe [491520 2013-01-17] ()
HKLM-x32\...\Run: [X_Boost] => C:\Program Files (x86)\MSI\MSI X Boost\X_Boost.exe [4224440 2017-08-08] (Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [Mystic Light] => C:\Program Files (x86)\MSI\Mystic Light2\Mystic Light.exe [3091920 2017-07-06] (Micro-Star Int'l Co., Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle Corporation)
HKLM\...\RunOnce: [orvlrvicvyr] => C:\Program Files (x86)\Multitimer\80062.exe [1218048 2018-01-05] ()
HKLM\...\RunOnce: [STRIX-PC] => C:\WINDOWS\TEMP\g6B8A.tmp.exe [207360 2018-01-06] () <==== ATTENTION
HKLM\ DisallowedCertificates: 03D22C9C66915D58C88912B64C1F984B8344EF09 (Comodo Security Solutions) <==== ATTENTION
HKLM\ DisallowedCertificates: 0F684EC1163281085C6AF20528878103ACEFCAAB (F-Secure Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 1667908C9E22EFBD0590E088715CC74BE4C60884 (FRISK Software International/F-Prot) <==== ATTENTION
HKLM\ DisallowedCertificates: 18DEA4EFA93B06AE997D234411F3FD72A677EECE (Bitdefender SRL) <==== ATTENTION
HKLM\ DisallowedCertificates: 2026D13756EB0DB753DF26CB3B7EEBE3E70BB2CF (G DATA Software AG) <==== ATTENTION
HKLM\ DisallowedCertificates: 249BDA38A611CD746A132FA2AF995A2D3C941264 (Malwarebytes Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 31AC96A6C17C425222C46D55C3CCA6BA12E54DAF (Symantec Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 331E2046A1CCA7BFEF766724394BE6112B4CA3F7 (Trend Micro) <==== ATTENTION
HKLM\ DisallowedCertificates: 3353EA609334A9F23A701B9159E30CB6C22D4C59 (Webroot Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: 373C33726722D3A5D1EDD1F1585D5D25B39BEA1A (SUPERAntiSpyware.com) <==== ATTENTION
HKLM\ DisallowedCertificates: 3850EDD77CC74EC9F4829AE406BBF9C21E0DA87F (Kaspersky Lab) <==== ATTENTION
HKLM\ DisallowedCertificates: 3D496FA682E65FC122351EC29B55AB94F3BB03FC (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: 4243A03DB4C3C15149CEA8B38EEA1DA4F26BD159 (PC Tools) <==== ATTENTION
HKLM\ DisallowedCertificates: 42727E052C0C2E1B35AB53E1005FD9EDC9DE8F01 (K7 Computing Pvt Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 4420C99742DF11DD0795BC15B7B0ABF090DC84DF (Doctor Web Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 4C0AF5719009B7C9D85C5EAEDFA3B7F090FE5FFF (Emsisoft Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 5240AB5B05D11B37900AC7712A3C6AE42F377C8C (Check Point Software Technologies Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 5DD3D41810F28B2A13E9A004E6412061E28FA48D (Emsisoft Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 7457A3793086DBB58B3858D6476889E3311E550E (K7 Computing Pvt Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 76A9295EF4343E12DFC5FE05DC57227C1AB00D29 (BullGuard Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 775B373B33B9D15B58BC02B184704332B97C3CAF (McAfee) <==== ATTENTION
HKLM\ DisallowedCertificates: 872CD334B7E7B3C3D1C6114CD6B221026D505EAB (Comodo Security Solutions) <==== ATTENTION
HKLM\ DisallowedCertificates: 88AD5DFE24126872B33175D1778687B642323ACF (McAfee) <==== ATTENTION
HKLM\ DisallowedCertificates: 9132E8B079D080E01D52631690BE18EBC2347C1E (Adaware Software) <==== ATTENTION
HKLM\ DisallowedCertificates: 982D98951CF3C0CA2A02814D474A976CBFF6BDB1 (Safer Networking Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 9A08641F7C5F2CCA0888388BE3E5DBDDAAA3B361 (Webroot Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: 9C43F665E690AB4D486D4717B456C5554D4BCEB5 (ThreatTrack Security) <==== ATTENTION
HKLM\ DisallowedCertificates: 9E3F95577B37C74CA2F70C1E1859E798B7FC6B13 (CURIOLAB S.M.B.A.) <==== ATTENTION
HKLM\ DisallowedCertificates: A1F8DCB086E461E2ABB4B46ADCFA0B48C58B6E99 (Avira Operations GmbH & Co. KG) <==== ATTENTION
HKLM\ DisallowedCertificates: A5341949ABE1407DD7BF7DFE75460D9608FBC309 (BullGuard Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: A59CC32724DD07A6FC33F7806945481A2D13CA2F (ESET) <==== ATTENTION
HKLM\ DisallowedCertificates: AB7E760DA2485EA9EF5A6EEE7647748D4BA6B947 (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: AD4C5429E10F4FF6C01840C20ABA344D7401209F (Avast Antivirus/Software) <==== ATTENTION
HKLM\ DisallowedCertificates: AD96BB64BA36379D2E354660780C2067B81DA2E0 (Symantec Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: B8EBF0E696AF77F51C96DB4D044586E2F4F8FD84 (Malwarebytes Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: CDC37C22FE9272D8F2610206AD397A45040326B8 (Trend Micro) <==== ATTENTION
HKLM\ DisallowedCertificates: D3F78D747E7C5D6D3AE8ABFDDA7522BFB4CBD598 (Kaspersky Lab) <==== ATTENTION
HKLM\ DisallowedCertificates: DB303C9B61282DE525DC754A535CA2D6A9BD3D87 (ThreatTrack Security) <==== ATTENTION
HKLM\ DisallowedCertificates: DB77E5CFEC34459146748B667C97B185619251BA (Avast Antivirus/Software) <==== ATTENTION
HKLM\ DisallowedCertificates: E22240E837B52E691C71DF248F12D27F96441C00 (Total Defense, Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: E513EAB8610CFFD7C87E00BCA15C23AAB407FCEF (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: ED841A61C0F76025598421BC1B00E24189E68D54 (Bitdefender SRL) <==== ATTENTION
HKLM\ DisallowedCertificates: F83099622B4A9F72CB5081F742164AD1B8D048C9 (ESET) <==== ATTENTION
HKLM\ DisallowedCertificates: FBB42F089AF2D570F2BF6F493D107A3255A9BB1A (Panda Security S.L) <==== ATTENTION
HKLM\ DisallowedCertificates: FFFA650F2CB2ABC0D80527B524DD3F9FC172C138 (Doctor Web Ltd.) <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Run: [Steam] => C:\Steam\steam.exe [3111712 2017-12-15] (Valve Corporation)
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Run: [Bloody2] => C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe [17627648 2017-09-01] ()
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Technologies S.A.)
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Run: [OWRA51JNJZ65F6I] => "C:\Program Files (x86)\ShutdownTime\77W8J.exe"
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\RunOnce: [Application Restart #0] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MSI)
HKU\S-1-5-18\...\Run: [] => [X]
Startup: C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar171.lnk [2018-01-06]
ShortcutTarget: Sidebar171.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
GroupPolicy: Restriction - Chrome <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [S-1-5-21-752624193-2435152514-875314472-1001] => Proxy is enabled.
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1 10.0.1.1
Tcpip\..\Interfaces\{5c89dade-469a-4ffe-be66-a576de904b20}: [DhcpNameServer] 10.0.0.1 10.0.1.1

Internet Explorer:
==================
HKU\S-1-5-21-752624193-2435152514-875314472-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10420__171125__yaie
SearchScopes: HKU\S-1-5-21-752624193-2435152514-875314472-1001 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10420__171125__yaie&p={searchTerms}
BHO: YoutubeAdBlock -> {C0D38E5A-7CF8-4105-8FE8-31B81443A114} -> C:\Program Files (x86)\GBeMZXQZBIE\txMQE1ip.dll [2018-01-05] ()
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-11-10] (Oracle Corporation)
BHO-x32: YoutubeAdBlock -> {C0D38E5A-7CF8-4105-8FE8-31B81443A114} -> C:\Program Files (x86)\GBeMZXQZBIE\km8zuGp.dll [2018-01-05] ()
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-10] (Oracle Corporation)

FireFox:
========
FF DefaultProfile: ihrwisfo.default
FF ProfilePath: C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default [2018-01-06]
FF Homepage: Mozilla\Firefox\Profiles\ihrwisfo.default -> hxxps://www.seznam.cz/
FF NewTab: Mozilla\Firefox\Profiles\ihrwisfo.default -> hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10420__171125__yaff
FF Extension: (FF AntiVirus Tool) - C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default\Extensions\{5af74f5a-652b-4b83-a2a9-f3d21c3c0010}.xpi [2017-12-14]
FF Extension: (Firefox Antivirus) - C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default\Extensions\{6feed48d-41d4-49b8-b7d6-ef78cc7a7cd7}.xpi [2017-12-09]
FF Extension: (Disable JavaScript Shared Memory) - C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default\features\{0bf36d57-6094-48f0-8fc1-2798459d5a26}\disable-js-shared-memory@mozilla.org.xpi [2018-01-05] [Legacy]
FF SearchPlugin: C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default\searchplugins\yahoo-lavasoft.xml [2017-11-25]
FF Extension: (Adblocker for Youtube™) - C:\Program Files\Mozilla Firefox\browser\features\{A5FD4672-4D73-4F90-A1C0-2ABD39DB2565}.xpi [2018-01-05] [not signed]
FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-11-10] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-11-10] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-15] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-15] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.)

Chrome:
=======
CHR Profile: C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default [2018-01-06]
CHR Extension: (Slides) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Docs) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Google Drive) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-10-13]
CHR Extension: (YouTube) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-10-13]
CHR Extension: (Sheets) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Google Docs Offline) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-10-13]
CHR Extension: (Chrome Web Store Payments) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-10-13]
CHR Extension: (Adblocker for Youtube™) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac [2018-01-05]
CHR Extension: (Adblocker for Youtube™) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj [2018-01-06]
CHR Extension: (Gmail) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-10-13]
CHR Extension: (Chrome Media Router) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-13]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2017-10-24] (Futuremark)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [48824 2017-10-26] (Micro-Star Int'l Co., Ltd.)
R2 GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2021048 2017-11-01] (Micro-Star INT'L CO., LTD.)
R2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [83616 2017-11-21] (Micro-Star INT'L CO., LTD.)
R2 MSI_DPCLTSERVICE; C:\Program Files (x86)\MSI\DPC Latency Tuner\DPCLT_Service.exe [2142648 2017-08-10] (Micro-Star INT'L CO., LTD.)
R2 MSI_MYSTICLIGHTSERVICE; C:\Program Files (x86)\MSI\Mystic Light2\MysticLight_Service.exe [2046928 2017-07-06] (Micro-Star INT'L CO., LTD.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1451848 2017-12-26] (Overwolf LTD)
S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2017-08-25] ()
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [107832 2017-08-25] ()
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2017-11-26] (Microsoft Corporation)
R2 spacedeskService; C:\WINDOWS\System32\spacedeskService.exe [787504 2017-11-24] ()
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\NisSrv.exe [356176 2017-12-09] (Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MsMpEng.exe [105792 2017-12-09] (Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 e1dexpress; C:\WINDOWS\system32\DRIVERS\e1d65x64.sys [544744 2017-03-19] (Intel Corporation)
R3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (FINTEK Corp.)
R3 NTIOLib_DPC; C:\Program Files (x86)\MSI\DPC Latency Tuner\NTIOLib_X64.sys [14288 2017-03-29] (MSI)
S3 NTIOLib_MBAPI; C:\Program Files (x86)\MSI\Gaming APP\Lib\NTIOLib_X64.sys [14288 2017-03-08] (MSI)
R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\Mystic Light2\Lib\NTIOLib_X64.sys [14288 2017-05-24] (MSI)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d37ca5c2cde53609\nvlddmkm.sys [17028552 2017-12-18] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-11-16] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-11-16] (NVIDIA Corporation)
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] ()
R1 spacedeskDispKmode; C:\WINDOWS\System32\drivers\spacedeskDispKmode.sys [284208 2017-11-24] (datronicsoft Inc.)
R3 spacedeskKtmInputKeybd; C:\WINDOWS\System32\drivers\spacedeskKtmInputKeybd.sys [35384 2017-09-19] ()
R3 spacedeskKtmInputMouse; C:\WINDOWS\System32\drivers\spacedeskKtmInputMouse.sys [35384 2017-09-19] ()
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46072 2017-12-09] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [288848 2017-12-09] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [129616 2017-12-09] (Microsoft Corporation)
S3 cpuz136; \??\C:\WINDOWS\TEMP\cpuz136\cpuz136_x64.sys [X]
S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-01-06 17:04 - 2018-01-06 17:04 - 000060170 _____ C:\Users\StriX\Desktop\Addition.txt
2018-01-06 17:03 - 2018-01-06 17:04 - 000023513 _____ C:\Users\StriX\Desktop\FRST.txt
2018-01-06 17:03 - 2018-01-06 17:04 - 000000000 ____D C:\FRST
2018-01-06 17:03 - 2018-01-06 17:03 - 002393088 _____ (Farbar) C:\Users\StriX\Desktop\FRST64.exe
2018-01-06 17:00 - 2018-01-06 17:00 - 008198432 _____ (Malwarebytes) C:\Users\StriX\Desktop\adwcleaner_7.0.6.0.exe
2018-01-06 16:54 - 2018-01-06 16:54 - 002453299 _____ C:\Users\StriX\Desktop\2018-01-06 16-54-43.mp4
2018-01-06 13:53 - 2018-01-06 13:53 - 007172032 _____ (AVAST Software) C:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe
2018-01-06 13:53 - 2018-01-06 13:53 - 000000000 ____D C:\ProgramData\AVAST Software
2018-01-06 07:42 - 2018-01-06 07:42 - 000000270 __RSH C:\Users\StriX\ntuser.pol
2018-01-05 21:17 - 2018-01-05 21:17 - 000000000 ____D C:\ProgramData\Sony
2018-01-05 21:16 - 2018-01-05 21:16 - 000000000 ____D C:\Users\StriX\AppData\Local\Sony
2018-01-05 21:15 - 2018-01-05 21:15 - 000001038 _____ C:\Users\StriX\Desktop\Vegas Pro 13.0 (64-bit).lnk
2018-01-05 21:15 - 2018-01-05 21:15 - 000001026 _____ C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Vegas Pro 13.0 (64-bit).lnk
2018-01-05 21:15 - 2018-01-05 21:15 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sony
2018-01-05 21:15 - 2018-01-05 21:15 - 000000000 ____D C:\Program Files\Sony
2018-01-05 21:15 - 2018-01-05 21:15 - 000000000 ____D C:\Program Files (x86)\Sony
2018-01-05 21:13 - 2018-01-05 21:13 - 000000000 ____D C:\ProgramData\Microleaves
2018-01-05 21:11 - 2018-01-06 14:37 - 000000328 _____ C:\WINDOWS\Tasks\saKXaLnxQURzlMgex.job
2018-01-05 21:11 - 2018-01-06 14:37 - 000000316 _____ C:\WINDOWS\Tasks\plaAVjRQXWCDePSecyr.job
2018-01-05 21:11 - 2018-01-06 14:37 - 000000306 _____ C:\WINDOWS\Tasks\BcyoMZkjXMgFaPP.job
2018-01-05 21:11 - 2018-01-05 21:11 - 000003214 _____ C:\WINDOWS\System32\Tasks\pnIxobGIUDXdNt
2018-01-05 21:11 - 2018-01-05 21:11 - 000002890 _____ C:\WINDOWS\System32\Tasks\saKXaLnxQURzlMgex2
2018-01-05 21:11 - 2018-01-05 21:11 - 000002882 _____ C:\WINDOWS\System32\Tasks\plaAVjRQXWCDePSecyr2
2018-01-05 21:11 - 2018-01-05 21:11 - 000002864 _____ C:\WINDOWS\System32\Tasks\BcyoMZkjXMgFaPP2
2018-01-05 21:11 - 2018-01-05 21:11 - 000002652 _____ C:\WINDOWS\System32\Tasks\saKXaLnxQURzlMgex
2018-01-05 21:11 - 2018-01-05 21:11 - 000002644 _____ C:\WINDOWS\System32\Tasks\plaAVjRQXWCDePSecyr
2018-01-05 21:11 - 2018-01-05 21:11 - 000002626 _____ C:\WINDOWS\System32\Tasks\BcyoMZkjXMgFaPP
2018-01-05 21:11 - 2018-01-05 21:11 - 000000000 ____D C:\Program Files (x86)\umkISPBbU
2018-01-05 21:11 - 2018-01-05 21:11 - 000000000 ____D C:\Program Files (x86)\TwPufLOWyrxU2
2018-01-05 21:11 - 2018-01-05 21:11 - 000000000 ____D C:\Program Files (x86)\RrHYXuUpocPTIXdsppR
2018-01-05 21:11 - 2018-01-05 21:11 - 000000000 ____D C:\Program Files (x86)\qTTaaczyWvUn
2018-01-05 21:11 - 2018-01-05 21:11 - 000000000 ____D C:\Program Files (x86)\GBeMZXQZBIE
2018-01-05 21:11 - 2018-01-05 21:11 - 000000000 ____D C:\Program Files (x86)\aohGTEheqdnWC
2018-01-05 21:10 - 2018-01-06 14:37 - 000000400 _____ C:\WINDOWS\Tasks\Updater_Online_Application.job
2018-01-05 21:10 - 2018-01-06 14:37 - 000000368 _____ C:\WINDOWS\Tasks\Online Application V2G6.job
2018-01-05 21:10 - 2018-01-06 14:37 - 000000368 _____ C:\WINDOWS\Tasks\Online Application V2G5.job
2018-01-05 21:10 - 2018-01-06 14:37 - 000000368 _____ C:\WINDOWS\Tasks\Online Application V2G4.job
2018-01-05 21:10 - 2018-01-06 14:37 - 000000368 _____ C:\WINDOWS\Tasks\Online Application V2G3.job
2018-01-05 21:10 - 2018-01-06 14:37 - 000000368 _____ C:\WINDOWS\Tasks\Online Application V2G2.job
2018-01-05 21:10 - 2018-01-06 14:37 - 000000368 _____ C:\WINDOWS\Tasks\Online Application V2G1.job
2018-01-05 21:10 - 2018-01-06 07:47 - 000000000 ____D C:\Program Files (x86)\ShutdownTime
2018-01-05 21:10 - 2018-01-05 22:00 - 000004000 __RSH C:\ProgramData\ntuser.pol
2018-01-05 21:10 - 2018-01-05 21:10 - 000930816 _____ C:\Users\StriX\AppData\Local\po.db
2018-01-05 21:10 - 2018-01-05 21:10 - 000140800 _____ C:\Users\StriX\AppData\Local\installer.dat
2018-01-05 21:10 - 2018-01-05 21:10 - 000016876 _____ C:\WINDOWS\System32\Tasks\Acronis Movie Converter
2018-01-05 21:10 - 2018-01-05 21:10 - 000011568 _____ C:\Users\StriX\AppData\Local\InstallationConfiguration.xml
2018-01-05 21:10 - 2018-01-05 21:10 - 000003294 _____ C:\WINDOWS\System32\Tasks\Updater_Online_Application
2018-01-05 21:10 - 2018-01-05 21:10 - 000003258 _____ C:\WINDOWS\System32\Tasks\Online Application V2G6
2018-01-05 21:10 - 2018-01-05 21:10 - 000003258 _____ C:\WINDOWS\System32\Tasks\Online Application V2G5
2018-01-05 21:10 - 2018-01-05 21:10 - 000003258 _____ C:\WINDOWS\System32\Tasks\Online Application V2G4
2018-01-05 21:10 - 2018-01-05 21:10 - 000003258 _____ C:\WINDOWS\System32\Tasks\Online Application V2G3
2018-01-05 21:10 - 2018-01-05 21:10 - 000003258 _____ C:\WINDOWS\System32\Tasks\Online Application V2G2
2018-01-05 21:10 - 2018-01-05 21:10 - 000003258 _____ C:\WINDOWS\System32\Tasks\Online Application V2G1
2018-01-05 21:10 - 2018-01-05 21:10 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microleaves
2018-01-05 21:10 - 2018-01-05 21:10 - 000000000 ____D C:\Users\StriX\AppData\Local\AdvinstAnalytics
2018-01-05 21:10 - 2018-01-05 21:10 - 000000000 ____D C:\Program Files (x86)\Multitimer
2018-01-05 21:10 - 2018-01-05 21:10 - 000000000 ____D C:\Program Files (x86)\Microleaves
2018-01-05 20:33 - 2018-01-06 14:37 - 000000362 _____ C:\WINDOWS\Tasks\Connect.job
2018-01-05 20:33 - 2018-01-05 20:33 - 000002776 _____ C:\WINDOWS\System32\Tasks\Connect
2018-01-05 20:33 - 2018-01-05 20:33 - 000000000 ____D C:\ProgramData\simplitec
2018-01-05 20:33 - 2018-01-05 20:33 - 000000000 ____D C:\ProgramData\Magix
2018-01-05 20:33 - 2018-01-05 20:33 - 000000000 ____D C:\Program Files (x86)\MAGIX
2018-01-05 20:32 - 2018-01-05 20:45 - 000000000 ____D C:\ProgramData\VEGAS
2018-01-05 20:31 - 2018-01-05 21:23 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Sony
2018-01-05 19:54 - 2018-01-05 19:54 - 000000000 ____D C:\Users\StriX\Documents\MAGIX Downloads
2018-01-05 19:54 - 2018-01-05 19:54 - 000000000 ____D C:\Users\StriX\AppData\Roaming\MAGIX
2018-01-01 20:49 - 2018-01-01 20:49 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2018-01-01 20:46 - 2018-01-02 09:08 - 000000000 ____D C:\Users\StriX\AppData\Local\NFS Underground 2
2018-01-01 20:46 - 2018-01-01 20:46 - 000000695 _____ C:\Users\StriX\Desktop\Need for Speed Underground 2.lnk
2018-01-01 20:46 - 2018-01-01 20:46 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2017-12-31 14:13 - 2018-01-01 15:24 - 002175492 _____ C:\Users\StriX\Desktop\Poznávačka RYBY.pptx
2017-12-31 14:13 - 2017-12-31 14:13 - 002219693 _____ C:\Users\StriX\Documents\Poznávačka RYBY.pptx
2017-12-29 12:45 - 2017-12-29 13:45 - 000000000 ____D C:\Users\StriX\Documents\3DMark
2017-12-29 12:45 - 2017-12-29 12:45 - 000000000 ____D C:\Users\StriX\.oracle_jre_usage
2017-12-29 12:45 - 2017-12-29 12:45 - 000000000 ____D C:\ProgramData\Futuremark
2017-12-29 11:38 - 2017-12-29 11:43 - 000000000 ____D C:\Users\StriX\Desktop\Counters
2017-12-29 11:38 - 2017-12-29 11:42 - 000000000 ____D C:\Users\StriX\Desktop\Runes
2017-12-28 22:18 - 2017-12-28 22:18 - 000000022 _____ C:\WINDOWS\GPU-Z.INI
2017-12-28 22:18 - 2017-12-28 22:18 - 000000000 ____D C:\Temp
2017-12-28 22:05 - 2017-12-28 22:05 - 000000000 ____D C:\Program Files\Futuremark
2017-12-27 18:07 - 2017-12-27 18:07 - 000003190 _____ C:\WINDOWS\System32\Tasks\MSIGH_Host
2017-12-27 18:07 - 2017-12-27 18:07 - 000003132 _____ C:\WINDOWS\System32\Tasks\MSIOSDx86_Host
2017-12-27 18:07 - 2017-12-27 18:07 - 000003132 _____ C:\WINDOWS\System32\Tasks\MSIOSDx64_Host
2017-12-27 18:07 - 2017-12-27 18:07 - 000003058 _____ C:\WINDOWS\System32\Tasks\MSISW_Host
2017-12-27 18:05 - 2017-12-27 18:05 - 000001194 _____ C:\Users\Public\Desktop\MSI Gaming APP.lnk
2017-12-27 18:05 - 2015-08-18 09:51 - 001692840 _____ (MSI) C:\WINDOWS\SysWOW64\muachost.exe
2017-12-25 17:20 - 2017-12-25 17:20 - 000000199 _____ C:\Users\StriX\Desktop\Portal.url
2017-12-25 16:53 - 2017-12-25 16:53 - 000002737 _____ C:\Users\Public\Desktop\Dragon Eye.lnk
2017-12-25 15:26 - 2017-12-29 13:40 - 000000000 ____D C:\Users\StriX\Desktop\Overclocking
2017-12-25 13:45 - 2017-12-25 13:47 - 000000000 ____D C:\Users\StriX\Valley
2017-12-25 13:44 - 2017-12-27 18:27 - 000728064 _____ C:\Users\StriX\AppData\Local\file__0.localstorage
2017-12-25 13:44 - 2017-12-25 13:44 - 000000000 ____D C:\Program Files (x86)\Unigine
2017-12-25 13:42 - 2017-12-25 13:42 - 000001178 _____ C:\Users\StriX\Desktop\GTAVLauncher – zástupce.lnk
2017-12-25 11:25 - 2018-01-06 16:42 - 000003128 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2017-12-25 10:43 - 2017-12-25 10:43 - 000000119 _____ C:\Users\StriX\AppData\Roaming\System Monitor II_UptimeRecord.ini
2017-12-25 00:14 - 2017-12-25 00:28 - 000004000 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 22:36 - 2017-12-24 22:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D
2017-12-24 22:36 - 2017-12-24 22:36 - 000000000 ____D C:\Program Files (x86)\Geeks3D
2017-12-24 22:24 - 2017-12-25 21:33 - 000000000 ____D C:\WINDOWS\Minidump
2017-12-24 21:57 - 2017-12-24 21:57 - 000000000 ____D C:\Program Files (x86)\GPU-Z
2017-12-24 21:14 - 2017-12-15 23:47 - 000143960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2017-12-24 21:11 - 2017-12-16 01:23 - 040237456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 036350960 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 035157488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 023267096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 019040512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 013867656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 013255032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 011781912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 010883744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 004202992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 003615032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001990128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438871.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001674736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438871.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001331016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001321448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001135464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001101104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001044848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001038496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001032688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000980880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000933360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000885680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000794392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000740144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000634224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000618744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000616240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000599536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000506864 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000045496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json
2017-12-24 21:11 - 2017-12-16 01:23 - 000000669 _____ C:\WINDOWS\system32\nv-vk64.json
2017-12-24 21:08 - 2018-01-05 21:11 - 000000000 ____D C:\Users\StriX\AppData\Local\CrashDumps
2017-12-24 20:56 - 2017-12-25 16:53 - 000000000 ____D C:\Users\StriX\AppData\Roaming\MSI
2017-12-24 20:54 - 2017-12-24 21:14 - 000000000 ____D C:\Users\StriX\AppData\Local\NVIDIA
2017-12-24 20:53 - 2017-12-25 00:18 - 000000000 ____D C:\Users\StriX\AppData\Local\NVIDIA Corporation
2017-12-24 20:52 - 2017-12-24 21:14 - 000000000 ____D C:\Users\StriX\AppData\Roaming\NVIDIA
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\Users\StriX\AppData\Roaming\SplitmediaLabs
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\ProgramData\SplitMediaLabs
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI Kombustor 3
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\Program Files\MSI Kombustor 3
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\Program Files (x86)\SplitmediaLabs
2017-12-24 20:48 - 2014-04-30 16:23 - 000011248 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\acpimof.dll
2017-12-24 20:47 - 2017-12-24 20:47 - 000000000 ____D C:\Program Files\MSI
2017-12-24 20:44 - 2017-12-25 00:28 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003696 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000001485 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-12-24 20:44 - 2017-12-24 21:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-12-24 20:44 - 2017-11-16 02:41 - 002404800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 002070976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 001309120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 000186304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 000152512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 000057792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2017-12-24 20:44 - 2017-11-16 01:53 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
2017-12-24 20:44 - 2017-10-11 02:05 - 000050624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2017-12-24 20:44 - 2017-04-01 04:27 - 001756728 ____R (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2017-12-24 20:44 - 2017-04-01 04:27 - 001318968 ____R (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2017-12-24 20:44 - 2015-07-27 01:37 - 000041760 _____ (FINTEK Corp.) C:\WINDOWS\system32\Drivers\I2cHkBurn.sys
2017-12-24 20:44 - 2015-07-27 01:37 - 000031520 _____ (TODO: <公司名稱>) C:\WINDOWS\system32\FintekIcon1.dll
2017-12-24 20:43 - 2018-01-06 16:38 - 000000000 ____D C:\ProgramData\NVIDIA
2017-12-24 20:43 - 2017-12-25 00:43 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-12-24 20:43 - 2017-12-25 00:29 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2017-12-24 20:43 - 2017-12-16 01:23 - 001615472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2017-12-24 20:43 - 2017-12-16 01:23 - 000225208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2017-12-24 20:43 - 2017-12-16 01:23 - 000048442 _____ C:\WINDOWS\system32\nvinfo.pb
2017-12-24 20:43 - 2017-12-15 23:34 - 005964688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 002589168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 001767408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000608056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000450544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000123704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000082928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2017-12-24 20:43 - 2017-12-14 19:17 - 007917671 _____ C:\WINDOWS\system32\nvcoproc.bin
2017-12-24 20:43 - 2017-11-09 17:47 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2017-12-24 20:43 - 2017-04-01 04:27 - 001988032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438165.dll
2017-12-24 20:43 - 2017-04-01 04:27 - 001591352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438165.dll
2017-12-24 20:41 - 2017-12-16 01:23 - 029381936 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2017-12-24 20:41 - 2017-12-16 01:23 - 004485376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2017-12-24 20:41 - 2017-12-16 01:23 - 003817584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2017-12-24 20:39 - 2017-12-25 00:28 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2017-12-24 16:16 - 2018-01-06 16:38 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2017-12-24 16:16 - 2017-12-24 16:16 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2017-12-24 16:16 - 2017-12-24 16:16 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
2017-12-24 16:15 - 2017-12-24 16:15 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2017-12-17 10:20 - 2017-12-17 11:13 - 005331369 _____ C:\Users\StriX\Desktop\Poznávačka exoti.pptx
2017-12-16 17:24 - 2017-12-16 17:24 - 000000519 _____ C:\Users\StriX\Desktop\Best Plays.lnk
2017-12-16 08:20 - 2017-12-16 08:20 - 000000625 _____ C:\Users\Public\Desktop\LOL SKIN.lnk
2017-12-15 20:07 - 2017-12-08 07:52 - 000666112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2017-12-15 20:07 - 2017-12-08 00:34 - 001925296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-12-15 20:07 - 2017-12-08 00:34 - 001634288 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2017-12-15 20:07 - 2017-12-08 00:31 - 008590744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-12-15 20:07 - 2017-12-08 00:31 - 000779440 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-12-15 20:07 - 2017-12-08 00:30 - 000166296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2017-12-15 20:07 - 2017-12-08 00:28 - 000710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2017-12-15 20:07 - 2017-12-08 00:27 - 003903784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2017-12-15 20:07 - 2017-12-08 00:27 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2017-12-15 20:07 - 2017-12-08 00:26 - 007385088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-12-15 20:07 - 2017-12-08 00:26 - 002709200 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2017-12-15 20:07 - 2017-12-08 00:26 - 000525208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2017-12-15 20:07 - 2017-12-08 00:25 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe
2017-12-15 20:07 - 2017-12-08 00:24 - 000705944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2017-12-15 20:07 - 2017-12-08 00:24 - 000437144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2017-12-15 20:07 - 2017-12-08 00:24 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-12-15 20:07 - 2017-12-08 00:23 - 005905752 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2017-12-15 20:07 - 2017-12-08 00:23 - 000677272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-12-15 20:07 - 2017-12-08 00:22 - 000979352 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2017-12-15 20:07 - 2017-12-08 00:21 - 007676296 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2017-12-15 20:07 - 2017-12-08 00:20 - 001170000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2017-12-15 20:07 - 2017-12-08 00:19 - 021352136 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2017-12-15 20:07 - 2017-12-08 00:16 - 001776272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2017-12-15 20:07 - 2017-12-08 00:16 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2017-12-15 20:07 - 2017-12-08 00:15 - 001426152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2017-12-15 20:07 - 2017-12-08 00:15 - 000721592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2017-12-15 20:07 - 2017-12-08 00:14 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2017-12-15 20:07 - 2017-12-08 00:12 - 000401304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2017-12-15 20:07 - 2017-12-08 00:10 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2017-12-15 20:07 - 2017-12-07 23:58 - 000123512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2017-12-15 20:07 - 2017-12-07 23:57 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-12-15 20:07 - 2017-12-07 23:56 - 001528904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2017-12-15 20:07 - 2017-12-07 23:55 - 001490328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2017-12-15 20:07 - 2017-12-07 23:39 - 006092664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2017-12-15 20:07 - 2017-12-07 23:34 - 003484840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2017-12-15 20:07 - 2017-12-07 23:34 - 002192112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2017-12-15 20:07 - 2017-12-07 23:33 - 000747416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2017-12-15 20:07 - 2017-12-07 23:33 - 000592280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2017-12-15 20:07 - 2017-12-07 23:32 - 020286120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2017-12-15 20:07 - 2017-12-07 23:31 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2017-12-15 20:07 - 2017-12-07 23:31 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2017-12-15 20:07 - 2017-12-07 23:31 - 000982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2017-12-15 20:07 - 2017-12-07 23:29 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KeyboardFilterShim.dll
2017-12-15 20:07 - 2017-12-07 23:23 - 006478528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-12-15 20:07 - 2017-12-07 23:22 - 025245696 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-12-15 20:07 - 2017-12-07 23:13 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-12-15 20:07 - 2017-12-07 23:13 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2017-12-15 20:07 - 2017-12-07 23:12 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2017-12-15 20:07 - 2017-12-07 23:11 - 003669504 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-12-15 20:07 - 2017-12-07 23:10 - 018916352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-12-15 20:07 - 2017-12-07 23:10 - 006466048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2017-12-15 20:07 - 2017-12-07 23:10 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2017-12-15 20:07 - 2017-12-07 23:10 - 000536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2017-12-15 20:07 - 2017-12-07 23:10 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2017-12-15 20:07 - 2017-12-07 23:10 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2017-12-15 20:07 - 2017-12-07 23:09 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gamingtcui.dll
2017-12-15 20:07 - 2017-12-07 23:08 - 019336192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-12-15 20:07 - 2017-12-07 23:08 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2017-12-15 20:07 - 2017-12-07 23:08 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll
2017-12-15 20:07 - 2017-12-07 23:07 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2017-12-15 20:07 - 2017-12-07 23:07 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2017-12-15 20:07 - 2017-12-07 23:06 - 023652864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-12-15 20:07 - 2017-12-07 23:06 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcui.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 006037504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2017-12-15 20:07 - 2017-12-07 23:04 - 003678208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-12-15 20:07 - 2017-12-07 23:04 - 001498112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2017-12-15 20:07 - 2017-12-07 23:04 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2017-12-15 20:07 - 2017-12-07 23:04 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2017-12-15 20:07 - 2017-12-07 23:03 - 002467840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2017-12-15 20:07 - 2017-12-07 23:03 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-12-15 20:07 - 2017-12-07 23:03 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2017-12-15 20:07 - 2017-12-07 23:03 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2017-12-15 20:07 - 2017-12-07 23:03 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2017-12-15 20:07 - 2017-12-07 23:02 - 007545344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2017-12-15 20:07 - 2017-12-07 23:02 - 002864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2017-12-15 20:07 - 2017-12-07 23:02 - 002117632 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2017-12-15 20:07 - 2017-12-07 23:02 - 000813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2017-12-15 20:07 - 2017-12-07 23:01 - 008097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-12-15 20:07 - 2017-12-07 23:01 - 004592640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-12-15 20:07 - 2017-12-07 23:01 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2017-12-15 20:07 - 2017-12-07 23:00 - 004740608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-12-15 20:07 - 2017-12-07 23:00 - 002862080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2017-12-15 20:07 - 2017-12-07 23:00 - 001509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2017-12-15 20:07 - 2017-12-07 22:59 - 003121664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll
2017-12-15 20:07 - 2017-12-07 22:59 - 002105856 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-12-15 20:07 - 2017-12-07 22:59 - 001666048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-12-15 20:07 - 2017-12-07 22:59 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2017-12-15 20:07 - 2017-12-07 22:59 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2017-12-15 20:07 - 2017-12-07 22:58 - 003478016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2017-12-15 20:07 - 2017-12-07 22:58 - 003211776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-12-15 20:07 - 2017-12-07 22:58 - 001547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-12-15 20:07 - 2017-12-07 22:58 - 001353728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2017-12-15 20:07 - 2017-12-07 22:58 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2017-12-15 20:07 - 2017-12-07 22:57 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-12-15 20:07 - 2017-12-07 22:57 - 001487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2017-12-15 20:07 - 2017-12-07 22:56 - 001739264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-12-15 20:07 - 2017-12-07 22:56 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-12-15 20:07 - 2017-12-07 22:54 - 002510336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2017-12-15 20:07 - 2017-12-07 22:54 - 001570816 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2017-12-15 20:07 - 2017-12-07 22:54 - 001160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2017-12-15 20:07 - 2017-11-26 21:35 - 017084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2017-12-15 20:07 - 2017-11-26 21:32 - 021754368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2017-12-15 20:07 - 2017-11-26 21:15 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2017-12-15 20:07 - 2017-11-26 17:43 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2017-12-15 20:07 - 2017-11-26 14:48 - 001200536 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2017-12-15 20:07 - 2017-11-26 14:47 - 001053592 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2017-12-15 20:07 - 2017-11-26 14:45 - 001642520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2017-12-15 20:07 - 2017-11-26 14:45 - 000319352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2017-12-15 20:07 - 2017-11-26 14:45 - 000264040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2017-12-15 20:07 - 2017-11-26 14:45 - 000198888 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2017-12-15 20:07 - 2017-11-26 14:41 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-12-15 20:07 - 2017-11-26 14:38 - 001636376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-12-15 20:07 - 2017-11-26 14:37 - 001277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2017-12-15 20:07 - 2017-11-26 14:35 - 001090440 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2017-12-15 20:07 - 2017-11-26 14:35 - 000924136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2017-12-15 20:07 - 2017-11-26 14:33 - 002395032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-12-15 20:07 - 2017-11-26 14:33 - 001208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2017-12-15 20:07 - 2017-11-26 14:33 - 000398744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2017-12-15 20:07 - 2017-11-26 14:32 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2017-12-15 20:07 - 2017-11-26 14:32 - 000082840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2017-12-15 20:07 - 2017-11-26 14:31 - 000187288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-12-15 20:07 - 2017-11-26 14:30 - 001488792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 003010720 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 002573208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-12-15 20:07 - 2017-11-26 14:29 - 000840440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2017-12-15 20:07 - 2017-11-26 14:29 - 000703536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 000436120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-12-15 20:07 - 2017-11-26 14:28 - 001259344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2017-12-15 20:07 - 2017-11-26 14:28 - 001012120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2017-12-15 20:07 - 2017-11-26 14:28 - 000495000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2017-12-15 20:07 - 2017-11-26 14:28 - 000149400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2017-12-15 20:07 - 2017-11-26 14:27 - 002446744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2017-12-15 20:07 - 2017-11-26 14:27 - 002412168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2017-12-15 20:07 - 2017-11-26 14:27 - 001413760 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2017-12-15 20:07 - 2017-11-26 14:27 - 000464408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2017-12-15 20:07 - 2017-11-26 14:27 - 000230296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-12-15 20:07 - 2017-11-26 14:26 - 000428952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2017-12-15 20:07 - 2017-11-26 14:25 - 000902416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2017-12-15 20:07 - 2017-11-26 14:23 - 001694224 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2017-12-15 20:07 - 2017-11-26 14:23 - 001054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2017-12-15 20:07 - 2017-11-26 14:23 - 000754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2017-12-15 20:07 - 2017-11-26 14:22 - 000404888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 002220952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001778584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001628056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001585376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001420696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000831384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000819096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2017-12-15 20:07 - 2017-11-26 14:21 - 000813976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000744856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000669592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000654048 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000645528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2017-12-15 20:07 - 2017-11-26 14:20 - 000615768 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2017-12-15 20:07 - 2017-11-26 14:20 - 000519152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2017-12-15 20:07 - 2017-11-26 13:55 - 001289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2017-12-15 20:07 - 2017-11-26 13:55 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2017-12-15 20:07 - 2017-11-26 13:55 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2017-12-15 20:07 - 2017-11-26 13:55 - 000211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2017-12-15 20:07 - 2017-11-26 13:55 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2017-12-15 20:07 - 2017-11-26 13:54 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2017-12-15 20:07 - 2017-11-26 13:48 - 012829696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2017-12-15 20:07 - 2017-11-26 13:47 - 002890240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-12-15 20:07 - 2017-11-26 13:43 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2017-12-15 20:07 - 2017-11-26 13:36 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2017-12-15 20:07 - 2017-11-26 13:35 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ContentDeliveryManager.dll
2017-12-15 20:07 - 2017-11-26 13:34 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2017-12-15 20:07 - 2017-11-26 13:33 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2017-12-15 20:07 - 2017-11-26 13:31 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-12-15 20:07 - 2017-11-26 13:31 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2017-12-15 20:07 - 2017-11-26 13:31 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2017-12-15 20:07 - 2017-11-26 13:29 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2017-12-15 20:07 - 2017-11-26 13:29 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2017-12-15 20:07 - 2017-11-26 13:29 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2017-12-15 20:07 - 2017-11-26 13:29 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2017-12-15 20:07 - 2017-11-26 13:28 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2017-12-15 20:07 - 2017-11-26 13:26 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2017-12-15 20:07 - 2017-11-26 13:26 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-12-15 20:07 - 2017-11-26 13:25 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2017-12-15 20:07 - 2017-11-26 13:25 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2017-12-15 20:07 - 2017-11-26 13:25 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2017-12-15 20:07 - 2017-11-26 13:22 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2017-12-15 20:07 - 2017-11-26 13:19 - 001167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2017-12-15 20:07 - 2017-11-26 13:19 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2017-12-15 20:07 - 2017-11-26 13:18 - 003186688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2017-12-15 20:07 - 2017-11-26 13:18 - 001424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2017-12-15 20:07 - 2017-11-26 13:18 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2017-12-15 20:07 - 2017-11-26 13:17 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2017-12-15 20:07 - 2017-11-26 13:17 - 002208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-12-15 20:07 - 2017-11-26 13:17 - 001054720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2017-12-15 20:07 - 2017-11-26 13:08 - 017159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-12-15 20:07 - 2017-11-26 13:05 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-12-15 20:07 - 2017-11-26 13:04 - 003578368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2017-12-15 20:07 - 2017-11-26 13:04 - 002596352 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2017-12-15 20:07 - 2017-11-26 13:03 - 004772352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2017-12-15 20:07 - 2017-11-26 13:03 - 002783744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-12-15 20:07 - 2017-11-26 13:01 - 003163648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-12-15 20:07 - 2017-11-26 13:00 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2017-12-15 20:07 - 2017-11-26 12:59 - 004814848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2017-12-15 20:07 - 2017-11-26 12:59 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2017-12-15 20:07 - 2017-11-26 12:59 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2017-12-15 20:07 - 2017-11-26 12:59 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2017-12-15 20:07 - 2017-11-26 12:48 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2017-12-15 20:07 - 2017-11-26 12:21 - 001474680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2017-12-15 20:07 - 2017-11-26 12:21 - 001432816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-12-15 20:07 - 2017-11-26 12:02 - 001124760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 002339296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000746904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000590944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000506256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000354200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2017-12-15 20:07 - 2017-11-26 12:00 - 001990160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2017-12-15 20:07 - 2017-11-26 12:00 - 000353848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2017-12-15 20:07 - 2017-11-26 11:59 - 000703568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2017-12-15 20:07 - 2017-11-26 11:58 - 001148216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2017-12-15 20:07 - 2017-11-26 11:58 - 001057824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2017-12-15 20:07 - 2017-11-26 11:57 - 001490840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2017-12-15 20:07 - 2017-11-26 11:51 - 001558856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2017-12-15 20:07 - 2017-11-26 11:51 - 000661664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 002393600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2017-12-15 20:07 - 2017-11-26 11:36 - 013703168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2017-12-15 20:07 - 2017-11-26 11:36 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2017-12-15 20:07 - 2017-11-26 11:36 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-12-15 20:07 - 2017-11-26 11:35 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2017-12-15 20:07 - 2017-11-26 11:35 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2017-12-15 20:07 - 2017-11-26 11:35 - 000242176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2017-12-15 20:07 - 2017-11-26 11:32 - 011923456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2017-12-15 20:07 - 2017-11-26 11:31 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2017-12-15 20:07 - 2017-11-26 11:31 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2017-12-15 20:07 - 2017-11-26 11:30 - 004385280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2017-12-15 20:07 - 2017-11-26 11:30 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2017-12-15 20:07 - 2017-11-26 11:29 - 002869760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2017-12-15 20:07 - 2017-11-26 11:29 - 000823808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2017-12-15 20:07 - 2017-11-26 11:28 - 004249600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2017-12-15 20:07 - 2017-11-26 11:24 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2017-12-15 20:07 - 2017-11-19 08:35 - 003331520 _____ C:\WINDOWS\system32\Windows.Mirage.dll
2017-12-15 20:07 - 2017-11-19 03:20 - 002491112 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2017-12-15 20:06 - 2017-12-08 00:34 - 000059800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bam.sys
2017-12-15 20:06 - 2017-12-08 00:28 - 000630752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2017-12-15 20:06 - 2017-12-08 00:27 - 004504456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2017-12-15 20:06 - 2017-12-08 00:22 - 001003104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2017-12-15 20:06 - 2017-12-08 00:22 - 000137544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2017-12-15 20:06 - 2017-12-08 00:22 - 000129432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys
2017-12-15 20:06 - 2017-12-07 23:55 - 000097144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2017-12-15 20:06 - 2017-12-07 23:37 - 001145104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2017-12-15 20:06 - 2017-12-07 23:36 - 000769096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2017-12-15 20:06 - 2017-12-07 23:12 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2017-12-15 20:06 - 2017-12-07 23:12 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscript.ocx
2017-12-15 20:06 - 2017-12-07 23:10 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll
2017-12-15 20:06 - 2017-12-07 23:10 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-12-15 20:06 - 2017-12-07 23:09 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\batmeter.dll
2017-12-15 20:06 - 2017-12-07 23:09 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll
2017-12-15 20:06 - 2017-12-07 23:09 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscript.exe
2017-12-15 20:06 - 2017-12-07 23:09 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
2017-12-15 20:06 - 2017-12-07 23:08 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2017-12-15 20:06 - 2017-12-07 23:08 - 000369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2017-12-15 20:06 - 2017-12-07 23:08 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-12-15 20:06 - 2017-12-07 23:07 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2017-12-15 20:06 - 2017-12-07 23:07 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll
2017-12-15 20:06 - 2017-12-07 23:07 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-12-15 20:06 - 2017-12-07 23:07 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2017-12-15 20:06 - 2017-12-07 23:07 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2017-12-15 20:06 - 2017-12-07 23:06 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2017-12-15 20:06 - 2017-12-07 23:06 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2017-12-15 20:06 - 2017-12-07 23:06 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscript.exe
2017-12-15 20:06 - 2017-12-07 23:05 - 001670656 _____ (Microsoft Corporation) C:\WINDOWS\system32\batmeter.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 001230848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 000841728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\hascsp.dll
2017-12-15 20:06 - 2017-12-07 23:02 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2017-12-15 20:06 - 2017-12-07 23:02 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2017-12-15 20:06 - 2017-12-07 23:01 - 001980928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2017-12-15 20:06 - 2017-12-07 23:01 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2017-12-15 20:06 - 2017-12-07 22:56 - 002666496 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2017-12-15 20:06 - 2017-11-26 14:33 - 000471960 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2017-12-15 20:06 - 2017-11-26 14:29 - 000891800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2017-12-15 20:06 - 2017-11-26 14:28 - 000713624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2017-12-15 20:06 - 2017-11-26 14:26 - 000048112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2017-12-15 20:06 - 2017-11-26 13:57 - 001664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2017-12-15 20:06 - 2017-11-26 13:55 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2017-12-15 20:06 - 2017-11-26 13:54 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2017-12-15 20:06 - 2017-11-26 13:36 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2017-12-15 20:06 - 2017-11-26 13:36 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2017-12-15 20:06 - 2017-11-26 13:36 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
2017-12-15 20:06 - 2017-11-26 13:35 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2017-12-15 20:06 - 2017-11-26 13:31 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2017-12-15 20:06 - 2017-11-26 13:26 - 000770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2017-12-15 20:06 - 2017-11-26 13:25 - 001425408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-12-15 20:06 - 2017-11-26 13:25 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2017-12-15 20:06 - 2017-11-26 13:23 - 000588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2017-12-15 20:06 - 2017-11-26 13:19 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadjcsp.dll
2017-12-15 20:06 - 2017-11-26 12:58 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2017-12-15 20:06 - 2017-11-26 12:48 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll
2017-12-15 20:06 - 2017-11-26 12:01 - 000791960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-12-15 20:06 - 2017-11-26 11:41 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2017-12-15 20:06 - 2017-11-26 11:40 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2017-12-15 20:06 - 2017-11-26 11:38 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2017-12-15 20:06 - 2017-11-26 11:37 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2017-12-15 20:06 - 2017-11-26 11:36 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2017-12-15 20:06 - 2017-11-26 11:35 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2017-12-15 20:06 - 2017-11-26 11:24 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll
2017-12-14 22:18 - 2017-12-12 17:00 - 002721085 _____ C:\Users\StriX\Desktop\Data.lol
2017-12-14 19:25 - 2017-12-24 21:14 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2017-12-14 19:25 - 2017-09-14 00:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2017-12-14 19:25 - 2017-09-14 00:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2017-12-14 19:25 - 2017-09-14 00:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll
2017-12-14 19:25 - 2017-09-14 00:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe
2017-12-09 18:39 - 2017-12-09 18:39 - 000000000 ____D C:\Users\StriX\Documents\Telltale Games
2017-12-09 18:37 - 2017-12-09 18:37 - 000000000 ____D C:\Users\StriX\AppData\Roaming\The Walking Dead
2017-12-09 18:37 - 2017-12-09 18:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2017-12-08 18:02 - 2018-01-01 20:48 - 000000000 ____D C:\Users\StriX\AppData\Local\minergate
2017-12-08 18:02 - 2017-12-08 18:02 - 000000577 _____ C:\Users\Public\Desktop\MinerGate.lnk
2017-12-08 18:02 - 2017-12-08 18:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MinerGate
2017-12-08 18:02 - 2017-12-08 18:02 - 000000000 ____D C:\Program Files\MinerGate

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-01-06 16:56 - 2017-11-18 12:56 - 000004164 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{53B9E737-32D2-413F-8FE2-CA50A461929B}
2018-01-06 16:54 - 2017-09-23 09:42 - 000000000 ____D C:\Users\StriX\AppData\Roaming\obs-studio
2018-01-06 16:52 - 2017-08-25 22:47 - 000000626 _____ C:\Users\StriX\AppData\Roaming\All CPU MeterV3_Settings.ini
2018-01-06 16:49 - 2017-09-29 14:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-01-06 16:43 - 2017-08-26 09:08 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2018-01-06 16:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
2018-01-06 16:37 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-01-06 14:38 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-01-06 14:38 - 2017-08-25 20:47 - 000000000 ____D C:\Steam
2018-01-06 14:37 - 2017-11-18 12:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-01-06 14:37 - 2017-11-18 12:43 - 000396568 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-01-06 14:37 - 2017-08-29 07:23 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2018-01-06 14:37 - 2017-08-25 20:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2018-01-06 14:29 - 2017-09-29 09:45 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2018-01-06 13:12 - 2017-11-18 12:43 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-01-06 07:42 - 2017-11-18 12:47 - 000000000 ____D C:\Users\StriX
2018-01-05 22:17 - 2017-11-17 18:28 - 000000000 ____D C:\Users\StriX\Documents\Euro Truck Simulator 2
2018-01-05 21:43 - 2017-11-18 12:47 - 000000000 ____D C:\Users\StriX\AppData\Local\Packages
2018-01-05 21:43 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps
2018-01-05 21:43 - 2017-08-25 22:08 - 000000000 ____D C:\MSI
2018-01-05 21:43 - 2017-08-25 21:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2018-01-05 21:43 - 2017-08-25 21:38 - 000000000 ____D C:\Program Files (x86)\MSI
2018-01-05 21:11 - 2015-10-30 08:24 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2018-01-05 20:33 - 2017-08-25 20:31 - 000000000 ____D C:\Users\StriX\AppData\LocalLow\Mozilla
2018-01-05 20:01 - 2017-08-25 20:30 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2018-01-05 20:01 - 2017-08-25 20:30 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-01-05 18:16 - 2017-10-13 19:44 - 000002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-01-05 18:16 - 2017-10-13 19:44 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-01-01 16:40 - 2017-08-26 18:55 - 000000000 ____D C:\Users\StriX\AppData\Roaming\TS3Client
2018-01-01 15:27 - 2017-10-07 23:27 - 000000000 ____D C:\Program Files (x86)\Overwolf
2017-12-29 12:46 - 2017-08-29 21:59 - 000000000 ____D C:\Users\StriX\AppData\Local\Futuremark
2017-12-29 12:44 - 2017-08-29 21:58 - 000000000 ____D C:\Program Files (x86)\Futuremark
2017-12-29 08:24 - 2017-08-25 20:21 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-12-28 22:05 - 2017-08-25 20:18 - 000000000 ____D C:\ProgramData\Package Cache
2017-12-25 19:26 - 2017-08-25 19:04 - 000000000 ____D C:\Users\StriX\AppData\Local\VirtualStore
2017-12-25 15:29 - 2017-08-25 20:48 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2017-12-25 13:55 - 2017-11-25 22:31 - 000000000 ____D C:\Users\StriX\AppData\Roaming\uTorrent
2017-12-25 00:31 - 2017-11-18 21:33 - 000929574 _____ C:\WINDOWS\system32\perfh005.dat
2017-12-25 00:31 - 2017-11-18 21:33 - 000205424 _____ C:\WINDOWS\system32\perfc005.dat
2017-12-25 00:31 - 2017-11-18 12:57 - 002248966 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-12-25 00:29 - 2017-09-29 14:44 - 000000000 ____D C:\WINDOWS\INF
2017-12-24 20:43 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Help
2017-12-24 09:18 - 2017-10-14 18:38 - 000000000 ____D C:\Users\StriX\AppData\Local\ElevatedDiagnostics
2017-12-24 05:34 - 2017-08-25 21:56 - 000000000 __SHD C:\Users\StriX\IntelGraphicsProfiles
2017-12-22 15:38 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\rescache
2017-12-16 17:09 - 2017-10-15 11:01 - 000000000 ___RD C:\Users\StriX\3D Objects
2017-12-16 17:09 - 2017-08-25 19:04 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-12-16 17:06 - 2017-09-29 15:43 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\TextInput
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\ShellExperiences
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Provisioning
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Windows Defender
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\PerfLogs
2017-12-16 17:06 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Dism
2017-12-16 08:20 - 2017-08-29 09:56 - 000000000 ____D C:\Fraps
2017-12-15 20:15 - 2017-08-26 22:14 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-12-15 20:14 - 2017-10-13 16:56 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2017-12-15 20:14 - 2017-08-26 22:14 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-12-15 20:09 - 2017-09-29 14:42 - 001587200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2017-12-15 20:09 - 2017-09-29 14:41 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2017-12-15 20:09 - 2017-09-29 14:41 - 000139672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2017-12-15 20:09 - 2017-09-29 14:41 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2017-12-14 19:26 - 2017-09-30 09:12 - 000000000 ____D C:\Program Files\Intel
2017-12-07 16:22 - 2017-11-18 12:46 - 000131544 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2017-12-07 16:22 - 2017-09-29 15:43 - 000107984 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll
2017-12-07 16:22 - 2017-07-31 14:28 - 000131544 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2017-12-07 16:22 - 2017-07-31 14:28 - 000107984 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2017-12-07 16:21 - 2017-07-31 14:28 - 000268240 _____ C:\WINDOWS\system32\igfxCPL.cpl
2017-12-07 11:46 - 2017-07-24 18:00 - 000756652 _____ C:\WINDOWS\system32\cp_resources.bin

==================== Files in the root of some directories =======

2017-08-25 22:47 - 2018-01-06 16:52 - 000000626 _____ () C:\Users\StriX\AppData\Roaming\All CPU MeterV3_Settings.ini
2017-08-25 16:07 - 2017-08-29 08:35 - 000000092 _____ () C:\Users\StriX\AppData\Roaming\Control System_Settings.ini
2017-12-25 10:43 - 2017-12-25 10:43 - 000000119 _____ () C:\Users\StriX\AppData\Roaming\System Monitor II_UptimeRecord.ini
2017-12-25 13:44 - 2017-12-27 18:27 - 000728064 _____ () C:\Users\StriX\AppData\Local\file__0.localstorage
2018-01-05 21:10 - 2018-01-05 21:10 - 000011568 _____ () C:\Users\StriX\AppData\Local\InstallationConfiguration.xml
2018-01-05 21:10 - 2018-01-05 21:10 - 000140800 _____ () C:\Users\StriX\AppData\Local\installer.dat
2018-01-05 21:10 - 2018-01-05 21:10 - 000930816 _____ () C:\Users\StriX\AppData\Local\po.db
2017-08-25 19:44 - 2017-08-25 19:44 - 000000017 _____ () C:\Users\StriX\AppData\Local\resmon.resmoncfg

Files to move or delete:
====================
C:\WINDOWS\TEMP\g6B8A.tmp.exe


Some files in TEMP:
====================
2018-01-06 07:47 - 2018-01-06 07:47 - 000054784 _____ (BUMVPN) C:\Users\StriX\AppData\Local\Temp\886Q05OVNCZ3.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-01-05 21:48

==================== End of FRST.txt ============================

Volny256
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 15 úno 2017 17:11

Re: Zavirované PC

#2 Příspěvek od Volny256 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02.01.2018
Ran by StriX (06-01-2018 17:05:10)
Running from C:\Users\StriX\Desktop
Windows 10 Education Version 1709 16299.125 (X64) (2017-11-18 12:13:47)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-752624193-2435152514-875314472-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-752624193-2435152514-875314472-503 - Limited - Disabled)
Guest (S-1-5-21-752624193-2435152514-875314472-501 - Limited - Disabled)
StriX (S-1-5-21-752624193-2435152514-875314472-1001 - Administrator - Enabled) => C:\Users\StriX
WDAGUtilityAccount (S-1-5-21-752624193-2435152514-875314472-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\uTorrent) (Version: 3.5.0.44294 - BitTorrent Inc.)
3DMark 11 (HKLM\...\{FD67BFA0-E205-47AA-BA09-123B3B72DB5E}) (Version: 1.0.132.0 - Futuremark) Hidden
3DMark 11 (HKLM-x32\...\{f9e83b9c-ab7e-4005-8f32-4ea69703a5e4}) (Version: 1.0.132.0 - Futuremark)
8GadgetPack (HKLM-x32\...\{A8F686C4-1A28-466C-914E-D2FE0B0220A2}) (Version: 23.0.0 - 8GadgetPack.net)
Aktualizace NVIDIA 31.0.1.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 31.0.1.0 - NVIDIA Corporation) Hidden
Bloody6 (HKLM-x32\...\Bloody3) (Version: 17.09.0001 - Bloody)
CL-Eye Driver (HKLM-x32\...\CL-Eye Driver) (Version: 5.3.0.0341 - Code Laboratories, Inc.)
Connect (HKLM-x32\...\MAGIX_connector_is1) (Version: 2.6.1.117 - MAGIX Software GmbH)
CPUID CPU-Z MSI 1.80 (HKLM\...\CPUID CPU-Z MSI_is1) (Version: 1.80 - CPUID, Inc.)
CPUID HWMonitor 1.33 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.33 - )
Discord (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Discord) (Version: 0.0.298 - Discord Inc.)
Dragon Eye(x64) (HKLM\...\{B746827A-3219-4EF8-8053-CEA5AEC12D33}) (Version: 0.0.2.6 - MSI) Hidden
Dragon Eye(x64) (HKLM-x32\...\Installshield_{B746827A-3219-4EF8-8053-CEA5AEC12D33}) (Version: 0.0.2.6 - MICRO-STAR INT'L,.LTD.)
Euro Truck Simulator 2 1.28.1.3s (HKLM-x32\...\Euro Truck Simulator 2 1.28.1.3s) (Version: 1.28.1.3s - SCS Software)
Euro Truck Simulator 2 Multiplayer 0.1.0.4.2.2 Alpha (HKLM-x32\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.1.0.4.2.2 Alpha - ETS2MP Team)
Farming Simulator 17 (HKLM\...\ZmFybWluZ3NpbXVsYXRvcjE3_is1) (Version: 1 - )
Fraps (HKLM-x32\...\Fraps) (Version: - )
Futuremark SystemInfo (HKLM-x32\...\{71BFECB2-2CFD-4E6A-A8AF-4EE600A816B7}) (Version: 5.3.629.0 - Futuremark)
Geeks3D FurMark 1.19.1.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Grand Theft Auto V Update (HKLM-x32\...\R3JhbmRUaGVmdEF1dG9W_is1) (Version: 1 - )
Cheat Engine 6.7 (HKLM-x32\...\Cheat Engine 6.7_is1) (Version: - Cheat Engine)
Intel(R) Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
Intel(R) Network Connections 22.4.16.0 (HKLM\...\PROSetDX) (Version: 22.4.16.0 - Intel)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 22.20.16.4836 - Intel Corporation)
Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
League of Legends (HKLM-x32\...\{6FEDADF5-40EC-4E18-A376-0FDBACE65338}) (Version: 4.2.1 - Riot Games) Hidden
League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Professional 2007 (HKLM-x32\...\PROR) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
MinerGate (HKLM-x32\...\MinerGate) (Version: 7.1 - Minergate Inc)
Mozilla Firefox 57.0.4 (x64 en-US) (HKLM\...\Mozilla Firefox 57.0.4 (x64 en-US)) (Version: 57.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.2 - Mozilla)
MSI Afterburner 4.4.2 (HKLM-x32\...\Afterburner) (Version: 4.4.2 - MSI Co., LTD)
MSI DPC Latency Tuner (HKLM-x32\...\{1AAC56F3-3F60-47DB-BE6B-088F36ADFDC5}_is1) (Version: 1.0.0.18 - MSI)
MSI DragonEye (HKLM\...\{7116875E-F251-4C33-AB3F-37DE05B15595}_is1) (Version: 0.0.2.6 - MSI)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 6.2.0.45 - MSI)
MSI Kombustor 3.5.0 (HKLM\...\{9598DA62-2AE8-426D-9C86-BEA96AC6721E}_is1) (Version: - MSI Co., LTD)
MSI Mystic Light (HKLM-x32\...\{B798CF0A-F060-4054-9095-52B067C723C6}}_is1) (Version: 1.0.0.43 - MSI)
MSI Smart Tool (HKLM-x32\...\{DDCCA038-DAB1-4D09-B85C-848020AA75D6}}_is1) (Version: 1.0.0.22 - MSI)
MSI X Boost (HKLM-x32\...\{515143BB-7A11-4D85-B941-D520AAAA099C}_is1) (Version: 1.0.0.29 - MSI)
Need for Speed Underground 2 (HKLM-x32\...\Need for Speed Underground 2) (Version: - )
NVIDIA GeForce Experience 3.11.0.73 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.11.0.73 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 388.71 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.71 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 20.0.1 - OBS Project)
Online Application (HKLM-x32\...\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}) (Version: 2.7.0 - Microleaves) Hidden <==== ATTENTION
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.109.1.40 - Overwolf Ltd.)
Ovládací panel NVIDIA 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 388.71 - NVIDIA Corporation) Hidden
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8228 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 7.0.2 (HKLM-x32\...\RTSS) (Version: 7.0.2 - Unwinder)
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.103 - Skype Technologies S.A.)
spacedesk Windows DRIVER (HKLM\...\{EDE0F978-EA2B-47E3-8B51-034565CFFE4E}) (Version: 0.9.967.0 - datronicsoft Inc.)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\TeamSpeak 3 Client) (Version: 3.1.6 - TeamSpeak Systems GmbH)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
The Walking Dead (HKLM-x32\...\The Walking Dead_R.G. Mechanics_is1) (Version: - R.G. Mechanics, Panky)
Unigine Valley Benchmark version 1.0 (HKLM-x32\...\Unigine Valley Benchmark_is1) (Version: 1.0 - Unigine Corp.)
uRage Illuminated Driver (HKLM-x32\...\{F1A273BD-6A9E-41D8-A111-5E56ACD286F8}) (Version: 1.0 - Hama)
Vegas Pro 13.0 (64-bit) (HKLM-x32\...\Vegas Pro 13.0 (64-bit)) (Version: 13.0 (64-bit) - Exµs ™)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - Intel Corporation Inc.)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
World of Tanks (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net)
XSplit Gamecaster (HKLM-x32\...\{D9CD16D5-FEF4-46A8-8885-3281DF55BC06}) (Version: 2.8.1607.2031 - SplitmediaLabs)
YoutubeAdBlock (HKLM-x32\...\E3605470-291B-44EB-8648-745EE356599A) (Version: 2.0.0.417 - Company Inc.) <==== ATTENTION

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{083f5ae0-2b0a-11dd-bd0b-0800200c9a66}\InprocServer32 -> C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler)
CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler)
CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{5b55a44a-d008-49aa-9234-86fb7709bc0a}\InprocServer32 -> C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2e329e8610bbb375\igfxDTCM.dll [2017-12-07] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-12-15] (NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0E3B537D-FCE8-4F61-8A87-BE95D3093826} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe [2017-09-05] (Micro-Star INT'L CO., LTD.)
Task: {1291572C-53F8-4FC0-A758-0C0DA81C1EEC} - System32\Tasks\Online Application V2G4 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-11-02] () <==== ATTENTION
Task: {1BDE58A2-7679-4D80-B33F-E9C5B9B7636E} - System32\Tasks\pnIxobGIUDXdNt => rundll32 "C:\Program Files (x86)\TwPufLOWyrxU2\tacvROFeqlyLD.dll",#1
Task: {1F78B75B-CD0D-4EF2-BD6F-8904299B4725} - System32\Tasks\Online Application V2G5 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-11-02] () <==== ATTENTION
Task: {249BC094-2D4A-4DEA-BF25-7626E831F17A} - System32\Tasks\Connect => C:\Program Files (x86)\MAGIX\Connect\connect.exe [2017-08-02] (MAGIX Software GmbH)
Task: {35B94EEC-5243-4514-B2D8-5350F6DF3688} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2017-12-15] ()
Task: {47FF550D-9ED7-4F78-84A9-DCED14715AD5} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-11-16] (NVIDIA Corporation)
Task: {51D48082-DB12-472C-8D86-2AC9FE9CDF1E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-13] (Google Inc.)
Task: {65EE7EB0-DA3C-419E-AFD3-231DE2CB0D08} - System32\Tasks\Microsoft\Windows\Display\Brightness\BrightnessReset
Task: {6A3FDFCB-5F7E-4B40-9BAB-7E328E4C427E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-13] (Google Inc.)
Task: {70899047-A99E-411C-B069-2F3753F9513B} - System32\Tasks\plaAVjRQXWCDePSecyr => rundll32 "C:\Program Files (x86)\aohGTEheqdnWC\VbyFcSg.dll",#1
Task: {764A06C6-1FC3-4590-8228-216C8370BDC0} - System32\Tasks\Online Application V2G3 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-11-02] () <==== ATTENTION
Task: {7735A8B9-C8E3-4D7F-8FC5-3482E6A8A7A6} - System32\Tasks\Updater_Online_Application => C:\Program Files (x86)\Microleaves\Online Application\Online Application Updater.exe [2017-11-02] (Microleaves) <==== ATTENTION
Task: {7B156327-EE6C-4826-A141-3ABDDD19656F} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-16] (NVIDIA Corporation)
Task: {84CC1A8F-6CBD-470A-A440-AB90772038C1} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe [2017-09-05] (Micro-Star INT'L CO., LTD.)
Task: {8CBE83E3-1364-41CA-9B57-EE8CCA97774B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-16] (NVIDIA Corporation)
Task: {94EC2BE9-C5E3-4F2F-9399-3CAD0DB79D1E} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe [2017-11-01] (Micro-Star INT'L CO., LTD.)
Task: {A106C069-B561-4B94-AC1B-4E8702B84A29} - System32\Tasks\Acronis Movie Converter => C:\WINDOWS\system32\rundll32.exe "C:\Program Files\Acronis Movie Converter\Acronis Movie Converter.dll",YDeoSYKPus <==== ATTENTION
Task: {A23E13AF-78AF-4CC6-8C83-CD7722125031} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2017-12-26] (Overwolf LTD)
Task: {A3B6C9D3-B1F8-4EF6-8F85-FC95C6D9E523} - System32\Tasks\Online Application V2G6 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-11-02] () <==== ATTENTION
Task: {AF675FE9-FEAD-4B16-B83F-9845664A8203} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-11-16] (NVIDIA Corporation)
Task: {B2D6ACEF-2436-431C-A8DD-1A1F889D6F35} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-16] (NVIDIA Corporation)
Task: {B6018361-E0EE-4551-98EF-60A1BFD9C12D} - System32\Tasks\saKXaLnxQURzlMgex => rundll32 "C:\Program Files (x86)\RrHYXuUpocPTIXdsppR\sWaWsis.dll",#1
Task: {B6DE33EC-951B-4243-88D1-BF37C57E5DD4} - System32\Tasks\BcyoMZkjXMgFaPP2 => rundll32 "C:\Program Files (x86)\umkISPBbU\avOelL.dll",#1
Task: {B893AEDA-B9D2-4FCA-A9B9-F42F4C2DC38E} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-16] (NVIDIA Corporation)
Task: {BD973892-0CC6-4E76-9A50-FCB18BB9A5E7} - System32\Tasks\BcyoMZkjXMgFaPP => rundll32 "C:\Program Files (x86)\umkISPBbU\avOelL.dll",#1
Task: {C341E6C7-D80B-4B43-A782-BCCC5BAFDECE} - System32\Tasks\plaAVjRQXWCDePSecyr2 => rundll32 "C:\Program Files (x86)\aohGTEheqdnWC\VbyFcSg.dll",#1
Task: {D1AA2E88-5751-497F-8A55-01E778152E38} - System32\Tasks\Online Application V2G2 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-11-02] () <==== ATTENTION
Task: {D8EB6B2C-9AE6-46DE-8F8B-7EDE1E41269E} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {DAE39F0F-5CDD-4DDE-94C7-0982EF86BF4F} - System32\Tasks\MSISW_Host => C:\WINDOWS\SysWOW64\muachost.exe [2015-08-18] (MSI)
Task: {E0FE9B0D-B694-4D6A-90DA-560034E1DF08} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-11-16] (NVIDIA Corporation)
Task: {E9BE8421-9086-4AAD-B581-EFC33952150D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-11-16] (NVIDIA Corporation)
Task: {F123CB62-4440-439B-8D10-5718AD1FDB11} - System32\Tasks\saKXaLnxQURzlMgex2 => rundll32 "C:\Program Files (x86)\RrHYXuUpocPTIXdsppR\sWaWsis.dll",#1
Task: {F634E4F5-BA7D-4325-917B-77FD81969EDD} - System32\Tasks\Online Application V2G1 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-11-02] () <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\BcyoMZkjXMgFaPP.job => C:\Program Files (x86)\umkISPBbU\avOelL.dll
Task: C:\WINDOWS\Tasks\Connect.job => C:\Program Files (x86)\MAGIX\Connect\connect.exe
Task: C:\WINDOWS\Tasks\Online Application V2G1.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Online Application V2G2.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Online Application V2G3.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Online Application V2G4.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Online Application V2G5.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Online Application V2G6.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\plaAVjRQXWCDePSecyr.job => C:\Program Files (x86)\aohGTEheqdnWC\VbyFcSg.dll
Task: C:\WINDOWS\Tasks\saKXaLnxQURzlMgex.job => C:\Program Files (x86)\RrHYXuUpocPTIXdsppR\sWaWsis.dll
Task: C:\WINDOWS\Tasks\Updater_Online_Application.job => C:\Program Files (x86)\Microleaves\Online Application\Online Application Updater.exe <==== ATTENTION

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2017-09-29 14:41 - 2017-09-29 14:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2018-01-05 21:10 - 2015-06-01 16:57 - 002520576 _____ () C:\Program Files\Acronis Movie Converter\Acronis Movie Converter.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000133704 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-08-25 23:03 - 2017-08-25 23:03 - 000107832 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2017-12-24 20:44 - 2017-11-16 02:41 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-11-24 10:23 - 2017-11-24 10:23 - 000787504 _____ () C:\WINDOWS\System32\spacedeskService.exe
2017-11-24 10:23 - 2017-11-24 10:23 - 000358448 _____ () C:\WINDOWS\System32\spacedeskServiceTray.exe
2017-12-14 18:51 - 2017-12-14 18:51 - 000438376 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll
2017-12-27 18:05 - 2016-06-14 16:35 - 000187392 _____ () C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\D3D11FontDraw.dll
2017-12-15 10:04 - 2017-12-15 10:04 - 000725288 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
2018-01-05 21:10 - 2018-01-05 07:30 - 001218048 _____ () C:\Program Files (x86)\Multitimer\80062.exe
2018-01-05 18:17 - 2018-01-05 18:17 - 000086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.257.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2018-01-05 18:17 - 2018-01-05 18:17 - 000195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.257.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2018-01-05 18:17 - 2018-01-05 18:17 - 024670720 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.257.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2018-01-05 18:17 - 2018-01-05 18:17 - 002550272 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.257.0_x64__kzf8qxf38zg5c\skypert.dll
2017-09-15 16:42 - 2017-09-01 16:53 - 017627648 _____ () C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
2017-08-25 20:28 - 2013-01-17 09:18 - 000491520 _____ () C:\Program Files (x86)\uRage Illuminated Driver\Monitor.exe
2017-08-25 22:25 - 2013-06-06 19:16 - 000012520 _____ () C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\CoreTempReader.dll
2017-08-25 22:25 - 2013-06-06 19:16 - 000015080 _____ () C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\GetCoreTempInfoNET.dll
2017-08-25 22:25 - 2013-06-06 19:16 - 000014056 _____ () C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\SystemInfo.dll
2018-01-06 09:23 - 2018-01-06 16:37 - 000476672 _____ () C:\WINDOWS\TEMP\g783.tmp.exe
2017-12-14 18:51 - 2017-12-14 18:51 - 000252008 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe
2017-12-14 18:51 - 2017-12-14 18:51 - 000035432 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe
2017-12-14 18:51 - 2017-12-14 18:51 - 000061032 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe
2017-11-02 11:51 - 2017-11-02 11:51 - 000199864 _____ () C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe
2017-12-15 20:07 - 2017-11-26 13:23 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-12-15 20:07 - 2017-11-26 13:01 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-12-14 18:51 - 2017-12-14 18:51 - 000407144 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-12-14 18:56 - 2017-12-14 18:56 - 000071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll
2017-12-14 18:56 - 2017-12-14 18:56 - 000056832 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll
2017-12-14 18:56 - 2017-12-14 18:56 - 000232448 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll
2017-12-14 18:56 - 2017-12-14 18:56 - 000357888 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll
2017-12-14 18:57 - 2017-12-14 18:57 - 000566784 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll
2017-12-27 18:05 - 2016-06-14 16:35 - 000163328 _____ () C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\D3D11FontDraw.dll
2017-08-25 20:51 - 2017-11-29 06:09 - 000781088 _____ () C:\Steam\SDL2.dll
2017-08-25 20:51 - 2016-09-01 02:02 - 004969248 _____ () C:\Steam\v8.dll
2017-08-25 20:51 - 2017-12-15 20:59 - 002558752 _____ () C:\Steam\video.dll
2017-12-14 18:36 - 2017-11-04 02:54 - 000351520 _____ () C:\Steam\libavresample-3.dll
2017-12-14 18:36 - 2017-11-04 02:54 - 000847136 _____ () C:\Steam\libavutil-55.dll
2017-12-14 18:36 - 2017-11-04 02:54 - 000783648 _____ () C:\Steam\libswscale-4.dll
2017-12-14 18:36 - 2017-11-04 02:54 - 005137696 _____ () C:\Steam\libavcodec-57.dll
2017-08-25 20:50 - 2016-09-01 02:02 - 001563936 _____ () C:\Steam\icui18n.dll
2017-08-25 20:51 - 2016-09-01 02:02 - 001195296 _____ () C:\Steam\icuuc.dll
2017-12-14 18:36 - 2017-11-04 02:54 - 000695584 _____ () C:\Steam\libavformat-57.dll
2017-08-25 20:51 - 2017-12-15 20:59 - 000904992 _____ () C:\Steam\bin\chromehtml.DLL
2017-08-25 20:50 - 2016-07-04 23:17 - 000266560 _____ () C:\Steam\openvr_api.dll
2017-09-15 16:43 - 2013-10-11 09:43 - 000085504 _____ () C:\Program Files (x86)\Bloody6\Bloody6\DLL\DLL_ZoomControl.dll
2017-09-15 16:42 - 2017-04-17 10:43 - 003852800 _____ () C:\Program Files (x86)\Bloody6\Bloody6\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
2017-08-25 20:52 - 2017-09-07 03:04 - 000678400 _____ () C:\Steam\bin\cef\cef.win7\SDL2.dll
2017-08-25 20:52 - 2017-10-31 05:44 - 071471904 _____ () C:\Steam\bin\cef\cef.win7\libcef.dll
2017-08-25 20:50 - 2015-09-25 00:52 - 000119208 _____ () C:\Steam\winh264.dll
2017-08-25 20:28 - 2013-01-16 15:40 - 000057344 _____ () C:\Program Files (x86)\uRage Illuminated Driver\lan.dll
2017-08-25 20:28 - 2012-04-19 16:15 - 000061440 _____ () C:\Program Files (x86)\uRage Illuminated Driver\hiddriver.dll
2017-12-24 20:44 - 2017-11-16 02:40 - 066906560 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2017-12-14 18:46 - 2017-12-14 18:46 - 000055808 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTFC.dll
2017-12-14 18:46 - 2017-12-14 18:46 - 000353792 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTUI.dll
2017-12-14 18:46 - 2017-12-14 18:46 - 000071680 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTMUI.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\webcompanion.com -> hxxp://webcompanion.com

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-10-30 08:24 - 2018-01-05 22:01 - 000013968 _____ C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 cpm.paneladmin.pro
127.0.0.1 publisher.hmdiadmingate.xyz
127.0.0.1 hmdicrewtracksystem.xyz
127.0.0.1 mydownloaddomain.com
127.0.0.1 linkmate.space
127.0.0.1 space1.adminpressure.space
127.0.0.1 trackpressure.website
127.0.0.1 doctorlink.space
127.0.0.1 plugpackdownload.net
127.0.0.1 texttotalk.org
127.0.0.1 gambling577.xyz
127.0.0.1 htagdownload.space
127.0.0.1 mybcnmonetize.com
127.0.0.1 360devtraking.website
127.0.0.1 dscdn.pw
127.0.0.1 bcnmonetize.go2affise.com
127.0.0.1 beautifllink.xyz
127.0.0.1 gf.tools.avast.com
127.0.0.1 pair.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 id.avast.com
127.0.0.1 v4618535.iavs9x.u.avast.com
127.0.0.1 v4618535.ivps9x.u.avast.com
127.0.0.1 v4618535.ivps9tiny.u.avast.com
127.0.0.1 v4618535.vpsnitro.u.avast.com
127.0.0.1 v4618535.vpsnitrotiny.u.avast.com
127.0.0.1 v4618535.iavs5x.u.avast.com
127.0.0.1 v7.stats.avast.com

There are 349 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-752624193-2435152514-875314472-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\StriX\Desktop\jqeXI7P.jpg
DNS Servers: 10.0.0.1 - 10.0.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\StartupApproved\Run: => "Skype"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{B5CED2A9-AB84-4A02-A389-9AADB1383D9D}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{8FEEE759-76FB-4A57-9B67-AC5BE7A39E5E}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [UDP Query User{16BC1A44-E275-4214-9B06-4DFAA680D7F5}C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [TCP Query User{46E4801A-2AAC-4EC5-B2CC-91795DB4D826}C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [{15E722DC-63BC-4B9C-B6D7-EE13D76EB06E}] => (Allow) C:\Steam\steamapps\common\KillingFloor\System\KillingFloor.exe
FirewallRules: [{D390BC49-C61C-43E6-B89C-A16D27074339}] => (Allow) C:\Steam\steamapps\common\KillingFloor\System\KillingFloor.exe
FirewallRules: [{AF796CB6-5475-49A1-955F-E21C7A705C68}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe
FirewallRules: [{3DCF69AD-0A61-484D-90EC-1752276BB96C}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe
FirewallRules: [{42230642-DA2B-4C42-81F0-90C5F29034BE}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe
FirewallRules: [{1D6AACB1-5411-41BC-A677-B4F31033DE45}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe
FirewallRules: [{7B8AD109-5990-4B38-A9D8-D5C9E54B70F4}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{DF10A026-18A6-448B-BF96-8EDF89356F16}C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe
FirewallRules: [TCP Query User{9C0A08D2-C370-4579-A0E0-99D1EECE962E}C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe
FirewallRules: [{8E228CBD-13A9-4106-80CE-4CA57EC5591A}] => (Allow) C:\Steam\steamapps\common\Outlast\OutlastLauncher.exe
FirewallRules: [{582DF297-E892-49D8-B2C9-28795C33DF85}] => (Allow) C:\Steam\steamapps\common\Outlast\OutlastLauncher.exe
FirewallRules: [{16DE9BC0-D2F7-4CF9-A4AA-A7E062422DA0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{D03BDDE3-32E0-4A7D-BA05-E61A7E38AEAF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{64F0F13D-2984-4107-A8FC-8FE7C4BD3441}] => (Allow) C:\Steam\Steam.exe
FirewallRules: [{DB70426E-46D3-4BBF-A11C-53F805EE1100}] => (Allow) C:\Steam\Steam.exe
FirewallRules: [{79E6CBEE-EDB1-49AD-A327-F240347D9307}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{EE4BEB9C-8156-447C-83DB-7F5487E69BEA}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{3616B2F3-BEA1-4A6D-BBB2-09A642044098}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{AC3802F9-9CA1-429A-8CC4-F7C820D78C68}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{3727CB57-EA60-40BD-812B-EEA98948CF2F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{888A13AA-697A-4B61-8F58-C5424A032882}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [TCP Query User{E30EE867-A39E-47B2-89E8-BC9A73E84D5F}C:\users\rsv\binaries\r6vegas2_game.exe] => (Allow) C:\users\rsv\binaries\r6vegas2_game.exe
FirewallRules: [UDP Query User{D8317458-4F0F-430B-B9A6-DFE80E43475E}C:\users\rsv\binaries\r6vegas2_game.exe] => (Allow) C:\users\rsv\binaries\r6vegas2_game.exe
FirewallRules: [{1121B40D-E729-4FE3-91AD-D25010622E8D}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{4311BC91-D89B-42C1-B6D6-F034A7A071AF}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{5299C3F6-2018-499A-BED8-6E2301350BCB}C:\program files (x86)\msi\gaming app\gamingapp.exe] => (Allow) C:\program files (x86)\msi\gaming app\gamingapp.exe
FirewallRules: [UDP Query User{60A1E4BB-F7B4-445B-8B30-954F33BAA051}C:\program files (x86)\msi\gaming app\gamingapp.exe] => (Allow) C:\program files (x86)\msi\gaming app\gamingapp.exe
FirewallRules: [TCP Query User{A3A3D80A-7359-49BF-B429-FE679202DC46}D:\gta 5\grand theft auto v\gta5.exe] => (Allow) D:\gta 5\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{D45AB461-D868-48AE-82D6-33607CC845C2}D:\gta 5\grand theft auto v\gta5.exe] => (Allow) D:\gta 5\grand theft auto v\gta5.exe
FirewallRules: [TCP Query User{E1F3303F-FD81-4DEA-8585-E9F9A4776694}D:\lost\lost planet 2\lp2dx11.exe] => (Allow) D:\lost\lost planet 2\lp2dx11.exe
FirewallRules: [UDP Query User{23A38E1F-155A-4BC8-94EA-FC24EB506A7D}D:\lost\lost planet 2\lp2dx11.exe] => (Allow) D:\lost\lost planet 2\lp2dx11.exe
FirewallRules: [TCP Query User{942C157D-73B1-4C16-A042-5A39D7536F12}D:\lost\lost planet 2\lp2dx9.exe] => (Block) D:\lost\lost planet 2\lp2dx9.exe
FirewallRules: [UDP Query User{12AC96F9-BD21-4782-9B42-9131C7C0F232}D:\lost\lost planet 2\lp2dx9.exe] => (Block) D:\lost\lost planet 2\lp2dx9.exe
FirewallRules: [{8986F0A4-523F-436C-9166-CF5AECF5C0BD}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{BC4200C9-B86D-4081-92E4-FCB47AEFF38E}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{282AB8FF-3761-461F-ACD4-5A4A460FBBF5}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{A0E1A8BD-6452-401C-9787-570C2CFDF6AE}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{48FC1586-D2D5-4252-9239-88036DF319E9}] => (Allow) C:\Users\StriX\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{1AA078A0-5057-4AB2-976D-57A96A65732C}] => (Allow) C:\Users\StriX\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{D575A999-6C60-48C1-9E27-FD184C6E168D}D:\farming simulator 17\x64\farmingsimulator2017game.exe] => (Allow) D:\farming simulator 17\x64\farmingsimulator2017game.exe
FirewallRules: [UDP Query User{F0D9F956-7597-4980-A84E-30710307EF10}D:\farming simulator 17\x64\farmingsimulator2017game.exe] => (Allow) D:\farming simulator 17\x64\farmingsimulator2017game.exe
FirewallRules: [{643CB4AF-9447-4B39-927C-178763552179}] => (Allow) D:\SteamLibrary\steamapps\common\Warface\WarfaceMycomSteamLoader.exe
FirewallRules: [{31F0C52E-35A2-4B85-9866-A9950620379A}] => (Allow) D:\SteamLibrary\steamapps\common\Warface\WarfaceMycomSteamLoader.exe
FirewallRules: [{9464ACC5-AACA-4DA3-86D5-026DE8BFB75A}] => (Allow) C:\WINDOWS\system32\spacedeskService.exe
FirewallRules: [{CD9F5CFD-86A6-4C53-AF5B-F45C33D2FCE4}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe
FirewallRules: [{8EC78F09-4E3F-4BF3-BFA4-70CCAF1ABD55}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe
FirewallRules: [{A67FF623-9F95-4796-92F6-93BDF2CC6B53}] => (Allow) D:\SteamLibrary\steamapps\common\Portal\hl2.exe
FirewallRules: [{EF0A1623-1EB0-427A-A605-734C6D253541}] => (Allow) D:\SteamLibrary\steamapps\common\Portal\hl2.exe
FirewallRules: [{3F4DAA4D-6C1A-4437-AC5D-98B5DFBD0929}] => (Allow) LPort=26789
FirewallRules: [{C079B6DD-BC9E-4E30-A5D5-AA9752B80CAA}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\3DMarkLauncher.exe
FirewallRules: [{E788BBE4-26F4-4E58-9121-611464F0298F}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\3DMarkLauncher.exe
FirewallRules: [{2C8E722B-5E84-45E3-BB35-7C28650B2CED}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{91BAF994-29A1-4B2A-BAED-63FF88254E2D}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{AB366A8B-54E9-4997-BAD5-B40D15D09B55}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{19F0204E-78CD-41C6-B6A8-4C119D5A67EE}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{464F4789-AB82-4931-846D-F7CDE1A563CD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{875457B9-E8C7-4AE5-B0CA-6986700FFC61}] => (Allow) C:\WINDOWS\system32\rundll32.exe
FirewallRules: [{F362BBFC-9C52-4606-A435-C8B2FE324EA5}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{B4BC70C7-3943-4379-B52F-6C7FFFB4DED4}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{8A3DF1EE-2DAC-4F4F-8E7C-B2E7E0D5A238}] => (Allow) D:\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{86DC4489-DD4D-4F98-8A29-D71BE273CC7D}] => (Allow) D:\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{3BCE0BE4-B659-495C-AEA1-A0D3C9F6B143}] => (Allow) D:\World_of_Tanks\worldoftanks.exe
FirewallRules: [{813B01F5-8F79-4F19-AD72-B9E4DB1F7328}] => (Allow) D:\World_of_Tanks\worldoftanks.exe

==================== Restore Points =========================

05-01-2018 20:45:07 Removed VEGAS Pro 15.0

==================== Faulty Device Manager Devices =============

Name: Řadič jednoduché komunikace pro sběrnici PCI
Description: Řadič jednoduché komunikace pro sběrnici PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Standardní klávesnice PS/2
Description: Standardní klávesnice PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Myš Microsoft PS/2
Description: Myš Microsoft PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/06/2018 04:37:47 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: STRIX-PC)
Description: Balíček Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe+App se ukončil, protože jeho pozastavování trvalo moc dlouho.

Error: (01/06/2018 03:05:48 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program GamingHotkey.exe verze 1.0.0.20 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 1c28

Čas spuštění: 01d386f3878f578b

Čas ukončení: 4

Cesta k aplikaci: C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe

ID hlášení: 0db26cfe-4527-4d65-9ae3-6fc1678000fc

Úplný název balíčku s chybou:

ID aplikace související s balíčkem s chybou:

Error: (01/05/2018 09:11:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ic-0.5785d0e841c6c4.exe, verze: 1.0.0.1, časové razítko: 0x5a4fda3b
Název chybujícího modulu: ntdll.dll, verze: 10.0.16299.64, časové razítko: 0xac8afc81
Kód výjimky: 0xc0000028
Posun chyby: 0x00061564
ID chybujícího procesu: 0x2a0c
Čas spuštění chybující aplikace: 0x01d386614d5425de
Cesta k chybující aplikaci: C:\Users\StriX\AppData\Local\Temp\346859312\ic-0.5785d0e841c6c4.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 43bb21c9-d536-42e2-8689-27686a1d774a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/05/2018 09:11:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ic-0.5785d0e841c6c4.exe, verze: 1.0.0.1, časové razítko: 0x5a4fda3b
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc00001a5
Posun chyby: 0x00450e2a
ID chybujícího procesu: 0x2a0c
Čas spuštění chybující aplikace: 0x01d386614d5425de
Cesta k chybující aplikaci: C:\Users\StriX\AppData\Local\Temp\346859312\ic-0.5785d0e841c6c4.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: ee93d449-9419-458b-9994-933d481f53eb
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/05/2018 09:10:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ic-0.5785d0e841c6c4.exe, verze: 1.0.0.1, časové razítko: 0x5a4fda3b
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc00001a5
Posun chyby: 0x00450e2a
ID chybujícího procesu: 0x2a0c
Čas spuštění chybující aplikace: 0x01d386614d5425de
Cesta k chybující aplikaci: C:\Users\StriX\AppData\Local\Temp\346859312\ic-0.5785d0e841c6c4.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: b990f8a5-b0ff-44c6-b6b6-107a665b2a73
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/02/2018 09:26:26 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program GTA5.exe verze 1.0.678.1 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 8c0

Čas spuštění: 01d383a2e1d6808e

Čas ukončení: 4294967295

Cesta k aplikaci: D:\GTA 5\Grand Theft Auto V\GTA5.exe

ID hlášení: c2e53f7a-ad15-4fcd-8fda-16e80fd11f0e

Úplný název balíčku s chybou:

ID aplikace související s balíčkem s chybou:

Error: (01/01/2018 08:50:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: X_Boost.exe, verze: 1.0.0.29, časové razítko: 0x59893312
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.16299.15, časové razítko: 0x2cd1ce3d
Kód výjimky: 0xe0434352
Posun chyby: 0x001008b2
ID chybujícího procesu: 0x984
Čas spuštění chybující aplikace: 0x01d38339b86ed925
Cesta k chybující aplikaci: C:\Program Files (x86)\MSI\MSI X Boost\X_Boost.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: b8fc7b2a-f8ca-4860-a4fc-8de1de04fc60
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/01/2018 08:50:06 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: X_Boost.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.NullReferenceException
na X_Boost.SettingWindow..ctor()
na X_Boost.MainWindow..ctor()

Informace o výjimce: System.Reflection.TargetInvocationException
na System.RuntimeTypeHandle.CreateInstance(System.RuntimeType, Boolean, Boolean, Boolean ByRef, System.RuntimeMethodHandleInternal ByRef, Boolean ByRef)
na System.RuntimeType.CreateInstanceSlow(Boolean, Boolean, Boolean, System.Threading.StackCrawlMark ByRef)
na System.RuntimeType.CreateInstanceDefaultCtor(Boolean, Boolean, Boolean, System.Threading.StackCrawlMark ByRef)
na System.Activator.CreateInstance(System.Type, Boolean)
na System.RuntimeType.CreateInstanceImpl(System.Reflection.BindingFlags, System.Reflection.Binder, System.Object[], System.Globalization.CultureInfo, System.Object[], System.Threading.StackCrawlMark ByRef)
na System.Activator.CreateInstance(System.Type, System.Reflection.BindingFlags, System.Reflection.Binder, System.Object[], System.Globalization.CultureInfo, System.Object[])
na System.Activator.CreateInstance(System.Type, System.Object[])
na System.Xaml.Schema.SafeReflectionInvoker.CreateInstanceCritical(System.Type, System.Object[])
na System.Xaml.Schema.SafeReflectionInvoker.CreateInstance(System.Type, System.Object[])
na System.Xaml.Schema.XamlTypeInvoker.CreateInstance(System.Object[])
na MS.Internal.Xaml.Runtime.ClrObjectRuntime.CreateInstanceWithCtor(System.Xaml.XamlType, System.Object[])
na MS.Internal.Xaml.Runtime.ClrObjectRuntime.CreateInstance(System.Xaml.XamlType, System.Object[])
na System.Xaml.XamlObjectWriter.Logic_CreateAndAssignToParentStart(MS.Internal.Xaml.Context.ObjectWriterContext)
na System.Xaml.XamlObjectWriter.WriteStartMember(System.Xaml.XamlMember)
na System.Xaml.XamlWriter.WriteNode(System.Xaml.XamlReader)
na System.Windows.Markup.WpfXamlLoader.TransformNodes(System.Xaml.XamlReader, System.Xaml.XamlObjectWriter, Boolean, Boolean, Boolean, System.Xaml.IXamlLineInfo, System.Xaml.IXamlLineInfoConsumer, MS.Internal.Xaml.Context.XamlContextStack`1<System.Windows.Markup.WpfXamlFrame>, System.Windows.Markup.IStyleConnector)
na System.Windows.Markup.WpfXamlLoader.Load(System.Xaml.XamlReader, System.Xaml.IXamlObjectWriterFactory, Boolean, System.Object, System.Xaml.XamlObjectWriterSettings, System.Uri)
na System.Windows.Markup.WpfXamlLoader.LoadBaml(System.Xaml.XamlReader, Boolean, System.Object, System.Xaml.Permissions.XamlAccessLevel, System.Uri)
na System.Windows.Markup.XamlReader.LoadBaml(System.IO.Stream, System.Windows.Markup.ParserContext, System.Object, Boolean)
na System.Windows.Application.LoadBamlStreamWithSyncInfo(System.IO.Stream, System.Windows.Markup.ParserContext)
na System.Windows.Application.LoadComponent(System.Uri, Boolean)
na System.Windows.Application.DoStartup()
na System.Windows.Application.<.ctor>b__1_0(System.Object)
na System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
na System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
na System.Windows.Threading.DispatcherOperation.InvokeImpl()
na System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Windows.Threading.DispatcherOperation.Invoke()
na System.Windows.Threading.Dispatcher.ProcessQueue()
na System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
na System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
na System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
na System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
na MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
na MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
na System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
na System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
na System.Windows.Application.RunDispatcher(System.Object)
na System.Windows.Application.RunInternal(System.Windows.Window)
na System.Windows.Application.Run(System.Windows.Window)
na X_Boost.App.Main()

Error: (01/01/2018 08:49:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSI_LiveUpdate_Service.exe, verze: 1.0.0.52, časové razítko: 0x59f9a5e7
Název chybujícího modulu: NDA.dll_unloaded, verze: 1.0.0.15, časové razítko: 0x581aa4cc
Kód výjimky: 0xc0000005
Posun chyby: 0x000f650e
ID chybujícího procesu: 0xd1c
Čas spuštění chybující aplikace: 0x01d38339a5945536
Cesta k chybující aplikaci: C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
Cesta k chybujícímu modulu: NDA.dll
ID zprávy: a7bbca12-104e-4f9a-a863-5205b0c7054c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/01/2018 08:42:52 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: IntelCpHDCPSvc.exe, verze: 22.20.16.4836, časové razítko: 0x59e6b019
Název chybujícího modulu: IntelCpHDCPSvc.exe, verze: 22.20.16.4836, časové razítko: 0x59e6b019
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000035df
ID chybujícího procesu: 0xf68
Čas spuštění chybující aplikace: 0x01d38272a8b6b6dc
Cesta k chybující aplikaci: C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2e329e8610bbb375\IntelCpHDCPSvc.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2e329e8610bbb375\IntelCpHDCPSvc.exe
ID zprávy: 80efc3e1-b479-4776-8ce4-9c309114648d
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (01/06/2018 02:37:43 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění application-specific neuděluje oprávnění Local Activation pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (Using LRPC) běžící v kontejneru aplikací Unavailable – SID (Unavailable). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (01/06/2018 02:37:43 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění application-specific neuděluje oprávnění Local Activation pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (Using LRPC) běžící v kontejneru aplikací Unavailable – SID (Unavailable). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (01/06/2018 02:37:43 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění application-specific neuděluje oprávnění Local Activation pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (Using LRPC) běžící v kontejneru aplikací Unavailable – SID (Unavailable). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (01/06/2018 02:37:43 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění application-specific neuděluje oprávnění Local Activation pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (Using LRPC) běžící v kontejneru aplikací Unavailable – SID (Unavailable). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (01/06/2018 07:42:29 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění application-specific neuděluje oprávnění Local Activation pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (Using LRPC) běžící v kontejneru aplikací Unavailable – SID (Unavailable). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (01/06/2018 07:42:29 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění application-specific neuděluje oprávnění Local Activation pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (Using LRPC) běžící v kontejneru aplikací Unavailable – SID (Unavailable). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (01/06/2018 07:42:29 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění application-specific neuděluje oprávnění Local Activation pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (Using LRPC) běžící v kontejneru aplikací Unavailable – SID (Unavailable). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (01/06/2018 07:42:29 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění application-specific neuděluje oprávnění Local Activation pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (Using LRPC) běžící v kontejneru aplikací Unavailable – SID (Unavailable). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (01/05/2018 10:01:50 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: Při pokusu o načtení souboru místních hostitelů došlo k chybě.

Error: (01/05/2018 08:27:04 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba TeamViewer 12 byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 2000 milisekund: Restart the service.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3-7100 CPU @ 3.90GHz
Percentage of memory in use: 37%
Total physical RAM: 8151.5 MB
Available physical RAM: 5134.11 MB
Total Virtual: 9431.5 MB
Available Virtual: 5458.97 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:203.7 GB) (Free:100.39 GB) NTFS
Drive d: () (Fixed) (Total:725.99 GB) (Free:578.24 GB) NTFS
Drive f: (Místní disk) (Fixed) (Total:0.34 GB) (Free:0.33 GB) NTFS
Drive g: () (Fixed) (Total:296.97 GB) (Free:296.75 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 996BE3D8)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: B7FBDD52)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=297 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=797 MB) - (Type=27)

==================== End of Addition.txt ============================

Děkuji za odpověď a pomoc

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118152
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zavirované PC

#3 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Volny256
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 15 úno 2017 17:11

Re: Zavirované PC

#4 Příspěvek od Volny256 »

Bohužel mám zablokované spouštění jakékoliv aplikace i s admin právy.

Ukázka v obrázku


Obrázek

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118152
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zavirované PC

#5 Příspěvek od Rudy »

Zkuste to v nouz. režimu. Případně zkuste AVPTool: http://www.viry.cz/forum/viewtopic.php?f=29&t=58179 . Zkopírujte, spusťte a po ukočení akce smažte vše, co najde. Pokud nepůjde ani toto, zkuste obnovu systému k datu, kdy korektně fugoval.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Volny256
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 15 úno 2017 17:11

Re: Zavirované PC

#6 Příspěvek od Volny256 »

Přes nouzový režim jsem spustil adwcleaner, něco našel a dal jsem opravit.
Nyní nenachází nic a ukazuje prázdný log.
V klasickém režimu stále problém přetrvává.
Zkusil jsem kaspersky recovery tool, ten nachází neustále viry, ale není je schopen odstranit.

Přikládám nový log.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.01.2018
Ran by StriX (administrator) on STRIX-PC (06-01-2018 19:19:47)
Running from C:\Users\StriX\Desktop
Loaded Profiles: StriX (Available Profiles: StriX)
Platform: Windows 10 Education Version 1709 16299.192 (X64) Language: Angličtina (Spojené státy)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Safe Mode (minimal)
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\HelpPane.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235936 2017-08-09] (Realtek Semiconductor)
HKLM-x32\...\Run: [Dare-U mouse] => C:\Program Files (x86)\uRage Illuminated Driver\Monitor.exe [491520 2013-01-17] ()
HKLM-x32\...\Run: [X_Boost] => C:\Program Files (x86)\MSI\MSI X Boost\X_Boost.exe [4224440 2017-08-08] (Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [Mystic Light] => C:\Program Files (x86)\MSI\Mystic Light2\Mystic Light.exe [3091920 2017-07-06] (Micro-Star Int'l Co., Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle Corporation)
HKLM\ DisallowedCertificates: 03D22C9C66915D58C88912B64C1F984B8344EF09 (Comodo Security Solutions) <==== ATTENTION
HKLM\ DisallowedCertificates: 0F684EC1163281085C6AF20528878103ACEFCAAB (F-Secure Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 1667908C9E22EFBD0590E088715CC74BE4C60884 (FRISK Software International/F-Prot) <==== ATTENTION
HKLM\ DisallowedCertificates: 18DEA4EFA93B06AE997D234411F3FD72A677EECE (Bitdefender SRL) <==== ATTENTION
HKLM\ DisallowedCertificates: 2026D13756EB0DB753DF26CB3B7EEBE3E70BB2CF (G DATA Software AG) <==== ATTENTION
HKLM\ DisallowedCertificates: 249BDA38A611CD746A132FA2AF995A2D3C941264 (Malwarebytes Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 31AC96A6C17C425222C46D55C3CCA6BA12E54DAF (Symantec Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 331E2046A1CCA7BFEF766724394BE6112B4CA3F7 (Trend Micro) <==== ATTENTION
HKLM\ DisallowedCertificates: 3353EA609334A9F23A701B9159E30CB6C22D4C59 (Webroot Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: 373C33726722D3A5D1EDD1F1585D5D25B39BEA1A (SUPERAntiSpyware.com) <==== ATTENTION
HKLM\ DisallowedCertificates: 3D496FA682E65FC122351EC29B55AB94F3BB03FC (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: 4243A03DB4C3C15149CEA8B38EEA1DA4F26BD159 (PC Tools) <==== ATTENTION
HKLM\ DisallowedCertificates: 42727E052C0C2E1B35AB53E1005FD9EDC9DE8F01 (K7 Computing Pvt Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 4420C99742DF11DD0795BC15B7B0ABF090DC84DF (Doctor Web Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 4C0AF5719009B7C9D85C5EAEDFA3B7F090FE5FFF (Emsisoft Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 5240AB5B05D11B37900AC7712A3C6AE42F377C8C (Check Point Software Technologies Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 5DD3D41810F28B2A13E9A004E6412061E28FA48D (Emsisoft Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 7457A3793086DBB58B3858D6476889E3311E550E (K7 Computing Pvt Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 76A9295EF4343E12DFC5FE05DC57227C1AB00D29 (BullGuard Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 775B373B33B9D15B58BC02B184704332B97C3CAF (McAfee) <==== ATTENTION
HKLM\ DisallowedCertificates: 872CD334B7E7B3C3D1C6114CD6B221026D505EAB (Comodo Security Solutions) <==== ATTENTION
HKLM\ DisallowedCertificates: 88AD5DFE24126872B33175D1778687B642323ACF (McAfee) <==== ATTENTION
HKLM\ DisallowedCertificates: 9132E8B079D080E01D52631690BE18EBC2347C1E (Adaware Software) <==== ATTENTION
HKLM\ DisallowedCertificates: 982D98951CF3C0CA2A02814D474A976CBFF6BDB1 (Safer Networking Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 9A08641F7C5F2CCA0888388BE3E5DBDDAAA3B361 (Webroot Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: 9C43F665E690AB4D486D4717B456C5554D4BCEB5 (ThreatTrack Security) <==== ATTENTION
HKLM\ DisallowedCertificates: 9E3F95577B37C74CA2F70C1E1859E798B7FC6B13 (CURIOLAB S.M.B.A.) <==== ATTENTION
HKLM\ DisallowedCertificates: A1F8DCB086E461E2ABB4B46ADCFA0B48C58B6E99 (Avira Operations GmbH & Co. KG) <==== ATTENTION
HKLM\ DisallowedCertificates: A5341949ABE1407DD7BF7DFE75460D9608FBC309 (BullGuard Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: A59CC32724DD07A6FC33F7806945481A2D13CA2F (ESET) <==== ATTENTION
HKLM\ DisallowedCertificates: AB7E760DA2485EA9EF5A6EEE7647748D4BA6B947 (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: AD4C5429E10F4FF6C01840C20ABA344D7401209F (Avast Antivirus/Software) <==== ATTENTION
HKLM\ DisallowedCertificates: AD96BB64BA36379D2E354660780C2067B81DA2E0 (Symantec Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: B8EBF0E696AF77F51C96DB4D044586E2F4F8FD84 (Malwarebytes Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: CDC37C22FE9272D8F2610206AD397A45040326B8 (Trend Micro) <==== ATTENTION
HKLM\ DisallowedCertificates: DB303C9B61282DE525DC754A535CA2D6A9BD3D87 (ThreatTrack Security) <==== ATTENTION
HKLM\ DisallowedCertificates: DB77E5CFEC34459146748B667C97B185619251BA (Avast Antivirus/Software) <==== ATTENTION
HKLM\ DisallowedCertificates: E22240E837B52E691C71DF248F12D27F96441C00 (Total Defense, Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: E513EAB8610CFFD7C87E00BCA15C23AAB407FCEF (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: ED841A61C0F76025598421BC1B00E24189E68D54 (Bitdefender SRL) <==== ATTENTION
HKLM\ DisallowedCertificates: F83099622B4A9F72CB5081F742164AD1B8D048C9 (ESET) <==== ATTENTION
HKLM\ DisallowedCertificates: FBB42F089AF2D570F2BF6F493D107A3255A9BB1A (Panda Security S.L) <==== ATTENTION
HKLM\ DisallowedCertificates: FFFA650F2CB2ABC0D80527B524DD3F9FC172C138 (Doctor Web Ltd.) <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Run: [Steam] => C:\Steam\steam.exe [3111712 2017-12-15] (Valve Corporation)
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Run: [Bloody2] => C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe [17627648 2017-09-01] ()
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Technologies S.A.)
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\RunOnce: [Application Restart #4] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MSI)
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\RunOnce: [Application Restart #1] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MSI)
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\RunOnce: [Application Restart #0] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MSI)
HKU\S-1-5-18\...\Run: [] => [X]
Startup: C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar374.lnk [2018-01-06]
ShortcutTarget: Sidebar374.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
GroupPolicy: Restriction - Chrome <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [S-1-5-21-752624193-2435152514-875314472-1001] => Proxy is enabled.
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1 10.0.1.1
Tcpip\..\Interfaces\{5c89dade-469a-4ffe-be66-a576de904b20}: [DhcpNameServer] 10.0.0.1 10.0.1.1

Internet Explorer:
==================
HKU\S-1-5-21-752624193-2435152514-875314472-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10420__171125__yaie
SearchScopes: HKU\S-1-5-21-752624193-2435152514-875314472-1001 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10420__171125__yaie&p={searchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-11-10] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-10] (Oracle Corporation)

FireFox:
========
FF DefaultProfile: ihrwisfo.default
FF ProfilePath: C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default [2018-01-06]
FF Homepage: Mozilla\Firefox\Profiles\ihrwisfo.default -> hxxps://www.seznam.cz/
FF NewTab: Mozilla\Firefox\Profiles\ihrwisfo.default -> hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10420__171125__yaff
FF Extension: (FF AntiVirus Tool) - C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default\Extensions\{5af74f5a-652b-4b83-a2a9-f3d21c3c0010}.xpi [2017-12-14]
FF Extension: (Firefox Antivirus) - C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default\Extensions\{6feed48d-41d4-49b8-b7d6-ef78cc7a7cd7}.xpi [2017-12-09]
FF Extension: (Disable JavaScript Shared Memory) - C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default\features\{0bf36d57-6094-48f0-8fc1-2798459d5a26}\disable-js-shared-memory@mozilla.org.xpi [2018-01-05] [Legacy]
FF Extension: (Adblocker for Youtube™) - C:\Program Files\Mozilla Firefox\browser\features\{A5FD4672-4D73-4F90-A1C0-2ABD39DB2565}.xpi [2018-01-05] [not signed]
FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-11-10] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-11-10] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-15] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-15] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.)

Chrome:
=======
CHR Profile: C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default [2018-01-06]
CHR Extension: (Slides) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Docs) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Google Drive) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-10-13]
CHR Extension: (YouTube) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-10-13]
CHR Extension: (Sheets) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Google Docs Offline) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-10-13]
CHR Extension: (Chrome Web Store Payments) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-10-13]
CHR Extension: (Adblocker for Youtube™) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac [2018-01-05]
CHR Extension: (Adblocker for Youtube™) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj [2018-01-06]
CHR Extension: (Gmail) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-10-13]
CHR Extension: (Chrome Media Router) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-13]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2017-10-24] (Futuremark)
S2 GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [48824 2017-10-26] (Micro-Star Int'l Co., Ltd.)
S2 GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2021048 2017-11-01] (Micro-Star INT'L CO., LTD.)
S2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [83616 2017-11-21] (Micro-Star INT'L CO., LTD.)
S2 MSI_DPCLTSERVICE; C:\Program Files (x86)\MSI\DPC Latency Tuner\DPCLT_Service.exe [2142648 2017-08-10] (Micro-Star INT'L CO., LTD.)
S2 MSI_MYSTICLIGHTSERVICE; C:\Program Files (x86)\MSI\Mystic Light2\MysticLight_Service.exe [2046928 2017-07-06] (Micro-Star INT'L CO., LTD.)
S2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1451848 2017-12-26] (Overwolf LTD)
S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2017-08-25] ()
S2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [107832 2017-08-25] ()
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2017-11-26] (Microsoft Corporation)
S2 spacedeskService; C:\WINDOWS\System32\spacedeskService.exe [787504 2017-11-24] ()
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\NisSrv.exe [356176 2017-12-09] (Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MsMpEng.exe [105792 2017-12-09] (Microsoft Corporation)
S2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
S2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 52D0FF24; C:\WINDOWS\System32\drivers\52D0FF24.sys [478392 2018-01-06] (Kaspersky Lab ZAO)
S3 e1dexpress; C:\WINDOWS\system32\DRIVERS\e1d65x64.sys [544744 2017-03-19] (Intel Corporation)
S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (FINTEK Corp.)
S3 NTIOLib_DPC; C:\Program Files (x86)\MSI\DPC Latency Tuner\NTIOLib_X64.sys [14288 2017-03-29] (MSI)
S3 NTIOLib_MBAPI; C:\Program Files (x86)\MSI\Gaming APP\Lib\NTIOLib_X64.sys [14288 2017-03-08] (MSI)
S3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\Mystic Light2\Lib\NTIOLib_X64.sys [14288 2017-05-24] (MSI)
S3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d37ca5c2cde53609\nvlddmkm.sys [17028552 2017-12-18] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-11-16] (NVIDIA Corporation)
S3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-11-16] (NVIDIA Corporation)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] ()
S1 spacedeskDispKmode; C:\WINDOWS\System32\drivers\spacedeskDispKmode.sys [284208 2017-11-24] (datronicsoft Inc.)
R3 spacedeskKtmInputKeybd; C:\WINDOWS\System32\drivers\spacedeskKtmInputKeybd.sys [35384 2017-09-19] ()
R3 spacedeskKtmInputMouse; C:\WINDOWS\System32\drivers\spacedeskKtmInputMouse.sys [35384 2017-09-19] ()
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46072 2017-12-09] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [288848 2017-12-09] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [129616 2017-12-09] (Microsoft Corporation)
S3 cpuz136; \??\C:\WINDOWS\TEMP\cpuz136\cpuz136_x64.sys [X]
S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-01-06 19:19 - 2018-01-06 19:20 - 000018038 _____ C:\Users\StriX\Desktop\FRST.txt
2018-01-06 18:21 - 2018-01-06 18:26 - 000000000 ____D C:\KVRT_Data
2018-01-06 18:21 - 2018-01-06 18:21 - 000478392 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\52D0FF24.sys
2018-01-06 18:19 - 2018-01-06 18:20 - 137637672 _____ (Kaspersky Lab ZAO) C:\Users\StriX\Desktop\KVRT.exe
2018-01-06 18:07 - 2018-01-06 19:18 - 000691198 _____ C:\WINDOWS\ntbtlog.txt
2018-01-06 18:07 - 2018-01-06 19:18 - 000000000 ____D C:\AdwCleaner
2018-01-06 18:07 - 2018-01-06 19:16 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2018-01-06 17:03 - 2018-01-06 19:19 - 000000000 ____D C:\FRST
2018-01-06 17:03 - 2018-01-06 17:03 - 002393088 _____ (Farbar) C:\Users\StriX\Desktop\FRST64.exe
2018-01-06 17:00 - 2018-01-06 17:00 - 008198432 _____ (Malwarebytes) C:\Users\StriX\Desktop\adwcleaner_7.0.6.0.exe
2018-01-06 16:54 - 2018-01-06 16:54 - 002453299 _____ C:\Users\StriX\Desktop\2018-01-06 16-54-43.mp4
2018-01-06 16:45 - 2018-01-01 13:51 - 001055128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-01-06 16:45 - 2018-01-01 13:51 - 000059800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bam.sys
2018-01-06 16:45 - 2018-01-01 13:49 - 008605080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-01-06 16:45 - 2018-01-01 13:48 - 007831760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2018-01-06 16:45 - 2018-01-01 13:48 - 001954048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2018-01-06 16:45 - 2018-01-01 13:47 - 000082840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2018-01-06 16:45 - 2018-01-01 13:46 - 002709704 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-01-06 16:45 - 2018-01-01 13:46 - 000471960 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2018-01-06 16:45 - 2018-01-01 13:45 - 002395032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2018-01-06 16:45 - 2018-01-01 13:45 - 001277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2018-01-06 16:45 - 2018-01-01 13:45 - 000398744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2018-01-06 16:45 - 2018-01-01 13:42 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2018-01-06 16:45 - 2018-01-01 13:39 - 000902416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2018-01-06 16:45 - 2018-01-01 13:39 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2018-01-06 16:45 - 2018-01-01 13:39 - 000129432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys
2018-01-06 16:45 - 2018-01-01 13:37 - 001426664 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2018-01-06 16:45 - 2018-01-01 13:36 - 000166296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2018-01-06 16:45 - 2018-01-01 13:35 - 001170008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2018-01-06 16:45 - 2018-01-01 13:34 - 007385088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-01-06 16:45 - 2018-01-01 13:33 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2018-01-06 16:45 - 2018-01-01 13:26 - 000428952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2018-01-06 16:45 - 2018-01-01 13:25 - 000615768 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2018-01-06 16:45 - 2018-01-01 13:25 - 000147864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2018-01-06 16:45 - 2018-01-01 12:53 - 001615712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2018-01-06 16:45 - 2018-01-01 12:45 - 005615968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2018-01-06 16:45 - 2018-01-01 12:45 - 002192624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-01-06 16:45 - 2018-01-01 12:42 - 006479552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-01-06 16:45 - 2018-01-01 12:42 - 004644912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2018-01-06 16:45 - 2018-01-01 12:42 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2018-01-06 16:45 - 2018-01-01 12:42 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2018-01-06 16:45 - 2018-01-01 12:34 - 000703568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2018-01-06 16:45 - 2018-01-01 12:25 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-01-06 16:45 - 2018-01-01 12:25 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2018-01-06 16:45 - 2018-01-01 12:24 - 003668480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-01-06 16:45 - 2018-01-01 12:24 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2018-01-06 16:45 - 2018-01-01 12:23 - 000536576 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2018-01-06 16:45 - 2018-01-01 12:23 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2018-01-06 16:45 - 2018-01-01 12:21 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2018-01-06 16:45 - 2018-01-01 12:20 - 019337216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-01-06 16:45 - 2018-01-01 12:20 - 018917888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-01-06 16:45 - 2018-01-01 12:19 - 000461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2018-01-06 16:45 - 2018-01-01 12:19 - 000369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2018-01-06 16:45 - 2018-01-01 12:19 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2018-01-06 16:45 - 2018-01-01 12:18 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2018-01-06 16:45 - 2018-01-01 12:18 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2018-01-06 16:45 - 2018-01-01 12:18 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2018-01-06 16:45 - 2018-01-01 12:17 - 011923968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-01-06 16:45 - 2018-01-01 12:17 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-01-06 16:45 - 2018-01-01 12:17 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-01-06 16:45 - 2018-01-01 12:17 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 003676672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 000812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2018-01-06 16:45 - 2018-01-01 12:15 - 012687872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-01-06 16:45 - 2018-01-01 12:15 - 006029312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-01-06 16:45 - 2018-01-01 12:15 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2018-01-06 16:45 - 2018-01-01 12:14 - 023655936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-01-06 16:45 - 2018-01-01 12:14 - 002465280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2018-01-06 16:45 - 2018-01-01 12:13 - 012830208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-01-06 16:45 - 2018-01-01 12:13 - 002869760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2018-01-06 16:45 - 2018-01-01 12:12 - 001547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-01-06 16:45 - 2018-01-01 12:12 - 001424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2018-01-06 16:45 - 2018-01-01 12:11 - 008108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-01-06 16:45 - 2018-01-01 12:11 - 004748288 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-01-06 16:45 - 2018-01-01 12:11 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2018-01-06 16:45 - 2018-01-01 12:11 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2018-01-06 16:45 - 2018-01-01 12:11 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2018-01-06 16:45 - 2018-01-01 12:09 - 001487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2018-01-06 16:45 - 2018-01-01 12:09 - 000925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2018-01-06 16:45 - 2018-01-01 12:08 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2018-01-06 16:45 - 2018-01-01 12:08 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2018-01-06 16:44 - 2018-01-01 18:15 - 000956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2018-01-06 16:44 - 2018-01-01 13:54 - 000924648 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-01-06 16:44 - 2018-01-01 13:53 - 001090984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-01-06 16:44 - 2018-01-01 13:52 - 000066712 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2018-01-06 16:44 - 2018-01-01 13:51 - 001414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-01-06 16:44 - 2018-01-01 13:51 - 001209240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-01-06 16:44 - 2018-01-01 13:51 - 000191816 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2018-01-06 16:44 - 2018-01-01 13:50 - 005905752 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2018-01-06 16:44 - 2018-01-01 13:50 - 000780464 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2018-01-06 16:44 - 2018-01-01 13:50 - 000479912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2018-01-06 16:44 - 2018-01-01 13:50 - 000077208 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-01-06 16:44 - 2018-01-01 13:49 - 000599448 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2018-01-06 16:44 - 2018-01-01 13:49 - 000319352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2018-01-06 16:44 - 2018-01-01 13:49 - 000292376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2018-01-06 16:44 - 2018-01-01 13:48 - 000382360 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2018-01-06 16:44 - 2018-01-01 13:47 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2018-01-06 16:44 - 2018-01-01 13:46 - 000898216 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-01-06 16:44 - 2018-01-01 13:46 - 000733592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2018-01-06 16:44 - 2018-01-01 13:43 - 001173576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2018-01-06 16:44 - 2018-01-01 13:43 - 000367336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2018-01-06 16:44 - 2018-01-01 13:43 - 000062872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fsdepends.sys
2018-01-06 16:44 - 2018-01-01 13:42 - 001029016 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2018-01-06 16:44 - 2018-01-01 13:42 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2018-01-06 16:44 - 2018-01-01 13:42 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2018-01-06 16:44 - 2018-01-01 13:42 - 000109976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2018-01-06 16:44 - 2018-01-01 13:41 - 007676296 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-01-06 16:44 - 2018-01-01 13:41 - 000559512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2018-01-06 16:44 - 2018-01-01 13:41 - 000549552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2018-01-06 16:44 - 2018-01-01 13:40 - 001206680 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-01-06 16:44 - 2018-01-01 13:39 - 000677784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-01-06 16:44 - 2018-01-01 13:39 - 000508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2018-01-06 16:44 - 2018-01-01 13:38 - 003904808 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2018-01-06 16:44 - 2018-01-01 13:38 - 000727448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2018-01-06 16:44 - 2018-01-01 13:38 - 000519152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2018-01-06 16:44 - 2018-01-01 13:38 - 000103320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2018-01-06 16:44 - 2018-01-01 13:38 - 000038808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Diskdump.sys
2018-01-06 16:44 - 2018-01-01 13:37 - 000461720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2018-01-06 16:44 - 2018-01-01 13:36 - 000413888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2018-01-06 16:44 - 2018-01-01 13:36 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe
2018-01-06 16:44 - 2018-01-01 13:36 - 000113560 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2018-01-06 16:44 - 2018-01-01 13:36 - 000057752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbios.sys
2018-01-06 16:44 - 2018-01-01 13:35 - 000075160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2018-01-06 16:44 - 2018-01-01 13:34 - 001336344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2018-01-06 16:44 - 2018-01-01 13:34 - 000260896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2018-01-06 16:44 - 2018-01-01 13:34 - 000087384 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2018-01-06 16:44 - 2018-01-01 13:33 - 002773400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-01-06 16:44 - 2018-01-01 13:32 - 004481240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-01-06 16:44 - 2018-01-01 13:32 - 000617304 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2018-01-06 16:44 - 2018-01-01 13:27 - 000713624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2018-01-06 16:44 - 2018-01-01 13:27 - 000163736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2018-01-06 16:44 - 2018-01-01 13:26 - 000081304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2018-01-06 16:44 - 2018-01-01 13:23 - 021352144 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-01-06 16:44 - 2018-01-01 13:21 - 001103768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2018-01-06 16:44 - 2018-01-01 13:21 - 000614296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2018-01-06 16:44 - 2018-01-01 13:06 - 000311192 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2018-01-06 16:44 - 2018-01-01 13:03 - 000777904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2018-01-06 16:44 - 2018-01-01 13:03 - 000650328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2018-01-06 16:44 - 2018-01-01 13:03 - 000566664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-01-06 16:44 - 2018-01-01 13:03 - 000123512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2018-01-06 16:44 - 2018-01-01 12:49 - 000481464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2018-01-06 16:44 - 2018-01-01 12:49 - 000258808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2018-01-06 16:44 - 2018-01-01 12:46 - 003485392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2018-01-06 16:44 - 2018-01-01 12:46 - 000289816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2018-01-06 16:44 - 2018-01-01 12:45 - 006092152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-01-06 16:44 - 2018-01-01 12:45 - 000450928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2018-01-06 16:44 - 2018-01-01 12:43 - 020286120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-01-06 16:44 - 2018-01-01 12:42 - 001003152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2018-01-06 16:44 - 2018-01-01 12:42 - 000386424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2018-01-06 16:44 - 2018-01-01 12:42 - 000129184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2018-01-06 16:44 - 2018-01-01 12:42 - 000074992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2018-01-06 16:44 - 2018-01-01 12:37 - 025247232 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-01-06 16:44 - 2018-01-01 12:25 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2018-01-06 16:44 - 2018-01-01 12:25 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2018-01-06 16:44 - 2018-01-01 12:25 - 000097792 _____ C:\WINDOWS\system32\runexehelper.exe
2018-01-06 16:44 - 2018-01-01 12:24 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboutSettingsHandlers.dll
2018-01-06 16:44 - 2018-01-01 12:24 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2018-01-06 16:44 - 2018-01-01 12:24 - 000038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2018-01-06 16:44 - 2018-01-01 12:23 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2018-01-06 16:44 - 2018-01-01 12:23 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2018-01-06 16:44 - 2018-01-01 12:23 - 000385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2018-01-06 16:44 - 2018-01-01 12:23 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\convertvhd.exe
2018-01-06 16:44 - 2018-01-01 12:23 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2018-01-06 16:44 - 2018-01-01 12:23 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmclr.sys
2018-01-06 16:44 - 2018-01-01 12:23 - 000047104 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2018-01-06 16:44 - 2018-01-01 12:22 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rfxvmt.dll
2018-01-06 16:44 - 2018-01-01 12:22 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2018-01-06 16:44 - 2018-01-01 12:22 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Dumpstorport.sys
2018-01-06 16:44 - 2018-01-01 12:22 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll
2018-01-06 16:44 - 2018-01-01 12:21 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2018-01-06 16:44 - 2018-01-01 12:21 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2018-01-06 16:44 - 2018-01-01 12:21 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2018-01-06 16:44 - 2018-01-01 12:21 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
2018-01-06 16:44 - 2018-01-01 12:21 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\raspptp.sys
2018-01-06 16:44 - 2018-01-01 12:21 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2018-01-06 16:44 - 2018-01-01 12:21 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2018-01-06 16:44 - 2018-01-01 12:21 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000524288 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2018-01-06 16:44 - 2018-01-01 12:20 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardDlg.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\RfxVmt.sys
2018-01-06 16:44 - 2018-01-01 12:20 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 008014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000795136 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalAuth.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2018-01-06 16:44 - 2018-01-01 12:19 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2018-01-06 16:44 - 2018-01-01 12:19 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2018-01-06 16:44 - 2018-01-01 12:19 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2P.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msoert2.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2018-01-06 16:44 - 2018-01-01 12:19 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000748032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000699904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EncDec.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 006564864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 001485312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000594432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2psvc.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2018-01-06 16:44 - 2018-01-01 12:17 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoert2.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 005833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 004839424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000966656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000956928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000831488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000668160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000624128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 002349568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 001245184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 001003008 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 000985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 000917504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 000870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2018-01-06 16:44 - 2018-01-01 12:13 - 013657600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-01-06 16:44 - 2018-01-01 12:13 - 003121664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll
2018-01-06 16:44 - 2018-01-01 12:13 - 002013184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2018-01-06 16:44 - 2018-01-01 12:13 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2018-01-06 16:44 - 2018-01-01 12:13 - 001474560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2018-01-06 16:44 - 2018-01-01 12:13 - 000897024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2018-01-06 16:44 - 2018-01-01 12:12 - 002633216 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2018-01-06 16:44 - 2018-01-01 12:12 - 002208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-01-06 16:44 - 2018-01-01 12:12 - 001573376 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2018-01-06 16:44 - 2018-01-01 12:12 - 000760320 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2018-01-06 16:44 - 2018-01-01 12:12 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 003165696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 002082304 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2018-01-06 16:44 - 2018-01-01 12:11 - 001955328 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSvc.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 001816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 001597952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 001343488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 001231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 000715776 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2018-01-06 16:44 - 2018-01-01 12:10 - 003126272 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2018-01-06 16:44 - 2018-01-01 12:10 - 002528256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2018-01-06 16:44 - 2018-01-01 12:10 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscproxystub.dll
2018-01-06 16:44 - 2018-01-01 12:09 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll
2018-01-06 16:44 - 2018-01-01 12:09 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2018-01-06 16:44 - 2018-01-01 12:08 - 000963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2018-01-06 16:44 - 2018-01-01 12:08 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2018-01-06 16:44 - 2018-01-01 12:08 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2018-01-06 16:44 - 2018-01-01 12:06 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll
2018-01-06 16:44 - 2018-01-01 12:05 - 002510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2018-01-06 16:44 - 2018-01-01 12:05 - 001160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2018-01-06 16:44 - 2018-01-01 12:05 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2018-01-06 13:53 - 2018-01-06 13:53 - 007172032 _____ (AVAST Software) C:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe
2018-01-06 13:53 - 2018-01-06 13:53 - 000000000 ____D C:\ProgramData\AVAST Software
2018-01-06 07:42 - 2018-01-06 07:42 - 000000270 __RSH C:\Users\StriX\ntuser.pol
2018-01-05 21:17 - 2018-01-05 21:17 - 000000000 ____D C:\ProgramData\Sony
2018-01-05 21:16 - 2018-01-05 21:16 - 000000000 ____D C:\Users\StriX\AppData\Local\Sony
2018-01-05 21:15 - 2018-01-05 21:15 - 000001038 _____ C:\Users\StriX\Desktop\Vegas Pro 13.0 (64-bit).lnk
2018-01-05 21:15 - 2018-01-05 21:15 - 000001026 _____ C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Vegas Pro 13.0 (64-bit).lnk
2018-01-05 21:15 - 2018-01-05 21:15 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sony
2018-01-05 21:15 - 2018-01-05 21:15 - 000000000 ____D C:\Program Files\Sony
2018-01-05 21:15 - 2018-01-05 21:15 - 000000000 ____D C:\Program Files (x86)\Sony
2018-01-05 21:11 - 2018-01-06 19:12 - 000000000 ____D C:\Program Files (x86)\qTTaaczyWvUn
2018-01-05 21:11 - 2018-01-06 19:12 - 000000000 ____D C:\Program Files (x86)\GBeMZXQZBIE
2018-01-05 21:11 - 2018-01-06 18:27 - 000000000 ____D C:\Program Files (x86)\umkISPBbU
2018-01-05 21:11 - 2018-01-06 18:27 - 000000000 ____D C:\Program Files (x86)\TwPufLOWyrxU2
2018-01-05 21:11 - 2018-01-06 14:37 - 000000328 _____ C:\WINDOWS\Tasks\saKXaLnxQURzlMgex.job
2018-01-05 21:11 - 2018-01-06 14:37 - 000000316 _____ C:\WINDOWS\Tasks\plaAVjRQXWCDePSecyr.job
2018-01-05 21:11 - 2018-01-06 14:37 - 000000306 _____ C:\WINDOWS\Tasks\BcyoMZkjXMgFaPP.job
2018-01-05 21:11 - 2018-01-05 21:11 - 000002890 _____ C:\WINDOWS\System32\Tasks\saKXaLnxQURzlMgex2
2018-01-05 21:11 - 2018-01-05 21:11 - 000002882 _____ C:\WINDOWS\System32\Tasks\plaAVjRQXWCDePSecyr2
2018-01-05 21:11 - 2018-01-05 21:11 - 000002652 _____ C:\WINDOWS\System32\Tasks\saKXaLnxQURzlMgex
2018-01-05 21:11 - 2018-01-05 21:11 - 000002644 _____ C:\WINDOWS\System32\Tasks\plaAVjRQXWCDePSecyr
2018-01-05 21:11 - 2018-01-05 21:11 - 000000000 ____D C:\Program Files (x86)\RrHYXuUpocPTIXdsppR
2018-01-05 21:11 - 2018-01-05 21:11 - 000000000 ____D C:\Program Files (x86)\aohGTEheqdnWC
2018-01-05 21:10 - 2018-01-06 18:30 - 000000000 ____D C:\Program Files (x86)\Multitimer
2018-01-05 21:10 - 2018-01-06 18:18 - 000004000 __RSH C:\ProgramData\ntuser.pol
2018-01-05 21:10 - 2018-01-05 21:10 - 000140800 _____ C:\Users\StriX\AppData\Local\installer.dat
2018-01-05 20:33 - 2018-01-06 14:37 - 000000362 _____ C:\WINDOWS\Tasks\Connect.job
2018-01-05 20:33 - 2018-01-05 20:33 - 000002776 _____ C:\WINDOWS\System32\Tasks\Connect
2018-01-05 20:33 - 2018-01-05 20:33 - 000000000 ____D C:\ProgramData\simplitec
2018-01-05 20:33 - 2018-01-05 20:33 - 000000000 ____D C:\ProgramData\Magix
2018-01-05 20:33 - 2018-01-05 20:33 - 000000000 ____D C:\Program Files (x86)\MAGIX
2018-01-05 20:32 - 2018-01-05 20:45 - 000000000 ____D C:\ProgramData\VEGAS
2018-01-05 20:31 - 2018-01-05 21:23 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Sony
2018-01-05 19:54 - 2018-01-05 19:54 - 000000000 ____D C:\Users\StriX\Documents\MAGIX Downloads
2018-01-05 19:54 - 2018-01-05 19:54 - 000000000 ____D C:\Users\StriX\AppData\Roaming\MAGIX
2018-01-01 20:49 - 2018-01-01 20:49 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2018-01-01 20:46 - 2018-01-02 09:08 - 000000000 ____D C:\Users\StriX\AppData\Local\NFS Underground 2
2018-01-01 20:46 - 2018-01-01 20:46 - 000000695 _____ C:\Users\StriX\Desktop\Need for Speed Underground 2.lnk
2018-01-01 20:46 - 2018-01-01 20:46 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2017-12-31 14:13 - 2018-01-01 15:24 - 002175492 _____ C:\Users\StriX\Desktop\Poznávačka RYBY.pptx
2017-12-31 14:13 - 2017-12-31 14:13 - 002219693 _____ C:\Users\StriX\Documents\Poznávačka RYBY.pptx
2017-12-29 12:45 - 2017-12-29 13:45 - 000000000 ____D C:\Users\StriX\Documents\3DMark
2017-12-29 12:45 - 2017-12-29 12:45 - 000000000 ____D C:\Users\StriX\.oracle_jre_usage
2017-12-29 12:45 - 2017-12-29 12:45 - 000000000 ____D C:\ProgramData\Futuremark
2017-12-29 11:38 - 2017-12-29 11:43 - 000000000 ____D C:\Users\StriX\Desktop\Counters
2017-12-29 11:38 - 2017-12-29 11:42 - 000000000 ____D C:\Users\StriX\Desktop\Runes
2017-12-28 22:18 - 2017-12-28 22:18 - 000000022 _____ C:\WINDOWS\GPU-Z.INI
2017-12-28 22:18 - 2017-12-28 22:18 - 000000000 ____D C:\Temp
2017-12-28 22:05 - 2017-12-28 22:05 - 000000000 ____D C:\Program Files\Futuremark
2017-12-27 18:07 - 2017-12-27 18:07 - 000003190 _____ C:\WINDOWS\System32\Tasks\MSIGH_Host
2017-12-27 18:07 - 2017-12-27 18:07 - 000003132 _____ C:\WINDOWS\System32\Tasks\MSIOSDx86_Host
2017-12-27 18:07 - 2017-12-27 18:07 - 000003132 _____ C:\WINDOWS\System32\Tasks\MSIOSDx64_Host
2017-12-27 18:07 - 2017-12-27 18:07 - 000003058 _____ C:\WINDOWS\System32\Tasks\MSISW_Host
2017-12-27 18:05 - 2017-12-27 18:05 - 000001194 _____ C:\Users\Public\Desktop\MSI Gaming APP.lnk
2017-12-27 18:05 - 2015-08-18 09:51 - 001692840 _____ (MSI) C:\WINDOWS\SysWOW64\muachost.exe
2017-12-25 17:20 - 2017-12-25 17:20 - 000000199 _____ C:\Users\StriX\Desktop\Portal.url
2017-12-25 16:53 - 2017-12-25 16:53 - 000002737 _____ C:\Users\Public\Desktop\Dragon Eye.lnk
2017-12-25 15:26 - 2017-12-29 13:40 - 000000000 ____D C:\Users\StriX\Desktop\Overclocking
2017-12-25 13:45 - 2017-12-25 13:47 - 000000000 ____D C:\Users\StriX\Valley
2017-12-25 13:44 - 2017-12-27 18:27 - 000728064 _____ C:\Users\StriX\AppData\Local\file__0.localstorage
2017-12-25 13:44 - 2017-12-25 13:44 - 000000000 ____D C:\Program Files (x86)\Unigine
2017-12-25 13:42 - 2017-12-25 13:42 - 000001178 _____ C:\Users\StriX\Desktop\GTAVLauncher – zástupce.lnk
2017-12-25 11:25 - 2018-01-06 18:30 - 000002430 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2017-12-25 10:43 - 2017-12-25 10:43 - 000000119 _____ C:\Users\StriX\AppData\Roaming\System Monitor II_UptimeRecord.ini
2017-12-25 00:14 - 2017-12-25 00:28 - 000004000 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 22:36 - 2017-12-24 22:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D
2017-12-24 22:36 - 2017-12-24 22:36 - 000000000 ____D C:\Program Files (x86)\Geeks3D
2017-12-24 22:24 - 2017-12-25 21:33 - 000000000 ____D C:\WINDOWS\Minidump
2017-12-24 21:57 - 2017-12-24 21:57 - 000000000 ____D C:\Program Files (x86)\GPU-Z
2017-12-24 21:14 - 2017-12-15 23:47 - 000143960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2017-12-24 21:11 - 2017-12-16 01:23 - 040237456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 036350960 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 035157488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 023267096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 019040512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 013867656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 013255032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 011781912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 010883744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 004202992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 003615032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001990128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438871.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001674736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438871.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001331016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001321448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001135464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001101104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001044848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001038496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001032688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000980880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000933360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000885680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000794392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000740144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000634224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000618744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000616240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000599536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000506864 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000045496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json
2017-12-24 21:11 - 2017-12-16 01:23 - 000000669 _____ C:\WINDOWS\system32\nv-vk64.json
2017-12-24 21:08 - 2018-01-05 21:11 - 000000000 ____D C:\Users\StriX\AppData\Local\CrashDumps
2017-12-24 20:56 - 2017-12-25 16:53 - 000000000 ____D C:\Users\StriX\AppData\Roaming\MSI
2017-12-24 20:54 - 2017-12-24 21:14 - 000000000 ____D C:\Users\StriX\AppData\Local\NVIDIA
2017-12-24 20:53 - 2017-12-25 00:18 - 000000000 ____D C:\Users\StriX\AppData\Local\NVIDIA Corporation
2017-12-24 20:52 - 2017-12-24 21:14 - 000000000 ____D C:\Users\StriX\AppData\Roaming\NVIDIA
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\Users\StriX\AppData\Roaming\SplitmediaLabs
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\ProgramData\SplitMediaLabs
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI Kombustor 3
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\Program Files\MSI Kombustor 3
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\Program Files (x86)\SplitmediaLabs
2017-12-24 20:48 - 2014-04-30 16:23 - 000011248 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\acpimof.dll
2017-12-24 20:47 - 2017-12-24 20:47 - 000000000 ____D C:\Program Files\MSI
2017-12-24 20:44 - 2017-12-25 00:28 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003696 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000001485 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-12-24 20:44 - 2017-12-24 21:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-12-24 20:44 - 2017-11-16 02:41 - 002404800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 002070976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 001309120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 000186304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 000152512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 000057792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2017-12-24 20:44 - 2017-11-16 01:53 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
2017-12-24 20:44 - 2017-10-11 02:05 - 000050624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2017-12-24 20:44 - 2017-04-01 04:27 - 001756728 ____R (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2017-12-24 20:44 - 2017-04-01 04:27 - 001318968 ____R (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2017-12-24 20:44 - 2015-07-27 01:37 - 000041760 _____ (FINTEK Corp.) C:\WINDOWS\system32\Drivers\I2cHkBurn.sys
2017-12-24 20:44 - 2015-07-27 01:37 - 000031520 _____ (TODO: <公司名稱>) C:\WINDOWS\system32\FintekIcon1.dll
2017-12-24 20:43 - 2018-01-06 19:15 - 000000000 ____D C:\ProgramData\NVIDIA
2017-12-24 20:43 - 2017-12-25 00:43 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-12-24 20:43 - 2017-12-25 00:29 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2017-12-24 20:43 - 2017-12-16 01:23 - 001615472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2017-12-24 20:43 - 2017-12-16 01:23 - 000225208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2017-12-24 20:43 - 2017-12-16 01:23 - 000048442 _____ C:\WINDOWS\system32\nvinfo.pb
2017-12-24 20:43 - 2017-12-15 23:34 - 005964688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 002589168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 001767408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000608056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000450544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000123704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000082928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2017-12-24 20:43 - 2017-12-14 19:17 - 007917671 _____ C:\WINDOWS\system32\nvcoproc.bin
2017-12-24 20:43 - 2017-11-09 17:47 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2017-12-24 20:43 - 2017-04-01 04:27 - 001988032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438165.dll
2017-12-24 20:43 - 2017-04-01 04:27 - 001591352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438165.dll
2017-12-24 20:41 - 2017-12-16 01:23 - 029381936 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2017-12-24 20:41 - 2017-12-16 01:23 - 004485376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2017-12-24 20:41 - 2017-12-16 01:23 - 003817584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2017-12-24 20:39 - 2017-12-25 00:28 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2017-12-24 16:16 - 2018-01-06 16:38 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2017-12-24 16:16 - 2017-12-24 16:16 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2017-12-24 16:16 - 2017-12-24 16:16 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
2017-12-24 16:15 - 2017-12-24 16:15 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2017-12-17 10:20 - 2017-12-17 11:13 - 005331369 _____ C:\Users\StriX\Desktop\Poznávačka exoti.pptx
2017-12-16 17:24 - 2017-12-16 17:24 - 000000519 _____ C:\Users\StriX\Desktop\Best Plays.lnk
2017-12-16 08:20 - 2017-12-16 08:20 - 000000625 _____ C:\Users\Public\Desktop\LOL SKIN.lnk
2017-12-15 20:07 - 2017-12-08 07:52 - 000666112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2017-12-15 20:07 - 2017-12-08 00:34 - 001925296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-12-15 20:07 - 2017-12-08 00:34 - 001634288 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2017-12-15 20:07 - 2017-12-08 00:28 - 000710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2017-12-15 20:07 - 2017-12-08 00:26 - 000525208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2017-12-15 20:07 - 2017-12-08 00:24 - 000705944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2017-12-15 20:07 - 2017-12-08 00:24 - 000437144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2017-12-15 20:07 - 2017-12-08 00:24 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-12-15 20:07 - 2017-12-08 00:22 - 000979352 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2017-12-15 20:07 - 2017-12-08 00:16 - 001776272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2017-12-15 20:07 - 2017-12-08 00:15 - 000721592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2017-12-15 20:07 - 2017-12-08 00:12 - 000401304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2017-12-15 20:07 - 2017-12-07 23:56 - 001528904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2017-12-15 20:07 - 2017-12-07 23:55 - 001490328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2017-12-15 20:07 - 2017-12-07 23:33 - 000747416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2017-12-15 20:07 - 2017-12-07 23:33 - 000592280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2017-12-15 20:07 - 2017-12-07 23:31 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2017-12-15 20:07 - 2017-12-07 23:29 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KeyboardFilterShim.dll
2017-12-15 20:07 - 2017-12-07 23:10 - 006466048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2017-12-15 20:07 - 2017-12-07 23:09 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gamingtcui.dll
2017-12-15 20:07 - 2017-12-07 23:08 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll
2017-12-15 20:07 - 2017-12-07 23:07 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2017-12-15 20:07 - 2017-12-07 23:06 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcui.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2017-12-15 20:07 - 2017-12-07 23:04 - 001498112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2017-12-15 20:07 - 2017-12-07 23:04 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2017-12-15 20:07 - 2017-12-07 23:03 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2017-12-15 20:07 - 2017-12-07 23:02 - 007545344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2017-12-15 20:07 - 2017-12-07 23:02 - 002864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2017-12-15 20:07 - 2017-12-07 23:02 - 002117632 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2017-12-15 20:07 - 2017-12-07 23:01 - 004592640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-12-15 20:07 - 2017-12-07 23:01 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2017-12-15 20:07 - 2017-12-07 23:00 - 001509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2017-12-15 20:07 - 2017-12-07 22:59 - 002105856 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-12-15 20:07 - 2017-12-07 22:59 - 001666048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-12-15 20:07 - 2017-12-07 22:59 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2017-12-15 20:07 - 2017-12-07 22:58 - 003478016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2017-12-15 20:07 - 2017-12-07 22:58 - 003211776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-12-15 20:07 - 2017-12-07 22:58 - 001353728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2017-12-15 20:07 - 2017-12-07 22:56 - 001739264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-12-15 20:07 - 2017-12-07 22:54 - 001570816 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2017-12-15 20:07 - 2017-11-26 21:35 - 017084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2017-12-15 20:07 - 2017-11-26 21:32 - 021754368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2017-12-15 20:07 - 2017-11-26 21:15 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2017-12-15 20:07 - 2017-11-26 17:43 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2017-12-15 20:07 - 2017-11-26 14:45 - 001642520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2017-12-15 20:07 - 2017-11-26 14:45 - 000264040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2017-12-15 20:07 - 2017-11-26 14:45 - 000198888 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2017-12-15 20:07 - 2017-11-26 14:41 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-12-15 20:07 - 2017-11-26 14:38 - 001636376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-12-15 20:07 - 2017-11-26 14:32 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2017-12-15 20:07 - 2017-11-26 14:31 - 000187288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-12-15 20:07 - 2017-11-26 14:30 - 001488792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 003010720 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 002573208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-12-15 20:07 - 2017-11-26 14:29 - 000840440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2017-12-15 20:07 - 2017-11-26 14:29 - 000703536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 000436120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-12-15 20:07 - 2017-11-26 14:28 - 001259344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2017-12-15 20:07 - 2017-11-26 14:28 - 001012120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2017-12-15 20:07 - 2017-11-26 14:28 - 000495000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2017-12-15 20:07 - 2017-11-26 14:28 - 000149400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2017-12-15 20:07 - 2017-11-26 14:27 - 002446744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2017-12-15 20:07 - 2017-11-26 14:27 - 002412168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2017-12-15 20:07 - 2017-11-26 14:27 - 000464408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2017-12-15 20:07 - 2017-11-26 14:27 - 000230296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-12-15 20:07 - 2017-11-26 14:23 - 001694224 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2017-12-15 20:07 - 2017-11-26 14:23 - 001054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2017-12-15 20:07 - 2017-11-26 14:23 - 000754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2017-12-15 20:07 - 2017-11-26 14:22 - 000404888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 002220952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001778584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001628056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001585376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001420696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000831384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000819096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2017-12-15 20:07 - 2017-11-26 14:21 - 000813976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000744856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000669592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000654048 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000645528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2017-12-15 20:07 - 2017-11-26 13:55 - 001289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2017-12-15 20:07 - 2017-11-26 13:55 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2017-12-15 20:07 - 2017-11-26 13:55 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2017-12-15 20:07 - 2017-11-26 13:55 - 000211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2017-12-15 20:07 - 2017-11-26 13:55 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2017-12-15 20:07 - 2017-11-26 13:54 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2017-12-15 20:07 - 2017-11-26 13:47 - 002890240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-12-15 20:07 - 2017-11-26 13:43 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2017-12-15 20:07 - 2017-11-26 13:36 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2017-12-15 20:07 - 2017-11-26 13:35 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ContentDeliveryManager.dll
2017-12-15 20:07 - 2017-11-26 13:34 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2017-12-15 20:07 - 2017-11-26 13:33 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2017-12-15 20:07 - 2017-11-26 13:31 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2017-12-15 20:07 - 2017-11-26 13:29 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2017-12-15 20:07 - 2017-11-26 13:29 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2017-12-15 20:07 - 2017-11-26 13:28 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2017-12-15 20:07 - 2017-11-26 13:26 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2017-12-15 20:07 - 2017-11-26 13:26 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-12-15 20:07 - 2017-11-26 13:25 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2017-12-15 20:07 - 2017-11-26 13:25 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2017-12-15 20:07 - 2017-11-26 13:25 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2017-12-15 20:07 - 2017-11-26 13:19 - 001167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2017-12-15 20:07 - 2017-11-26 13:19 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2017-12-15 20:07 - 2017-11-26 13:18 - 003186688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2017-12-15 20:07 - 2017-11-26 13:18 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2017-12-15 20:07 - 2017-11-26 13:17 - 001054720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2017-12-15 20:07 - 2017-11-26 13:08 - 017159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-12-15 20:07 - 2017-11-26 13:05 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-12-15 20:07 - 2017-11-26 13:04 - 003578368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2017-12-15 20:07 - 2017-11-26 13:04 - 002596352 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2017-12-15 20:07 - 2017-11-26 13:03 - 004772352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2017-12-15 20:07 - 2017-11-26 13:03 - 002783744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-12-15 20:07 - 2017-11-26 13:00 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2017-12-15 20:07 - 2017-11-26 12:59 - 004814848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2017-12-15 20:07 - 2017-11-26 12:59 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2017-12-15 20:07 - 2017-11-26 12:48 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2017-12-15 20:07 - 2017-11-26 12:21 - 001474680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2017-12-15 20:07 - 2017-11-26 12:21 - 001432816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-12-15 20:07 - 2017-11-26 12:02 - 001124760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 002339296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000746904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000590944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000506256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000354200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2017-12-15 20:07 - 2017-11-26 12:00 - 001990160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2017-12-15 20:07 - 2017-11-26 12:00 - 000353848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2017-12-15 20:07 - 2017-11-26 11:58 - 001148216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2017-12-15 20:07 - 2017-11-26 11:58 - 001057824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2017-12-15 20:07 - 2017-11-26 11:57 - 001490840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2017-12-15 20:07 - 2017-11-26 11:51 - 001558856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2017-12-15 20:07 - 2017-11-26 11:51 - 000661664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 002393600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2017-12-15 20:07 - 2017-11-26 11:36 - 013703168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2017-12-15 20:07 - 2017-11-26 11:36 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2017-12-15 20:07 - 2017-11-26 11:36 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-12-15 20:07 - 2017-11-26 11:35 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2017-12-15 20:07 - 2017-11-26 11:35 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2017-12-15 20:07 - 2017-11-26 11:35 - 000242176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2017-12-15 20:07 - 2017-11-26 11:31 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2017-12-15 20:07 - 2017-11-26 11:31 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2017-12-15 20:07 - 2017-11-26 11:30 - 004385280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2017-12-15 20:07 - 2017-11-26 11:30 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2017-12-15 20:07 - 2017-11-26 11:29 - 000823808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2017-12-15 20:07 - 2017-11-26 11:28 - 004249600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2017-12-15 20:07 - 2017-11-26 11:24 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2017-12-15 20:07 - 2017-11-19 08:35 - 003331520 _____ C:\WINDOWS\system32\Windows.Mirage.dll
2017-12-15 20:07 - 2017-11-19 03:20 - 002491112 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2017-12-15 20:06 - 2017-12-08 00:28 - 000630752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2017-12-15 20:06 - 2017-12-08 00:27 - 004504456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2017-12-15 20:06 - 2017-12-08 00:22 - 001003104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2017-12-15 20:06 - 2017-12-08 00:22 - 000137544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2017-12-15 20:06 - 2017-12-07 23:55 - 000097144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2017-12-15 20:06 - 2017-12-07 23:37 - 001145104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2017-12-15 20:06 - 2017-12-07 23:36 - 000769096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2017-12-15 20:06 - 2017-12-07 23:12 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscript.ocx
2017-12-15 20:06 - 2017-12-07 23:10 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll
2017-12-15 20:06 - 2017-12-07 23:10 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-12-15 20:06 - 2017-12-07 23:09 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\batmeter.dll
2017-12-15 20:06 - 2017-12-07 23:09 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll
2017-12-15 20:06 - 2017-12-07 23:09 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscript.exe
2017-12-15 20:06 - 2017-12-07 23:09 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
2017-12-15 20:06 - 2017-12-07 23:08 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2017-12-15 20:06 - 2017-12-07 23:08 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-12-15 20:06 - 2017-12-07 23:07 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll
2017-12-15 20:06 - 2017-12-07 23:07 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-12-15 20:06 - 2017-12-07 23:07 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2017-12-15 20:06 - 2017-12-07 23:06 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2017-12-15 20:06 - 2017-12-07 23:06 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscript.exe
2017-12-15 20:06 - 2017-12-07 23:05 - 001670656 _____ (Microsoft Corporation) C:\WINDOWS\system32\batmeter.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 001230848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 000841728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\hascsp.dll
2017-12-15 20:06 - 2017-12-07 23:02 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2017-12-15 20:06 - 2017-12-07 23:01 - 001980928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2017-12-15 20:06 - 2017-12-07 23:01 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2017-12-15 20:06 - 2017-12-07 22:56 - 002666496 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2017-12-15 20:06 - 2017-11-26 14:29 - 000891800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2017-12-15 20:06 - 2017-11-26 14:26 - 000048112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2017-12-15 20:06 - 2017-11-26 13:57 - 001664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2017-12-15 20:06 - 2017-11-26 13:55 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2017-12-15 20:06 - 2017-11-26 13:54 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2017-12-15 20:06 - 2017-11-26 13:36 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2017-12-15 20:06 - 2017-11-26 13:36 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
2017-12-15 20:06 - 2017-11-26 13:35 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2017-12-15 20:06 - 2017-11-26 13:31 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2017-12-15 20:06 - 2017-11-26 13:26 - 000770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2017-12-15 20:06 - 2017-11-26 13:25 - 001425408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-12-15 20:06 - 2017-11-26 13:25 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2017-12-15 20:06 - 2017-11-26 13:19 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadjcsp.dll
2017-12-15 20:06 - 2017-11-26 12:58 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2017-12-15 20:06 - 2017-11-26 12:48 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll
2017-12-15 20:06 - 2017-11-26 12:01 - 000791960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-12-15 20:06 - 2017-11-26 11:41 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2017-12-15 20:06 - 2017-11-26 11:40 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2017-12-15 20:06 - 2017-11-26 11:38 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2017-12-15 20:06 - 2017-11-26 11:37 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2017-12-15 20:06 - 2017-11-26 11:36 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2017-12-15 20:06 - 2017-11-26 11:24 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll
2017-12-14 22:18 - 2017-12-12 17:00 - 002721085 _____ C:\Users\StriX\Desktop\Data.lol
2017-12-14 19:25 - 2017-12-24 21:14 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2017-12-14 19:25 - 2017-09-14 00:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2017-12-14 19:25 - 2017-09-14 00:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2017-12-14 19:25 - 2017-09-14 00:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll
2017-12-14 19:25 - 2017-09-14 00:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe
2017-12-09 18:39 - 2017-12-09 18:39 - 000000000 ____D C:\Users\StriX\Documents\Telltale Games
2017-12-09 18:37 - 2017-12-09 18:37 - 000000000 ____D C:\Users\StriX\AppData\Roaming\The Walking Dead
2017-12-09 18:37 - 2017-12-09 18:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2017-12-08 18:02 - 2018-01-06 18:27 - 000000000 ____D C:\Program Files\MinerGate
2017-12-08 18:02 - 2018-01-01 20:48 - 000000000 ____D C:\Users\StriX\AppData\Local\minergate
2017-12-08 18:02 - 2017-12-08 18:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MinerGate

Volny256
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 15 úno 2017 17:11

Re: Zavirované PC

#7 Příspěvek od Volny256 »

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-01-06 19:16 - 2017-09-29 09:45 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2018-01-06 19:15 - 2017-11-18 12:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-01-06 19:15 - 2017-11-18 12:47 - 000000000 ____D C:\Users\StriX
2018-01-06 19:15 - 2017-11-18 12:43 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-01-06 19:07 - 2017-11-18 12:56 - 000004164 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{53B9E737-32D2-413F-8FE2-CA50A461929B}
2018-01-06 18:37 - 2017-11-18 21:33 - 000970158 _____ C:\WINDOWS\system32\perfh005.dat
2018-01-06 18:37 - 2017-11-18 21:33 - 000217982 _____ C:\WINDOWS\system32\perfc005.dat
2018-01-06 18:37 - 2017-11-18 12:57 - 002357266 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-01-06 18:31 - 2017-08-25 20:47 - 000000000 ____D C:\Steam
2018-01-06 18:30 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Acronis Movie Converter
2018-01-06 18:18 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
2018-01-06 18:10 - 2017-11-25 22:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2018-01-06 18:01 - 2017-09-29 14:44 - 000000000 ____D C:\WINDOWS\INF
2018-01-06 17:41 - 2017-10-15 11:01 - 000000000 ___RD C:\Users\StriX\3D Objects
2018-01-06 17:41 - 2017-08-25 19:04 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-01-06 17:40 - 2017-11-18 12:43 - 000396568 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ___SD C:\WINDOWS\system32\F12
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\TextInput
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\migwiz
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Provisioning
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2018-01-06 17:39 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Dism
2018-01-06 17:10 - 2017-08-26 09:08 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2018-01-06 16:54 - 2017-09-23 09:42 - 000000000 ____D C:\Users\StriX\AppData\Roaming\obs-studio
2018-01-06 16:52 - 2017-08-25 22:47 - 000000626 _____ C:\Users\StriX\AppData\Roaming\All CPU MeterV3_Settings.ini
2018-01-06 16:49 - 2017-09-29 14:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-01-06 16:46 - 2017-09-29 14:41 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2018-01-06 16:46 - 2017-09-29 14:41 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2018-01-06 16:46 - 2017-09-29 14:41 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2018-01-06 16:37 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-01-06 14:38 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-01-06 14:37 - 2017-08-29 07:23 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2018-01-06 14:37 - 2017-08-25 20:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2018-01-05 22:17 - 2017-11-17 18:28 - 000000000 ____D C:\Users\StriX\Documents\Euro Truck Simulator 2
2018-01-05 21:43 - 2017-11-18 12:47 - 000000000 ____D C:\Users\StriX\AppData\Local\Packages
2018-01-05 21:43 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps
2018-01-05 21:43 - 2017-08-25 22:08 - 000000000 ____D C:\MSI
2018-01-05 21:43 - 2017-08-25 21:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2018-01-05 21:43 - 2017-08-25 21:38 - 000000000 ____D C:\Program Files (x86)\MSI
2018-01-05 21:11 - 2015-10-30 08:24 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2018-01-05 20:33 - 2017-08-25 20:31 - 000000000 ____D C:\Users\StriX\AppData\LocalLow\Mozilla
2018-01-05 20:01 - 2017-08-25 20:30 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2018-01-05 20:01 - 2017-08-25 20:30 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-01-05 18:16 - 2017-10-13 19:44 - 000002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-01-05 18:16 - 2017-10-13 19:44 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-01-01 16:40 - 2017-08-26 18:55 - 000000000 ____D C:\Users\StriX\AppData\Roaming\TS3Client
2018-01-01 15:27 - 2017-10-07 23:27 - 000000000 ____D C:\Program Files (x86)\Overwolf
2017-12-29 12:46 - 2017-08-29 21:59 - 000000000 ____D C:\Users\StriX\AppData\Local\Futuremark
2017-12-29 12:44 - 2017-08-29 21:58 - 000000000 ____D C:\Program Files (x86)\Futuremark
2017-12-29 08:24 - 2017-08-25 20:21 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-12-28 22:05 - 2017-08-25 20:18 - 000000000 ____D C:\ProgramData\Package Cache
2017-12-25 19:26 - 2017-08-25 19:04 - 000000000 ____D C:\Users\StriX\AppData\Local\VirtualStore
2017-12-25 15:29 - 2017-08-25 20:48 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2017-12-25 13:55 - 2017-11-25 22:31 - 000000000 ____D C:\Users\StriX\AppData\Roaming\uTorrent
2017-12-24 20:43 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Help
2017-12-24 09:18 - 2017-10-14 18:38 - 000000000 ____D C:\Users\StriX\AppData\Local\ElevatedDiagnostics
2017-12-24 05:34 - 2017-08-25 21:56 - 000000000 __SHD C:\Users\StriX\IntelGraphicsProfiles
2017-12-22 15:38 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\rescache
2017-12-16 17:06 - 2017-09-29 15:43 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\ShellExperiences
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Windows Defender
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\PerfLogs
2017-12-16 08:20 - 2017-08-29 09:56 - 000000000 ____D C:\Fraps
2017-12-15 20:15 - 2017-08-26 22:14 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-12-15 20:14 - 2017-10-13 16:56 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2017-12-15 20:14 - 2017-08-26 22:14 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-12-15 20:09 - 2017-09-29 14:42 - 001587200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2017-12-15 20:09 - 2017-09-29 14:41 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2017-12-15 20:09 - 2017-09-29 14:41 - 000139672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2017-12-15 20:09 - 2017-09-29 14:41 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2017-12-14 19:26 - 2017-09-30 09:12 - 000000000 ____D C:\Program Files\Intel
2017-12-07 16:22 - 2017-11-18 12:46 - 000131544 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2017-12-07 16:22 - 2017-09-29 15:43 - 000107984 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll
2017-12-07 16:22 - 2017-07-31 14:28 - 000131544 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2017-12-07 16:22 - 2017-07-31 14:28 - 000107984 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2017-12-07 16:21 - 2017-07-31 14:28 - 000268240 _____ C:\WINDOWS\system32\igfxCPL.cpl
2017-12-07 11:46 - 2017-07-24 18:00 - 000756652 _____ C:\WINDOWS\system32\cp_resources.bin

==================== Files in the root of some directories =======

2017-08-25 22:47 - 2018-01-06 16:52 - 000000626 _____ () C:\Users\StriX\AppData\Roaming\All CPU MeterV3_Settings.ini
2017-08-25 16:07 - 2017-08-29 08:35 - 000000092 _____ () C:\Users\StriX\AppData\Roaming\Control System_Settings.ini
2017-12-25 10:43 - 2017-12-25 10:43 - 000000119 _____ () C:\Users\StriX\AppData\Roaming\System Monitor II_UptimeRecord.ini
2017-12-25 13:44 - 2017-12-27 18:27 - 000728064 _____ () C:\Users\StriX\AppData\Local\file__0.localstorage
2018-01-05 21:10 - 2018-01-05 21:10 - 000140800 _____ () C:\Users\StriX\AppData\Local\installer.dat
2017-08-25 19:44 - 2017-08-25 19:44 - 000000017 _____ () C:\Users\StriX\AppData\Local\resmon.resmoncfg

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-01-05 21:48

==================== End of FRST.txt ============================




Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02.01.2018
Ran by StriX (06-01-2018 19:20:49)
Running from C:\Users\StriX\Desktop
Windows 10 Education Version 1709 16299.192 (X64) (2017-11-18 12:13:47)
Boot Mode: Safe Mode (minimal)
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-752624193-2435152514-875314472-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-752624193-2435152514-875314472-503 - Limited - Disabled)
Guest (S-1-5-21-752624193-2435152514-875314472-501 - Limited - Disabled)
StriX (S-1-5-21-752624193-2435152514-875314472-1001 - Administrator - Enabled) => C:\Users\StriX
WDAGUtilityAccount (S-1-5-21-752624193-2435152514-875314472-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\uTorrent) (Version: 3.5.0.44294 - BitTorrent Inc.)
3DMark 11 (HKLM\...\{FD67BFA0-E205-47AA-BA09-123B3B72DB5E}) (Version: 1.0.132.0 - Futuremark) Hidden
3DMark 11 (HKLM-x32\...\{f9e83b9c-ab7e-4005-8f32-4ea69703a5e4}) (Version: 1.0.132.0 - Futuremark)
8GadgetPack (HKLM-x32\...\{A8F686C4-1A28-466C-914E-D2FE0B0220A2}) (Version: 23.0.0 - 8GadgetPack.net)
Aktualizace NVIDIA 31.0.1.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 31.0.1.0 - NVIDIA Corporation) Hidden
Bloody6 (HKLM-x32\...\Bloody3) (Version: 17.09.0001 - Bloody)
CL-Eye Driver (HKLM-x32\...\CL-Eye Driver) (Version: 5.3.0.0341 - Code Laboratories, Inc.)
Connect (HKLM-x32\...\MAGIX_connector_is1) (Version: 2.6.1.117 - MAGIX Software GmbH)
CPUID CPU-Z MSI 1.80 (HKLM\...\CPUID CPU-Z MSI_is1) (Version: 1.80 - CPUID, Inc.)
CPUID HWMonitor 1.33 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.33 - )
Discord (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Discord) (Version: 0.0.298 - Discord Inc.)
Dragon Eye(x64) (HKLM\...\{B746827A-3219-4EF8-8053-CEA5AEC12D33}) (Version: 0.0.2.6 - MSI) Hidden
Dragon Eye(x64) (HKLM-x32\...\Installshield_{B746827A-3219-4EF8-8053-CEA5AEC12D33}) (Version: 0.0.2.6 - MICRO-STAR INT'L,.LTD.)
Euro Truck Simulator 2 1.28.1.3s (HKLM-x32\...\Euro Truck Simulator 2 1.28.1.3s) (Version: 1.28.1.3s - SCS Software)
Euro Truck Simulator 2 Multiplayer 0.1.0.4.2.2 Alpha (HKLM-x32\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.1.0.4.2.2 Alpha - ETS2MP Team)
Farming Simulator 17 (HKLM\...\ZmFybWluZ3NpbXVsYXRvcjE3_is1) (Version: 1 - )
Fraps (HKLM-x32\...\Fraps) (Version: - )
Futuremark SystemInfo (HKLM-x32\...\{71BFECB2-2CFD-4E6A-A8AF-4EE600A816B7}) (Version: 5.3.629.0 - Futuremark)
Geeks3D FurMark 1.19.1.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Grand Theft Auto V Update (HKLM-x32\...\R3JhbmRUaGVmdEF1dG9W_is1) (Version: 1 - )
Cheat Engine 6.7 (HKLM-x32\...\Cheat Engine 6.7_is1) (Version: - Cheat Engine)
Intel(R) Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
Intel(R) Network Connections 22.4.16.0 (HKLM\...\PROSetDX) (Version: 22.4.16.0 - Intel)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 22.20.16.4836 - Intel Corporation)
Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
League of Legends (HKLM-x32\...\{6FEDADF5-40EC-4E18-A376-0FDBACE65338}) (Version: 4.2.1 - Riot Games) Hidden
League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Professional 2007 (HKLM-x32\...\PROR) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 57.0.4 (x64 en-US) (HKLM\...\Mozilla Firefox 57.0.4 (x64 en-US)) (Version: 57.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.2 - Mozilla)
MSI Afterburner 4.4.2 (HKLM-x32\...\Afterburner) (Version: 4.4.2 - MSI Co., LTD)
MSI DPC Latency Tuner (HKLM-x32\...\{1AAC56F3-3F60-47DB-BE6B-088F36ADFDC5}_is1) (Version: 1.0.0.18 - MSI)
MSI DragonEye (HKLM\...\{7116875E-F251-4C33-AB3F-37DE05B15595}_is1) (Version: 0.0.2.6 - MSI)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 6.2.0.45 - MSI)
MSI Kombustor 3.5.0 (HKLM\...\{9598DA62-2AE8-426D-9C86-BEA96AC6721E}_is1) (Version: - MSI Co., LTD)
MSI Mystic Light (HKLM-x32\...\{B798CF0A-F060-4054-9095-52B067C723C6}}_is1) (Version: 1.0.0.43 - MSI)
MSI Smart Tool (HKLM-x32\...\{DDCCA038-DAB1-4D09-B85C-848020AA75D6}}_is1) (Version: 1.0.0.22 - MSI)
MSI X Boost (HKLM-x32\...\{515143BB-7A11-4D85-B941-D520AAAA099C}_is1) (Version: 1.0.0.29 - MSI)
Need for Speed Underground 2 (HKLM-x32\...\Need for Speed Underground 2) (Version: - )
NVIDIA GeForce Experience 3.11.0.73 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.11.0.73 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 388.71 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.71 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 20.0.1 - OBS Project)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.109.1.40 - Overwolf Ltd.)
Ovládací panel NVIDIA 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 388.71 - NVIDIA Corporation) Hidden
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8228 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 7.0.2 (HKLM-x32\...\RTSS) (Version: 7.0.2 - Unwinder)
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.103 - Skype Technologies S.A.)
spacedesk Windows DRIVER (HKLM\...\{EDE0F978-EA2B-47E3-8B51-034565CFFE4E}) (Version: 0.9.967.0 - datronicsoft Inc.)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\TeamSpeak 3 Client) (Version: 3.1.6 - TeamSpeak Systems GmbH)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
The Walking Dead (HKLM-x32\...\The Walking Dead_R.G. Mechanics_is1) (Version: - R.G. Mechanics, Panky)
Unigine Valley Benchmark version 1.0 (HKLM-x32\...\Unigine Valley Benchmark_is1) (Version: 1.0 - Unigine Corp.)
uRage Illuminated Driver (HKLM-x32\...\{F1A273BD-6A9E-41D8-A111-5E56ACD286F8}) (Version: 1.0 - Hama)
Vegas Pro 13.0 (64-bit) (HKLM-x32\...\Vegas Pro 13.0 (64-bit)) (Version: 13.0 (64-bit) - Exµs ™)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - Intel Corporation Inc.)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
World of Tanks (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net)
XSplit Gamecaster (HKLM-x32\...\{D9CD16D5-FEF4-46A8-8885-3281DF55BC06}) (Version: 2.8.1607.2031 - SplitmediaLabs)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{083f5ae0-2b0a-11dd-bd0b-0800200c9a66}\InprocServer32 -> C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler)
CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler)
CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{5b55a44a-d008-49aa-9234-86fb7709bc0a}\InprocServer32 -> C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2e329e8610bbb375\igfxDTCM.dll [2017-12-07] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-12-15] (NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0E3B537D-FCE8-4F61-8A87-BE95D3093826} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe [2017-09-05] (Micro-Star INT'L CO., LTD.)
Task: {1BDE58A2-7679-4D80-B33F-E9C5B9B7636E} - \pnIxobGIUDXdNt -> No File <==== ATTENTION
Task: {249BC094-2D4A-4DEA-BF25-7626E831F17A} - System32\Tasks\Connect => C:\Program Files (x86)\MAGIX\Connect\connect.exe [2017-08-02] (MAGIX Software GmbH)
Task: {47FF550D-9ED7-4F78-84A9-DCED14715AD5} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-11-16] (NVIDIA Corporation)
Task: {51D48082-DB12-472C-8D86-2AC9FE9CDF1E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-13] (Google Inc.)
Task: {65EE7EB0-DA3C-419E-AFD3-231DE2CB0D08} - System32\Tasks\Microsoft\Windows\Display\Brightness\BrightnessReset
Task: {6A3FDFCB-5F7E-4B40-9BAB-7E328E4C427E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-13] (Google Inc.)
Task: {70899047-A99E-411C-B069-2F3753F9513B} - System32\Tasks\plaAVjRQXWCDePSecyr => rundll32 "C:\Program Files (x86)\aohGTEheqdnWC\VbyFcSg.dll",#1
Task: {71A057F3-BDF5-4BC0-A5E8-B2A91C33D8D6} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2017-12-15] ()
Task: {7B156327-EE6C-4826-A141-3ABDDD19656F} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-16] (NVIDIA Corporation)
Task: {84CC1A8F-6CBD-470A-A440-AB90772038C1} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe [2017-09-05] (Micro-Star INT'L CO., LTD.)
Task: {8CBE83E3-1364-41CA-9B57-EE8CCA97774B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-16] (NVIDIA Corporation)
Task: {94EC2BE9-C5E3-4F2F-9399-3CAD0DB79D1E} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe [2017-11-01] (Micro-Star INT'L CO., LTD.)
Task: {A106C069-B561-4B94-AC1B-4E8702B84A29} - \Acronis Movie Converter -> No File <==== ATTENTION
Task: {A23E13AF-78AF-4CC6-8C83-CD7722125031} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2017-12-26] (Overwolf LTD)
Task: {AF675FE9-FEAD-4B16-B83F-9845664A8203} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-11-16] (NVIDIA Corporation)
Task: {B2D6ACEF-2436-431C-A8DD-1A1F889D6F35} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-16] (NVIDIA Corporation)
Task: {B6018361-E0EE-4551-98EF-60A1BFD9C12D} - System32\Tasks\saKXaLnxQURzlMgex => rundll32 "C:\Program Files (x86)\RrHYXuUpocPTIXdsppR\sWaWsis.dll",#1
Task: {B6DE33EC-951B-4243-88D1-BF37C57E5DD4} - \BcyoMZkjXMgFaPP2 -> No File <==== ATTENTION
Task: {B893AEDA-B9D2-4FCA-A9B9-F42F4C2DC38E} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-16] (NVIDIA Corporation)
Task: {BD973892-0CC6-4E76-9A50-FCB18BB9A5E7} - \BcyoMZkjXMgFaPP -> No File <==== ATTENTION
Task: {C341E6C7-D80B-4B43-A782-BCCC5BAFDECE} - System32\Tasks\plaAVjRQXWCDePSecyr2 => rundll32 "C:\Program Files (x86)\aohGTEheqdnWC\VbyFcSg.dll",#1
Task: {D8EB6B2C-9AE6-46DE-8F8B-7EDE1E41269E} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {DAE39F0F-5CDD-4DDE-94C7-0982EF86BF4F} - System32\Tasks\MSISW_Host => C:\WINDOWS\SysWOW64\muachost.exe [2015-08-18] (MSI)
Task: {E0FE9B0D-B694-4D6A-90DA-560034E1DF08} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-11-16] (NVIDIA Corporation)
Task: {E9BE8421-9086-4AAD-B581-EFC33952150D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-11-16] (NVIDIA Corporation)
Task: {F123CB62-4440-439B-8D10-5718AD1FDB11} - System32\Tasks\saKXaLnxQURzlMgex2 => rundll32 "C:\Program Files (x86)\RrHYXuUpocPTIXdsppR\sWaWsis.dll",#1

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\BcyoMZkjXMgFaPP.job => C:\Program Files (x86)\umkISPBbU\avOelL.dll
Task: C:\WINDOWS\Tasks\Connect.job => C:\Program Files (x86)\MAGIX\Connect\connect.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\plaAVjRQXWCDePSecyr.job => C:\Program Files (x86)\aohGTEheqdnWC\VbyFcSg.dll
Task: C:\WINDOWS\Tasks\saKXaLnxQURzlMgex.job => C:\Program Files (x86)\RrHYXuUpocPTIXdsppR\sWaWsis.dll

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2017-09-29 14:41 - 2017-09-29 14:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-12-15 20:07 - 2017-11-26 13:23 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-12-15 20:07 - 2017-11-26 13:01 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\32303133.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\52D0FF24.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\32303133.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\52D0FF24.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="1"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\localhost -> localhost

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-10-30 08:24 - 2018-01-05 22:01 - 000013968 _____ C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 cpm.paneladmin.pro
127.0.0.1 publisher.hmdiadmingate.xyz
127.0.0.1 hmdicrewtracksystem.xyz
127.0.0.1 mydownloaddomain.com
127.0.0.1 linkmate.space
127.0.0.1 space1.adminpressure.space
127.0.0.1 trackpressure.website
127.0.0.1 doctorlink.space
127.0.0.1 plugpackdownload.net
127.0.0.1 texttotalk.org
127.0.0.1 gambling577.xyz
127.0.0.1 htagdownload.space
127.0.0.1 mybcnmonetize.com
127.0.0.1 360devtraking.website
127.0.0.1 dscdn.pw
127.0.0.1 bcnmonetize.go2affise.com
127.0.0.1 beautifllink.xyz
127.0.0.1 gf.tools.avast.com
127.0.0.1 pair.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 id.avast.com
127.0.0.1 v4618535.iavs9x.u.avast.com
127.0.0.1 v4618535.ivps9x.u.avast.com
127.0.0.1 v4618535.ivps9tiny.u.avast.com
127.0.0.1 v4618535.vpsnitro.u.avast.com
127.0.0.1 v4618535.vpsnitrotiny.u.avast.com
127.0.0.1 v4618535.iavs5x.u.avast.com
127.0.0.1 v7.stats.avast.com

There are 349 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-752624193-2435152514-875314472-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\StriX\Desktop\jqeXI7P.jpg
DNS Servers: Media is not connected to internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)

==================== MSCONFIG/TASK MANAGER disabled items ==

HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\StartupApproved\Run: => "Skype"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{B5CED2A9-AB84-4A02-A389-9AADB1383D9D}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{8FEEE759-76FB-4A57-9B67-AC5BE7A39E5E}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [UDP Query User{16BC1A44-E275-4214-9B06-4DFAA680D7F5}C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [TCP Query User{46E4801A-2AAC-4EC5-B2CC-91795DB4D826}C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [{15E722DC-63BC-4B9C-B6D7-EE13D76EB06E}] => (Allow) C:\Steam\steamapps\common\KillingFloor\System\KillingFloor.exe
FirewallRules: [{D390BC49-C61C-43E6-B89C-A16D27074339}] => (Allow) C:\Steam\steamapps\common\KillingFloor\System\KillingFloor.exe
FirewallRules: [{AF796CB6-5475-49A1-955F-E21C7A705C68}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe
FirewallRules: [{3DCF69AD-0A61-484D-90EC-1752276BB96C}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe
FirewallRules: [{42230642-DA2B-4C42-81F0-90C5F29034BE}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe
FirewallRules: [{1D6AACB1-5411-41BC-A677-B4F31033DE45}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe
FirewallRules: [{7B8AD109-5990-4B38-A9D8-D5C9E54B70F4}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{DF10A026-18A6-448B-BF96-8EDF89356F16}C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe
FirewallRules: [TCP Query User{9C0A08D2-C370-4579-A0E0-99D1EECE962E}C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe
FirewallRules: [{8E228CBD-13A9-4106-80CE-4CA57EC5591A}] => (Allow) C:\Steam\steamapps\common\Outlast\OutlastLauncher.exe
FirewallRules: [{582DF297-E892-49D8-B2C9-28795C33DF85}] => (Allow) C:\Steam\steamapps\common\Outlast\OutlastLauncher.exe
FirewallRules: [{16DE9BC0-D2F7-4CF9-A4AA-A7E062422DA0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{D03BDDE3-32E0-4A7D-BA05-E61A7E38AEAF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{64F0F13D-2984-4107-A8FC-8FE7C4BD3441}] => (Allow) C:\Steam\Steam.exe
FirewallRules: [{DB70426E-46D3-4BBF-A11C-53F805EE1100}] => (Allow) C:\Steam\Steam.exe
FirewallRules: [{79E6CBEE-EDB1-49AD-A327-F240347D9307}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{EE4BEB9C-8156-447C-83DB-7F5487E69BEA}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{3616B2F3-BEA1-4A6D-BBB2-09A642044098}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{AC3802F9-9CA1-429A-8CC4-F7C820D78C68}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{3727CB57-EA60-40BD-812B-EEA98948CF2F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{888A13AA-697A-4B61-8F58-C5424A032882}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [TCP Query User{E30EE867-A39E-47B2-89E8-BC9A73E84D5F}C:\users\rsv\binaries\r6vegas2_game.exe] => (Allow) C:\users\rsv\binaries\r6vegas2_game.exe
FirewallRules: [UDP Query User{D8317458-4F0F-430B-B9A6-DFE80E43475E}C:\users\rsv\binaries\r6vegas2_game.exe] => (Allow) C:\users\rsv\binaries\r6vegas2_game.exe
FirewallRules: [{1121B40D-E729-4FE3-91AD-D25010622E8D}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{4311BC91-D89B-42C1-B6D6-F034A7A071AF}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{5299C3F6-2018-499A-BED8-6E2301350BCB}C:\program files (x86)\msi\gaming app\gamingapp.exe] => (Allow) C:\program files (x86)\msi\gaming app\gamingapp.exe
FirewallRules: [UDP Query User{60A1E4BB-F7B4-445B-8B30-954F33BAA051}C:\program files (x86)\msi\gaming app\gamingapp.exe] => (Allow) C:\program files (x86)\msi\gaming app\gamingapp.exe
FirewallRules: [TCP Query User{A3A3D80A-7359-49BF-B429-FE679202DC46}D:\gta 5\grand theft auto v\gta5.exe] => (Allow) D:\gta 5\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{D45AB461-D868-48AE-82D6-33607CC845C2}D:\gta 5\grand theft auto v\gta5.exe] => (Allow) D:\gta 5\grand theft auto v\gta5.exe
FirewallRules: [TCP Query User{E1F3303F-FD81-4DEA-8585-E9F9A4776694}D:\lost\lost planet 2\lp2dx11.exe] => (Allow) D:\lost\lost planet 2\lp2dx11.exe
FirewallRules: [UDP Query User{23A38E1F-155A-4BC8-94EA-FC24EB506A7D}D:\lost\lost planet 2\lp2dx11.exe] => (Allow) D:\lost\lost planet 2\lp2dx11.exe
FirewallRules: [TCP Query User{942C157D-73B1-4C16-A042-5A39D7536F12}D:\lost\lost planet 2\lp2dx9.exe] => (Block) D:\lost\lost planet 2\lp2dx9.exe
FirewallRules: [UDP Query User{12AC96F9-BD21-4782-9B42-9131C7C0F232}D:\lost\lost planet 2\lp2dx9.exe] => (Block) D:\lost\lost planet 2\lp2dx9.exe
FirewallRules: [{8986F0A4-523F-436C-9166-CF5AECF5C0BD}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{BC4200C9-B86D-4081-92E4-FCB47AEFF38E}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{282AB8FF-3761-461F-ACD4-5A4A460FBBF5}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{A0E1A8BD-6452-401C-9787-570C2CFDF6AE}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{48FC1586-D2D5-4252-9239-88036DF319E9}] => (Allow) C:\Users\StriX\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{1AA078A0-5057-4AB2-976D-57A96A65732C}] => (Allow) C:\Users\StriX\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{D575A999-6C60-48C1-9E27-FD184C6E168D}D:\farming simulator 17\x64\farmingsimulator2017game.exe] => (Allow) D:\farming simulator 17\x64\farmingsimulator2017game.exe
FirewallRules: [UDP Query User{F0D9F956-7597-4980-A84E-30710307EF10}D:\farming simulator 17\x64\farmingsimulator2017game.exe] => (Allow) D:\farming simulator 17\x64\farmingsimulator2017game.exe
FirewallRules: [{643CB4AF-9447-4B39-927C-178763552179}] => (Allow) D:\SteamLibrary\steamapps\common\Warface\WarfaceMycomSteamLoader.exe
FirewallRules: [{31F0C52E-35A2-4B85-9866-A9950620379A}] => (Allow) D:\SteamLibrary\steamapps\common\Warface\WarfaceMycomSteamLoader.exe
FirewallRules: [{9464ACC5-AACA-4DA3-86D5-026DE8BFB75A}] => (Allow) C:\WINDOWS\system32\spacedeskService.exe
FirewallRules: [{CD9F5CFD-86A6-4C53-AF5B-F45C33D2FCE4}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe
FirewallRules: [{8EC78F09-4E3F-4BF3-BFA4-70CCAF1ABD55}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe
FirewallRules: [{A67FF623-9F95-4796-92F6-93BDF2CC6B53}] => (Allow) D:\SteamLibrary\steamapps\common\Portal\hl2.exe
FirewallRules: [{EF0A1623-1EB0-427A-A605-734C6D253541}] => (Allow) D:\SteamLibrary\steamapps\common\Portal\hl2.exe
FirewallRules: [{3F4DAA4D-6C1A-4437-AC5D-98B5DFBD0929}] => (Allow) LPort=26789
FirewallRules: [{C079B6DD-BC9E-4E30-A5D5-AA9752B80CAA}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\3DMarkLauncher.exe
FirewallRules: [{E788BBE4-26F4-4E58-9121-611464F0298F}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\3DMarkLauncher.exe
FirewallRules: [{2C8E722B-5E84-45E3-BB35-7C28650B2CED}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{91BAF994-29A1-4B2A-BAED-63FF88254E2D}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{AB366A8B-54E9-4997-BAD5-B40D15D09B55}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{19F0204E-78CD-41C6-B6A8-4C119D5A67EE}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{464F4789-AB82-4931-846D-F7CDE1A563CD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{875457B9-E8C7-4AE5-B0CA-6986700FFC61}] => (Allow) C:\WINDOWS\system32\rundll32.exe
FirewallRules: [{8A3DF1EE-2DAC-4F4F-8E7C-B2E7E0D5A238}] => (Allow) D:\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{86DC4489-DD4D-4F98-8A29-D71BE273CC7D}] => (Allow) D:\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{3BCE0BE4-B659-495C-AEA1-A0D3C9F6B143}] => (Allow) D:\World_of_Tanks\worldoftanks.exe
FirewallRules: [{813B01F5-8F79-4F19-AD72-B9E4DB1F7328}] => (Allow) D:\World_of_Tanks\worldoftanks.exe
FirewallRules: [{EF0FCEEF-3C87-401E-8CF7-0B2710F6BE9C}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{7C508AA7-663B-4044-AEB5-62A1C6E5C2A1}] => (Allow) C:\Windows\System32\rundll32.exe

==================== Restore Points =========================

05-01-2018 20:45:07 Removed VEGAS Pro 15.0

==================== Faulty Device Manager Devices =============

Name: Řadič jednoduché komunikace pro sběrnici PCI
Description: Řadič jednoduché komunikace pro sběrnici PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Standardní klávesnice PS/2
Description: Standardní klávesnice PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Myš Microsoft PS/2
Description: Myš Microsoft PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/06/2018 06:30:22 PM) (Source: Service1) (EventID: 0) (User: )
Description: Failed to process session change. System.ComponentModel.Win32Exception (0x80004005): The specified procedure could not be found
at System.Diagnostics.Process.StartWithShellExecuteEx(ProcessStartInfo startInfo)
at GamingApp_Service.Service1.OnSessionChange(SessionChangeDescription changeDescription)
at System.ServiceProcess.ServiceBase.DeferredSessionChange(Int32 eventType, Int32 sessionId)

Error: (01/06/2018 04:37:47 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: STRIX-PC)
Description: Balíček Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe+App se ukončil, protože jeho pozastavování trvalo moc dlouho.

Error: (01/06/2018 03:05:48 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program GamingHotkey.exe verze 1.0.0.20 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 1c28

Čas spuštění: 01d386f3878f578b

Čas ukončení: 4

Cesta k aplikaci: C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe

ID hlášení: 0db26cfe-4527-4d65-9ae3-6fc1678000fc

Úplný název balíčku s chybou:

ID aplikace související s balíčkem s chybou:

Error: (01/05/2018 09:11:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ic-0.5785d0e841c6c4.exe, verze: 1.0.0.1, časové razítko: 0x5a4fda3b
Název chybujícího modulu: ntdll.dll, verze: 10.0.16299.64, časové razítko: 0xac8afc81
Kód výjimky: 0xc0000028
Posun chyby: 0x00061564
ID chybujícího procesu: 0x2a0c
Čas spuštění chybující aplikace: 0x01d386614d5425de
Cesta k chybující aplikaci: C:\Users\StriX\AppData\Local\Temp\346859312\ic-0.5785d0e841c6c4.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 43bb21c9-d536-42e2-8689-27686a1d774a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/05/2018 09:11:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ic-0.5785d0e841c6c4.exe, verze: 1.0.0.1, časové razítko: 0x5a4fda3b
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc00001a5
Posun chyby: 0x00450e2a
ID chybujícího procesu: 0x2a0c
Čas spuštění chybující aplikace: 0x01d386614d5425de
Cesta k chybující aplikaci: C:\Users\StriX\AppData\Local\Temp\346859312\ic-0.5785d0e841c6c4.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: ee93d449-9419-458b-9994-933d481f53eb
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/05/2018 09:10:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ic-0.5785d0e841c6c4.exe, verze: 1.0.0.1, časové razítko: 0x5a4fda3b
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc00001a5
Posun chyby: 0x00450e2a
ID chybujícího procesu: 0x2a0c
Čas spuštění chybující aplikace: 0x01d386614d5425de
Cesta k chybující aplikaci: C:\Users\StriX\AppData\Local\Temp\346859312\ic-0.5785d0e841c6c4.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: b990f8a5-b0ff-44c6-b6b6-107a665b2a73
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/02/2018 09:26:26 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program GTA5.exe verze 1.0.678.1 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 8c0

Čas spuštění: 01d383a2e1d6808e

Čas ukončení: 4294967295

Cesta k aplikaci: D:\GTA 5\Grand Theft Auto V\GTA5.exe

ID hlášení: c2e53f7a-ad15-4fcd-8fda-16e80fd11f0e

Úplný název balíčku s chybou:

ID aplikace související s balíčkem s chybou:

Error: (01/01/2018 08:50:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: X_Boost.exe, verze: 1.0.0.29, časové razítko: 0x59893312
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.16299.15, časové razítko: 0x2cd1ce3d
Kód výjimky: 0xe0434352
Posun chyby: 0x001008b2
ID chybujícího procesu: 0x984
Čas spuštění chybující aplikace: 0x01d38339b86ed925
Cesta k chybující aplikaci: C:\Program Files (x86)\MSI\MSI X Boost\X_Boost.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: b8fc7b2a-f8ca-4860-a4fc-8de1de04fc60
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/01/2018 08:50:06 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: X_Boost.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.NullReferenceException
na X_Boost.SettingWindow..ctor()
na X_Boost.MainWindow..ctor()

Informace o výjimce: System.Reflection.TargetInvocationException
na System.RuntimeTypeHandle.CreateInstance(System.RuntimeType, Boolean, Boolean, Boolean ByRef, System.RuntimeMethodHandleInternal ByRef, Boolean ByRef)
na System.RuntimeType.CreateInstanceSlow(Boolean, Boolean, Boolean, System.Threading.StackCrawlMark ByRef)
na System.RuntimeType.CreateInstanceDefaultCtor(Boolean, Boolean, Boolean, System.Threading.StackCrawlMark ByRef)
na System.Activator.CreateInstance(System.Type, Boolean)
na System.RuntimeType.CreateInstanceImpl(System.Reflection.BindingFlags, System.Reflection.Binder, System.Object[], System.Globalization.CultureInfo, System.Object[], System.Threading.StackCrawlMark ByRef)
na System.Activator.CreateInstance(System.Type, System.Reflection.BindingFlags, System.Reflection.Binder, System.Object[], System.Globalization.CultureInfo, System.Object[])
na System.Activator.CreateInstance(System.Type, System.Object[])
na System.Xaml.Schema.SafeReflectionInvoker.CreateInstanceCritical(System.Type, System.Object[])
na System.Xaml.Schema.SafeReflectionInvoker.CreateInstance(System.Type, System.Object[])
na System.Xaml.Schema.XamlTypeInvoker.CreateInstance(System.Object[])
na MS.Internal.Xaml.Runtime.ClrObjectRuntime.CreateInstanceWithCtor(System.Xaml.XamlType, System.Object[])
na MS.Internal.Xaml.Runtime.ClrObjectRuntime.CreateInstance(System.Xaml.XamlType, System.Object[])
na System.Xaml.XamlObjectWriter.Logic_CreateAndAssignToParentStart(MS.Internal.Xaml.Context.ObjectWriterContext)
na System.Xaml.XamlObjectWriter.WriteStartMember(System.Xaml.XamlMember)
na System.Xaml.XamlWriter.WriteNode(System.Xaml.XamlReader)
na System.Windows.Markup.WpfXamlLoader.TransformNodes(System.Xaml.XamlReader, System.Xaml.XamlObjectWriter, Boolean, Boolean, Boolean, System.Xaml.IXamlLineInfo, System.Xaml.IXamlLineInfoConsumer, MS.Internal.Xaml.Context.XamlContextStack`1<System.Windows.Markup.WpfXamlFrame>, System.Windows.Markup.IStyleConnector)
na System.Windows.Markup.WpfXamlLoader.Load(System.Xaml.XamlReader, System.Xaml.IXamlObjectWriterFactory, Boolean, System.Object, System.Xaml.XamlObjectWriterSettings, System.Uri)
na System.Windows.Markup.WpfXamlLoader.LoadBaml(System.Xaml.XamlReader, Boolean, System.Object, System.Xaml.Permissions.XamlAccessLevel, System.Uri)
na System.Windows.Markup.XamlReader.LoadBaml(System.IO.Stream, System.Windows.Markup.ParserContext, System.Object, Boolean)
na System.Windows.Application.LoadBamlStreamWithSyncInfo(System.IO.Stream, System.Windows.Markup.ParserContext)
na System.Windows.Application.LoadComponent(System.Uri, Boolean)
na System.Windows.Application.DoStartup()
na System.Windows.Application.<.ctor>b__1_0(System.Object)
na System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
na System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
na System.Windows.Threading.DispatcherOperation.InvokeImpl()
na System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Windows.Threading.DispatcherOperation.Invoke()
na System.Windows.Threading.Dispatcher.ProcessQueue()
na System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
na System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
na System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
na System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
na MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
na MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
na System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
na System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
na System.Windows.Application.RunDispatcher(System.Object)
na System.Windows.Application.RunInternal(System.Windows.Window)
na System.Windows.Application.Run(System.Windows.Window)
na X_Boost.App.Main()

Error: (01/01/2018 08:49:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSI_LiveUpdate_Service.exe, verze: 1.0.0.52, časové razítko: 0x59f9a5e7
Název chybujícího modulu: NDA.dll_unloaded, verze: 1.0.0.15, časové razítko: 0x581aa4cc
Kód výjimky: 0xc0000005
Posun chyby: 0x000f650e
ID chybujícího procesu: 0xd1c
Čas spuštění chybující aplikace: 0x01d38339a5945536
Cesta k chybující aplikaci: C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
Cesta k chybujícímu modulu: NDA.dll
ID zprávy: a7bbca12-104e-4f9a-a863-5205b0c7054c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (01/06/2018 07:21:08 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby EventSystem s argumenty Unavailable za účelem spuštění serveru:
{1BE1F766-5536-11D1-B726-00C04FB926AF}

Error: (01/06/2018 07:21:05 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (01/06/2018 07:20:48 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (01/06/2018 07:20:22 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (01/06/2018 07:19:48 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (01/06/2018 07:19:40 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (01/06/2018 07:19:26 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby WSearch s argumenty Unavailable za účelem spuštění serveru:
{9E175B68-F52A-11D8-B9A5-505054503030}

Error: (01/06/2018 07:17:04 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby netprofm s argumenty Unavailable za účelem spuštění serveru:
{A47979D2-C419-11D9-A5B4-001185AD2B89}

Error: (01/06/2018 07:17:04 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby netprofm s argumenty Unavailable za účelem spuštění serveru:
{A47979D2-C419-11D9-A5B4-001185AD2B89}

Error: (01/06/2018 07:17:04 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby netprofm s argumenty Unavailable za účelem spuštění serveru:
{A47979D2-C419-11D9-A5B4-001185AD2B89}


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3-7100 CPU @ 3.90GHz
Percentage of memory in use: 22%
Total physical RAM: 8151.5 MB
Available physical RAM: 6289.64 MB
Total Virtual: 9431.5 MB
Available Virtual: 7706.46 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:203.7 GB) (Free:100.15 GB) NTFS
Drive d: () (Fixed) (Total:725.99 GB) (Free:578.24 GB) NTFS
Drive f: (Místní disk) (Fixed) (Total:0.34 GB) (Free:0.33 GB) NTFS
Drive g: () (Fixed) (Total:296.97 GB) (Free:296.75 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 996BE3D8)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: B7FBDD52)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=297 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=797 MB) - (Type=27)

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118152
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zavirované PC

#8 Příspěvek od Rudy »

Zkusíme to ručně, nicméně bych vám doporučil udělat zálohu důkležitých dat. PC je patrně natolik zavirovám, že nemohu předem odhadnout, jak se při čištění systém zachová.

Otevřte poznámkový blok a zkopírujte do něj:
Start
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
Task: {1BDE58A2-7679-4D80-B33F-E9C5B9B7636E} - \pnIxobGIUDXdNt -> No File <==== ATTENTION
Task: {51D48082-DB12-472C-8D86-2AC9FE9CDF1E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-13] (Google Inc.)
Task: {6A3FDFCB-5F7E-4B40-9BAB-7E328E4C427E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-13] (Google Inc.)
Task: {A106C069-B561-4B94-AC1B-4E8702B84A29} - \Acronis Movie Converter -> No File <==== ATTENTION
Task: {B6DE33EC-951B-4243-88D1-BF37C57E5DD4} - \BcyoMZkjXMgFaPP2 -> No File <==== ATTENTION
Task: {BD973892-0CC6-4E76-9A50-FCB18BB9A5E7} - \BcyoMZkjXMgFaPP -> No File <==== ATTENTION
Task: {D8EB6B2C-9AE6-46DE-8F8B-7EDE1E41269E} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\BcyoMZkjXMgFaPP.job => C:\Program Files (x86)\umkISPBbU\avOelL.dll
C:\Program Files (x86)\umkISPBb
Task: C:\WINDOWS\Tasks\plaAVjRQXWCDePSecyr.job => C:\Program Files (x86)\aohGTEheqdnWC\VbyFcSg.dll
Task: C:\WINDOWS\Tasks\saKXaLnxQURzlMgex.job => C:\Program Files (x86)\RrHYXuUpocPTIXdsppR\sWaWsis.dll
C:\Program Files (x86)\aohGTEheqdnWC
C:\Program Files (x86)\RrHYXuUpocPTIXdsppR
HKLM\ DisallowedCertificates: 03D22C9C66915D58C88912B64C1F984B8344EF09 (Comodo Security Solutions) <==== ATTENTION
HKLM\ DisallowedCertificates: 0F684EC1163281085C6AF20528878103ACEFCAAB (F-Secure Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 1667908C9E22EFBD0590E088715CC74BE4C60884 (FRISK Software International/F-Prot) <==== ATTENTION
HKLM\ DisallowedCertificates: 18DEA4EFA93B06AE997D234411F3FD72A677EECE (Bitdefender SRL) <==== ATTENTION
HKLM\ DisallowedCertificates: 2026D13756EB0DB753DF26CB3B7EEBE3E70BB2CF (G DATA Software AG) <==== ATTENTION
HKLM\ DisallowedCertificates: 249BDA38A611CD746A132FA2AF995A2D3C941264 (Malwarebytes Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 31AC96A6C17C425222C46D55C3CCA6BA12E54DAF (Symantec Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 331E2046A1CCA7BFEF766724394BE6112B4CA3F7 (Trend Micro) <==== ATTENTION
HKLM\ DisallowedCertificates: 3353EA609334A9F23A701B9159E30CB6C22D4C59 (Webroot Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: 373C33726722D3A5D1EDD1F1585D5D25B39BEA1A (SUPERAntiSpyware.com) <==== ATTENTION
HKLM\ DisallowedCertificates: 3D496FA682E65FC122351EC29B55AB94F3BB03FC (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: 4243A03DB4C3C15149CEA8B38EEA1DA4F26BD159 (PC Tools) <==== ATTENTION
HKLM\ DisallowedCertificates: 42727E052C0C2E1B35AB53E1005FD9EDC9DE8F01 (K7 Computing Pvt Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 4420C99742DF11DD0795BC15B7B0ABF090DC84DF (Doctor Web Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 4C0AF5719009B7C9D85C5EAEDFA3B7F090FE5FFF (Emsisoft Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 5240AB5B05D11B37900AC7712A3C6AE42F377C8C (Check Point Software Technologies Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 5DD3D41810F28B2A13E9A004E6412061E28FA48D (Emsisoft Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 7457A3793086DBB58B3858D6476889E3311E550E (K7 Computing Pvt Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 76A9295EF4343E12DFC5FE05DC57227C1AB00D29 (BullGuard Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 775B373B33B9D15B58BC02B184704332B97C3CAF (McAfee) <==== ATTENTION
HKLM\ DisallowedCertificates: 872CD334B7E7B3C3D1C6114CD6B221026D505EAB (Comodo Security Solutions) <==== ATTENTION
HKLM\ DisallowedCertificates: 88AD5DFE24126872B33175D1778687B642323ACF (McAfee) <==== ATTENTION
HKLM\ DisallowedCertificates: 9132E8B079D080E01D52631690BE18EBC2347C1E (Adaware Software) <==== ATTENTION
HKLM\ DisallowedCertificates: 982D98951CF3C0CA2A02814D474A976CBFF6BDB1 (Safer Networking Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 9A08641F7C5F2CCA0888388BE3E5DBDDAAA3B361 (Webroot Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: 9C43F665E690AB4D486D4717B456C5554D4BCEB5 (ThreatTrack Security) <==== ATTENTION
HKLM\ DisallowedCertificates: 9E3F95577B37C74CA2F70C1E1859E798B7FC6B13 (CURIOLAB S.M.B.A.) <==== ATTENTION
HKLM\ DisallowedCertificates: A1F8DCB086E461E2ABB4B46ADCFA0B48C58B6E99 (Avira Operations GmbH & Co. KG) <==== ATTENTION
HKLM\ DisallowedCertificates: A5341949ABE1407DD7BF7DFE75460D9608FBC309 (BullGuard Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: A59CC32724DD07A6FC33F7806945481A2D13CA2F (ESET) <==== ATTENTION
HKLM\ DisallowedCertificates: AB7E760DA2485EA9EF5A6EEE7647748D4BA6B947 (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: AD4C5429E10F4FF6C01840C20ABA344D7401209F (Avast Antivirus/Software) <==== ATTENTION
HKLM\ DisallowedCertificates: AD96BB64BA36379D2E354660780C2067B81DA2E0 (Symantec Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: B8EBF0E696AF77F51C96DB4D044586E2F4F8FD84 (Malwarebytes Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: CDC37C22FE9272D8F2610206AD397A45040326B8 (Trend Micro) <==== ATTENTION
HKLM\ DisallowedCertificates: DB303C9B61282DE525DC754A535CA2D6A9BD3D87 (ThreatTrack Security) <==== ATTENTION
HKLM\ DisallowedCertificates: DB77E5CFEC34459146748B667C97B185619251BA (Avast Antivirus/Software) <==== ATTENTION
HKLM\ DisallowedCertificates: E22240E837B52E691C71DF248F12D27F96441C00 (Total Defense, Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: E513EAB8610CFFD7C87E00BCA15C23AAB407FCEF (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: ED841A61C0F76025598421BC1B00E24189E68D54 (Bitdefender SRL) <==== ATTENTION
HKLM\ DisallowedCertificates: F83099622B4A9F72CB5081F742164AD1B8D048C9 (ESET) <==== ATTENTION
HKLM\ DisallowedCertificates: FBB42F089AF2D570F2BF6F493D107A3255A9BB1A (Panda Security S.L) <==== ATTENTION
HKLM\ DisallowedCertificates: FFFA650F2CB2ABC0D80527B524DD3F9FC172C138 (Doctor Web Ltd.) <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-18\...\Run: [] => [X]
GroupPolicy: Restriction - Chrome <==== ATTENTION
C:\Program Files (x86)\qTTaaczyWvUn
C:\Program Files (x86)\GBeMZXQZBIE
C:\Program Files (x86)\umkISPBbU
C:\Program Files (x86)\TwPufLOWyrxU2
C:\WINDOWS\Tasks\saKXaLnxQURzlMgex.job
C:\WINDOWS\Tasks\plaAVjRQXWCDePSecyr.job
C:\WINDOWS\Tasks\BcyoMZkjXMgFaPP.job
C:\WINDOWS\System32\Tasks\saKXaLnxQURzlMgex2
C:\WINDOWS\System32\Tasks\plaAVjRQXWCDePSecyr2
C:\WINDOWS\System32\Tasks\saKXaLnxQURzlMgex
C:\WINDOWS\System32\Tasks\plaAVjRQXWCDePSecyr
C:\Program Files (x86)\RrHYXuUpocPTIXdsppR
C:\Program Files (x86)\aohGTEheqdnWC
C:\Program Files\MinerGate
C:\Users\StriX\AppData\Local\minergate
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MinerGate

EmptyTemp:
ResetHosts:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Volny256
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 15 úno 2017 17:11

Re: Zavirované PC

#9 Příspěvek od Volny256 »

Přikládám log.

Fix result of Farbar Recovery Scan Tool (x64) Version: 02.01.2018
Ran by StriX (06-01-2018 21:16:47) Run:1
Running from C:\Users\StriX\Desktop
Loaded Profiles: StriX (Available Profiles: StriX)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
Task: {1BDE58A2-7679-4D80-B33F-E9C5B9B7636E} - \pnIxobGIUDXdNt -> No File <==== ATTENTION
Task: {51D48082-DB12-472C-8D86-2AC9FE9CDF1E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-13] (Google Inc.)
Task: {6A3FDFCB-5F7E-4B40-9BAB-7E328E4C427E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-13] (Google Inc.)
Task: {A106C069-B561-4B94-AC1B-4E8702B84A29} - \Acronis Movie Converter -> No File <==== ATTENTION
Task: {B6DE33EC-951B-4243-88D1-BF37C57E5DD4} - \BcyoMZkjXMgFaPP2 -> No File <==== ATTENTION
Task: {BD973892-0CC6-4E76-9A50-FCB18BB9A5E7} - \BcyoMZkjXMgFaPP -> No File <==== ATTENTION
Task: {D8EB6B2C-9AE6-46DE-8F8B-7EDE1E41269E} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\BcyoMZkjXMgFaPP.job => C:\Program Files (x86)\umkISPBbU\avOelL.dll
C:\Program Files (x86)\umkISPBb
Task: C:\WINDOWS\Tasks\plaAVjRQXWCDePSecyr.job => C:\Program Files (x86)\aohGTEheqdnWC\VbyFcSg.dll
Task: C:\WINDOWS\Tasks\saKXaLnxQURzlMgex.job => C:\Program Files (x86)\RrHYXuUpocPTIXdsppR\sWaWsis.dll
C:\Program Files (x86)\aohGTEheqdnWC
C:\Program Files (x86)\RrHYXuUpocPTIXdsppR
HKLM\ DisallowedCertificates: 03D22C9C66915D58C88912B64C1F984B8344EF09 (Comodo Security Solutions) <==== ATTENTION
HKLM\ DisallowedCertificates: 0F684EC1163281085C6AF20528878103ACEFCAAB (F-Secure Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 1667908C9E22EFBD0590E088715CC74BE4C60884 (FRISK Software International/F-Prot) <==== ATTENTION
HKLM\ DisallowedCertificates: 18DEA4EFA93B06AE997D234411F3FD72A677EECE (Bitdefender SRL) <==== ATTENTION
HKLM\ DisallowedCertificates: 2026D13756EB0DB753DF26CB3B7EEBE3E70BB2CF (G DATA Software AG) <==== ATTENTION
HKLM\ DisallowedCertificates: 249BDA38A611CD746A132FA2AF995A2D3C941264 (Malwarebytes Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 31AC96A6C17C425222C46D55C3CCA6BA12E54DAF (Symantec Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 331E2046A1CCA7BFEF766724394BE6112B4CA3F7 (Trend Micro) <==== ATTENTION
HKLM\ DisallowedCertificates: 3353EA609334A9F23A701B9159E30CB6C22D4C59 (Webroot Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: 373C33726722D3A5D1EDD1F1585D5D25B39BEA1A (SUPERAntiSpyware.com) <==== ATTENTION
HKLM\ DisallowedCertificates: 3D496FA682E65FC122351EC29B55AB94F3BB03FC (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: 4243A03DB4C3C15149CEA8B38EEA1DA4F26BD159 (PC Tools) <==== ATTENTION
HKLM\ DisallowedCertificates: 42727E052C0C2E1B35AB53E1005FD9EDC9DE8F01 (K7 Computing Pvt Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 4420C99742DF11DD0795BC15B7B0ABF090DC84DF (Doctor Web Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 4C0AF5719009B7C9D85C5EAEDFA3B7F090FE5FFF (Emsisoft Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 5240AB5B05D11B37900AC7712A3C6AE42F377C8C (Check Point Software Technologies Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 5DD3D41810F28B2A13E9A004E6412061E28FA48D (Emsisoft Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 7457A3793086DBB58B3858D6476889E3311E550E (K7 Computing Pvt Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 76A9295EF4343E12DFC5FE05DC57227C1AB00D29 (BullGuard Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 775B373B33B9D15B58BC02B184704332B97C3CAF (McAfee) <==== ATTENTION
HKLM\ DisallowedCertificates: 872CD334B7E7B3C3D1C6114CD6B221026D505EAB (Comodo Security Solutions) <==== ATTENTION
HKLM\ DisallowedCertificates: 88AD5DFE24126872B33175D1778687B642323ACF (McAfee) <==== ATTENTION
HKLM\ DisallowedCertificates: 9132E8B079D080E01D52631690BE18EBC2347C1E (Adaware Software) <==== ATTENTION
HKLM\ DisallowedCertificates: 982D98951CF3C0CA2A02814D474A976CBFF6BDB1 (Safer Networking Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 9A08641F7C5F2CCA0888388BE3E5DBDDAAA3B361 (Webroot Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: 9C43F665E690AB4D486D4717B456C5554D4BCEB5 (ThreatTrack Security) <==== ATTENTION
HKLM\ DisallowedCertificates: 9E3F95577B37C74CA2F70C1E1859E798B7FC6B13 (CURIOLAB S.M.B.A.) <==== ATTENTION
HKLM\ DisallowedCertificates: A1F8DCB086E461E2ABB4B46ADCFA0B48C58B6E99 (Avira Operations GmbH & Co. KG) <==== ATTENTION
HKLM\ DisallowedCertificates: A5341949ABE1407DD7BF7DFE75460D9608FBC309 (BullGuard Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: A59CC32724DD07A6FC33F7806945481A2D13CA2F (ESET) <==== ATTENTION
HKLM\ DisallowedCertificates: AB7E760DA2485EA9EF5A6EEE7647748D4BA6B947 (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: AD4C5429E10F4FF6C01840C20ABA344D7401209F (Avast Antivirus/Software) <==== ATTENTION
HKLM\ DisallowedCertificates: AD96BB64BA36379D2E354660780C2067B81DA2E0 (Symantec Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: B8EBF0E696AF77F51C96DB4D044586E2F4F8FD84 (Malwarebytes Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: CDC37C22FE9272D8F2610206AD397A45040326B8 (Trend Micro) <==== ATTENTION
HKLM\ DisallowedCertificates: DB303C9B61282DE525DC754A535CA2D6A9BD3D87 (ThreatTrack Security) <==== ATTENTION
HKLM\ DisallowedCertificates: DB77E5CFEC34459146748B667C97B185619251BA (Avast Antivirus/Software) <==== ATTENTION
HKLM\ DisallowedCertificates: E22240E837B52E691C71DF248F12D27F96441C00 (Total Defense, Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: E513EAB8610CFFD7C87E00BCA15C23AAB407FCEF (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: ED841A61C0F76025598421BC1B00E24189E68D54 (Bitdefender SRL) <==== ATTENTION
HKLM\ DisallowedCertificates: F83099622B4A9F72CB5081F742164AD1B8D048C9 (ESET) <==== ATTENTION
HKLM\ DisallowedCertificates: FBB42F089AF2D570F2BF6F493D107A3255A9BB1A (Panda Security S.L) <==== ATTENTION
HKLM\ DisallowedCertificates: FFFA650F2CB2ABC0D80527B524DD3F9FC172C138 (Doctor Web Ltd.) <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-18\...\Run: [] => [X]
GroupPolicy: Restriction - Chrome <==== ATTENTION
C:\Program Files (x86)\qTTaaczyWvUn
C:\Program Files (x86)\GBeMZXQZBIE
C:\Program Files (x86)\umkISPBbU
C:\Program Files (x86)\TwPufLOWyrxU2
C:\WINDOWS\Tasks\saKXaLnxQURzlMgex.job
C:\WINDOWS\Tasks\plaAVjRQXWCDePSecyr.job
C:\WINDOWS\Tasks\BcyoMZkjXMgFaPP.job
C:\WINDOWS\System32\Tasks\saKXaLnxQURzlMgex2
C:\WINDOWS\System32\Tasks\plaAVjRQXWCDePSecyr2
C:\WINDOWS\System32\Tasks\saKXaLnxQURzlMgex
C:\WINDOWS\System32\Tasks\plaAVjRQXWCDePSecyr
C:\Program Files (x86)\RrHYXuUpocPTIXdsppR
C:\Program Files (x86)\aohGTEheqdnWC
C:\Program Files\MinerGate
C:\Users\StriX\AppData\Local\minergate
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MinerGate

EmptyTemp:
ResetHosts:
End
*****************

"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui" => removed successfully
HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => key not found
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1BDE58A2-7679-4D80-B33F-E9C5B9B7636E} => could not remove key. ErrorCode1: 0x00000002
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1BDE58A2-7679-4D80-B33F-E9C5B9B7636E}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\pnIxobGIUDXdNt" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{51D48082-DB12-472C-8D86-2AC9FE9CDF1E}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{51D48082-DB12-472C-8D86-2AC9FE9CDF1E}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6A3FDFCB-5F7E-4B40-9BAB-7E328E4C427E}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6A3FDFCB-5F7E-4B40-9BAB-7E328E4C427E}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{A106C069-B561-4B94-AC1B-4E8702B84A29}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A106C069-B561-4B94-AC1B-4E8702B84A29}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Acronis Movie Converter" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B6DE33EC-951B-4243-88D1-BF37C57E5DD4}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B6DE33EC-951B-4243-88D1-BF37C57E5DD4}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BcyoMZkjXMgFaPP2" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BD973892-0CC6-4E76-9A50-FCB18BB9A5E7}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BD973892-0CC6-4E76-9A50-FCB18BB9A5E7}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BcyoMZkjXMgFaPP" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D8EB6B2C-9AE6-46DE-8F8B-7EDE1E41269E}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D8EB6B2C-9AE6-46DE-8F8B-7EDE1E41269E}" => removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager => key not found
C:\WINDOWS\Tasks\BcyoMZkjXMgFaPP.job => moved successfully
"C:\Program Files (x86)\umkISPBb" => not found
C:\WINDOWS\Tasks\plaAVjRQXWCDePSecyr.job => moved successfully
C:\WINDOWS\Tasks\saKXaLnxQURzlMgex.job => moved successfully
C:\Program Files (x86)\aohGTEheqdnWC => moved successfully
C:\Program Files (x86)\RrHYXuUpocPTIXdsppR => moved successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\03D22C9C66915D58C88912B64C1F984B8344EF09" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\0F684EC1163281085C6AF20528878103ACEFCAAB" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\1667908C9E22EFBD0590E088715CC74BE4C60884" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\18DEA4EFA93B06AE997D234411F3FD72A677EECE" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\2026D13756EB0DB753DF26CB3B7EEBE3E70BB2CF" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\249BDA38A611CD746A132FA2AF995A2D3C941264" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\31AC96A6C17C425222C46D55C3CCA6BA12E54DAF" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\331E2046A1CCA7BFEF766724394BE6112B4CA3F7" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\3353EA609334A9F23A701B9159E30CB6C22D4C59" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\373C33726722D3A5D1EDD1F1585D5D25B39BEA1A" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\3D496FA682E65FC122351EC29B55AB94F3BB03FC" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\4243A03DB4C3C15149CEA8B38EEA1DA4F26BD159" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\42727E052C0C2E1B35AB53E1005FD9EDC9DE8F01" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\4420C99742DF11DD0795BC15B7B0ABF090DC84DF" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\4C0AF5719009B7C9D85C5EAEDFA3B7F090FE5FFF" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\5240AB5B05D11B37900AC7712A3C6AE42F377C8C" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\5DD3D41810F28B2A13E9A004E6412061E28FA48D" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\7457A3793086DBB58B3858D6476889E3311E550E" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\76A9295EF4343E12DFC5FE05DC57227C1AB00D29" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\775B373B33B9D15B58BC02B184704332B97C3CAF" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\872CD334B7E7B3C3D1C6114CD6B221026D505EAB" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\88AD5DFE24126872B33175D1778687B642323ACF" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\9132E8B079D080E01D52631690BE18EBC2347C1E" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\982D98951CF3C0CA2A02814D474A976CBFF6BDB1" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\9A08641F7C5F2CCA0888388BE3E5DBDDAAA3B361" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\9C43F665E690AB4D486D4717B456C5554D4BCEB5" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\9E3F95577B37C74CA2F70C1E1859E798B7FC6B13" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\A1F8DCB086E461E2ABB4B46ADCFA0B48C58B6E99" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\A5341949ABE1407DD7BF7DFE75460D9608FBC309" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\A59CC32724DD07A6FC33F7806945481A2D13CA2F" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\AB7E760DA2485EA9EF5A6EEE7647748D4BA6B947" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\AD4C5429E10F4FF6C01840C20ABA344D7401209F" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\AD96BB64BA36379D2E354660780C2067B81DA2E0" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\B8EBF0E696AF77F51C96DB4D044586E2F4F8FD84" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\CDC37C22FE9272D8F2610206AD397A45040326B8" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\DB303C9B61282DE525DC754A535CA2D6A9BD3D87" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\DB77E5CFEC34459146748B667C97B185619251BA" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\E22240E837B52E691C71DF248F12D27F96441C00" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\E513EAB8610CFFD7C87E00BCA15C23AAB407FCEF" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\ED841A61C0F76025598421BC1B00E24189E68D54" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\F83099622B4A9F72CB5081F742164AD1B8D048C9" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\FBB42F089AF2D570F2BF6F493D107A3255A9BB1A" => removed successfully
"HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\FFFA650F2CB2ABC0D80527B524DD3F9FC172C138" => removed successfully
"HKLM\SOFTWARE\Policies\Microsoft\Windows Defender" => removed successfully
"HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\\" => removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\Program Files (x86)\qTTaaczyWvUn => moved successfully
C:\Program Files (x86)\GBeMZXQZBIE => moved successfully
C:\Program Files (x86)\umkISPBbU => moved successfully
C:\Program Files (x86)\TwPufLOWyrxU2 => moved successfully
"C:\WINDOWS\Tasks\saKXaLnxQURzlMgex.job" => not found
"C:\WINDOWS\Tasks\plaAVjRQXWCDePSecyr.job" => not found
"C:\WINDOWS\Tasks\BcyoMZkjXMgFaPP.job" => not found
C:\WINDOWS\System32\Tasks\saKXaLnxQURzlMgex2 => moved successfully
C:\WINDOWS\System32\Tasks\plaAVjRQXWCDePSecyr2 => moved successfully
C:\WINDOWS\System32\Tasks\saKXaLnxQURzlMgex => moved successfully
C:\WINDOWS\System32\Tasks\plaAVjRQXWCDePSecyr => moved successfully
"C:\Program Files (x86)\RrHYXuUpocPTIXdsppR" => not found
"C:\Program Files (x86)\aohGTEheqdnWC" => not found
C:\Program Files\MinerGate => moved successfully
C:\Users\StriX\AppData\Local\minergate => moved successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MinerGate => moved successfully
ResetHosts: => Error: No automatic fix found for this entry.

=========== EmptyTemp: ==========

BITS transfer queue => 7888896 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 31965316 B
Java, Flash, Steam htmlcache => 319458783 B
Windows/system/drivers => 2835043 B
Edge => 22068309 B
Chrome => 172436515 B
Firefox => 104179127 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 124815 B
systemprofile32 => 0 B
LocalService => 5742 B
NetworkService => 173320 B
StriX => 113466883 B

RecycleBin => 9049359500 B
EmptyTemp: => 9.1 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 21:17:07 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118152
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zavirované PC

#10 Příspěvek od Rudy »

Teď zkuste znovu sken buď AVPTool, nebo MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Toto je možné provést i v nouz. režimu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Volny256
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 15 úno 2017 17:11

Re: Zavirované PC

#11 Příspěvek od Volny256 »

Přikládám log z FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.01.2018
Ran by StriX (administrator) on STRIX-PC (07-01-2018 00:28:44)
Running from C:\Users\StriX\Desktop
Loaded Profiles: StriX (Available Profiles: StriX)
Platform: Windows 10 Education Version 1709 16299.192 (X64) Language: Angličtina (Spojené státy)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2e329e8610bbb375\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2e329e8610bbb375\IntelCpHDCPSvc.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\DPC Latency Tuner\DPCLT_Service.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Mystic Light2\MysticLight_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
() C:\Windows\System32\spacedeskService.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\VideoCardMonitorII.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\EyeRest.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\TriggerModeMonitor.exe
() C:\Windows\System32\SpaceDeskServiceTray.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe
() C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(MSI) C:\Windows\SysWOW64\muachost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Valve Corporation) C:\Steam\Steam.exe
(Valve Corporation) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
() C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
(Valve Corporation) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() C:\Program Files (x86)\uRage Illuminated Driver\Monitor.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI X Boost\X_Boost.exe
(Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Mystic Light2\Mystic Light.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Valve Corporation) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
() C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe
() C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe
() C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.17123-0\MsMpEng.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.17123-0\NisSrv.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11711.1001.5.0_x64__8wekyb3d8bbwe\WinStore.App.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17112.13411.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(AVAST Software) C:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe
(AVAST Software) C:\Users\StriX\AppData\Local\Temp\_av_iup.tm~a05264\Instup.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235936 2017-08-09] (Realtek Semiconductor)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM-x32\...\Run: [Dare-U mouse] => C:\Program Files (x86)\uRage Illuminated Driver\Monitor.exe [491520 2013-01-17] ()
HKLM-x32\...\Run: [X_Boost] => C:\Program Files (x86)\MSI\MSI X Boost\X_Boost.exe [4224440 2017-08-08] (Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [Mystic Light] => C:\Program Files (x86)\MSI\Mystic Light2\Mystic Light.exe [3091920 2017-07-06] (Micro-Star Int'l Co., Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle Corporation)
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Run: [Steam] => C:\Steam\steam.exe [3111712 2017-12-15] (Valve Corporation)
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Run: [Bloody2] => C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe [17627648 2017-09-01] ()
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Technologies S.A.)
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\RunOnce: [Application Restart #4] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MSI)
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\RunOnce: [Application Restart #1] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MSI)
Startup: C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar476.lnk [2018-01-06]
ShortcutTarget: Sidebar476.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [S-1-5-21-752624193-2435152514-875314472-1001] => Proxy is enabled.
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1 10.0.1.1
Tcpip\..\Interfaces\{5c89dade-469a-4ffe-be66-a576de904b20}: [DhcpNameServer] 10.0.0.1 10.0.1.1

Internet Explorer:
==================
HKU\S-1-5-21-752624193-2435152514-875314472-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10420__171125__yaie
SearchScopes: HKU\S-1-5-21-752624193-2435152514-875314472-1001 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10420__171125__yaie&p={searchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-11-10] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-10] (Oracle Corporation)

FireFox:
========
FF DefaultProfile: ihrwisfo.default
FF ProfilePath: C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default [2018-01-07]
FF Homepage: Mozilla\Firefox\Profiles\ihrwisfo.default -> hxxps://www.seznam.cz/
FF NewTab: Mozilla\Firefox\Profiles\ihrwisfo.default -> hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10420__171125__yaff
FF Extension: (FF AntiVirus Tool) - C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default\Extensions\{5af74f5a-652b-4b83-a2a9-f3d21c3c0010}.xpi [2017-12-14]
FF Extension: (Firefox Antivirus) - C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default\Extensions\{6feed48d-41d4-49b8-b7d6-ef78cc7a7cd7}.xpi [2017-12-09]
FF Extension: (Disable JavaScript Shared Memory) - C:\Users\StriX\AppData\Roaming\Mozilla\Firefox\Profiles\ihrwisfo.default\features\{0bf36d57-6094-48f0-8fc1-2798459d5a26}\disable-js-shared-memory@mozilla.org.xpi [2018-01-05] [Legacy]
FF Extension: (Adblocker for Youtube™) - C:\Program Files\Mozilla Firefox\browser\features\{A5FD4672-4D73-4F90-A1C0-2ABD39DB2565}.xpi [2018-01-05] [not signed]
FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-11-10] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-11-10] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-15] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-15] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.)

Chrome:
=======
CHR Profile: C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default [2018-01-06]
CHR Extension: (Slides) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Docs) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Google Drive) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-10-13]
CHR Extension: (YouTube) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-10-13]
CHR Extension: (Sheets) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Google Docs Offline) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-10-13]
CHR Extension: (Chrome Web Store Payments) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-10-13]
CHR Extension: (Adblocker for Youtube™) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac [2018-01-05]
CHR Extension: (Adblocker for Youtube™) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj [2018-01-06]
CHR Extension: (Gmail) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-10-13]
CHR Extension: (Chrome Media Router) - C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-13]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2017-10-24] (Futuremark)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [48824 2017-10-26] (Micro-Star Int'l Co., Ltd.)
R2 GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2021048 2017-11-01] (Micro-Star INT'L CO., LTD.)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes)
R2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [83616 2017-11-21] (Micro-Star INT'L CO., LTD.)
R2 MSI_DPCLTSERVICE; C:\Program Files (x86)\MSI\DPC Latency Tuner\DPCLT_Service.exe [2142648 2017-08-10] (Micro-Star INT'L CO., LTD.)
R2 MSI_MYSTICLIGHTSERVICE; C:\Program Files (x86)\MSI\Mystic Light2\MysticLight_Service.exe [2046928 2017-07-06] (Micro-Star INT'L CO., LTD.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1451848 2017-12-26] (Overwolf LTD)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2017-08-25] ()
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [107832 2017-08-25] ()
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2017-11-26] (Microsoft Corporation)
R2 spacedeskService; C:\WINDOWS\System32\spacedeskService.exe [787504 2017-11-24] ()
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\NisSrv.exe [356176 2017-12-09] (Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MsMpEng.exe [105792 2017-12-09] (Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 e1dexpress; C:\WINDOWS\system32\DRIVERS\e1d65x64.sys [544744 2017-03-19] (Intel Corporation)
R3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (FINTEK Corp.)
R1 MpKsld413e2cb; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{83D2BED8-87F8-466B-805F-AFA2B805CB84}\MpKsld413e2cb.sys [58120 2018-01-06] (Microsoft Corporation)
R3 NTIOLib_DPC; C:\Program Files (x86)\MSI\DPC Latency Tuner\NTIOLib_X64.sys [14288 2017-03-29] (MSI)
S3 NTIOLib_MBAPI; C:\Program Files (x86)\MSI\Gaming APP\Lib\NTIOLib_X64.sys [14288 2017-03-08] (MSI)
R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\Mystic Light2\Lib\NTIOLib_X64.sys [14288 2017-05-24] (MSI)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d37ca5c2cde53609\nvlddmkm.sys [17028552 2017-12-18] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-11-16] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-11-16] (NVIDIA Corporation)
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] ()
R1 spacedeskDispKmode; C:\WINDOWS\System32\drivers\spacedeskDispKmode.sys [284208 2017-11-24] (datronicsoft Inc.)
R3 spacedeskKtmInputKeybd; C:\WINDOWS\System32\drivers\spacedeskKtmInputKeybd.sys [35384 2017-09-19] ()
R3 spacedeskKtmInputMouse; C:\WINDOWS\System32\drivers\spacedeskKtmInputMouse.sys [35384 2017-09-19] ()
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46072 2017-12-09] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [288848 2017-12-09] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [129616 2017-12-09] (Microsoft Corporation)
S3 cpuz136; \??\C:\WINDOWS\TEMP\cpuz136\cpuz136_x64.sys [X]
S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-01-07 00:28 - 2018-01-07 00:29 - 000018240 _____ C:\Users\StriX\Desktop\FRST.txt
2018-01-07 00:03 - 2018-01-07 00:03 - 000085600 ____N (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\11852919.sys
2018-01-07 00:02 - 2018-01-07 00:02 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-01-07 00:02 - 2018-01-07 00:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-01-07 00:02 - 2018-01-07 00:02 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-01-07 00:02 - 2018-01-07 00:02 - 000000000 ____D C:\Program Files\Malwarebytes
2018-01-07 00:02 - 2017-11-29 09:11 - 000077432 _____ C:\WINDOWS\system32\Drivers\mbae64.sys
2018-01-06 21:21 - 2018-01-06 21:21 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2018-01-06 18:21 - 2018-01-06 18:26 - 000000000 ____D C:\KVRT_Data
2018-01-06 18:19 - 2018-01-06 18:20 - 137637672 _____ (Kaspersky Lab ZAO) C:\Users\StriX\Desktop\KVRT.exe
2018-01-06 18:07 - 2018-01-06 19:20 - 000691310 _____ C:\WINDOWS\ntbtlog.txt
2018-01-06 18:07 - 2018-01-06 19:18 - 000000000 ____D C:\AdwCleaner
2018-01-06 18:07 - 2018-01-06 19:16 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2018-01-06 17:03 - 2018-01-07 00:28 - 000000000 ____D C:\FRST
2018-01-06 17:03 - 2018-01-06 17:03 - 002393088 _____ (Farbar) C:\Users\StriX\Desktop\FRST64.exe
2018-01-06 17:00 - 2018-01-06 17:00 - 008198432 _____ (Malwarebytes) C:\Users\StriX\Desktop\adwcleaner_7.0.6.0.exe
2018-01-06 16:45 - 2018-01-01 13:51 - 001055128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-01-06 16:45 - 2018-01-01 13:51 - 000059800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bam.sys
2018-01-06 16:45 - 2018-01-01 13:49 - 008605080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-01-06 16:45 - 2018-01-01 13:48 - 007831760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2018-01-06 16:45 - 2018-01-01 13:48 - 001954048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2018-01-06 16:45 - 2018-01-01 13:47 - 000082840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2018-01-06 16:45 - 2018-01-01 13:46 - 002709704 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-01-06 16:45 - 2018-01-01 13:46 - 000471960 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2018-01-06 16:45 - 2018-01-01 13:45 - 002395032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2018-01-06 16:45 - 2018-01-01 13:45 - 001277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2018-01-06 16:45 - 2018-01-01 13:45 - 000398744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2018-01-06 16:45 - 2018-01-01 13:42 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2018-01-06 16:45 - 2018-01-01 13:39 - 000902416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2018-01-06 16:45 - 2018-01-01 13:39 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2018-01-06 16:45 - 2018-01-01 13:39 - 000129432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys
2018-01-06 16:45 - 2018-01-01 13:37 - 001426664 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2018-01-06 16:45 - 2018-01-01 13:36 - 000166296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2018-01-06 16:45 - 2018-01-01 13:35 - 001170008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2018-01-06 16:45 - 2018-01-01 13:34 - 007385088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-01-06 16:45 - 2018-01-01 13:33 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2018-01-06 16:45 - 2018-01-01 13:26 - 000428952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2018-01-06 16:45 - 2018-01-01 13:25 - 000615768 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2018-01-06 16:45 - 2018-01-01 13:25 - 000147864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2018-01-06 16:45 - 2018-01-01 12:53 - 001615712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2018-01-06 16:45 - 2018-01-01 12:45 - 005615968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2018-01-06 16:45 - 2018-01-01 12:45 - 002192624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-01-06 16:45 - 2018-01-01 12:42 - 006479552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-01-06 16:45 - 2018-01-01 12:42 - 004644912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2018-01-06 16:45 - 2018-01-01 12:42 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2018-01-06 16:45 - 2018-01-01 12:42 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2018-01-06 16:45 - 2018-01-01 12:34 - 000703568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2018-01-06 16:45 - 2018-01-01 12:25 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-01-06 16:45 - 2018-01-01 12:25 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2018-01-06 16:45 - 2018-01-01 12:24 - 003668480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-01-06 16:45 - 2018-01-01 12:24 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2018-01-06 16:45 - 2018-01-01 12:23 - 000536576 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2018-01-06 16:45 - 2018-01-01 12:23 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2018-01-06 16:45 - 2018-01-01 12:21 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2018-01-06 16:45 - 2018-01-01 12:20 - 019337216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-01-06 16:45 - 2018-01-01 12:20 - 018917888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-01-06 16:45 - 2018-01-01 12:19 - 000461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2018-01-06 16:45 - 2018-01-01 12:19 - 000369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2018-01-06 16:45 - 2018-01-01 12:19 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2018-01-06 16:45 - 2018-01-01 12:18 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2018-01-06 16:45 - 2018-01-01 12:18 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2018-01-06 16:45 - 2018-01-01 12:18 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2018-01-06 16:45 - 2018-01-01 12:17 - 011923968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-01-06 16:45 - 2018-01-01 12:17 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-01-06 16:45 - 2018-01-01 12:17 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-01-06 16:45 - 2018-01-01 12:17 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 003676672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 000812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2018-01-06 16:45 - 2018-01-01 12:16 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2018-01-06 16:45 - 2018-01-01 12:15 - 012687872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-01-06 16:45 - 2018-01-01 12:15 - 006029312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-01-06 16:45 - 2018-01-01 12:15 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2018-01-06 16:45 - 2018-01-01 12:14 - 023655936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-01-06 16:45 - 2018-01-01 12:14 - 002465280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2018-01-06 16:45 - 2018-01-01 12:13 - 012830208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-01-06 16:45 - 2018-01-01 12:13 - 002869760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2018-01-06 16:45 - 2018-01-01 12:12 - 001547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-01-06 16:45 - 2018-01-01 12:12 - 001424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2018-01-06 16:45 - 2018-01-01 12:11 - 008108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-01-06 16:45 - 2018-01-01 12:11 - 004748288 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-01-06 16:45 - 2018-01-01 12:11 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2018-01-06 16:45 - 2018-01-01 12:11 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2018-01-06 16:45 - 2018-01-01 12:11 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2018-01-06 16:45 - 2018-01-01 12:09 - 001487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2018-01-06 16:45 - 2018-01-01 12:09 - 000925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2018-01-06 16:45 - 2018-01-01 12:08 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2018-01-06 16:45 - 2018-01-01 12:08 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2018-01-06 16:44 - 2018-01-01 18:15 - 000956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2018-01-06 16:44 - 2018-01-01 13:54 - 000924648 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-01-06 16:44 - 2018-01-01 13:53 - 001090984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-01-06 16:44 - 2018-01-01 13:52 - 000066712 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2018-01-06 16:44 - 2018-01-01 13:51 - 001414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-01-06 16:44 - 2018-01-01 13:51 - 001209240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-01-06 16:44 - 2018-01-01 13:51 - 000191816 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2018-01-06 16:44 - 2018-01-01 13:50 - 005905752 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2018-01-06 16:44 - 2018-01-01 13:50 - 000780464 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2018-01-06 16:44 - 2018-01-01 13:50 - 000479912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2018-01-06 16:44 - 2018-01-01 13:50 - 000077208 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-01-06 16:44 - 2018-01-01 13:49 - 000599448 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2018-01-06 16:44 - 2018-01-01 13:49 - 000319352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2018-01-06 16:44 - 2018-01-01 13:49 - 000292376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2018-01-06 16:44 - 2018-01-01 13:48 - 000382360 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2018-01-06 16:44 - 2018-01-01 13:47 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2018-01-06 16:44 - 2018-01-01 13:46 - 000898216 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-01-06 16:44 - 2018-01-01 13:46 - 000733592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2018-01-06 16:44 - 2018-01-01 13:43 - 001173576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2018-01-06 16:44 - 2018-01-01 13:43 - 000367336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2018-01-06 16:44 - 2018-01-01 13:43 - 000062872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fsdepends.sys
2018-01-06 16:44 - 2018-01-01 13:42 - 001029016 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2018-01-06 16:44 - 2018-01-01 13:42 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2018-01-06 16:44 - 2018-01-01 13:42 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2018-01-06 16:44 - 2018-01-01 13:42 - 000109976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2018-01-06 16:44 - 2018-01-01 13:41 - 007676296 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-01-06 16:44 - 2018-01-01 13:41 - 000559512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2018-01-06 16:44 - 2018-01-01 13:41 - 000549552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2018-01-06 16:44 - 2018-01-01 13:40 - 001206680 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-01-06 16:44 - 2018-01-01 13:39 - 000677784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-01-06 16:44 - 2018-01-01 13:39 - 000508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2018-01-06 16:44 - 2018-01-01 13:38 - 003904808 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2018-01-06 16:44 - 2018-01-01 13:38 - 000727448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2018-01-06 16:44 - 2018-01-01 13:38 - 000519152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2018-01-06 16:44 - 2018-01-01 13:38 - 000103320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2018-01-06 16:44 - 2018-01-01 13:38 - 000038808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Diskdump.sys
2018-01-06 16:44 - 2018-01-01 13:37 - 000461720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2018-01-06 16:44 - 2018-01-01 13:36 - 000413888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2018-01-06 16:44 - 2018-01-01 13:36 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe
2018-01-06 16:44 - 2018-01-01 13:36 - 000113560 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2018-01-06 16:44 - 2018-01-01 13:36 - 000057752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbios.sys
2018-01-06 16:44 - 2018-01-01 13:35 - 000075160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2018-01-06 16:44 - 2018-01-01 13:34 - 001336344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2018-01-06 16:44 - 2018-01-01 13:34 - 000260896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2018-01-06 16:44 - 2018-01-01 13:34 - 000087384 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2018-01-06 16:44 - 2018-01-01 13:33 - 002773400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-01-06 16:44 - 2018-01-01 13:32 - 004481240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-01-06 16:44 - 2018-01-01 13:32 - 000617304 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2018-01-06 16:44 - 2018-01-01 13:27 - 000713624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2018-01-06 16:44 - 2018-01-01 13:27 - 000163736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2018-01-06 16:44 - 2018-01-01 13:26 - 000081304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2018-01-06 16:44 - 2018-01-01 13:23 - 021352144 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-01-06 16:44 - 2018-01-01 13:21 - 001103768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2018-01-06 16:44 - 2018-01-01 13:21 - 000614296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2018-01-06 16:44 - 2018-01-01 13:06 - 000311192 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2018-01-06 16:44 - 2018-01-01 13:03 - 000777904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2018-01-06 16:44 - 2018-01-01 13:03 - 000650328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2018-01-06 16:44 - 2018-01-01 13:03 - 000566664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-01-06 16:44 - 2018-01-01 13:03 - 000123512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2018-01-06 16:44 - 2018-01-01 12:49 - 000481464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2018-01-06 16:44 - 2018-01-01 12:49 - 000258808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2018-01-06 16:44 - 2018-01-01 12:46 - 003485392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2018-01-06 16:44 - 2018-01-01 12:46 - 000289816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2018-01-06 16:44 - 2018-01-01 12:45 - 006092152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-01-06 16:44 - 2018-01-01 12:45 - 000450928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2018-01-06 16:44 - 2018-01-01 12:43 - 020286120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-01-06 16:44 - 2018-01-01 12:42 - 001003152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2018-01-06 16:44 - 2018-01-01 12:42 - 000386424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2018-01-06 16:44 - 2018-01-01 12:42 - 000129184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2018-01-06 16:44 - 2018-01-01 12:42 - 000074992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2018-01-06 16:44 - 2018-01-01 12:37 - 025247232 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-01-06 16:44 - 2018-01-01 12:25 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2018-01-06 16:44 - 2018-01-01 12:25 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2018-01-06 16:44 - 2018-01-01 12:25 - 000097792 _____ C:\WINDOWS\system32\runexehelper.exe
2018-01-06 16:44 - 2018-01-01 12:24 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboutSettingsHandlers.dll
2018-01-06 16:44 - 2018-01-01 12:24 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2018-01-06 16:44 - 2018-01-01 12:24 - 000038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2018-01-06 16:44 - 2018-01-01 12:23 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2018-01-06 16:44 - 2018-01-01 12:23 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2018-01-06 16:44 - 2018-01-01 12:23 - 000385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2018-01-06 16:44 - 2018-01-01 12:23 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\convertvhd.exe
2018-01-06 16:44 - 2018-01-01 12:23 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2018-01-06 16:44 - 2018-01-01 12:23 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmclr.sys
2018-01-06 16:44 - 2018-01-01 12:23 - 000047104 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2018-01-06 16:44 - 2018-01-01 12:22 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rfxvmt.dll
2018-01-06 16:44 - 2018-01-01 12:22 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2018-01-06 16:44 - 2018-01-01 12:22 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Dumpstorport.sys
2018-01-06 16:44 - 2018-01-01 12:22 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll
2018-01-06 16:44 - 2018-01-01 12:21 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2018-01-06 16:44 - 2018-01-01 12:21 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2018-01-06 16:44 - 2018-01-01 12:21 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2018-01-06 16:44 - 2018-01-01 12:21 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
2018-01-06 16:44 - 2018-01-01 12:21 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\raspptp.sys
2018-01-06 16:44 - 2018-01-01 12:21 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2018-01-06 16:44 - 2018-01-01 12:21 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2018-01-06 16:44 - 2018-01-01 12:21 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000524288 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2018-01-06 16:44 - 2018-01-01 12:20 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardDlg.dll
2018-01-06 16:44 - 2018-01-01 12:20 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\RfxVmt.sys
2018-01-06 16:44 - 2018-01-01 12:20 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 008014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000795136 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalAuth.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2018-01-06 16:44 - 2018-01-01 12:19 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2018-01-06 16:44 - 2018-01-01 12:19 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2018-01-06 16:44 - 2018-01-01 12:19 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2P.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msoert2.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2018-01-06 16:44 - 2018-01-01 12:19 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll
2018-01-06 16:44 - 2018-01-01 12:19 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000748032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000699904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EncDec.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2018-01-06 16:44 - 2018-01-01 12:18 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 006564864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 001485312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000594432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2psvc.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2018-01-06 16:44 - 2018-01-01 12:17 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2018-01-06 16:44 - 2018-01-01 12:17 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoert2.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 005833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 004839424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000966656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000956928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000831488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000668160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000624128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll
2018-01-06 16:44 - 2018-01-01 12:16 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 002349568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 001245184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2018-01-06 16:44 - 2018-01-01 12:15 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 001003008 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 000985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 000917504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2018-01-06 16:44 - 2018-01-01 12:14 - 000870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2018-01-06 16:44 - 2018-01-01 12:13 - 013657600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-01-06 16:44 - 2018-01-01 12:13 - 003121664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll
2018-01-06 16:44 - 2018-01-01 12:13 - 002013184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2018-01-06 16:44 - 2018-01-01 12:13 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2018-01-06 16:44 - 2018-01-01 12:13 - 001474560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2018-01-06 16:44 - 2018-01-01 12:13 - 000897024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2018-01-06 16:44 - 2018-01-01 12:12 - 002633216 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2018-01-06 16:44 - 2018-01-01 12:12 - 002208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-01-06 16:44 - 2018-01-01 12:12 - 001573376 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2018-01-06 16:44 - 2018-01-01 12:12 - 000760320 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2018-01-06 16:44 - 2018-01-01 12:12 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 003165696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 002082304 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2018-01-06 16:44 - 2018-01-01 12:11 - 001955328 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSvc.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 001816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 001597952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 001343488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 001231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2018-01-06 16:44 - 2018-01-01 12:11 - 000715776 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2018-01-06 16:44 - 2018-01-01 12:10 - 003126272 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2018-01-06 16:44 - 2018-01-01 12:10 - 002528256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2018-01-06 16:44 - 2018-01-01 12:10 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscproxystub.dll
2018-01-06 16:44 - 2018-01-01 12:09 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll
2018-01-06 16:44 - 2018-01-01 12:09 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2018-01-06 16:44 - 2018-01-01 12:08 - 000963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2018-01-06 16:44 - 2018-01-01 12:08 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2018-01-06 16:44 - 2018-01-01 12:08 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2018-01-06 16:44 - 2018-01-01 12:06 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll
2018-01-06 16:44 - 2018-01-01 12:05 - 002510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2018-01-06 16:44 - 2018-01-01 12:05 - 001160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2018-01-06 16:44 - 2018-01-01 12:05 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2018-01-06 13:53 - 2018-01-06 13:53 - 007172032 _____ (AVAST Software) C:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe
2018-01-06 13:53 - 2018-01-06 13:53 - 000000000 ____D C:\ProgramData\AVAST Software
2018-01-06 07:42 - 2018-01-06 21:18 - 000000008 __RSH C:\Users\StriX\ntuser.pol
2018-01-05 21:17 - 2018-01-05 21:17 - 000000000 ____D C:\ProgramData\Sony
2018-01-05 21:16 - 2018-01-05 21:16 - 000000000 ____D C:\Users\StriX\AppData\Local\Sony
2018-01-05 21:15 - 2018-01-05 21:15 - 000001038 _____ C:\Users\StriX\Desktop\Vegas Pro 13.0 (64-bit).lnk
2018-01-05 21:15 - 2018-01-05 21:15 - 000001026 _____ C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Vegas Pro 13.0 (64-bit).lnk
2018-01-05 21:15 - 2018-01-05 21:15 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sony
2018-01-05 21:15 - 2018-01-05 21:15 - 000000000 ____D C:\Program Files\Sony
2018-01-05 21:15 - 2018-01-05 21:15 - 000000000 ____D C:\Program Files (x86)\Sony
2018-01-05 21:10 - 2018-01-06 21:18 - 000000008 __RSH C:\ProgramData\ntuser.pol
2018-01-05 21:10 - 2018-01-06 18:30 - 000000000 ____D C:\Program Files (x86)\Multitimer
2018-01-05 21:10 - 2018-01-05 21:10 - 000140800 _____ C:\Users\StriX\AppData\Local\installer.dat
2018-01-05 20:33 - 2018-01-06 14:37 - 000000362 _____ C:\WINDOWS\Tasks\Connect.job
2018-01-05 20:33 - 2018-01-05 20:33 - 000002776 _____ C:\WINDOWS\System32\Tasks\Connect
2018-01-05 20:33 - 2018-01-05 20:33 - 000000000 ____D C:\ProgramData\simplitec
2018-01-05 20:33 - 2018-01-05 20:33 - 000000000 ____D C:\ProgramData\Magix
2018-01-05 20:33 - 2018-01-05 20:33 - 000000000 ____D C:\Program Files (x86)\MAGIX
2018-01-05 20:32 - 2018-01-05 20:45 - 000000000 ____D C:\ProgramData\VEGAS
2018-01-05 20:31 - 2018-01-05 21:23 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Sony
2018-01-05 19:54 - 2018-01-05 19:54 - 000000000 ____D C:\Users\StriX\Documents\MAGIX Downloads
2018-01-05 19:54 - 2018-01-05 19:54 - 000000000 ____D C:\Users\StriX\AppData\Roaming\MAGIX
2018-01-01 20:46 - 2018-01-02 09:08 - 000000000 ____D C:\Users\StriX\AppData\Local\NFS Underground 2
2018-01-01 20:46 - 2018-01-01 20:46 - 000000695 _____ C:\Users\StriX\Desktop\Need for Speed Underground 2.lnk
2018-01-01 20:46 - 2018-01-01 20:46 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2017-12-31 14:13 - 2017-12-31 14:13 - 002219693 _____ C:\Users\StriX\Documents\Poznávačka RYBY.pptx
2017-12-29 12:45 - 2017-12-29 13:45 - 000000000 ____D C:\Users\StriX\Documents\3DMark
2017-12-29 12:45 - 2017-12-29 12:45 - 000000000 ____D C:\Users\StriX\.oracle_jre_usage
2017-12-29 12:45 - 2017-12-29 12:45 - 000000000 ____D C:\ProgramData\Futuremark
2017-12-29 11:38 - 2017-12-29 11:43 - 000000000 ____D C:\Users\StriX\Desktop\Counters
2017-12-29 11:38 - 2017-12-29 11:42 - 000000000 ____D C:\Users\StriX\Desktop\Runes
2017-12-28 22:18 - 2017-12-28 22:18 - 000000022 _____ C:\WINDOWS\GPU-Z.INI
2017-12-28 22:18 - 2017-12-28 22:18 - 000000000 ____D C:\Temp
2017-12-28 22:05 - 2017-12-28 22:05 - 000000000 ____D C:\Program Files\Futuremark
2017-12-27 18:07 - 2017-12-27 18:07 - 000003190 _____ C:\WINDOWS\System32\Tasks\MSIGH_Host
2017-12-27 18:07 - 2017-12-27 18:07 - 000003132 _____ C:\WINDOWS\System32\Tasks\MSIOSDx86_Host
2017-12-27 18:07 - 2017-12-27 18:07 - 000003132 _____ C:\WINDOWS\System32\Tasks\MSIOSDx64_Host
2017-12-27 18:07 - 2017-12-27 18:07 - 000003058 _____ C:\WINDOWS\System32\Tasks\MSISW_Host
2017-12-27 18:05 - 2017-12-27 18:05 - 000001194 _____ C:\Users\Public\Desktop\MSI Gaming APP.lnk
2017-12-27 18:05 - 2015-08-18 09:51 - 001692840 _____ (MSI) C:\WINDOWS\SysWOW64\muachost.exe
2017-12-25 17:20 - 2017-12-25 17:20 - 000000199 _____ C:\Users\StriX\Desktop\Portal.url
2017-12-25 16:53 - 2017-12-25 16:53 - 000002737 _____ C:\Users\Public\Desktop\Dragon Eye.lnk
2017-12-25 15:26 - 2017-12-29 13:40 - 000000000 ____D C:\Users\StriX\Desktop\Overclocking
2017-12-25 13:45 - 2017-12-25 13:47 - 000000000 ____D C:\Users\StriX\Valley
2017-12-25 13:44 - 2017-12-27 18:27 - 000728064 _____ C:\Users\StriX\AppData\Local\file__0.localstorage
2017-12-25 13:44 - 2017-12-25 13:44 - 000000000 ____D C:\Program Files (x86)\Unigine
2017-12-25 13:42 - 2017-12-25 13:42 - 000001178 _____ C:\Users\StriX\Desktop\GTAVLauncher – zástupce.lnk
2017-12-25 11:25 - 2018-01-06 21:17 - 000003128 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2017-12-25 10:43 - 2017-12-25 10:43 - 000000119 _____ C:\Users\StriX\AppData\Roaming\System Monitor II_UptimeRecord.ini
2017-12-25 00:14 - 2017-12-25 00:28 - 000004000 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 22:36 - 2017-12-24 22:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D
2017-12-24 22:36 - 2017-12-24 22:36 - 000000000 ____D C:\Program Files (x86)\Geeks3D
2017-12-24 22:24 - 2017-12-25 21:33 - 000000000 ____D C:\WINDOWS\Minidump
2017-12-24 21:57 - 2017-12-24 21:57 - 000000000 ____D C:\Program Files (x86)\GPU-Z
2017-12-24 21:14 - 2017-12-15 23:47 - 000143960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2017-12-24 21:11 - 2017-12-16 01:23 - 040237456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 036350960 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 035157488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 023267096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 019040512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 013867656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 013255032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 011781912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 010883744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 004202992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 003615032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001990128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438871.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001674736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438871.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001331016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001321448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001135464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001101104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001044848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001038496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 001032688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000980880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000933360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000885680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000794392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000740144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000634224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000618744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000616240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000599536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000506864 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000045496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2017-12-24 21:11 - 2017-12-16 01:23 - 000000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json
2017-12-24 21:11 - 2017-12-16 01:23 - 000000669 _____ C:\WINDOWS\system32\nv-vk64.json
2017-12-24 21:08 - 2018-01-05 21:11 - 000000000 ____D C:\Users\StriX\AppData\Local\CrashDumps
2017-12-24 20:56 - 2017-12-25 16:53 - 000000000 ____D C:\Users\StriX\AppData\Roaming\MSI
2017-12-24 20:54 - 2017-12-24 21:14 - 000000000 ____D C:\Users\StriX\AppData\Local\NVIDIA
2017-12-24 20:53 - 2017-12-25 00:18 - 000000000 ____D C:\Users\StriX\AppData\Local\NVIDIA Corporation
2017-12-24 20:52 - 2017-12-24 21:14 - 000000000 ____D C:\Users\StriX\AppData\Roaming\NVIDIA
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\Users\StriX\AppData\Roaming\SplitmediaLabs
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\ProgramData\SplitMediaLabs
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI Kombustor 3
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\Program Files\MSI Kombustor 3
2017-12-24 20:48 - 2017-12-24 20:48 - 000000000 ____D C:\Program Files (x86)\SplitmediaLabs
2017-12-24 20:48 - 2014-04-30 16:23 - 000011248 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\acpimof.dll
2017-12-24 20:47 - 2017-12-24 20:47 - 000000000 ____D C:\Program Files\MSI
2017-12-24 20:44 - 2017-12-25 00:28 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003696 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-12-24 20:44 - 2017-12-25 00:28 - 000001485 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-12-24 20:44 - 2017-12-24 21:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-12-24 20:44 - 2017-11-16 02:41 - 002404800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 002070976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 001309120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 000186304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 000152512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 000057792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2017-12-24 20:44 - 2017-11-16 01:53 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
2017-12-24 20:44 - 2017-10-11 02:05 - 000050624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2017-12-24 20:44 - 2017-04-01 04:27 - 001756728 ____R (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2017-12-24 20:44 - 2017-04-01 04:27 - 001318968 ____R (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2017-12-24 20:44 - 2015-07-27 01:37 - 000041760 _____ (FINTEK Corp.) C:\WINDOWS\system32\Drivers\I2cHkBurn.sys
2017-12-24 20:44 - 2015-07-27 01:37 - 000031520 _____ (TODO: <公司名稱>) C:\WINDOWS\system32\FintekIcon1.dll
2017-12-24 20:43 - 2018-01-06 21:18 - 000000000 ____D C:\ProgramData\NVIDIA
2017-12-24 20:43 - 2017-12-25 00:43 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-12-24 20:43 - 2017-12-25 00:29 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2017-12-24 20:43 - 2017-12-16 01:23 - 001615472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2017-12-24 20:43 - 2017-12-16 01:23 - 000225208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2017-12-24 20:43 - 2017-12-16 01:23 - 000048442 _____ C:\WINDOWS\system32\nvinfo.pb
2017-12-24 20:43 - 2017-12-15 23:34 - 005964688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 002589168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 001767408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000608056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000450544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000123704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2017-12-24 20:43 - 2017-12-15 23:34 - 000082928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2017-12-24 20:43 - 2017-12-14 19:17 - 007917671 _____ C:\WINDOWS\system32\nvcoproc.bin
2017-12-24 20:43 - 2017-11-09 17:47 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2017-12-24 20:43 - 2017-04-01 04:27 - 001988032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438165.dll
2017-12-24 20:43 - 2017-04-01 04:27 - 001591352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438165.dll
2017-12-24 20:41 - 2017-12-16 01:23 - 029381936 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2017-12-24 20:41 - 2017-12-16 01:23 - 004485376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2017-12-24 20:41 - 2017-12-16 01:23 - 003817584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2017-12-24 20:39 - 2017-12-25 00:28 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2017-12-24 16:16 - 2018-01-06 16:38 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2017-12-24 16:16 - 2017-12-24 16:16 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2017-12-24 16:16 - 2017-12-24 16:16 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
2017-12-24 16:15 - 2017-12-24 16:15 - 000000000 ____D C:\Users\StriX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2017-12-17 10:20 - 2017-12-17 11:13 - 005331369 _____ C:\Users\StriX\Desktop\Poznávačka exoti.pptx
2017-12-16 17:24 - 2017-12-16 17:24 - 000000519 _____ C:\Users\StriX\Desktop\Best Plays.lnk
2017-12-16 08:20 - 2017-12-16 08:20 - 000000625 _____ C:\Users\Public\Desktop\LOL SKIN.lnk
2017-12-15 20:07 - 2017-12-08 07:52 - 000666112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2017-12-15 20:07 - 2017-12-08 00:34 - 001925296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-12-15 20:07 - 2017-12-08 00:34 - 001634288 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2017-12-15 20:07 - 2017-12-08 00:28 - 000710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2017-12-15 20:07 - 2017-12-08 00:26 - 000525208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2017-12-15 20:07 - 2017-12-08 00:24 - 000705944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2017-12-15 20:07 - 2017-12-08 00:24 - 000437144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2017-12-15 20:07 - 2017-12-08 00:24 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-12-15 20:07 - 2017-12-08 00:22 - 000979352 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2017-12-15 20:07 - 2017-12-08 00:16 - 001776272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2017-12-15 20:07 - 2017-12-08 00:15 - 000721592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2017-12-15 20:07 - 2017-12-08 00:12 - 000401304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2017-12-15 20:07 - 2017-12-07 23:56 - 001528904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2017-12-15 20:07 - 2017-12-07 23:55 - 001490328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2017-12-15 20:07 - 2017-12-07 23:33 - 000747416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2017-12-15 20:07 - 2017-12-07 23:33 - 000592280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2017-12-15 20:07 - 2017-12-07 23:31 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2017-12-15 20:07 - 2017-12-07 23:29 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KeyboardFilterShim.dll
2017-12-15 20:07 - 2017-12-07 23:10 - 006466048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2017-12-15 20:07 - 2017-12-07 23:09 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gamingtcui.dll
2017-12-15 20:07 - 2017-12-07 23:08 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll
2017-12-15 20:07 - 2017-12-07 23:07 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2017-12-15 20:07 - 2017-12-07 23:06 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcui.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2017-12-15 20:07 - 2017-12-07 23:05 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2017-12-15 20:07 - 2017-12-07 23:04 - 001498112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2017-12-15 20:07 - 2017-12-07 23:04 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2017-12-15 20:07 - 2017-12-07 23:03 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2017-12-15 20:07 - 2017-12-07 23:02 - 007545344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2017-12-15 20:07 - 2017-12-07 23:02 - 002864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2017-12-15 20:07 - 2017-12-07 23:02 - 002117632 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2017-12-15 20:07 - 2017-12-07 23:01 - 004592640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-12-15 20:07 - 2017-12-07 23:01 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2017-12-15 20:07 - 2017-12-07 23:00 - 001509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2017-12-15 20:07 - 2017-12-07 22:59 - 002105856 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-12-15 20:07 - 2017-12-07 22:59 - 001666048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-12-15 20:07 - 2017-12-07 22:59 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2017-12-15 20:07 - 2017-12-07 22:58 - 003478016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2017-12-15 20:07 - 2017-12-07 22:58 - 003211776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-12-15 20:07 - 2017-12-07 22:58 - 001353728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2017-12-15 20:07 - 2017-12-07 22:56 - 001739264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-12-15 20:07 - 2017-12-07 22:54 - 001570816 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2017-12-15 20:07 - 2017-11-26 21:35 - 017084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2017-12-15 20:07 - 2017-11-26 21:32 - 021754368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2017-12-15 20:07 - 2017-11-26 21:15 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2017-12-15 20:07 - 2017-11-26 17:43 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2017-12-15 20:07 - 2017-11-26 14:45 - 001642520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2017-12-15 20:07 - 2017-11-26 14:45 - 000264040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2017-12-15 20:07 - 2017-11-26 14:45 - 000198888 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2017-12-15 20:07 - 2017-11-26 14:41 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-12-15 20:07 - 2017-11-26 14:38 - 001636376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-12-15 20:07 - 2017-11-26 14:32 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2017-12-15 20:07 - 2017-11-26 14:31 - 000187288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-12-15 20:07 - 2017-11-26 14:30 - 001488792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 003010720 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 002573208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-12-15 20:07 - 2017-11-26 14:29 - 000840440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2017-12-15 20:07 - 2017-11-26 14:29 - 000703536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2017-12-15 20:07 - 2017-11-26 14:29 - 000436120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-12-15 20:07 - 2017-11-26 14:28 - 001259344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2017-12-15 20:07 - 2017-11-26 14:28 - 001012120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2017-12-15 20:07 - 2017-11-26 14:28 - 000495000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2017-12-15 20:07 - 2017-11-26 14:28 - 000149400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2017-12-15 20:07 - 2017-11-26 14:27 - 002446744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2017-12-15 20:07 - 2017-11-26 14:27 - 002412168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2017-12-15 20:07 - 2017-11-26 14:27 - 000464408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2017-12-15 20:07 - 2017-11-26 14:27 - 000230296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-12-15 20:07 - 2017-11-26 14:23 - 001694224 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2017-12-15 20:07 - 2017-11-26 14:23 - 001054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2017-12-15 20:07 - 2017-11-26 14:23 - 000754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2017-12-15 20:07 - 2017-11-26 14:22 - 000404888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 002220952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001778584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001628056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001585376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 001420696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000831384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000819096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2017-12-15 20:07 - 2017-11-26 14:21 - 000813976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000744856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000669592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000654048 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2017-12-15 20:07 - 2017-11-26 14:21 - 000645528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2017-12-15 20:07 - 2017-11-26 13:55 - 001289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2017-12-15 20:07 - 2017-11-26 13:55 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2017-12-15 20:07 - 2017-11-26 13:55 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2017-12-15 20:07 - 2017-11-26 13:55 - 000211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2017-12-15 20:07 - 2017-11-26 13:55 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2017-12-15 20:07 - 2017-11-26 13:54 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2017-12-15 20:07 - 2017-11-26 13:47 - 002890240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-12-15 20:07 - 2017-11-26 13:43 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2017-12-15 20:07 - 2017-11-26 13:36 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2017-12-15 20:07 - 2017-11-26 13:35 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ContentDeliveryManager.dll
2017-12-15 20:07 - 2017-11-26 13:34 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2017-12-15 20:07 - 2017-11-26 13:33 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2017-12-15 20:07 - 2017-11-26 13:31 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2017-12-15 20:07 - 2017-11-26 13:29 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2017-12-15 20:07 - 2017-11-26 13:29 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2017-12-15 20:07 - 2017-11-26 13:28 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2017-12-15 20:07 - 2017-11-26 13:26 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2017-12-15 20:07 - 2017-11-26 13:26 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-12-15 20:07 - 2017-11-26 13:25 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2017-12-15 20:07 - 2017-11-26 13:25 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2017-12-15 20:07 - 2017-11-26 13:25 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2017-12-15 20:07 - 2017-11-26 13:19 - 001167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2017-12-15 20:07 - 2017-11-26 13:19 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2017-12-15 20:07 - 2017-11-26 13:18 - 003186688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2017-12-15 20:07 - 2017-11-26 13:18 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2017-12-15 20:07 - 2017-11-26 13:17 - 001054720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2017-12-15 20:07 - 2017-11-26 13:08 - 017159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-12-15 20:07 - 2017-11-26 13:05 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-12-15 20:07 - 2017-11-26 13:04 - 003578368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2017-12-15 20:07 - 2017-11-26 13:04 - 002596352 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2017-12-15 20:07 - 2017-11-26 13:03 - 004772352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2017-12-15 20:07 - 2017-11-26 13:03 - 002783744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-12-15 20:07 - 2017-11-26 13:00 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2017-12-15 20:07 - 2017-11-26 12:59 - 004814848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2017-12-15 20:07 - 2017-11-26 12:59 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2017-12-15 20:07 - 2017-11-26 12:48 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2017-12-15 20:07 - 2017-11-26 12:21 - 001474680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2017-12-15 20:07 - 2017-11-26 12:21 - 001432816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-12-15 20:07 - 2017-11-26 12:02 - 001124760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 002339296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000746904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000590944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000506256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2017-12-15 20:07 - 2017-11-26 12:01 - 000354200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2017-12-15 20:07 - 2017-11-26 12:00 - 001990160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2017-12-15 20:07 - 2017-11-26 12:00 - 000353848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2017-12-15 20:07 - 2017-11-26 11:58 - 001148216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2017-12-15 20:07 - 2017-11-26 11:58 - 001057824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2017-12-15 20:07 - 2017-11-26 11:57 - 001490840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2017-12-15 20:07 - 2017-11-26 11:51 - 001558856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2017-12-15 20:07 - 2017-11-26 11:51 - 000661664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 002393600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2017-12-15 20:07 - 2017-11-26 11:41 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2017-12-15 20:07 - 2017-11-26 11:36 - 013703168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2017-12-15 20:07 - 2017-11-26 11:36 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2017-12-15 20:07 - 2017-11-26 11:36 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-12-15 20:07 - 2017-11-26 11:35 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2017-12-15 20:07 - 2017-11-26 11:35 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2017-12-15 20:07 - 2017-11-26 11:35 - 000242176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2017-12-15 20:07 - 2017-11-26 11:31 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2017-12-15 20:07 - 2017-11-26 11:31 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2017-12-15 20:07 - 2017-11-26 11:30 - 004385280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2017-12-15 20:07 - 2017-11-26 11:30 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2017-12-15 20:07 - 2017-11-26 11:29 - 000823808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2017-12-15 20:07 - 2017-11-26 11:28 - 004249600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2017-12-15 20:07 - 2017-11-26 11:24 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2017-12-15 20:07 - 2017-11-19 08:35 - 003331520 _____ C:\WINDOWS\system32\Windows.Mirage.dll
2017-12-15 20:07 - 2017-11-19 03:20 - 002491112 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2017-12-15 20:06 - 2017-12-08 00:28 - 000630752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2017-12-15 20:06 - 2017-12-08 00:27 - 004504456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2017-12-15 20:06 - 2017-12-08 00:22 - 001003104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2017-12-15 20:06 - 2017-12-08 00:22 - 000137544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2017-12-15 20:06 - 2017-12-07 23:55 - 000097144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2017-12-15 20:06 - 2017-12-07 23:37 - 001145104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2017-12-15 20:06 - 2017-12-07 23:36 - 000769096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2017-12-15 20:06 - 2017-12-07 23:12 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscript.ocx
2017-12-15 20:06 - 2017-12-07 23:10 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll
2017-12-15 20:06 - 2017-12-07 23:10 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-12-15 20:06 - 2017-12-07 23:09 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\batmeter.dll
2017-12-15 20:06 - 2017-12-07 23:09 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll
2017-12-15 20:06 - 2017-12-07 23:09 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscript.exe
2017-12-15 20:06 - 2017-12-07 23:09 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
2017-12-15 20:06 - 2017-12-07 23:08 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2017-12-15 20:06 - 2017-12-07 23:08 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-12-15 20:06 - 2017-12-07 23:07 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll
2017-12-15 20:06 - 2017-12-07 23:07 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-12-15 20:06 - 2017-12-07 23:07 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2017-12-15 20:06 - 2017-12-07 23:06 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2017-12-15 20:06 - 2017-12-07 23:06 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscript.exe
2017-12-15 20:06 - 2017-12-07 23:05 - 001670656 _____ (Microsoft Corporation) C:\WINDOWS\system32\batmeter.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
2017-12-15 20:06 - 2017-12-07 23:05 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 001230848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 000841728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-12-15 20:06 - 2017-12-07 23:03 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\hascsp.dll
2017-12-15 20:06 - 2017-12-07 23:02 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2017-12-15 20:06 - 2017-12-07 23:01 - 001980928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2017-12-15 20:06 - 2017-12-07 23:01 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2017-12-15 20:06 - 2017-12-07 22:56 - 002666496 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2017-12-15 20:06 - 2017-11-26 14:29 - 000891800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2017-12-15 20:06 - 2017-11-26 14:26 - 000048112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2017-12-15 20:06 - 2017-11-26 13:57 - 001664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2017-12-15 20:06 - 2017-11-26 13:55 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2017-12-15 20:06 - 2017-11-26 13:54 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2017-12-15 20:06 - 2017-11-26 13:36 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2017-12-15 20:06 - 2017-11-26 13:36 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
2017-12-15 20:06 - 2017-11-26 13:35 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2017-12-15 20:06 - 2017-11-26 13:31 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2017-12-15 20:06 - 2017-11-26 13:26 - 000770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2017-12-15 20:06 - 2017-11-26 13:25 - 001425408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-12-15 20:06 - 2017-11-26 13:25 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2017-12-15 20:06 - 2017-11-26 13:19 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadjcsp.dll
2017-12-15 20:06 - 2017-11-26 12:58 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2017-12-15 20:06 - 2017-11-26 12:48 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll
2017-12-15 20:06 - 2017-11-26 12:01 - 000791960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-12-15 20:06 - 2017-11-26 11:41 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2017-12-15 20:06 - 2017-11-26 11:40 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2017-12-15 20:06 - 2017-11-26 11:38 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2017-12-15 20:06 - 2017-11-26 11:37 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2017-12-15 20:06 - 2017-11-26 11:36 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2017-12-15 20:06 - 2017-11-26 11:24 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll
2017-12-14 22:18 - 2017-12-12 17:00 - 002721085 _____ C:\Users\StriX\Desktop\Data.lol
2017-12-14 19:25 - 2017-12-24 21:14 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2017-12-14 19:25 - 2017-09-14 00:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2017-12-14 19:25 - 2017-09-14 00:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2017-12-14 19:25 - 2017-09-14 00:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll
2017-12-14 19:25 - 2017-09-14 00:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe
2017-12-09 18:39 - 2017-12-09 18:39 - 000000000 ____D C:\Users\StriX\Documents\Telltale Games
2017-12-09 18:37 - 2017-12-09 18:37 - 000000000 ____D C:\Users\StriX\AppData\Roaming\The Walking Dead
2017-12-09 18:37 - 2017-12-09 18:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics

Pokračování v následující zprávě.

Volny256
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 15 úno 2017 17:11

Re: Zavirované PC

#12 Příspěvek od Volny256 »

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-01-07 00:27 - 2017-11-18 12:43 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-01-06 23:23 - 2017-11-18 12:56 - 000004164 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{53B9E737-32D2-413F-8FE2-CA50A461929B}
2018-01-06 21:24 - 2017-11-18 21:33 - 001010742 _____ C:\WINDOWS\system32\perfh005.dat
2018-01-06 21:24 - 2017-11-18 21:33 - 000230540 _____ C:\WINDOWS\system32\perfc005.dat
2018-01-06 21:24 - 2017-11-18 12:57 - 002465566 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-01-06 21:23 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
2018-01-06 21:18 - 2017-11-18 12:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-01-06 21:18 - 2017-11-18 12:47 - 000000000 ____D C:\Users\StriX
2018-01-06 21:18 - 2017-08-25 20:47 - 000000000 ____D C:\Steam
2018-01-06 21:17 - 2017-09-29 09:45 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2018-01-06 21:16 - 2015-10-30 08:24 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2018-01-06 20:16 - 2017-08-26 09:08 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2018-01-06 18:30 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Acronis Movie Converter
2018-01-06 18:10 - 2017-11-25 22:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2018-01-06 18:01 - 2017-09-29 14:44 - 000000000 ____D C:\WINDOWS\INF
2018-01-06 17:41 - 2017-10-15 11:01 - 000000000 ___RD C:\Users\StriX\3D Objects
2018-01-06 17:41 - 2017-08-25 19:04 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-01-06 17:40 - 2017-11-18 12:43 - 000396568 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ___SD C:\WINDOWS\system32\F12
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\TextInput
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\migwiz
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Provisioning
2018-01-06 17:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2018-01-06 17:39 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Dism
2018-01-06 16:54 - 2017-09-23 09:42 - 000000000 ____D C:\Users\StriX\AppData\Roaming\obs-studio
2018-01-06 16:52 - 2017-08-25 22:47 - 000000626 _____ C:\Users\StriX\AppData\Roaming\All CPU MeterV3_Settings.ini
2018-01-06 16:49 - 2017-09-29 14:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-01-06 16:46 - 2017-09-29 14:41 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2018-01-06 16:46 - 2017-09-29 14:41 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2018-01-06 16:46 - 2017-09-29 14:41 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2018-01-06 16:37 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-01-06 14:38 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-01-06 14:37 - 2017-08-29 07:23 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2018-01-06 14:37 - 2017-08-25 20:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2018-01-05 22:17 - 2017-11-17 18:28 - 000000000 ____D C:\Users\StriX\Documents\Euro Truck Simulator 2
2018-01-05 21:43 - 2017-11-18 12:47 - 000000000 ____D C:\Users\StriX\AppData\Local\Packages
2018-01-05 21:43 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps
2018-01-05 21:43 - 2017-08-25 22:08 - 000000000 ____D C:\MSI
2018-01-05 21:43 - 2017-08-25 21:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2018-01-05 21:43 - 2017-08-25 21:38 - 000000000 ____D C:\Program Files (x86)\MSI
2018-01-05 20:33 - 2017-08-25 20:31 - 000000000 ____D C:\Users\StriX\AppData\LocalLow\Mozilla
2018-01-05 20:01 - 2017-08-25 20:30 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2018-01-05 20:01 - 2017-08-25 20:30 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-01-05 18:16 - 2017-10-13 19:44 - 000002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-01-05 18:16 - 2017-10-13 19:44 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-01-01 16:40 - 2017-08-26 18:55 - 000000000 ____D C:\Users\StriX\AppData\Roaming\TS3Client
2018-01-01 15:27 - 2017-10-07 23:27 - 000000000 ____D C:\Program Files (x86)\Overwolf
2017-12-29 12:46 - 2017-08-29 21:59 - 000000000 ____D C:\Users\StriX\AppData\Local\Futuremark
2017-12-29 12:44 - 2017-08-29 21:58 - 000000000 ____D C:\Program Files (x86)\Futuremark
2017-12-29 08:24 - 2017-08-25 20:21 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-12-28 22:05 - 2017-08-25 20:18 - 000000000 ____D C:\ProgramData\Package Cache
2017-12-25 19:26 - 2017-08-25 19:04 - 000000000 ____D C:\Users\StriX\AppData\Local\VirtualStore
2017-12-25 15:29 - 2017-08-25 20:48 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2017-12-25 13:55 - 2017-11-25 22:31 - 000000000 ____D C:\Users\StriX\AppData\Roaming\uTorrent
2017-12-24 20:43 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Help
2017-12-24 09:18 - 2017-10-14 18:38 - 000000000 ____D C:\Users\StriX\AppData\Local\ElevatedDiagnostics
2017-12-24 05:34 - 2017-08-25 21:56 - 000000000 __SHD C:\Users\StriX\IntelGraphicsProfiles
2017-12-22 15:38 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\rescache
2017-12-16 17:06 - 2017-09-29 15:43 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\ShellExperiences
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Windows Defender
2017-12-16 17:06 - 2017-09-29 14:46 - 000000000 ____D C:\PerfLogs
2017-12-16 08:20 - 2017-08-29 09:56 - 000000000 ____D C:\Fraps
2017-12-15 20:15 - 2017-08-26 22:14 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-12-15 20:14 - 2017-10-13 16:56 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2017-12-15 20:14 - 2017-08-26 22:14 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-12-15 20:09 - 2017-09-29 14:42 - 001587200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2017-12-15 20:09 - 2017-09-29 14:41 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2017-12-15 20:09 - 2017-09-29 14:41 - 000139672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2017-12-15 20:09 - 2017-09-29 14:41 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2017-12-14 19:26 - 2017-09-30 09:12 - 000000000 ____D C:\Program Files\Intel

==================== Files in the root of some directories =======

2017-08-25 22:47 - 2018-01-06 16:52 - 000000626 _____ () C:\Users\StriX\AppData\Roaming\All CPU MeterV3_Settings.ini
2017-08-25 16:07 - 2017-08-29 08:35 - 000000092 _____ () C:\Users\StriX\AppData\Roaming\Control System_Settings.ini
2017-12-25 10:43 - 2017-12-25 10:43 - 000000119 _____ () C:\Users\StriX\AppData\Roaming\System Monitor II_UptimeRecord.ini
2017-12-25 13:44 - 2017-12-27 18:27 - 000728064 _____ () C:\Users\StriX\AppData\Local\file__0.localstorage
2018-01-05 21:10 - 2018-01-05 21:10 - 000140800 _____ () C:\Users\StriX\AppData\Local\installer.dat
2017-08-25 19:44 - 2017-08-25 19:44 - 000000017 _____ () C:\Users\StriX\AppData\Local\resmon.resmoncfg

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-01-05 21:48

==================== End of FRST.txt ============================














Addition:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02.01.2018
Ran by StriX (07-01-2018 00:29:58)
Running from C:\Users\StriX\Desktop
Windows 10 Education Version 1709 16299.192 (X64) (2017-11-18 12:13:47)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-752624193-2435152514-875314472-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-752624193-2435152514-875314472-503 - Limited - Disabled)
Guest (S-1-5-21-752624193-2435152514-875314472-501 - Limited - Disabled)
StriX (S-1-5-21-752624193-2435152514-875314472-1001 - Administrator - Enabled) => C:\Users\StriX
WDAGUtilityAccount (S-1-5-21-752624193-2435152514-875314472-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\uTorrent) (Version: 3.5.0.44294 - BitTorrent Inc.)
3DMark 11 (HKLM\...\{FD67BFA0-E205-47AA-BA09-123B3B72DB5E}) (Version: 1.0.132.0 - Futuremark) Hidden
3DMark 11 (HKLM-x32\...\{f9e83b9c-ab7e-4005-8f32-4ea69703a5e4}) (Version: 1.0.132.0 - Futuremark)
8GadgetPack (HKLM-x32\...\{A8F686C4-1A28-466C-914E-D2FE0B0220A2}) (Version: 23.0.0 - 8GadgetPack.net)
Aktualizace NVIDIA 31.0.1.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 31.0.1.0 - NVIDIA Corporation) Hidden
Bloody6 (HKLM-x32\...\Bloody3) (Version: 17.09.0001 - Bloody)
CL-Eye Driver (HKLM-x32\...\CL-Eye Driver) (Version: 5.3.0.0341 - Code Laboratories, Inc.)
Connect (HKLM-x32\...\MAGIX_connector_is1) (Version: 2.6.1.117 - MAGIX Software GmbH)
CPUID CPU-Z MSI 1.80 (HKLM\...\CPUID CPU-Z MSI_is1) (Version: 1.80 - CPUID, Inc.)
CPUID HWMonitor 1.33 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.33 - )
Discord (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\Discord) (Version: 0.0.298 - Discord Inc.)
Dragon Eye(x64) (HKLM\...\{B746827A-3219-4EF8-8053-CEA5AEC12D33}) (Version: 0.0.2.6 - MSI) Hidden
Dragon Eye(x64) (HKLM-x32\...\Installshield_{B746827A-3219-4EF8-8053-CEA5AEC12D33}) (Version: 0.0.2.6 - MICRO-STAR INT'L,.LTD.)
Euro Truck Simulator 2 1.28.1.3s (HKLM-x32\...\Euro Truck Simulator 2 1.28.1.3s) (Version: 1.28.1.3s - SCS Software)
Euro Truck Simulator 2 Multiplayer 0.1.0.4.2.2 Alpha (HKLM-x32\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.1.0.4.2.2 Alpha - ETS2MP Team)
Farming Simulator 17 (HKLM\...\ZmFybWluZ3NpbXVsYXRvcjE3_is1) (Version: 1 - )
Fraps (HKLM-x32\...\Fraps) (Version: - )
Futuremark SystemInfo (HKLM-x32\...\{71BFECB2-2CFD-4E6A-A8AF-4EE600A816B7}) (Version: 5.3.629.0 - Futuremark)
Geeks3D FurMark 1.19.1.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Grand Theft Auto V Update (HKLM-x32\...\R3JhbmRUaGVmdEF1dG9W_is1) (Version: 1 - )
Cheat Engine 6.7 (HKLM-x32\...\Cheat Engine 6.7_is1) (Version: - Cheat Engine)
Intel(R) Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
Intel(R) Network Connections 22.4.16.0 (HKLM\...\PROSetDX) (Version: 22.4.16.0 - Intel)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 22.20.16.4836 - Intel Corporation)
Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
League of Legends (HKLM-x32\...\{6FEDADF5-40EC-4E18-A376-0FDBACE65338}) (Version: 4.2.1 - Riot Games) Hidden
League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games)
Malwarebytes verze 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Professional 2007 (HKLM-x32\...\PROR) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 57.0.4 (x64 en-US) (HKLM\...\Mozilla Firefox 57.0.4 (x64 en-US)) (Version: 57.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.2 - Mozilla)
MSI Afterburner 4.4.2 (HKLM-x32\...\Afterburner) (Version: 4.4.2 - MSI Co., LTD)
MSI DPC Latency Tuner (HKLM-x32\...\{1AAC56F3-3F60-47DB-BE6B-088F36ADFDC5}_is1) (Version: 1.0.0.18 - MSI)
MSI DragonEye (HKLM\...\{7116875E-F251-4C33-AB3F-37DE05B15595}_is1) (Version: 0.0.2.6 - MSI)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 6.2.0.45 - MSI)
MSI Kombustor 3.5.0 (HKLM\...\{9598DA62-2AE8-426D-9C86-BEA96AC6721E}_is1) (Version: - MSI Co., LTD)
MSI Mystic Light (HKLM-x32\...\{B798CF0A-F060-4054-9095-52B067C723C6}}_is1) (Version: 1.0.0.43 - MSI)
MSI Smart Tool (HKLM-x32\...\{DDCCA038-DAB1-4D09-B85C-848020AA75D6}}_is1) (Version: 1.0.0.22 - MSI)
MSI X Boost (HKLM-x32\...\{515143BB-7A11-4D85-B941-D520AAAA099C}_is1) (Version: 1.0.0.29 - MSI)
Need for Speed Underground 2 (HKLM-x32\...\Need for Speed Underground 2) (Version: - )
NVIDIA GeForce Experience 3.11.0.73 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.11.0.73 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 388.71 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.71 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 20.0.1 - OBS Project)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.109.1.40 - Overwolf Ltd.)
Ovládací panel NVIDIA 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 388.71 - NVIDIA Corporation) Hidden
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8228 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 7.0.2 (HKLM-x32\...\RTSS) (Version: 7.0.2 - Unwinder)
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.103 - Skype Technologies S.A.)
spacedesk Windows DRIVER (HKLM\...\{EDE0F978-EA2B-47E3-8B51-034565CFFE4E}) (Version: 0.9.967.0 - datronicsoft Inc.)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\TeamSpeak 3 Client) (Version: 3.1.6 - TeamSpeak Systems GmbH)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
The Walking Dead (HKLM-x32\...\The Walking Dead_R.G. Mechanics_is1) (Version: - R.G. Mechanics, Panky)
Unigine Valley Benchmark version 1.0 (HKLM-x32\...\Unigine Valley Benchmark_is1) (Version: 1.0 - Unigine Corp.)
uRage Illuminated Driver (HKLM-x32\...\{F1A273BD-6A9E-41D8-A111-5E56ACD286F8}) (Version: 1.0 - Hama)
Vegas Pro 13.0 (64-bit) (HKLM-x32\...\Vegas Pro 13.0 (64-bit)) (Version: 13.0 (64-bit) - Exµs ™)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - Intel Corporation Inc.)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
World of Tanks (HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net)
XSplit Gamecaster (HKLM-x32\...\{D9CD16D5-FEF4-46A8-8885-3281DF55BC06}) (Version: 2.8.1607.2031 - SplitmediaLabs)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{083f5ae0-2b0a-11dd-bd0b-0800200c9a66}\InprocServer32 -> C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler)
CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler)
CustomCLSID: HKU\S-1-5-21-752624193-2435152514-875314472-1001_Classes\CLSID\{5b55a44a-d008-49aa-9234-86fb7709bc0a}\InprocServer32 -> C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation)
ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\ShellExt.dll [2017-09-29] (Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers2: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\ShellExt.dll [2017-09-29] (Microsoft Corporation)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\ShellExt.dll [2017-09-29] (Microsoft Corporation)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2e329e8610bbb375\igfxDTCM.dll [2017-12-07] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-12-15] (NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0E3B537D-FCE8-4F61-8A87-BE95D3093826} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe [2017-09-05] (Micro-Star INT'L CO., LTD.)
Task: {249BC094-2D4A-4DEA-BF25-7626E831F17A} - System32\Tasks\Connect => C:\Program Files (x86)\MAGIX\Connect\connect.exe [2017-08-02] (MAGIX Software GmbH)
Task: {47FF550D-9ED7-4F78-84A9-DCED14715AD5} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-11-16] (NVIDIA Corporation)
Task: {48015266-B4CD-451F-AAE4-CF60C938D91A} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2017-12-15] ()
Task: {65EE7EB0-DA3C-419E-AFD3-231DE2CB0D08} - System32\Tasks\Microsoft\Windows\Display\Brightness\BrightnessReset
Task: {70899047-A99E-411C-B069-2F3753F9513B} - \plaAVjRQXWCDePSecyr -> No File <==== ATTENTION
Task: {7B156327-EE6C-4826-A141-3ABDDD19656F} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-16] (NVIDIA Corporation)
Task: {84CC1A8F-6CBD-470A-A440-AB90772038C1} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe [2017-09-05] (Micro-Star INT'L CO., LTD.)
Task: {8CBE83E3-1364-41CA-9B57-EE8CCA97774B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-16] (NVIDIA Corporation)
Task: {94EC2BE9-C5E3-4F2F-9399-3CAD0DB79D1E} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe [2017-11-01] (Micro-Star INT'L CO., LTD.)
Task: {9B729C82-1305-4566-BBFD-D0C0F736ADA5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-09] (Microsoft Corporation)
Task: {A23E13AF-78AF-4CC6-8C83-CD7722125031} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2017-12-26] (Overwolf LTD)
Task: {A5C91D63-430C-49C5-95C2-0ECCE790DD00} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-09] (Microsoft Corporation)
Task: {AF675FE9-FEAD-4B16-B83F-9845664A8203} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-11-16] (NVIDIA Corporation)
Task: {B1C49DFF-5F32-4A4D-805D-68EC87CA62D4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-09] (Microsoft Corporation)
Task: {B2D6ACEF-2436-431C-A8DD-1A1F889D6F35} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-16] (NVIDIA Corporation)
Task: {B6018361-E0EE-4551-98EF-60A1BFD9C12D} - \saKXaLnxQURzlMgex -> No File <==== ATTENTION
Task: {B893AEDA-B9D2-4FCA-A9B9-F42F4C2DC38E} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-16] (NVIDIA Corporation)
Task: {C341E6C7-D80B-4B43-A782-BCCC5BAFDECE} - \plaAVjRQXWCDePSecyr2 -> No File <==== ATTENTION
Task: {CF8A9767-AE8F-49AB-B7DE-43FD7F51136D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-09] (Microsoft Corporation)
Task: {DAE39F0F-5CDD-4DDE-94C7-0982EF86BF4F} - System32\Tasks\MSISW_Host => C:\WINDOWS\SysWOW64\muachost.exe [2015-08-18] (MSI)
Task: {E0FE9B0D-B694-4D6A-90DA-560034E1DF08} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-11-16] (NVIDIA Corporation)
Task: {E9BE8421-9086-4AAD-B581-EFC33952150D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-11-16] (NVIDIA Corporation)
Task: {F123CB62-4440-439B-8D10-5718AD1FDB11} - \saKXaLnxQURzlMgex2 -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Connect.job => C:\Program Files (x86)\MAGIX\Connect\connect.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2017-09-29 14:41 - 2017-09-29 14:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-08-25 23:03 - 2017-08-25 23:03 - 000066872 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2017-08-25 23:03 - 2017-08-25 23:03 - 000107832 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2017-11-24 10:23 - 2017-11-24 10:23 - 000787504 _____ () C:\WINDOWS\System32\spacedeskService.exe
2017-11-24 10:23 - 2017-11-24 10:23 - 000358448 _____ () C:\WINDOWS\System32\spacedeskServiceTray.exe
2017-12-14 18:51 - 2017-12-14 18:51 - 000438376 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll
2017-12-27 18:05 - 2016-06-14 16:35 - 000187392 _____ () C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\D3D11FontDraw.dll
2017-12-15 10:04 - 2017-12-15 10:04 - 000725288 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
2017-12-15 20:07 - 2017-11-26 13:23 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-12-15 20:07 - 2017-11-26 13:01 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-09-15 16:42 - 2017-09-01 16:53 - 017627648 _____ () C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
2017-08-25 22:25 - 2013-06-06 19:16 - 000012520 _____ () C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\CoreTempReader.dll
2017-08-25 22:25 - 2013-06-06 19:16 - 000015080 _____ () C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\GetCoreTempInfoNET.dll
2017-08-25 22:25 - 2013-06-06 19:16 - 000014056 _____ () C:\Users\StriX\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\SystemInfo.dll
2017-08-25 20:28 - 2013-01-17 09:18 - 000491520 _____ () C:\Program Files (x86)\uRage Illuminated Driver\Monitor.exe
2017-12-14 18:51 - 2017-12-14 18:51 - 000252008 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe
2017-12-14 18:51 - 2017-12-14 18:51 - 000035432 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe
2017-12-14 18:51 - 2017-12-14 18:51 - 000061032 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe
2017-12-08 17:17 - 2017-12-08 17:17 - 004698848 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11711.1001.5.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2017-12-14 18:45 - 2017-12-14 18:45 - 000477184 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2017-12-14 18:45 - 2017-12-14 18:45 - 058590720 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2017-10-06 15:19 - 2017-10-06 15:19 - 002523136 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\UnityEngineDelegates.dll
2017-11-10 16:24 - 2017-11-10 16:27 - 000164864 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\VideoPlugin.dll
2017-10-06 15:19 - 2017-10-06 15:19 - 000675328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\IPPNativePlugin.dll
2017-12-14 18:45 - 2017-12-14 18:45 - 003727360 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\MediaEngineCSWrapper.dll
2017-12-14 18:45 - 2017-12-14 18:45 - 002270720 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\TrackingDLLUWP.dll
2017-12-14 18:45 - 2017-12-14 18:45 - 016395264 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll
2017-12-14 18:45 - 2017-12-14 18:45 - 003579904 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\MediaEngine.dll
2017-12-14 18:45 - 2017-12-14 18:45 - 003204096 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\AppCore.Windows.dll
2017-09-30 10:07 - 2017-09-30 10:08 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2017-12-14 18:45 - 2017-12-14 18:45 - 000043520 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.Edit.Services.dll
2017-12-14 18:45 - 2017-12-14 18:45 - 004038144 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\Microsoft.People.PeoplePicker.dll
2017-12-14 18:45 - 2017-12-14 18:45 - 001367040 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll
2017-12-14 18:45 - 2017-12-14 18:45 - 000214528 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\SKU.dll
2017-12-22 15:21 - 2017-12-22 15:22 - 026507776 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17112.13411.0_x64__8wekyb3d8bbwe\Video.UI.exe
2017-12-22 15:21 - 2017-12-22 15:22 - 008370176 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17112.13411.0_x64__8wekyb3d8bbwe\EntCommon.dll
2017-09-30 10:05 - 2017-09-30 10:07 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17112.13411.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2017-12-14 18:51 - 2017-12-14 18:51 - 000407144 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll
2017-12-24 20:44 - 2017-11-16 02:41 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-12-14 18:56 - 2017-12-14 18:56 - 000071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll
2017-12-14 18:56 - 2017-12-14 18:56 - 000056832 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll
2017-12-14 18:56 - 2017-12-14 18:56 - 000232448 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll
2017-12-14 18:56 - 2017-12-14 18:56 - 000357888 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll
2017-12-14 18:57 - 2017-12-14 18:57 - 000566784 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll
2017-12-27 18:05 - 2016-06-14 16:35 - 000163328 _____ () C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\D3D11FontDraw.dll
2017-08-25 20:51 - 2017-11-29 06:09 - 000781088 _____ () C:\Steam\SDL2.dll
2017-08-25 20:51 - 2017-12-15 20:59 - 002558752 _____ () C:\Steam\video.dll
2017-08-25 20:51 - 2016-09-01 02:02 - 004969248 _____ () C:\Steam\v8.dll
2017-12-14 18:36 - 2017-11-04 02:54 - 000695584 _____ () C:\Steam\libavformat-57.dll
2017-12-14 18:36 - 2017-11-04 02:54 - 000351520 _____ () C:\Steam\libavresample-3.dll
2017-12-14 18:36 - 2017-11-04 02:54 - 000783648 _____ () C:\Steam\libswscale-4.dll
2017-12-14 18:36 - 2017-11-04 02:54 - 000847136 _____ () C:\Steam\libavutil-55.dll
2017-12-14 18:36 - 2017-11-04 02:54 - 005137696 _____ () C:\Steam\libavcodec-57.dll
2017-08-25 20:51 - 2016-09-01 02:02 - 001195296 _____ () C:\Steam\icuuc.dll
2017-08-25 20:50 - 2016-09-01 02:02 - 001563936 _____ () C:\Steam\icui18n.dll
2017-08-25 20:51 - 2017-12-15 20:59 - 000904992 _____ () C:\Steam\bin\chromehtml.DLL
2017-08-25 20:50 - 2016-07-04 23:17 - 000266560 _____ () C:\Steam\openvr_api.dll
2017-08-25 20:52 - 2017-09-07 03:04 - 000678400 _____ () C:\Steam\bin\cef\cef.win7\SDL2.dll
2017-08-25 20:52 - 2017-10-31 05:44 - 071471904 _____ () C:\Steam\bin\cef\cef.win7\libcef.dll
2017-09-15 16:43 - 2013-10-11 09:43 - 000085504 _____ () C:\Program Files (x86)\Bloody6\Bloody6\DLL\DLL_ZoomControl.dll
2017-09-15 16:42 - 2017-04-17 10:43 - 003852800 _____ () C:\Program Files (x86)\Bloody6\Bloody6\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
2017-08-25 20:50 - 2015-09-25 00:52 - 000119208 _____ () C:\Steam\winh264.dll
2017-08-25 20:28 - 2013-01-16 15:40 - 000057344 _____ () C:\Program Files (x86)\uRage Illuminated Driver\lan.dll
2017-08-25 20:28 - 2012-04-19 16:15 - 000061440 _____ () C:\Program Files (x86)\uRage Illuminated Driver\hiddriver.dll
2017-12-14 18:46 - 2017-12-14 18:46 - 000055808 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTFC.dll
2017-12-14 18:46 - 2017-12-14 18:46 - 000071680 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTMUI.dll
2017-12-14 18:46 - 2017-12-14 18:46 - 000353792 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTUI.dll
2017-12-24 20:44 - 2017-11-16 02:40 - 066906560 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\32303133.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\32303133.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\localhost -> localhost

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-10-30 08:24 - 2018-01-05 22:01 - 000013968 _____ C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 cpm.paneladmin.pro
127.0.0.1 publisher.hmdiadmingate.xyz
127.0.0.1 hmdicrewtracksystem.xyz
127.0.0.1 mydownloaddomain.com
127.0.0.1 linkmate.space
127.0.0.1 space1.adminpressure.space
127.0.0.1 trackpressure.website
127.0.0.1 doctorlink.space
127.0.0.1 plugpackdownload.net
127.0.0.1 texttotalk.org
127.0.0.1 gambling577.xyz
127.0.0.1 htagdownload.space
127.0.0.1 mybcnmonetize.com
127.0.0.1 360devtraking.website
127.0.0.1 dscdn.pw
127.0.0.1 bcnmonetize.go2affise.com
127.0.0.1 beautifllink.xyz
127.0.0.1 gf.tools.avast.com
127.0.0.1 pair.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 id.avast.com
127.0.0.1 v4618535.iavs9x.u.avast.com
127.0.0.1 v4618535.ivps9x.u.avast.com
127.0.0.1 v4618535.ivps9tiny.u.avast.com
127.0.0.1 v4618535.vpsnitro.u.avast.com
127.0.0.1 v4618535.vpsnitrotiny.u.avast.com
127.0.0.1 v4618535.iavs5x.u.avast.com
127.0.0.1 v7.stats.avast.com

There are 349 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-752624193-2435152514-875314472-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\StriX\Desktop\jqeXI7P.jpg
DNS Servers: 10.0.0.1 - 10.0.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-752624193-2435152514-875314472-1001\...\StartupApproved\Run: => "Skype"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{B5CED2A9-AB84-4A02-A389-9AADB1383D9D}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{8FEEE759-76FB-4A57-9B67-AC5BE7A39E5E}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [UDP Query User{16BC1A44-E275-4214-9B06-4DFAA680D7F5}C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [TCP Query User{46E4801A-2AAC-4EC5-B2CC-91795DB4D826}C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [{15E722DC-63BC-4B9C-B6D7-EE13D76EB06E}] => (Allow) C:\Steam\steamapps\common\KillingFloor\System\KillingFloor.exe
FirewallRules: [{D390BC49-C61C-43E6-B89C-A16D27074339}] => (Allow) C:\Steam\steamapps\common\KillingFloor\System\KillingFloor.exe
FirewallRules: [{AF796CB6-5475-49A1-955F-E21C7A705C68}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe
FirewallRules: [{3DCF69AD-0A61-484D-90EC-1752276BB96C}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe
FirewallRules: [{42230642-DA2B-4C42-81F0-90C5F29034BE}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe
FirewallRules: [{1D6AACB1-5411-41BC-A677-B4F31033DE45}] => (Allow) C:\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe
FirewallRules: [{7B8AD109-5990-4B38-A9D8-D5C9E54B70F4}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{DF10A026-18A6-448B-BF96-8EDF89356F16}C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe
FirewallRules: [TCP Query User{9C0A08D2-C370-4579-A0E0-99D1EECE962E}C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) C:\steam\steamapps\common\outlast\binaries\win64\olgame.exe
FirewallRules: [{8E228CBD-13A9-4106-80CE-4CA57EC5591A}] => (Allow) C:\Steam\steamapps\common\Outlast\OutlastLauncher.exe
FirewallRules: [{582DF297-E892-49D8-B2C9-28795C33DF85}] => (Allow) C:\Steam\steamapps\common\Outlast\OutlastLauncher.exe
FirewallRules: [{16DE9BC0-D2F7-4CF9-A4AA-A7E062422DA0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{D03BDDE3-32E0-4A7D-BA05-E61A7E38AEAF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{64F0F13D-2984-4107-A8FC-8FE7C4BD3441}] => (Allow) C:\Steam\Steam.exe
FirewallRules: [{DB70426E-46D3-4BBF-A11C-53F805EE1100}] => (Allow) C:\Steam\Steam.exe
FirewallRules: [{79E6CBEE-EDB1-49AD-A327-F240347D9307}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{EE4BEB9C-8156-447C-83DB-7F5487E69BEA}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{3616B2F3-BEA1-4A6D-BBB2-09A642044098}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{AC3802F9-9CA1-429A-8CC4-F7C820D78C68}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{3727CB57-EA60-40BD-812B-EEA98948CF2F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{888A13AA-697A-4B61-8F58-C5424A032882}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [TCP Query User{E30EE867-A39E-47B2-89E8-BC9A73E84D5F}C:\users\rsv\binaries\r6vegas2_game.exe] => (Allow) C:\users\rsv\binaries\r6vegas2_game.exe
FirewallRules: [UDP Query User{D8317458-4F0F-430B-B9A6-DFE80E43475E}C:\users\rsv\binaries\r6vegas2_game.exe] => (Allow) C:\users\rsv\binaries\r6vegas2_game.exe
FirewallRules: [{1121B40D-E729-4FE3-91AD-D25010622E8D}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{4311BC91-D89B-42C1-B6D6-F034A7A071AF}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{5299C3F6-2018-499A-BED8-6E2301350BCB}C:\program files (x86)\msi\gaming app\gamingapp.exe] => (Allow) C:\program files (x86)\msi\gaming app\gamingapp.exe
FirewallRules: [UDP Query User{60A1E4BB-F7B4-445B-8B30-954F33BAA051}C:\program files (x86)\msi\gaming app\gamingapp.exe] => (Allow) C:\program files (x86)\msi\gaming app\gamingapp.exe
FirewallRules: [TCP Query User{A3A3D80A-7359-49BF-B429-FE679202DC46}D:\gta 5\grand theft auto v\gta5.exe] => (Allow) D:\gta 5\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{D45AB461-D868-48AE-82D6-33607CC845C2}D:\gta 5\grand theft auto v\gta5.exe] => (Allow) D:\gta 5\grand theft auto v\gta5.exe
FirewallRules: [TCP Query User{E1F3303F-FD81-4DEA-8585-E9F9A4776694}D:\lost\lost planet 2\lp2dx11.exe] => (Allow) D:\lost\lost planet 2\lp2dx11.exe
FirewallRules: [UDP Query User{23A38E1F-155A-4BC8-94EA-FC24EB506A7D}D:\lost\lost planet 2\lp2dx11.exe] => (Allow) D:\lost\lost planet 2\lp2dx11.exe
FirewallRules: [TCP Query User{942C157D-73B1-4C16-A042-5A39D7536F12}D:\lost\lost planet 2\lp2dx9.exe] => (Block) D:\lost\lost planet 2\lp2dx9.exe
FirewallRules: [UDP Query User{12AC96F9-BD21-4782-9B42-9131C7C0F232}D:\lost\lost planet 2\lp2dx9.exe] => (Block) D:\lost\lost planet 2\lp2dx9.exe
FirewallRules: [{8986F0A4-523F-436C-9166-CF5AECF5C0BD}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{BC4200C9-B86D-4081-92E4-FCB47AEFF38E}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{282AB8FF-3761-461F-ACD4-5A4A460FBBF5}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{A0E1A8BD-6452-401C-9787-570C2CFDF6AE}] => (Allow) C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
FirewallRules: [{48FC1586-D2D5-4252-9239-88036DF319E9}] => (Allow) C:\Users\StriX\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{1AA078A0-5057-4AB2-976D-57A96A65732C}] => (Allow) C:\Users\StriX\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{D575A999-6C60-48C1-9E27-FD184C6E168D}D:\farming simulator 17\x64\farmingsimulator2017game.exe] => (Allow) D:\farming simulator 17\x64\farmingsimulator2017game.exe
FirewallRules: [UDP Query User{F0D9F956-7597-4980-A84E-30710307EF10}D:\farming simulator 17\x64\farmingsimulator2017game.exe] => (Allow) D:\farming simulator 17\x64\farmingsimulator2017game.exe
FirewallRules: [{643CB4AF-9447-4B39-927C-178763552179}] => (Allow) D:\SteamLibrary\steamapps\common\Warface\WarfaceMycomSteamLoader.exe
FirewallRules: [{31F0C52E-35A2-4B85-9866-A9950620379A}] => (Allow) D:\SteamLibrary\steamapps\common\Warface\WarfaceMycomSteamLoader.exe
FirewallRules: [{9464ACC5-AACA-4DA3-86D5-026DE8BFB75A}] => (Allow) C:\WINDOWS\system32\spacedeskService.exe
FirewallRules: [{CD9F5CFD-86A6-4C53-AF5B-F45C33D2FCE4}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe
FirewallRules: [{8EC78F09-4E3F-4BF3-BFA4-70CCAF1ABD55}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe
FirewallRules: [{A67FF623-9F95-4796-92F6-93BDF2CC6B53}] => (Allow) D:\SteamLibrary\steamapps\common\Portal\hl2.exe
FirewallRules: [{EF0A1623-1EB0-427A-A605-734C6D253541}] => (Allow) D:\SteamLibrary\steamapps\common\Portal\hl2.exe
FirewallRules: [{3F4DAA4D-6C1A-4437-AC5D-98B5DFBD0929}] => (Allow) LPort=26789
FirewallRules: [{C079B6DD-BC9E-4E30-A5D5-AA9752B80CAA}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\3DMarkLauncher.exe
FirewallRules: [{E788BBE4-26F4-4E58-9121-611464F0298F}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\3DMarkLauncher.exe
FirewallRules: [{2C8E722B-5E84-45E3-BB35-7C28650B2CED}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{91BAF994-29A1-4B2A-BAED-63FF88254E2D}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{AB366A8B-54E9-4997-BAD5-B40D15D09B55}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{19F0204E-78CD-41C6-B6A8-4C119D5A67EE}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{464F4789-AB82-4931-846D-F7CDE1A563CD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{875457B9-E8C7-4AE5-B0CA-6986700FFC61}] => (Allow) C:\WINDOWS\system32\rundll32.exe
FirewallRules: [{8A3DF1EE-2DAC-4F4F-8E7C-B2E7E0D5A238}] => (Allow) D:\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{86DC4489-DD4D-4F98-8A29-D71BE273CC7D}] => (Allow) D:\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{3BCE0BE4-B659-495C-AEA1-A0D3C9F6B143}] => (Allow) D:\World_of_Tanks\worldoftanks.exe
FirewallRules: [{813B01F5-8F79-4F19-AD72-B9E4DB1F7328}] => (Allow) D:\World_of_Tanks\worldoftanks.exe
FirewallRules: [{EF0FCEEF-3C87-401E-8CF7-0B2710F6BE9C}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{7C508AA7-663B-4044-AEB5-62A1C6E5C2A1}] => (Allow) C:\Windows\System32\rundll32.exe

==================== Restore Points =========================

05-01-2018 20:45:07 Removed VEGAS Pro 15.0

==================== Faulty Device Manager Devices =============

Name: Řadič jednoduché komunikace pro sběrnici PCI
Description: Řadič jednoduché komunikace pro sběrnici PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Standardní klávesnice PS/2
Description: Standardní klávesnice PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Myš Microsoft PS/2
Description: Myš Microsoft PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/06/2018 06:30:22 PM) (Source: Service1) (EventID: 0) (User: )
Description: Failed to process session change. System.ComponentModel.Win32Exception (0x80004005): The specified procedure could not be found
at System.Diagnostics.Process.StartWithShellExecuteEx(ProcessStartInfo startInfo)
at GamingApp_Service.Service1.OnSessionChange(SessionChangeDescription changeDescription)
at System.ServiceProcess.ServiceBase.DeferredSessionChange(Int32 eventType, Int32 sessionId)

Error: (01/06/2018 04:37:47 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: STRIX-PC)
Description: Balíček Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe+App se ukončil, protože jeho pozastavování trvalo moc dlouho.

Error: (01/06/2018 03:05:48 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program GamingHotkey.exe verze 1.0.0.20 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 1c28

Čas spuštění: 01d386f3878f578b

Čas ukončení: 4

Cesta k aplikaci: C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe

ID hlášení: 0db26cfe-4527-4d65-9ae3-6fc1678000fc

Úplný název balíčku s chybou:

ID aplikace související s balíčkem s chybou:

Error: (01/05/2018 09:11:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ic-0.5785d0e841c6c4.exe, verze: 1.0.0.1, časové razítko: 0x5a4fda3b
Název chybujícího modulu: ntdll.dll, verze: 10.0.16299.64, časové razítko: 0xac8afc81
Kód výjimky: 0xc0000028
Posun chyby: 0x00061564
ID chybujícího procesu: 0x2a0c
Čas spuštění chybující aplikace: 0x01d386614d5425de
Cesta k chybující aplikaci: C:\Users\StriX\AppData\Local\Temp\346859312\ic-0.5785d0e841c6c4.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 43bb21c9-d536-42e2-8689-27686a1d774a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/05/2018 09:11:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ic-0.5785d0e841c6c4.exe, verze: 1.0.0.1, časové razítko: 0x5a4fda3b
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc00001a5
Posun chyby: 0x00450e2a
ID chybujícího procesu: 0x2a0c
Čas spuštění chybující aplikace: 0x01d386614d5425de
Cesta k chybující aplikaci: C:\Users\StriX\AppData\Local\Temp\346859312\ic-0.5785d0e841c6c4.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: ee93d449-9419-458b-9994-933d481f53eb
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/05/2018 09:10:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ic-0.5785d0e841c6c4.exe, verze: 1.0.0.1, časové razítko: 0x5a4fda3b
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc00001a5
Posun chyby: 0x00450e2a
ID chybujícího procesu: 0x2a0c
Čas spuštění chybující aplikace: 0x01d386614d5425de
Cesta k chybující aplikaci: C:\Users\StriX\AppData\Local\Temp\346859312\ic-0.5785d0e841c6c4.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: b990f8a5-b0ff-44c6-b6b6-107a665b2a73
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/02/2018 09:26:26 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program GTA5.exe verze 1.0.678.1 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 8c0

Čas spuštění: 01d383a2e1d6808e

Čas ukončení: 4294967295

Cesta k aplikaci: D:\GTA 5\Grand Theft Auto V\GTA5.exe

ID hlášení: c2e53f7a-ad15-4fcd-8fda-16e80fd11f0e

Úplný název balíčku s chybou:

ID aplikace související s balíčkem s chybou:

Error: (01/01/2018 08:50:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: X_Boost.exe, verze: 1.0.0.29, časové razítko: 0x59893312
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.16299.15, časové razítko: 0x2cd1ce3d
Kód výjimky: 0xe0434352
Posun chyby: 0x001008b2
ID chybujícího procesu: 0x984
Čas spuštění chybující aplikace: 0x01d38339b86ed925
Cesta k chybující aplikaci: C:\Program Files (x86)\MSI\MSI X Boost\X_Boost.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: b8fc7b2a-f8ca-4860-a4fc-8de1de04fc60
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (01/01/2018 08:50:06 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: X_Boost.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.NullReferenceException
na X_Boost.SettingWindow..ctor()
na X_Boost.MainWindow..ctor()

Informace o výjimce: System.Reflection.TargetInvocationException
na System.RuntimeTypeHandle.CreateInstance(System.RuntimeType, Boolean, Boolean, Boolean ByRef, System.RuntimeMethodHandleInternal ByRef, Boolean ByRef)
na System.RuntimeType.CreateInstanceSlow(Boolean, Boolean, Boolean, System.Threading.StackCrawlMark ByRef)
na System.RuntimeType.CreateInstanceDefaultCtor(Boolean, Boolean, Boolean, System.Threading.StackCrawlMark ByRef)
na System.Activator.CreateInstance(System.Type, Boolean)
na System.RuntimeType.CreateInstanceImpl(System.Reflection.BindingFlags, System.Reflection.Binder, System.Object[], System.Globalization.CultureInfo, System.Object[], System.Threading.StackCrawlMark ByRef)
na System.Activator.CreateInstance(System.Type, System.Reflection.BindingFlags, System.Reflection.Binder, System.Object[], System.Globalization.CultureInfo, System.Object[])
na System.Activator.CreateInstance(System.Type, System.Object[])
na System.Xaml.Schema.SafeReflectionInvoker.CreateInstanceCritical(System.Type, System.Object[])
na System.Xaml.Schema.SafeReflectionInvoker.CreateInstance(System.Type, System.Object[])
na System.Xaml.Schema.XamlTypeInvoker.CreateInstance(System.Object[])
na MS.Internal.Xaml.Runtime.ClrObjectRuntime.CreateInstanceWithCtor(System.Xaml.XamlType, System.Object[])
na MS.Internal.Xaml.Runtime.ClrObjectRuntime.CreateInstance(System.Xaml.XamlType, System.Object[])
na System.Xaml.XamlObjectWriter.Logic_CreateAndAssignToParentStart(MS.Internal.Xaml.Context.ObjectWriterContext)
na System.Xaml.XamlObjectWriter.WriteStartMember(System.Xaml.XamlMember)
na System.Xaml.XamlWriter.WriteNode(System.Xaml.XamlReader)
na System.Windows.Markup.WpfXamlLoader.TransformNodes(System.Xaml.XamlReader, System.Xaml.XamlObjectWriter, Boolean, Boolean, Boolean, System.Xaml.IXamlLineInfo, System.Xaml.IXamlLineInfoConsumer, MS.Internal.Xaml.Context.XamlContextStack`1<System.Windows.Markup.WpfXamlFrame>, System.Windows.Markup.IStyleConnector)
na System.Windows.Markup.WpfXamlLoader.Load(System.Xaml.XamlReader, System.Xaml.IXamlObjectWriterFactory, Boolean, System.Object, System.Xaml.XamlObjectWriterSettings, System.Uri)
na System.Windows.Markup.WpfXamlLoader.LoadBaml(System.Xaml.XamlReader, Boolean, System.Object, System.Xaml.Permissions.XamlAccessLevel, System.Uri)
na System.Windows.Markup.XamlReader.LoadBaml(System.IO.Stream, System.Windows.Markup.ParserContext, System.Object, Boolean)
na System.Windows.Application.LoadBamlStreamWithSyncInfo(System.IO.Stream, System.Windows.Markup.ParserContext)
na System.Windows.Application.LoadComponent(System.Uri, Boolean)
na System.Windows.Application.DoStartup()
na System.Windows.Application.<.ctor>b__1_0(System.Object)
na System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
na System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
na System.Windows.Threading.DispatcherOperation.InvokeImpl()
na System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Windows.Threading.DispatcherOperation.Invoke()
na System.Windows.Threading.Dispatcher.ProcessQueue()
na System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
na System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
na System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
na System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
na MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
na MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
na System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
na System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
na System.Windows.Application.RunDispatcher(System.Object)
na System.Windows.Application.RunInternal(System.Windows.Window)
na System.Windows.Application.Run(System.Windows.Window)
na X_Boost.App.Main()

Error: (01/01/2018 08:49:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSI_LiveUpdate_Service.exe, verze: 1.0.0.52, časové razítko: 0x59f9a5e7
Název chybujícího modulu: NDA.dll_unloaded, verze: 1.0.0.15, časové razítko: 0x581aa4cc
Kód výjimky: 0xc0000005
Posun chyby: 0x000f650e
ID chybujícího procesu: 0xd1c
Čas spuštění chybující aplikace: 0x01d38339a5945536
Cesta k chybující aplikaci: C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
Cesta k chybujícímu modulu: NDA.dll
ID zprávy: a7bbca12-104e-4f9a-a863-5205b0c7054c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (01/06/2018 07:21:34 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby dps s argumenty Unavailable za účelem spuštění serveru:
{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}

Error: (01/06/2018 07:21:34 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby dps s argumenty Unavailable za účelem spuštění serveru:
{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}

Error: (01/06/2018 07:21:24 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (01/06/2018 07:21:14 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (01/06/2018 07:21:08 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby EventSystem s argumenty Unavailable za účelem spuštění serveru:
{1BE1F766-5536-11D1-B726-00C04FB926AF}

Error: (01/06/2018 07:21:05 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (01/06/2018 07:20:48 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (01/06/2018 07:20:22 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (01/06/2018 07:19:48 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (01/06/2018 07:19:40 PM) (Source: DCOM) (EventID: 10005) (User: STRIX-PC)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby ShellHWDetection s argumenty Unavailable za účelem spuštění serveru:
{DD522ACC-F821-461A-A407-50B198B896DC}


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3-7100 CPU @ 3.90GHz
Percentage of memory in use: 44%
Total physical RAM: 8151.5 MB
Available physical RAM: 4536.99 MB
Total Virtual: 9431.5 MB
Available Virtual: 4753.23 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:203.7 GB) (Free:109.04 GB) NTFS
Drive d: () (Fixed) (Total:725.99 GB) (Free:578.24 GB) NTFS
Drive f: (Místní disk) (Fixed) (Total:0.34 GB) (Free:0.33 GB) NTFS
Drive g: () (Fixed) (Total:296.97 GB) (Free:296.75 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 996BE3D8)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: B7FBDD52)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=297 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=797 MB) - (Type=27)

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118152
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zavirované PC

#13 Příspěvek od Rudy »

Žádal jsem vás o AVP, nebo MBAM. To jste provedl? Přes FRST bych to dočistil až nakonec.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Volny256
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 15 úno 2017 17:11

Re: Zavirované PC

#14 Příspěvek od Volny256 »

Log z MBAM:

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 07.01.18
Čas skenování: 12:00
Logovací soubor: ebe475c0-f399-11e7-a1e7-4ccc6abc8d2d.json
Správce: Ano

-Informace o softwaru-
Verze: 3.3.1.2183
Verze komponentů: 1.0.262
Aktualizovat verzi balíku komponent: 1.0.3642
Licence: Zkušební

-Systémová informace-
OS: Windows 10 (Build 16299.192)
CPU: x64
Systém souborů: NTFS
Uživatel: STRIX-PC\StriX

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Výsledek: Dokončeno
Skenované objekty: 297117
Zjištěné hrozby: 271
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 3 min, 16 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 1
Adware.Tuto4PC, HKU\S-1-5-21-752624193-2435152514-875314472-1001\SOFTWARE\MICROSOFT\EWMON, Žádná uživatelská akce, [365], [411543],1.0.3642

Hodnota v registru: 1
Adware.Tuto4PC, HKU\S-1-5-21-752624193-2435152514-875314472-1001\SOFTWARE\MICROSOFT\EWMON|PARTNER, Žádná uživatelská akce, [365], [411543],1.0.3642

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 127
PUP.Optional.OnlineIO, C:\WINDOWS\INSTALLER\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}, Žádná uživatelská akce, [519], [391425],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\es_419, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\en_US, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\en_GB, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\pt_BR, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\pt_PT, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\zh_CN, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\zh_TW, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\fil, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\be, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\bg, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\bn, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ca, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\cs, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\da, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\de, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\el, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\en, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\es, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\et, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\fa, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\fi, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\fr, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\gu, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\he, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\hr, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\hu, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\id, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\it, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ja, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\kn, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ko, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\lt, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\lv, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\mk, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ml, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\mr, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ms, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\nl, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\no, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\pl, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\pt, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\hi, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ro, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ru, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sk, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sl, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sq, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sr, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sv, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sw, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ta, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\te, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\th, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\tr, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\uk, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\vi, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\am, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ar, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_metadata, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\icons, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\USERS\STRIX\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\NPIELHEGLHJMEMLCBBDAMAOPKADOEFAC, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\es_419, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\en_US, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\en_GB, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\pt_BR, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\pt_PT, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\zh_CN, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\zh_TW, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\fil, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\be, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\bg, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\bn, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ca, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\cs, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\da, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\de, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\el, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\en, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\es, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\et, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\fa, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\fi, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\fr, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\gu, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\he, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\hr, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\hu, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\id, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\it, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ja, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\kn, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ko, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\lt, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\lv, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\mk, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ml, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\mr, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ms, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\nl, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\no, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\pl, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\pt, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\hi, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ro, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ru, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sk, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sl, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sq, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sr, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sv, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sw, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ta, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\te, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\th, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\tr, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\uk, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\vi, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\am, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ar, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_metadata, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\icons, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\USERS\STRIX\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\OACPEGAEGONLMNOBKOEIIEGDCCGCMPNJ, Žádná uživatelská akce, [7065], [443170],1.0.3642

Soubor: 142
PUP.Optional.OnlineIO, C:\WINDOWS\INSTALLER\SOURCEHASH{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}, Žádná uživatelská akce, [519], [391431],1.0.3642
PUP.Optional.OnlineIO, C:\Windows\Installer\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}\online.exe, Žádná uživatelská akce, [519], [391425],1.0.3642
PUP.Optional.OnlineIO, C:\Windows\Installer\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}\SystemFoldermsiexec.exe, Žádná uživatelská akce, [519], [391425],1.0.3642
Adware.NeoBar.ChrPRST, C:\USERS\STRIX\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\NPIELHEGLHJMEMLCBBDAMAOPKADOEFAC\1.1_0\MANIFEST.JSON, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\icons\icon128.png, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\icons\icon16.png, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\icons\icon48.png, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\hi\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\am\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ar\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\be\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\bg\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\bn\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ca\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\cs\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\da\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\de\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\el\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\en\background.js, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\en\Content.js, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\en\foreground.js, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\en\Kernel.js, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\en\main.css, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\en\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\en_GB\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\en_US\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\es\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\es_419\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\et\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\fa\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\fi\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\fil\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\fr\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\gu\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\he\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\hr\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\hu\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\id\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\it\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ja\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\kn\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ko\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\lt\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\lv\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\mk\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ml\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\mr\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ms\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\nl\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\no\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\pl\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\pt\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\pt_BR\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\pt_PT\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ro\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ru\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sk\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sl\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sq\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sr\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sv\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\sw\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\ta\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\te\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\th\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\tr\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\uk\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\vi\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\zh_CN\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_locales\zh_TW\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_metadata\computed_hashes.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\npielheglhjmemlcbbdamaopkadoefac\1.1_0\_metadata\verified_contents.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\USERS\STRIX\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\OACPEGAEGONLMNOBKOEIIEGDCCGCMPNJ\1.11.2_0\MANIFEST.JSON, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\icons\icon128.png, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\icons\icon16.png, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\icons\icon48.png, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\hi\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\am\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ar\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\be\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\bg\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\bn\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ca\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\cs\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\da\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\de\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\el\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\en\background.js, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\en\Content.js, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\en\foreground.js, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\en\Kernel.js, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\en\main.css, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\en\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\en_GB\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\en_US\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\es\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\es_419\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\et\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\fa\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\fi\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\fil\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\fr\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\gu\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\he\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\hr\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\hu\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\id\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\it\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ja\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\kn\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ko\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\lt\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\lv\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\mk\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ml\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\mr\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ms\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\nl\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\no\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\pl\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\pt\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\pt_BR\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\pt_PT\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ro\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ru\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sk\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sl\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sq\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sr\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sv\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\sw\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\ta\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\te\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\th\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\tr\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\uk\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\vi\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\zh_CN\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_locales\zh_TW\messages.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_metadata\computed_hashes.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
Adware.NeoBar.ChrPRST, C:\Users\StriX\AppData\Local\Google\Chrome\User Data\Default\Extensions\oacpegaegonlmnobkoeiiegdccgcmpnj\1.11.2_0\_metadata\verified_contents.json, Žádná uživatelská akce, [7065], [443170],1.0.3642
PUP.Optional.GameHack, C:\PROGRAM FILES (X86)\CHEAT ENGINE 6.7\STANDALONEPHASE1.DAT, Žádná uživatelská akce, [661], [393793],1.0.3642

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118152
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zavirované PC

#15 Příspěvek od Rudy »

Smažte všechny nálezy MBAM, restartujte a dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno