Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalé pc, zamrzání při spuštění

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Malarkyy
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 06 lis 2013 16:13

Pomalé pc, zamrzání při spuštění

#1 Příspěvek od Malarkyy »

Zdravím, prosím o kontrolu logu. Hlavní problém je že pc občas zamrzne při spuštění a načtení na hlavní plochu, musím dát tvrdý restart a většinou se rozjede až na třetí nebo čtvrtý restart. Nestává se to pravidelně spíš jen výmečně ale radši si to nechám zkontrolovat co je za problém díky

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:13-04-2016
Ran by Vitek (administrator) on VITEK-PC (23-02-2019 08:33:00)
Running from C:\Users\Vitek\Desktop\Vitek\Programy\Antiviry-čištění počítače
Loaded Profiles: Vitek (Available Profiles: Vitek)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Crystal Rich Ltd) C:\Program Files (x86)\USB Safely Remove\USBSRService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Crystal Rich Ltd) C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(HP) C:\Windows\System32\HPSIsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [259976 2019-02-22] (AVAST Software)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [259976 2019-02-22] (AVAST Software)
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [357696 2010-04-01] (DT Soft Ltd)
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [USB Safely Remove] => C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe [2468664 2013-03-13] (Crystal Rich Ltd)
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3141920 2019-02-02] (Valve Corporation)
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [19589208 2018-12-10] (Piriform Software Ltd)
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\MountPoints2: {531d63bc-556a-11e6-9ad0-5404a60befb4} - E:\stp-tww2.exe
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\MountPoints2: {a1f90a74-ab77-11e7-b6a9-5404a60befb4} - F:\Setup.exe
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-02-22] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-02-22] (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{6FA27657-C2DE-4BD8-B8F4-0A314F99A498}: [DhcpNameServer] 192.168.0.1 0.0.0.0

Internet Explorer:
==================
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-11] (Microsoft Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-07-28] (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-11] (Microsoft Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-07-28] (Google Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
Toolbar: HKU\S-1-5-21-1179782796-346578947-3724073776-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-05] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-05] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxps://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR Profile: C:\Users\Vitek\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (AdBlock) - C:\Users\Vitek\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-02-17]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Vitek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-04]
CHR Extension: (Chrome Media Router) - C:\Users\Vitek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-01-31]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6758976 2019-02-22] (AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-04-05] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [357304 2019-02-22] (AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-04-05] (AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\71.0.1037.98\elevation_service.exe [390552 2019-01-09] (AVAST Software)
S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [529984 2017-08-25] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [8242752 2017-08-25] (GOG.com)
S3 GoogleChromeElevationService; C:\Program Files (x86)\Google\Chrome\Application\72.0.3626.109\elevation_service.exe [1271280 2019-02-13] (Google Inc.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-12-05] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-12-05] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [463664 2017-12-05] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [460736 2017-12-05] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2298688 2019-02-02] (Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3171144 2019-02-02] (Electronic Arts)
R2 USBSafelyRemoveService; C:\Program Files (x86)\USB Safely Remove\USBSRService.exe [1521464 2013-03-13] (Crystal Rich Ltd)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-02-22] (AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205400 2019-02-22] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [225680 2019-02-22] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [196072 2019-02-22] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblog.sys [320696 2019-02-22] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [57960 2019-02-22] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [249672 2019-02-22] (AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-02-22] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [167304 2019-02-22] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-02-22] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-02-22] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1034432 2019-02-22] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [474456 2019-02-22] (AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [216784 2019-02-22] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [379952 2019-02-22] (AVAST Software)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 mvusbews; C:\Windows\System32\Drivers\mvusbews.sys [19968 2012-11-08] (Marvell Semiconductor, Inc.)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-12-05] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50624 2017-12-05] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2017-12-05] (NVIDIA Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2017-10-07] (Duplex Secure Ltd.)
U3 a8jpolwg; C:\Windows\System32\Drivers\a8jpolwg.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-02-22 21:19 - 2019-02-22 21:46 - 890069455 _____ C:\Users\Vitek\Desktop\Stargate.Atlantis.S03E13.Irresponsible.1080p.BluRay.6CH.x265.CZ.mkv
2019-02-22 10:19 - 2019-02-22 10:19 - 00249672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-02-22 10:18 - 2019-02-22 10:17 - 00362888 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-02-17 21:08 - 2019-02-17 21:14 - 890106697 _____ C:\Users\Vitek\Desktop\Stargate.Atlantis.S03E12.Echoes.1080p.BluRay.6CH.x265.CZ.mkv
2019-02-17 19:48 - 2019-02-17 19:58 - 317868094 _____ C:\Users\Vitek\Desktop\SEAL.Team.S02E13.HDTV.x264-SVA.mkv
2019-02-17 19:48 - 2019-01-30 12:03 - 00057238 _____ C:\Users\Vitek\Desktop\SEAL.Team.S02E13.HDTV.x264-SVA.srt
2019-02-14 16:30 - 2019-01-27 16:23 - 00396888 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-02-14 16:30 - 2019-01-27 15:32 - 00348760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2019-02-14 16:30 - 2019-01-26 02:02 - 25736192 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-02-14 16:30 - 2019-01-26 01:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-02-14 16:30 - 2019-01-26 01:50 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-02-14 16:30 - 2019-01-26 01:38 - 02902528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-02-14 16:30 - 2019-01-26 01:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-02-14 16:30 - 2019-01-26 01:36 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-02-14 16:30 - 2019-01-26 01:36 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-02-14 16:30 - 2019-01-26 01:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-02-14 16:30 - 2019-01-26 01:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-02-14 16:30 - 2019-01-26 01:32 - 05778944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-02-14 16:30 - 2019-01-26 01:29 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-02-14 16:30 - 2019-01-26 01:28 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-02-14 16:30 - 2019-01-26 01:27 - 20279808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-02-14 16:30 - 2019-01-26 01:25 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-02-14 16:30 - 2019-01-26 01:24 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-02-14 16:30 - 2019-01-26 01:24 - 00790016 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-02-14 16:30 - 2019-01-26 01:24 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-02-14 16:30 - 2019-01-26 01:24 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-02-14 16:30 - 2019-01-26 01:18 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2019-02-14 16:30 - 2019-01-26 01:17 - 00969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-02-14 16:30 - 2019-01-26 01:14 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-02-14 16:30 - 2019-01-26 01:07 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-02-14 16:30 - 2019-01-26 01:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-02-14 16:30 - 2019-01-26 01:06 - 00498176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-02-14 16:30 - 2019-01-26 01:06 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-02-14 16:30 - 2019-01-26 01:06 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2019-02-14 16:30 - 2019-01-26 01:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2019-02-14 16:30 - 2019-01-26 01:05 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2019-02-14 16:30 - 2019-01-26 01:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2019-02-14 16:30 - 2019-01-26 01:03 - 02295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-02-14 16:30 - 2019-01-26 01:03 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-02-14 16:30 - 2019-01-26 01:03 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-02-14 16:30 - 2019-01-26 01:01 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-02-14 16:30 - 2019-01-26 01:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2019-02-14 16:30 - 2019-01-26 00:59 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-02-14 16:30 - 2019-01-26 00:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2019-02-14 16:30 - 2019-01-26 00:58 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2019-02-14 16:30 - 2019-01-26 00:57 - 00663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-02-14 16:30 - 2019-01-26 00:56 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-02-14 16:30 - 2019-01-26 00:56 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2019-02-14 16:30 - 2019-01-26 00:50 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-02-14 16:30 - 2019-01-26 00:48 - 00809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-02-14 16:30 - 2019-01-26 00:48 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-02-14 16:30 - 2019-01-26 00:48 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2019-02-14 16:30 - 2019-01-26 00:46 - 15283712 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-02-14 16:30 - 2019-01-26 00:46 - 02135552 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-02-14 16:30 - 2019-01-26 00:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-02-14 16:30 - 2019-01-26 00:44 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2019-02-14 16:30 - 2019-01-26 00:43 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2019-02-14 16:30 - 2019-01-26 00:43 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2019-02-14 16:30 - 2019-01-26 00:40 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2019-02-14 16:30 - 2019-01-26 00:40 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2019-02-14 16:30 - 2019-01-26 00:39 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2019-02-14 16:30 - 2019-01-26 00:37 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2019-02-14 16:30 - 2019-01-26 00:34 - 04858880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-02-14 16:30 - 2019-01-26 00:34 - 04494336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-02-14 16:30 - 2019-01-26 00:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2019-02-14 16:30 - 2019-01-26 00:31 - 00696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2019-02-14 16:30 - 2019-01-26 00:30 - 02060288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2019-02-14 16:30 - 2019-01-26 00:29 - 13680640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-02-14 16:30 - 2019-01-26 00:29 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2019-02-14 16:30 - 2019-01-26 00:22 - 01556480 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-02-14 16:30 - 2019-01-26 00:12 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-02-14 16:30 - 2019-01-26 00:11 - 04386304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-02-14 16:30 - 2019-01-26 00:08 - 01331200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-02-14 16:30 - 2019-01-26 00:06 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2019-02-14 16:30 - 2019-01-15 08:06 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-02-14 16:30 - 2019-01-15 08:06 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-02-14 16:30 - 2019-01-15 08:03 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 01211904 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2019-02-14 16:30 - 2019-01-15 08:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2019-02-14 16:30 - 2019-01-15 08:02 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2019-02-14 16:30 - 2019-01-15 08:02 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-02-14 16:30 - 2019-01-15 08:02 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2019-02-14 16:30 - 2019-01-15 08:02 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2019-02-14 16:30 - 2019-01-15 07:51 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2019-02-14 16:30 - 2019-01-15 07:51 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2019-02-14 16:30 - 2019-01-15 07:38 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2019-02-14 16:30 - 2019-01-15 07:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2019-02-14 16:30 - 2019-01-15 07:32 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-02-14 16:30 - 2019-01-15 07:32 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-02-14 16:30 - 2019-01-15 07:32 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-02-14 16:30 - 2019-01-15 07:31 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2019-02-14 16:30 - 2019-01-15 07:29 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2019-02-14 16:30 - 2019-01-12 04:08 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2019-02-14 16:30 - 2019-01-12 04:08 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2019-02-14 16:30 - 2019-01-12 03:55 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2019-02-14 16:30 - 2019-01-12 03:55 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2019-02-14 16:30 - 2019-01-12 03:36 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-02-14 16:30 - 2019-01-12 03:36 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-02-14 16:30 - 2019-01-12 03:36 - 00313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2019-02-14 16:30 - 2019-01-09 04:10 - 00631680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-02-14 16:30 - 2019-01-09 04:09 - 05552360 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-02-14 16:30 - 2019-01-09 04:09 - 00708328 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-02-14 16:30 - 2019-01-09 04:09 - 00262376 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-02-14 16:30 - 2019-01-09 04:08 - 01664352 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 01162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:58 - 04055784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2019-02-14 16:30 - 2019-01-09 03:58 - 03960552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2019-02-14 16:30 - 2019-01-09 03:57 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2019-02-14 16:30 - 2019-01-09 03:45 - 00033408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2019-02-14 16:30 - 2019-01-09 03:45 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2019-02-14 16:30 - 2019-01-09 03:41 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2019-02-14 16:30 - 2019-01-09 03:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-02-14 16:30 - 2019-01-09 03:41 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2019-02-14 16:30 - 2019-01-09 03:38 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-02-14 16:30 - 2019-01-09 03:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2019-02-14 16:30 - 2019-01-09 03:38 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2019-02-14 16:30 - 2019-01-09 03:37 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2019-02-14 16:30 - 2019-01-09 03:35 - 00464384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2019-02-14 16:30 - 2019-01-09 03:35 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-02-14 16:30 - 2019-01-09 03:35 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2019-02-14 16:30 - 2019-01-09 03:34 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-02-14 16:30 - 2019-01-09 03:34 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-02-14 16:30 - 2019-01-09 03:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-02-14 16:30 - 2019-01-09 03:34 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-02-14 16:30 - 2019-01-09 03:34 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-02-14 16:30 - 2019-01-09 03:34 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2019-02-14 16:30 - 2019-01-09 03:34 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2019-02-14 16:30 - 2019-01-09 03:34 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2019-02-14 16:30 - 2019-01-09 03:34 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2019-02-14 16:30 - 2019-01-09 03:33 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:33 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:33 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:33 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2019-02-14 16:30 - 2019-01-07 18:19 - 03228160 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-02-14 16:30 - 2019-01-01 17:08 - 00114408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2019-02-14 16:30 - 2019-01-01 17:05 - 03247104 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-02-14 16:30 - 2019-01-01 17:05 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2019-02-14 16:30 - 2019-01-01 17:05 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2019-02-14 16:30 - 2019-01-01 17:04 - 01942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2019-02-14 16:30 - 2019-01-01 17:04 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2019-02-14 16:30 - 2019-01-01 16:58 - 02368000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-02-14 16:30 - 2019-01-01 16:58 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2019-02-14 16:30 - 2019-01-01 16:58 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2019-02-14 16:30 - 2019-01-01 16:57 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2019-02-14 16:30 - 2019-01-01 16:39 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2019-02-14 16:30 - 2019-01-01 16:39 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2019-02-14 16:30 - 2018-12-28 20:59 - 02072576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2019-02-14 16:30 - 2018-12-28 20:59 - 00876032 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-02-14 16:30 - 2018-12-28 20:59 - 00516608 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-02-14 16:30 - 2018-12-28 20:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
2019-02-14 16:30 - 2018-12-28 20:59 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2019-02-14 16:30 - 2018-12-28 20:48 - 01425920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2019-02-14 16:30 - 2018-12-28 20:48 - 00582144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-02-14 16:30 - 2018-12-28 20:48 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleres.dll
2019-02-14 16:30 - 2018-12-28 20:32 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
2019-02-14 16:30 - 2018-12-04 17:07 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2019-02-14 16:30 - 2018-12-04 17:07 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2019-02-14 16:30 - 2018-12-04 16:55 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
2019-02-14 16:30 - 2018-12-04 16:55 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
2019-02-14 16:30 - 2018-12-02 17:06 - 00687616 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00998480 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00918408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00066000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00063936 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00021968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00020944 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00019408 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00018880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00017872 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00017856 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00017360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00017352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00016336 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00015824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00015808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00015296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00014312 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00014272 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00013768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00013760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00013760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00013264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012736 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012240 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012240 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012232 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011728 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2019-02-02 14:26 - 2019-02-03 12:56 - 00001324 _____ C:\Users\Public\Desktop\Dragon Age Inquisition.lnk
2019-02-02 13:28 - 2019-02-02 13:33 - 00000000 ____D C:\Program Files (x86)\Origin Games
2019-02-02 13:22 - 2019-02-02 13:22 - 00000993 _____ C:\Users\Public\Desktop\Origin.lnk
2019-02-02 13:22 - 2019-02-02 13:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2019-02-02 13:22 - 2019-02-02 13:22 - 00000000 ____D C:\Program Files (x86)\Origin
2019-02-02 13:20 - 2019-02-22 17:06 - 00000000 ____D C:\Users\Vitek\AppData\Roaming\Origin
2019-02-02 13:20 - 2019-02-02 13:28 - 00000000 ____D C:\Users\Vitek\AppData\Local\Origin
2019-01-30 19:28 - 2019-01-30 19:32 - 250589196 _____ C:\Users\Vitek\Desktop\Manifest.S01E04.HDTV.x264-KILLERS.mkv
2019-01-30 19:28 - 2018-10-17 00:18 - 00046735 _____ C:\Users\Vitek\Desktop\Manifest.S01E04.HDTV.x264-KILLERS(+720p.HDTV.x264-KILLERS).srt

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-02-23 08:33 - 2018-04-08 09:32 - 00000000 ____D C:\FRST
2019-02-23 08:29 - 2017-12-10 07:54 - 00003814 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 08:29 - 2017-04-30 16:40 - 00004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 08:29 - 2017-04-30 16:40 - 00003798 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 08:29 - 2017-04-30 16:40 - 00003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 08:29 - 2017-04-30 16:40 - 00003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 08:29 - 2017-04-30 16:40 - 00003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 08:29 - 2017-04-30 16:40 - 00003554 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 08:29 - 2017-04-30 16:40 - 00003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 08:29 - 2016-07-28 14:15 - 00000000 ____D C:\Program Files (x86)\Steam
2019-02-23 08:29 - 2016-07-28 10:27 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2019-02-23 08:28 - 2018-05-23 14:59 - 00003386 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-02-23 08:28 - 2018-05-23 14:59 - 00003258 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-02-23 08:28 - 2018-03-28 16:10 - 00003870 _____ C:\Windows\System32\Tasks\CCleaner Update
2019-02-23 08:28 - 2018-02-18 11:08 - 00004540 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2019-02-23 08:28 - 2018-02-18 11:08 - 00004408 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2019-02-23 08:28 - 2016-07-28 11:02 - 00002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2019-02-23 08:05 - 2009-07-14 05:45 - 00031312 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-02-23 08:05 - 2009-07-14 05:45 - 00031312 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-02-23 07:57 - 2016-07-28 10:51 - 00000000 ____D C:\ProgramData\NVIDIA
2019-02-23 07:50 - 2016-07-28 11:15 - 00000000 ____D C:\Users\Vitek\AppData\Roaming\USBSafelyRemove
2019-02-23 07:50 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2019-02-22 23:39 - 2016-07-28 14:08 - 00000000 ____D C:\ProgramData\Origin
2019-02-22 21:18 - 2016-12-07 16:22 - 00000000 ____D C:\Users\Vitek\AppData\Roaming\vlc
2019-02-22 10:19 - 2017-03-18 12:59 - 00003910 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-02-22 10:19 - 2016-07-28 10:27 - 00474456 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-02-22 10:18 - 2016-07-28 10:27 - 00379952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-02-22 10:17 - 2019-01-17 09:09 - 00225680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-02-22 10:17 - 2019-01-16 16:52 - 00320696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswblog.sys
2019-02-22 10:17 - 2019-01-16 16:52 - 00196072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-02-22 10:17 - 2019-01-16 16:52 - 00057960 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-02-22 10:17 - 2019-01-16 16:52 - 00037104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-02-22 10:17 - 2018-10-22 20:06 - 00042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-02-22 10:17 - 2017-11-24 13:31 - 00205400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-02-22 10:17 - 2016-07-28 10:27 - 01034432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-02-22 10:17 - 2016-07-28 10:27 - 00216784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-02-22 10:17 - 2016-07-28 10:27 - 00167304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-02-22 10:17 - 2016-07-28 10:27 - 00112312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-02-22 10:17 - 2016-07-28 10:27 - 00087944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-02-17 17:24 - 2016-09-03 16:02 - 00000000 ____D C:\Users\Vitek\AppData\Roaming\TS3Client
2019-02-16 20:31 - 2016-07-28 10:31 - 00000000 ____D C:\Users\Vitek\Desktop\Běh treninky
2019-02-16 20:08 - 2018-03-03 14:03 - 00001284 _____ C:\Users\Vitek\Desktop\MediaHuman YouTube to MP3 Converter.lnk
2019-02-15 16:16 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2019-02-15 15:45 - 2011-04-12 09:34 - 00668640 _____ C:\Windows\system32\perfh005.dat
2019-02-15 15:45 - 2011-04-12 09:34 - 00141300 _____ C:\Windows\system32\perfc005.dat
2019-02-15 15:45 - 2009-07-14 06:13 - 01583642 _____ C:\Windows\system32\PerfStringBackup.INI
2019-02-15 15:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2019-02-15 15:38 - 2009-07-14 05:45 - 00431928 _____ C:\Windows\system32\FNTCACHE.DAT
2019-02-15 14:29 - 2016-07-28 18:26 - 00000000 ____D C:\Users\Vitek\AppData\Local\CrashDumps
2019-02-14 16:34 - 2016-07-28 10:45 - 01558356 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2019-02-14 16:32 - 2018-04-12 16:32 - 00000000 ____D C:\Windows\system32\MRT
2019-02-14 16:19 - 2018-04-12 16:32 - 129330784 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-02-14 16:16 - 2016-07-28 10:21 - 00002224 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-02-12 17:07 - 2018-02-18 11:08 - 00842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-02-12 17:07 - 2018-02-18 11:08 - 00175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-02-12 17:07 - 2018-02-18 11:08 - 00000000 ____D C:\Windows\system32\Macromed
2019-02-12 17:07 - 2017-07-01 07:27 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2019-02-09 15:40 - 2016-07-28 11:15 - 00000000 ____D C:\Movie
2019-02-07 19:21 - 2016-12-07 16:22 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk
2019-02-06 17:16 - 2016-07-28 11:02 - 00000000 ____D C:\Program Files\CCleaner
2019-02-04 18:17 - 2018-01-02 18:48 - 00002556 _____ C:\Users\Vitek\Desktop\Tabata.txt
2019-02-02 14:26 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2019-02-01 21:16 - 2017-08-26 19:42 - 00000000 ____D C:\ProgramData\Electronic Arts
2019-01-29 17:24 - 2016-07-28 10:31 - 00000000 ____D C:\Users\Vitek\Desktop\Army
2019-01-24 16:59 - 2009-07-14 06:08 - 00032630 _____ C:\Windows\Tasks\SCHEDLGU.TXT

Some files in TEMP:
====================
C:\Users\Vitek\AppData\Local\Temp\vlc-3.0.6-win32.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2019-02-22 16:46

==================== End of FRST.txt =========================

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Pomalé pc, zamrzání při spuštění

#2 Příspěvek od Diallix »

Dobry den.

:arrow: Stiahnite si na plochu nastroj AdwCleaner, link. na stiahnutie tu: https://toolslib.net/downloads/finish/1/
Pred spustenim nastroja povypinajte vsetke beziace okna programov, to su vsetke beziace programy pod desktopom.
Kliknite pravym tlacidlom mysi na program -> spustit ako Administrator.
Pokracujte kliknutim na tlacidlo Prehladaj teraz (Scan now) a pockajte, kym sa system doskenuje.
Po skene nechajte oznacene vsetky chlieviky, pripadne najdene hrozieby a pokracujte v dolnom pravom rohu tlacidlom Vycistit Teraz (Clean and Repair).
Po restartovani PC sa spusti nastroj AdwCleaner, kliknite na Zobrazit soubor protokolu.
Spusti sa log, jeho obsah skopirujte sem.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Malarkyy
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 06 lis 2013 16:13

Re: Pomalé pc, zamrzání při spuštění

#3 Příspěvek od Malarkyy »

# -------------------------------
# Malwarebytes AdwCleaner 7.2.7.0
# -------------------------------
# Build: 01-30-2019
# Database: 2019-02-21.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 02-23-2019
# Duration: 00:00:02
# OS: Windows 7 Professional
# Cleaned: 0
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1353 octets] - [17/01/2019 22:31:18]
AdwCleaner[C00].txt - [1499 octets] - [17/01/2019 22:32:23]
AdwCleaner[S01].txt - [1379 octets] - [23/02/2019 11:58:50]
AdwCleaner[S02].txt - [1440 octets] - [23/02/2019 12:01:34]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C02].txt ##########

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Pomalé pc, zamrzání při spuštění

#4 Příspěvek od Diallix »

Preskenujte pocitac s FRST - navod tu: https://forum.viry.cz/viewtopic.php?f=24&t=132509, skopirujte FRST.log + Addition log sem.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Malarkyy
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 06 lis 2013 16:13

Re: Pomalé pc, zamrzání při spuštění

#5 Příspěvek od Malarkyy »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:13-04-2016
Ran by Vitek (administrator) on VITEK-PC (23-02-2019 12:48:52)
Running from C:\Users\Vitek\Desktop\Vitek\Programy\Antiviry-čištění počítače
Loaded Profiles: Vitek (Available Profiles: Vitek)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Crystal Rich Ltd) C:\Program Files (x86)\USB Safely Remove\USBSRService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(HP) C:\Windows\System32\HPSIsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Crystal Rich Ltd) C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [259976 2019-02-22] (AVAST Software)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [259976 2019-02-22] (AVAST Software)
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [357696 2010-04-01] (DT Soft Ltd)
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [USB Safely Remove] => C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe [2468664 2013-03-13] (Crystal Rich Ltd)
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3144480 2019-02-18] (Valve Corporation)
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [19589208 2018-12-10] (Piriform Software Ltd)
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\MountPoints2: {531d63bc-556a-11e6-9ad0-5404a60befb4} - E:\stp-tww2.exe
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\MountPoints2: {a1f90a74-ab77-11e7-b6a9-5404a60befb4} - F:\Setup.exe
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-02-22] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-02-22] (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{6FA27657-C2DE-4BD8-B8F4-0A314F99A498}: [DhcpNameServer] 192.168.0.1 0.0.0.0

Internet Explorer:
==================
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-11] (Microsoft Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-07-28] (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-11] (Microsoft Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-07-28] (Google Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
Toolbar: HKU\S-1-5-21-1179782796-346578947-3724073776-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-05] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-05] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxps://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR Profile: C:\Users\Vitek\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (AdBlock) - C:\Users\Vitek\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-02-17]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Vitek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-04]
CHR Extension: (Chrome Media Router) - C:\Users\Vitek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-01-31]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6758976 2019-02-22] (AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-04-05] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [357304 2019-02-22] (AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-04-05] (AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\71.0.1037.98\elevation_service.exe [390552 2019-01-09] (AVAST Software)
S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [529984 2017-08-25] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [8242752 2017-08-25] (GOG.com)
S3 GoogleChromeElevationService; C:\Program Files (x86)\Google\Chrome\Application\72.0.3626.109\elevation_service.exe [1271280 2019-02-13] (Google Inc.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-12-05] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-12-05] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [463664 2017-12-05] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [460736 2017-12-05] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2298688 2019-02-02] (Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3171144 2019-02-02] (Electronic Arts)
R2 USBSafelyRemoveService; C:\Program Files (x86)\USB Safely Remove\USBSRService.exe [1521464 2013-03-13] (Crystal Rich Ltd)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-02-22] (AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205400 2019-02-22] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [225680 2019-02-22] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [196072 2019-02-22] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblog.sys [320696 2019-02-22] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [57960 2019-02-22] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [249672 2019-02-22] (AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-02-22] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [167304 2019-02-22] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-02-22] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-02-22] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1034432 2019-02-22] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [474456 2019-02-22] (AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [216784 2019-02-22] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [379952 2019-02-22] (AVAST Software)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 mvusbews; C:\Windows\System32\Drivers\mvusbews.sys [19968 2012-11-08] (Marvell Semiconductor, Inc.)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-12-05] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50624 2017-12-05] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2017-12-05] (NVIDIA Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2017-10-07] (Duplex Secure Ltd.)
U3 afmdeo8w; C:\Windows\System32\Drivers\afmdeo8w.sys [0 ] (Advanced Micro Devices) <==== ATTENTION (zero byte File/Folder)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-02-23 11:35 - 2019-02-23 11:42 - 233107024 _____ C:\Users\Vitek\Desktop\Chicago.Fire.S07E14.HDTV.x264-SVA.mkv
2019-02-23 11:35 - 2019-02-17 17:31 - 00045685 _____ C:\Users\Vitek\Desktop\Chicago.Fire.s07e14.srt
2019-02-23 11:27 - 2019-02-23 11:33 - 158753559 _____ C:\Users\Vitek\Desktop\The.Big.Bang.Theory.S12E16.HDTV.x264-SVA.mkv
2019-02-23 11:27 - 2019-02-22 15:31 - 00024054 _____ C:\Users\Vitek\Desktop\The.Big.Bang.Theory.S12E16.HDTV.x264-SVA.srt
2019-02-22 21:19 - 2019-02-22 21:46 - 890069455 _____ C:\Users\Vitek\Desktop\Stargate.Atlantis.S03E13.Irresponsible.1080p.BluRay.6CH.x265.CZ.mkv
2019-02-22 10:19 - 2019-02-22 10:19 - 00249672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-02-22 10:18 - 2019-02-22 10:17 - 00362888 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-02-17 19:48 - 2019-02-17 19:58 - 317868094 _____ C:\Users\Vitek\Desktop\SEAL.Team.S02E13.HDTV.x264-SVA.mkv
2019-02-17 19:48 - 2019-01-30 12:03 - 00057238 _____ C:\Users\Vitek\Desktop\SEAL.Team.S02E13.HDTV.x264-SVA.srt
2019-02-14 16:30 - 2019-01-27 16:23 - 00396888 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-02-14 16:30 - 2019-01-27 15:32 - 00348760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2019-02-14 16:30 - 2019-01-26 02:02 - 25736192 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-02-14 16:30 - 2019-01-26 01:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-02-14 16:30 - 2019-01-26 01:50 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-02-14 16:30 - 2019-01-26 01:38 - 02902528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-02-14 16:30 - 2019-01-26 01:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-02-14 16:30 - 2019-01-26 01:36 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-02-14 16:30 - 2019-01-26 01:36 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-02-14 16:30 - 2019-01-26 01:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-02-14 16:30 - 2019-01-26 01:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-02-14 16:30 - 2019-01-26 01:32 - 05778944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-02-14 16:30 - 2019-01-26 01:29 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-02-14 16:30 - 2019-01-26 01:28 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-02-14 16:30 - 2019-01-26 01:27 - 20279808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-02-14 16:30 - 2019-01-26 01:25 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-02-14 16:30 - 2019-01-26 01:24 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-02-14 16:30 - 2019-01-26 01:24 - 00790016 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-02-14 16:30 - 2019-01-26 01:24 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-02-14 16:30 - 2019-01-26 01:24 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-02-14 16:30 - 2019-01-26 01:18 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2019-02-14 16:30 - 2019-01-26 01:17 - 00969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-02-14 16:30 - 2019-01-26 01:14 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-02-14 16:30 - 2019-01-26 01:07 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-02-14 16:30 - 2019-01-26 01:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-02-14 16:30 - 2019-01-26 01:06 - 00498176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-02-14 16:30 - 2019-01-26 01:06 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-02-14 16:30 - 2019-01-26 01:06 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2019-02-14 16:30 - 2019-01-26 01:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2019-02-14 16:30 - 2019-01-26 01:05 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2019-02-14 16:30 - 2019-01-26 01:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2019-02-14 16:30 - 2019-01-26 01:03 - 02295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-02-14 16:30 - 2019-01-26 01:03 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-02-14 16:30 - 2019-01-26 01:03 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-02-14 16:30 - 2019-01-26 01:01 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-02-14 16:30 - 2019-01-26 01:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2019-02-14 16:30 - 2019-01-26 00:59 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-02-14 16:30 - 2019-01-26 00:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2019-02-14 16:30 - 2019-01-26 00:58 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2019-02-14 16:30 - 2019-01-26 00:57 - 00663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-02-14 16:30 - 2019-01-26 00:56 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-02-14 16:30 - 2019-01-26 00:56 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2019-02-14 16:30 - 2019-01-26 00:50 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-02-14 16:30 - 2019-01-26 00:48 - 00809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-02-14 16:30 - 2019-01-26 00:48 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-02-14 16:30 - 2019-01-26 00:48 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2019-02-14 16:30 - 2019-01-26 00:46 - 15283712 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-02-14 16:30 - 2019-01-26 00:46 - 02135552 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-02-14 16:30 - 2019-01-26 00:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-02-14 16:30 - 2019-01-26 00:44 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2019-02-14 16:30 - 2019-01-26 00:43 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2019-02-14 16:30 - 2019-01-26 00:43 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2019-02-14 16:30 - 2019-01-26 00:40 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2019-02-14 16:30 - 2019-01-26 00:40 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2019-02-14 16:30 - 2019-01-26 00:39 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2019-02-14 16:30 - 2019-01-26 00:37 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2019-02-14 16:30 - 2019-01-26 00:34 - 04858880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-02-14 16:30 - 2019-01-26 00:34 - 04494336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-02-14 16:30 - 2019-01-26 00:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2019-02-14 16:30 - 2019-01-26 00:31 - 00696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2019-02-14 16:30 - 2019-01-26 00:30 - 02060288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2019-02-14 16:30 - 2019-01-26 00:29 - 13680640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-02-14 16:30 - 2019-01-26 00:29 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2019-02-14 16:30 - 2019-01-26 00:22 - 01556480 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-02-14 16:30 - 2019-01-26 00:12 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-02-14 16:30 - 2019-01-26 00:11 - 04386304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-02-14 16:30 - 2019-01-26 00:08 - 01331200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-02-14 16:30 - 2019-01-26 00:06 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2019-02-14 16:30 - 2019-01-15 08:06 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-02-14 16:30 - 2019-01-15 08:06 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-02-14 16:30 - 2019-01-15 08:03 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 01211904 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2019-02-14 16:30 - 2019-01-15 08:03 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2019-02-14 16:30 - 2019-01-15 08:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2019-02-14 16:30 - 2019-01-15 08:02 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2019-02-14 16:30 - 2019-01-15 08:02 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-02-14 16:30 - 2019-01-15 08:02 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2019-02-14 16:30 - 2019-01-15 08:02 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2019-02-14 16:30 - 2019-01-15 07:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2019-02-14 16:30 - 2019-01-15 07:51 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2019-02-14 16:30 - 2019-01-15 07:51 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2019-02-14 16:30 - 2019-01-15 07:38 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2019-02-14 16:30 - 2019-01-15 07:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2019-02-14 16:30 - 2019-01-15 07:32 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-02-14 16:30 - 2019-01-15 07:32 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-02-14 16:30 - 2019-01-15 07:32 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-02-14 16:30 - 2019-01-15 07:31 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2019-02-14 16:30 - 2019-01-15 07:29 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2019-02-14 16:30 - 2019-01-12 04:08 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2019-02-14 16:30 - 2019-01-12 04:08 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2019-02-14 16:30 - 2019-01-12 03:55 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2019-02-14 16:30 - 2019-01-12 03:55 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2019-02-14 16:30 - 2019-01-12 03:36 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-02-14 16:30 - 2019-01-12 03:36 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-02-14 16:30 - 2019-01-12 03:36 - 00313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2019-02-14 16:30 - 2019-01-09 04:10 - 00631680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-02-14 16:30 - 2019-01-09 04:09 - 05552360 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-02-14 16:30 - 2019-01-09 04:09 - 00708328 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-02-14 16:30 - 2019-01-09 04:09 - 00262376 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-02-14 16:30 - 2019-01-09 04:08 - 01664352 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2019-02-14 16:30 - 2019-01-09 04:07 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 01162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 04:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:58 - 04055784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2019-02-14 16:30 - 2019-01-09 03:58 - 03960552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2019-02-14 16:30 - 2019-01-09 03:57 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2019-02-14 16:30 - 2019-01-09 03:45 - 00033408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2019-02-14 16:30 - 2019-01-09 03:45 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2019-02-14 16:30 - 2019-01-09 03:41 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2019-02-14 16:30 - 2019-01-09 03:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-02-14 16:30 - 2019-01-09 03:41 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2019-02-14 16:30 - 2019-01-09 03:38 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-02-14 16:30 - 2019-01-09 03:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2019-02-14 16:30 - 2019-01-09 03:38 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2019-02-14 16:30 - 2019-01-09 03:37 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2019-02-14 16:30 - 2019-01-09 03:35 - 00464384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2019-02-14 16:30 - 2019-01-09 03:35 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-02-14 16:30 - 2019-01-09 03:35 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2019-02-14 16:30 - 2019-01-09 03:34 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-02-14 16:30 - 2019-01-09 03:34 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-02-14 16:30 - 2019-01-09 03:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-02-14 16:30 - 2019-01-09 03:34 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-02-14 16:30 - 2019-01-09 03:34 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-02-14 16:30 - 2019-01-09 03:34 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2019-02-14 16:30 - 2019-01-09 03:34 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2019-02-14 16:30 - 2019-01-09 03:34 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2019-02-14 16:30 - 2019-01-09 03:34 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2019-02-14 16:30 - 2019-01-09 03:33 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:33 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:33 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2019-02-14 16:30 - 2019-01-09 03:33 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2019-02-14 16:30 - 2019-01-07 18:19 - 03228160 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-02-14 16:30 - 2019-01-01 17:08 - 00114408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2019-02-14 16:30 - 2019-01-01 17:05 - 03247104 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-02-14 16:30 - 2019-01-01 17:05 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2019-02-14 16:30 - 2019-01-01 17:05 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2019-02-14 16:30 - 2019-01-01 17:04 - 01942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2019-02-14 16:30 - 2019-01-01 17:04 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2019-02-14 16:30 - 2019-01-01 16:58 - 02368000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-02-14 16:30 - 2019-01-01 16:58 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2019-02-14 16:30 - 2019-01-01 16:58 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2019-02-14 16:30 - 2019-01-01 16:57 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2019-02-14 16:30 - 2019-01-01 16:39 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2019-02-14 16:30 - 2019-01-01 16:39 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2019-02-14 16:30 - 2018-12-28 20:59 - 02072576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2019-02-14 16:30 - 2018-12-28 20:59 - 00876032 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-02-14 16:30 - 2018-12-28 20:59 - 00516608 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-02-14 16:30 - 2018-12-28 20:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
2019-02-14 16:30 - 2018-12-28 20:59 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2019-02-14 16:30 - 2018-12-28 20:48 - 01425920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2019-02-14 16:30 - 2018-12-28 20:48 - 00582144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-02-14 16:30 - 2018-12-28 20:48 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleres.dll
2019-02-14 16:30 - 2018-12-28 20:32 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
2019-02-14 16:30 - 2018-12-04 17:07 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2019-02-14 16:30 - 2018-12-04 17:07 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2019-02-14 16:30 - 2018-12-04 16:55 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
2019-02-14 16:30 - 2018-12-04 16:55 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
2019-02-14 16:30 - 2018-12-02 17:06 - 00687616 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00998480 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00918408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00066000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00063936 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00021968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00020944 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00019408 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00018880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00017872 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00017856 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00017360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00017352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00016336 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00015824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00015808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00015296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00014312 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00014272 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00013768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00013760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00013760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00013264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012736 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012240 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012240 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012232 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011728 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2019-02-14 16:30 - 2018-10-12 14:05 - 00011200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2019-02-02 14:26 - 2019-02-03 12:56 - 00001324 _____ C:\Users\Public\Desktop\Dragon Age Inquisition.lnk
2019-02-02 13:28 - 2019-02-02 13:33 - 00000000 ____D C:\Program Files (x86)\Origin Games
2019-02-02 13:22 - 2019-02-02 13:22 - 00000993 _____ C:\Users\Public\Desktop\Origin.lnk
2019-02-02 13:22 - 2019-02-02 13:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2019-02-02 13:22 - 2019-02-02 13:22 - 00000000 ____D C:\Program Files (x86)\Origin
2019-02-02 13:20 - 2019-02-22 17:06 - 00000000 ____D C:\Users\Vitek\AppData\Roaming\Origin
2019-02-02 13:20 - 2019-02-02 13:28 - 00000000 ____D C:\Users\Vitek\AppData\Local\Origin
2019-01-30 19:28 - 2019-01-30 19:32 - 250589196 _____ C:\Users\Vitek\Desktop\Manifest.S01E04.HDTV.x264-KILLERS.mkv
2019-01-30 19:28 - 2018-10-17 00:18 - 00046735 _____ C:\Users\Vitek\Desktop\Manifest.S01E04.HDTV.x264-KILLERS(+720p.HDTV.x264-KILLERS).srt

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-02-23 12:48 - 2018-04-08 09:32 - 00000000 ____D C:\FRST
2019-02-23 12:47 - 2016-07-28 14:15 - 00000000 ____D C:\Program Files (x86)\Steam
2019-02-23 12:43 - 2009-07-14 05:45 - 00031312 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-02-23 12:43 - 2009-07-14 05:45 - 00031312 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-02-23 12:37 - 2018-05-23 14:59 - 00003386 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-02-23 12:37 - 2018-05-23 14:59 - 00003258 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-02-23 12:37 - 2018-03-28 16:10 - 00003870 _____ C:\Windows\System32\Tasks\CCleaner Update
2019-02-23 12:37 - 2018-02-18 11:08 - 00004540 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2019-02-23 12:37 - 2018-02-18 11:08 - 00004408 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2019-02-23 12:37 - 2017-12-10 07:54 - 00003814 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 12:37 - 2017-04-30 16:40 - 00004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 12:37 - 2017-04-30 16:40 - 00003798 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 12:37 - 2017-04-30 16:40 - 00003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 12:37 - 2017-04-30 16:40 - 00003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 12:37 - 2017-04-30 16:40 - 00003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 12:37 - 2017-04-30 16:40 - 00003554 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 12:37 - 2017-04-30 16:40 - 00003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-02-23 12:37 - 2016-07-28 11:02 - 00002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2019-02-23 12:37 - 2016-07-28 10:27 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2019-02-23 12:25 - 2016-07-28 10:51 - 00000000 ____D C:\ProgramData\NVIDIA
2019-02-23 12:21 - 2016-07-28 11:15 - 00000000 ____D C:\Users\Vitek\AppData\Roaming\USBSafelyRemove
2019-02-23 12:03 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2019-02-22 23:39 - 2016-07-28 14:08 - 00000000 ____D C:\ProgramData\Origin
2019-02-22 21:18 - 2016-12-07 16:22 - 00000000 ____D C:\Users\Vitek\AppData\Roaming\vlc
2019-02-22 10:19 - 2017-03-18 12:59 - 00003910 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-02-22 10:19 - 2016-07-28 10:27 - 00474456 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-02-22 10:18 - 2016-07-28 10:27 - 00379952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-02-22 10:17 - 2019-01-17 09:09 - 00225680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-02-22 10:17 - 2019-01-16 16:52 - 00320696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswblog.sys
2019-02-22 10:17 - 2019-01-16 16:52 - 00196072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-02-22 10:17 - 2019-01-16 16:52 - 00057960 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-02-22 10:17 - 2019-01-16 16:52 - 00037104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-02-22 10:17 - 2018-10-22 20:06 - 00042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-02-22 10:17 - 2017-11-24 13:31 - 00205400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-02-22 10:17 - 2016-07-28 10:27 - 01034432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-02-22 10:17 - 2016-07-28 10:27 - 00216784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-02-22 10:17 - 2016-07-28 10:27 - 00167304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-02-22 10:17 - 2016-07-28 10:27 - 00112312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-02-22 10:17 - 2016-07-28 10:27 - 00087944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-02-17 17:24 - 2016-09-03 16:02 - 00000000 ____D C:\Users\Vitek\AppData\Roaming\TS3Client
2019-02-16 20:31 - 2016-07-28 10:31 - 00000000 ____D C:\Users\Vitek\Desktop\Běh treninky
2019-02-16 20:08 - 2018-03-03 14:03 - 00001284 _____ C:\Users\Vitek\Desktop\MediaHuman YouTube to MP3 Converter.lnk
2019-02-15 16:16 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2019-02-15 15:45 - 2011-04-12 09:34 - 00668640 _____ C:\Windows\system32\perfh005.dat
2019-02-15 15:45 - 2011-04-12 09:34 - 00141300 _____ C:\Windows\system32\perfc005.dat
2019-02-15 15:45 - 2009-07-14 06:13 - 01583642 _____ C:\Windows\system32\PerfStringBackup.INI
2019-02-15 15:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2019-02-15 15:38 - 2009-07-14 05:45 - 00431928 _____ C:\Windows\system32\FNTCACHE.DAT
2019-02-15 14:29 - 2016-07-28 18:26 - 00000000 ____D C:\Users\Vitek\AppData\Local\CrashDumps
2019-02-14 16:34 - 2016-07-28 10:45 - 01558356 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2019-02-14 16:32 - 2018-04-12 16:32 - 00000000 ____D C:\Windows\system32\MRT
2019-02-14 16:19 - 2018-04-12 16:32 - 129330784 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-02-14 16:16 - 2016-07-28 10:21 - 00002224 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-02-12 17:07 - 2018-02-18 11:08 - 00842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-02-12 17:07 - 2018-02-18 11:08 - 00175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-02-12 17:07 - 2018-02-18 11:08 - 00000000 ____D C:\Windows\system32\Macromed
2019-02-12 17:07 - 2017-07-01 07:27 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2019-02-09 15:40 - 2016-07-28 11:15 - 00000000 ____D C:\Movie
2019-02-07 19:21 - 2016-12-07 16:22 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk
2019-02-06 17:16 - 2016-07-28 11:02 - 00000000 ____D C:\Program Files\CCleaner
2019-02-04 18:17 - 2018-01-02 18:48 - 00002556 _____ C:\Users\Vitek\Desktop\Tabata.txt
2019-02-02 14:26 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2019-02-01 21:16 - 2017-08-26 19:42 - 00000000 ____D C:\ProgramData\Electronic Arts
2019-01-29 17:24 - 2016-07-28 10:31 - 00000000 ____D C:\Users\Vitek\Desktop\Army
2019-01-24 16:59 - 2009-07-14 06:08 - 00032630 _____ C:\Windows\Tasks\SCHEDLGU.TXT

Some files in TEMP:
====================
C:\Users\Vitek\AppData\Local\Temp\vlc-3.0.6-win32.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2019-02-22 16:46

==================== End of FRST.txt ============================

Malarkyy
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 06 lis 2013 16:13

Re: Pomalé pc, zamrzání při spuštění

#6 Příspěvek od Malarkyy »

Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-04-2016
Ran by Vitek (2019-02-23 12:49:13)
Running from C:\Users\Vitek\Desktop\Vitek\Programy\Antiviry-čištění počítače
Windows 7 Professional Service Pack 1 (X64) (2016-07-28 07:09:54)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1179782796-346578947-3724073776-500 - Administrator - Disabled)
Guest (S-1-5-21-1179782796-346578947-3724073776-501 - Limited - Disabled)
Vitek (S-1-5-21-1179782796-346578947-3724073776-1000 - Administrator - Enabled) => C:\Users\Vitek

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

abgx360 v1.0.6 (HKLM-x32\...\abgx360) (Version: - )
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.142 - Adobe Systems Incorporated)
Aktualizace NVIDIA 31.0.1.0 (Version: 31.0.1.0 - NVIDIA Corporation) Hidden
Avast Driver Updater (HKLM-x32\...\Avast Driver Updater) (Version: 2.4.0 - AVAST Software)
Avast Driver Updater (x32 Version: 2.4.0 - AVAST Software) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.2.2364 - AVAST Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 71.0.1037.98 - Autoři prohlížeče Avast Secure Browser)
CCleaner (HKLM\...\CCleaner) (Version: 5.51 - Piriform)
Dragon Age™: Inquisition (HKLM-x32\...\{DC4C36DC-4E5B-4262-B0C7-157DF534B969}) (Version: 1.0.0.12 - Electronic Arts)
FM Genie Scout 17 version 1.0 17.3.1 (HKLM-x32\...\FM Genie Scout 17_is1) (Version: 1.0 17.3.1 - )
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Google Chrome (HKLM-x32\...\{E1AA8B0F-1176-36F1-8A91-AA19CF39C2F6}) (Version: 72.0.3626.109 - Google, Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.21.169 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.33.23 - Google Inc.) Hidden
HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - )
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.7.0 - LIGHTNING UK!)
MediaHuman YouTube to MP3 Converter 3.9.9.12 (HKLM-x32\...\MediaHuman YouTube to MP3 Converter_is1) (Version: 3.9.9.12 - MediaHuman)
Microsoft .NET Framework 4.7.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Office 2010 Service Pack 1 (SP1) (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{7BC9B5EB-125A-4E9B-97E1-8D85B5E960B8}) (Version: - Microsoft)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.6029.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
NVIDIA GeForce Experience 3.11.0.73 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.11.0.73 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 388.59 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 388.59 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 388.59 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.59 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{9530AE42-DAE1-4619-9594-B23487285D17}) (Version: 9.11.1107 - NVIDIA Corporation)
Origin (HKLM-x32\...\Origin) (Version: 10.5.34.21025 - Electronic Arts, Inc.)
Ovládací panel NVIDIA 388.59 (Version: 388.59 - NVIDIA Corporation) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.43.321.2011 - Realtek)
Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP)
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.151 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19.4 - TeamSpeak Systems GmbH)
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com)
The Witcher 3: Wild Hunt - Free DLC program (16 DLC) (HKLM-x32\...\Free DLC program (16 DLC)_is1) (Version: 1.22.0.0 - GOG.com)
The Witcher 3: Wild Hunt - O víně a krvi (HKLM-x32\...\Blood and Wine_is1) (Version: 1.22.0.0 - GOG.com)
The Witcher 3: Wild Hunt - Srdce z kamene (HKLM-x32\...\Hearts of Stone_is1) (Version: 1.22.0.0 - GOG.com)
Total War - Warhammer II verze 1.4.1 Build 7450.1400824 (HKLM-x32\...\{1910A4A0-3F0E-437F-A39C-D509F2A3C838}_is1) (Version: 1.4.1 Build 7450.1400824 - )
Total War: ROME II - Emperor Edition (HKLM\...\Steam App 214950) (Version: - Creative Assembly)
USB Safely Remove 5.2 (HKLM-x32\...\USB Safely Remove_is1) (Version: - SafelyRemove.com)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.5.0.0 - Elaborate Bytes)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.6 - VideoLAN)
Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.61.0 (Version: 1.0.61.0 - LunarG, Inc.) Hidden
Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc)
WinRAR 5.60 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.60.0 - win.rar GmbH)
World of Tanks (HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00A7531B-D716-4762-9814-C3359CF2FC27} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-12-05] (NVIDIA Corporation)
Task: {10A2C71E-F74B-4582-8517-E2ECE78C14B1} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-12-05] (NVIDIA Corporation)
Task: {3FC74ED8-171B-4C0C-802F-05679B730421} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-12-05] (NVIDIA Corporation)
Task: {54C8A494-26E4-4DAA-A2CF-C0722E1C562B} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-12-05] (NVIDIA Corporation)
Task: {584DB579-4740-413E-A7CA-AA043839212F} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-12-05] (NVIDIA Corporation)
Task: {65F6E881-1261-4ADC-8437-6D76F66F5AF7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-28] (Google Inc.)
Task: {78AB5B25-42F9-4DB2-A694-3278AFBEC221} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-04-05] (AVAST Software)
Task: {7CA7ACE7-C0DB-4A1B-9FFC-DB00C2E0E581} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2019-02-12] (Adobe Systems Incorporated)
Task: {86879F20-70F8-40B3-BD43-F8DBAC7F3ED9} - \AutoKMS -> No File <==== ATTENTION
Task: {87DB02F6-2A4E-4A07-AA10-8DF5411D30AC} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2019-02-23] (AVAST Software)
Task: {88F34CFE-93DB-4534-813A-0CB13D4FED81} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_142_pepper.exe [2019-02-12] (Adobe Systems Incorporated)
Task: {99561154-118D-4538-A7A3-E05752C3B0B0} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-12-10] (Piriform Software Ltd)
Task: {B2A03B63-5A97-4F50-A1D4-16670E4FE463} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2019-02-22] (AVAST Software)
Task: {B8402CF1-60E3-4F0C-A40B-D8FC1599A76A} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {BD28C463-D201-4789-AB38-C81749AA3F8D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-28] (Google Inc.)
Task: {C0A4152C-26C0-40B9-A9BD-D5165F82318F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-12-05] (NVIDIA Corporation)
Task: {CEC28EEF-898E-406F-81C0-EB27FC0FD8FC} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-12-05] (NVIDIA Corporation)
Task: {D930E107-2604-4DFE-B833-EDE562305AC1} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-12-05] (NVIDIA Corporation)
Task: {E7B09F41-F2A3-4830-85BD-DB3A47A451FC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2019-02-05] (Piriform Software Ltd)
Task: {E9F07912-FE90-4FEE-8939-BFA4CAB8D0E5} - System32\Tasks\{34C677EF-C895-4F75-BA63-CFA9EB446A91} => pcalua.exe -a "C:\Program Files (x86)\DAEMON Tools Lite\uninst.exe" -d "C:\Program Files (x86)\DAEMON Tools Lite"
Task: {F6783EA7-D7D6-4B93-AAAB-3FFC5052767D} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-04-05] (AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2019-02-22 10:17 - 2019-02-22 10:17 - 00654216 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2019-02-22 10:17 - 2019-02-22 10:17 - 00321928 _____ () C:\Program Files\AVAST Software\Avast\serialization.dll
2019-02-22 10:17 - 2019-02-22 10:17 - 00556936 _____ () C:\Program Files\AVAST Software\Avast\gui_cache.dll
2019-02-22 10:17 - 2019-02-22 10:17 - 01174920 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll
2019-02-22 10:17 - 2019-02-22 10:17 - 02024840 _____ () C:\Program Files\AVAST Software\Avast\shepherdsync.dll
2016-07-29 15:54 - 2012-09-29 12:25 - 00409088 _____ () C:\Windows\System32\HPM1210LM.DLL
2016-07-29 15:59 - 2012-09-29 12:25 - 00074240 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HPM1210PP.dll
2017-04-30 16:40 - 2017-12-05 22:17 - 01267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2019-02-22 10:17 - 2019-02-22 10:17 - 00654216 _____ () c:\Program Files\AVAST Software\Avast\StreamBack.dll
2011-03-16 23:07 - 2011-03-16 23:07 - 04297568 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2019-01-16 16:51 - 2019-01-16 16:51 - 93695912 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2019-02-14 16:16 - 2019-02-13 06:14 - 05186032 _____ () C:\Program Files (x86)\Google\Chrome\Application\72.0.3626.109\libglesv2.dll
2019-02-14 16:16 - 2019-02-13 06:14 - 00117232 _____ () C:\Program Files (x86)\Google\Chrome\Application\72.0.3626.109\libegl.dll
2018-12-10 11:09 - 2018-12-10 11:09 - 00093648 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2017-04-30 16:40 - 2017-12-05 22:17 - 01267136 _____ () C:\Program Files\NVIDIA Corporation\nvcontainer\libprotobuf.dll
2017-04-30 16:40 - 2017-12-05 22:17 - 01040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2011-03-16 23:11 - 2011-03-16 23:11 - 04297568 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2017-04-30 16:40 - 2017-12-05 22:17 - 66906560 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2019-01-04 11:57 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1179782796-346578947-3724073776-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Vitek\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{2647952B-7967-49B2-8D3A-132856554125}] => (Allow) C:\Games\Game\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{E706AE2F-A0E2-4044-AF6E-60933A09840D}] => (Allow) C:\Games\Game\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{3CC52BEF-3B3F-4CEB-8C89-A2963EA45C56}] => (Allow) C:\Games\Game\World_of_Tanks\worldoftanks.exe
FirewallRules: [{D6B4597B-3560-469E-8FE0-13E4F213FE73}] => (Allow) C:\Games\Game\World_of_Tanks\worldoftanks.exe
FirewallRules: [{C9853D8E-5806-494A-9449-1373FAD452DD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{48F1E08F-4E0C-4C4B-968D-85FB89379570}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [TCP Query User{BAE19BE6-2CD7-4A91-9328-9FE27CEF66A4}C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe
FirewallRules: [UDP Query User{4CEB2E61-985B-4ED6-A5AA-2A5EA727B72A}C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe
FirewallRules: [TCP Query User{4596CF12-618E-4BD4-9D3E-27854849CB4E}C:\games\game\d3 ros\diablo iii\diablo iii.exe] => (Allow) C:\games\game\d3 ros\diablo iii\diablo iii.exe
FirewallRules: [UDP Query User{BBD1D4DF-E788-49A3-9F6C-86B569D8EDD7}C:\games\game\d3 ros\diablo iii\diablo iii.exe] => (Allow) C:\games\game\d3 ros\diablo iii\diablo iii.exe
FirewallRules: [TCP Query User{EEF208A7-2073-4950-BE60-F4C3F706E443}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{E297F96F-9007-4825-97C6-2FB29A1BEBD2}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [{4FA4D529-369F-4361-A65E-BCA77F56987C}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{F5881D51-CDE4-403C-B05D-E3642F45770F}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{636ED612-1E08-42AD-8309-7648D315CBFA}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{5159A980-EAB1-4139-BF76-71845ACB90B3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [TCP Query User{3D2F42E9-BA95-4324-A08D-3ACB652F2F47}C:\games\game\d3 ros\diablo iii\x64\diablo iii64.exe] => (Allow) C:\games\game\d3 ros\diablo iii\x64\diablo iii64.exe
FirewallRules: [UDP Query User{69DC27AB-A83B-4FE8-8475-9F9345066E90}C:\games\game\d3 ros\diablo iii\x64\diablo iii64.exe] => (Allow) C:\games\game\d3 ros\diablo iii\x64\diablo iii64.exe
FirewallRules: [TCP Query User{78036053-2F14-4CBD-8562-2846C6021F12}C:\program files (x86)\steam\steamapps\common\total war warhammer\warhammer.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war warhammer\warhammer.exe
FirewallRules: [UDP Query User{80D51792-6595-4C63-A35A-C64D6BF8B909}C:\program files (x86)\steam\steamapps\common\total war warhammer\warhammer.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war warhammer\warhammer.exe
FirewallRules: [{32DA6787-9EAB-42F4-856B-70357E523EB1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{6FB64336-B41E-4263-BDA6-EFC60164FFCB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{91B1E92A-BF36-4917-89D1-359FAD67D3BB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E4E9B513-F23C-4C2F-90CF-93C3ABD7423C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{F1ED6135-619A-413A-965B-06E3D32B798F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{04421126-8883-4A9F-A648-BD82FB5B8A46}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{27AF8C68-302A-404A-B849-D08FF01BBEDB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{0F70F300-0C1D-460F-B90F-3AF7DA008C8C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{96A925FF-1A64-4D62-A7C9-48D8E025EDE7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{6BCAEB78-3B9F-4BAF-8CC9-1533491EF46B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{F242C015-293E-4FE9-A723-00FBB2B9A9CF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{9983BB38-CB08-46B6-8D15-50A41C62CBD3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [TCP Query User{EFB81068-0C3E-47E4-B0EB-C49F13E299BE}C:\games\game\total war attila age of charlemagne\attila.exe] => (Allow) C:\games\game\total war attila age of charlemagne\attila.exe
FirewallRules: [UDP Query User{D6CF8EB2-175F-443A-ABC7-4F6AF94CF8B8}C:\games\game\total war attila age of charlemagne\attila.exe] => (Allow) C:\games\game\total war attila age of charlemagne\attila.exe
FirewallRules: [{91D3E203-1BB4-4831-818B-A4240DEADB8D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{87148197-9EC1-4423-B08F-0F7D346172B0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [TCP Query User{9E071849-8F92-4322-8C49-A47118CB3015}C:\games\game\total war warhammer ii the queen and the crone\warhammer2.exe] => (Allow) C:\games\game\total war warhammer ii the queen and the crone\warhammer2.exe
FirewallRules: [UDP Query User{C8B10695-EB52-4C8C-9D91-B5ADC1A76249}C:\games\game\total war warhammer ii the queen and the crone\warhammer2.exe] => (Allow) C:\games\game\total war warhammer ii the queen and the crone\warhammer2.exe
FirewallRules: [TCP Query User{7F7909F6-EC98-444B-8575-981D934921FC}C:\games\game\total war - warhammer ii\warhammer2.exe] => (Allow) C:\games\game\total war - warhammer ii\warhammer2.exe
FirewallRules: [UDP Query User{5332E37D-47B4-4B14-91DE-C9E1085F537F}C:\games\game\total war - warhammer ii\warhammer2.exe] => (Allow) C:\games\game\total war - warhammer ii\warhammer2.exe
FirewallRules: [{434438D2-255E-4691-B4C9-8A2BBCEF0C9D}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{1330B6CA-5966-4D37-8CC4-7EE78ADAA1BD}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{41CC5487-10DD-4ED9-A9B8-B1F6A4CA58F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War Rome II\launcher\launcher.exe
FirewallRules: [{0AFFA80C-7DAE-4A0D-A626-33FBC54A08C8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War Rome II\launcher\launcher.exe
FirewallRules: [TCP Query User{9579CF84-0C52-4B9D-9B22-1923CA6AACE4}C:\games\game\football manager 2019\fm.exe] => (Allow) C:\games\game\football manager 2019\fm.exe
FirewallRules: [UDP Query User{D8AF0FF0-43BB-4F58-AB14-3446EADFC23C}C:\games\game\football manager 2019\fm.exe] => (Allow) C:\games\game\football manager 2019\fm.exe
FirewallRules: [{B66D047D-98D1-47E8-BBDA-138C421FB8AE}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
FirewallRules: [{E9060045-0C59-4212-B5D2-A48AB5B0E279}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe
FirewallRules: [{B1BDB767-D042-4D95-AEDF-6C7569822C6D}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe
FirewallRules: [{0DC9C1DD-94D0-400A-B648-1FD495F8D787}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{E26DFBAC-992C-4226-A37B-A831309C01BB}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{AF3AB48E-AE90-4BC2-AC5E-DB9130E48FF3}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe

==================== Restore Points =========================

09-02-2019 21:59:25 Naplánovaný kontrolní bod
14-02-2019 16:17:41 Windows Update
15-02-2019 15:17:10 Windows Update
22-02-2019 16:53:32 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices =============

Name: Řadič USB (Universal Serial Bus)
Description: Řadič USB (Universal Serial Bus)
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (02/23/2019 12:04:20 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/23/2019 12:00:25 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (02/23/2019 11:00:25 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (02/23/2019 10:00:24 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (02/23/2019 09:00:25 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (02/23/2019 08:00:27 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (02/23/2019 07:51:28 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/23/2019 12:00:24 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (02/22/2019 11:00:34 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (02/22/2019 10:00:26 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.


System errors:
=============
Error: (02/23/2019 12:47:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
%%1053

Error: (02/23/2019 12:47:38 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).

Error: (02/23/2019 12:01:53 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Origin Web Helper Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (02/23/2019 12:01:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (02/23/2019 12:01:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Instalační služba systému Windows byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (02/23/2019 12:01:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Telemetry Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.

Error: (02/23/2019 12:01:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba HP SI Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.

Error: (02/23/2019 12:01:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.

Error: (02/22/2019 10:15:16 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Windows Update přestala během spouštění reagovat.

Error: (02/17/2019 12:25:13 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 20.


CodeIntegrity:
===================================
Date: 2016-09-20 17:48:23.708
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswHdsKe.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-09-20 17:48:23.707
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswHdsKe.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-09-10 14:49:25.994
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys because the set of per-page image hashes could not be found on the system.

Date: 2016-09-10 14:48:17.598
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system.

Date: 2016-09-10 14:48:17.364
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system.

Date: 2016-09-08 15:03:44.681
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys because the set of per-page image hashes could not be found on the system.

Date: 2016-09-08 15:02:17.473
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system.

Date: 2016-09-08 15:02:17.223
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system.

Date: 2016-09-07 14:54:19.579
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys because the set of per-page image hashes could not be found on the system.

Date: 2016-09-07 14:52:21.925
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: AMD Phenom(tm) II X4 960T Processor
Percentage of memory in use: 21%
Total physical RAM: 16346.44 MB
Available physical RAM: 12899.15 MB
Total Virtual: 32691.02 MB
Available Virtual: 29198.49 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.66 GB) (Free:18.97 GB) NTFS

==================== MBR & Partition Table ==================

==================== End of Addition.txt ============================

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Pomalé pc, zamrzání při spuštění

#7 Příspěvek od Diallix »

Do poznamkoveho bloku skopirujte obsah dole:

Kód: Vybrat vše

CloseProcesses:
CreateRestorePoint:

C:\Windows\System32\Drivers\afmdeo8w.sys

HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\MountPoints2: {531d63bc-556a-11e6-9ad0-5404a60befb4} - E:\stp-tww2.exe
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\MountPoints2: {a1f90a74-ab77-11e7-b6a9-5404a60befb4} - F:\Setup.exe
Toolbar: HKU\S-1-5-21-1179782796-346578947-3724073776-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
U3 afmdeo8w; C:\Windows\System32\Drivers\afmdeo8w.sys [0 ] (Advanced Micro Devices) <==== ATTENTION (zero byte File/Folder)
Task: {65F6E881-1261-4ADC-8437-6D76F66F5AF7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-28] (Google Inc.)
Task: {86879F20-70F8-40B3-BD43-F8DBAC7F3ED9} - \AutoKMS -> No File <==== ATTENTION
Task: {BD28C463-D201-4789-AB38-C81749AA3F8D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-28] (Google Inc.)
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe

EmptyTemp:

Poznamkovy blok ulozte pod nazvom fixlist.txt do umiestnenia kde je FRST.
Spustite FRST a odkliknite tlacidlo: Fix
Vykona sa funkcionalita po ktorej sa pocitac rebootuje. Po reboote sem vlozte obsah logu: fixlog.txt ulozeneho v umiestneni FRST.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Malarkyy
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 06 lis 2013 16:13

Re: Pomalé pc, zamrzání při spuštění

#8 Příspěvek od Malarkyy »

Fix result of Farbar Recovery Scan Tool (x64) Version:13-04-2016
Ran by Vitek (2019-02-23 14:58:49) Run:2
Running from C:\Users\Vitek\Desktop\Vitek\Programy\Antiviry-čištění počítače
Loaded Profiles: Vitek (Available Profiles: Vitek)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CloseProcesses:
CreateRestorePoint:

C:\Windows\System32\Drivers\afmdeo8w.sys

HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\MountPoints2: {531d63bc-556a-11e6-9ad0-5404a60befb4} - E:\stp-tww2.exe
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\...\MountPoints2: {a1f90a74-ab77-11e7-b6a9-5404a60befb4} - F:\Setup.exe
Toolbar: HKU\S-1-5-21-1179782796-346578947-3724073776-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
U3 afmdeo8w; C:\Windows\System32\Drivers\afmdeo8w.sys [0 ] (Advanced Micro Devices) <==== ATTENTION (zero byte File/Folder)
Task: {65F6E881-1261-4ADC-8437-6D76F66F5AF7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-28] (Google Inc.)
Task: {86879F20-70F8-40B3-BD43-F8DBAC7F3ED9} - \AutoKMS -> No File <==== ATTENTION
Task: {BD28C463-D201-4789-AB38-C81749AA3F8D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-28] (Google Inc.)
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe

EmptyTemp:
*****************

Processes closed successfully.
Restore point was successfully created.
Could not move "C:\Windows\System32\Drivers\afmdeo8w.sys" => Scheduled to move on reboot.
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\Software\Microsoft\Windows\CurrentVersion\Run\\GalaxyClient => value removed successfully
"HKU\S-1-5-21-1179782796-346578947-3724073776-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{531d63bc-556a-11e6-9ad0-5404a60befb4}" => key removed successfully
HKCR\CLSID\{531d63bc-556a-11e6-9ad0-5404a60befb4} => key not found.
"HKU\S-1-5-21-1179782796-346578947-3724073776-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a1f90a74-ab77-11e7-b6a9-5404a60befb4}" => key removed successfully
HKCR\CLSID\{a1f90a74-ab77-11e7-b6a9-5404a60befb4} => key not found.
HKU\S-1-5-21-1179782796-346578947-3724073776-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value removed successfully
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => key not found.
afmdeo8w => service removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{65F6E881-1261-4ADC-8437-6D76F66F5AF7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65F6E881-1261-4ADC-8437-6D76F66F5AF7}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{86879F20-70F8-40B3-BD43-F8DBAC7F3ED9}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{86879F20-70F8-40B3-BD43-F8DBAC7F3ED9}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BD28C463-D201-4789-AB38-C81749AA3F8D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BD28C463-D201-4789-AB38-C81749AA3F8D}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => key removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\SPPSVC-In-TCP => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\SPPSVC-In-TCP-NoScope => value removed successfully
EmptyTemp: => 802.2 MB temporary data Removed.

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2019-02-23 15:02:00)

C:\Windows\System32\Drivers\afmdeo8w.sys => Is moved successfully

==== End of Fixlog 15:02:01 ====

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Pomalé pc, zamrzání při spuštění

#9 Příspěvek od Diallix »

Ako je na tom pocitac
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Malarkyy
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 06 lis 2013 16:13

Re: Pomalé pc, zamrzání při spuštění

#10 Příspěvek od Malarkyy »

Zdá se že je rychlejší, co se týče zamrzání tak zatím nic ale jak sem psal v původním zprávě nedělo se to pravidelně tak že u tohoto problému zatím nemůžu jistě říct že je to v pořádku ale samozřejmě děkuju a kdyby náhodou tak se zase ozvu

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Pomalé pc, zamrzání při spuštění

#11 Příspěvek od Diallix »

ok, v poriadku
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Odpovědět