Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Poprosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Tony182
Návštěvník
Návštěvník
Příspěvky: 78
Registrován: 05 čer 2016 17:14

Poprosím o kontrolu logu

#1 Příspěvek od Tony182 »

Dobrý večer, poprosím o kontrou logu. Počítač byl silně zanesený, MBAM, ADWcleanr a Eset online security scan našli přes sto nálezů a kompl už vypadá že funguje lépe ale stále to není ono :(

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 17-03-2019
Ran by Acer (administrator) on DESKTOP-IDC62IU (11-04-2019 20:33:41)
Running from C:\Users\Acer\Desktop
Loaded Profiles: Acer (Available Profiles: Acer)
Platform: Microsoft Windows 10 Home Version 1803 17134.706 (X86) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Realtek Semiconductor Corp -> ) C:\Program Files\REALTEK\REALTEK Bluetooth\BTDevMgr.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Baytrail Wintablet -> Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe
(Intel(R) Baytrail Wintablet -> Intel Corporation) C:\Windows\System32\DptfPolicyLpmService.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\AOP Framework\CCDMonitorService.exe
(Intel(R) Baytrail Wintablet -> Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1903.4-0\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1903.4-0\NisSrv.exe
(Google Inc -> Google LLC) C:\Program Files\Google\Update\1.3.34.7\GoogleCrashHandler.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(Acer Incorporated -> Acer Cloud Technology) C:\Program Files\Acer\AOP Framework\acer\ccd.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x86__kzf8qxf38zg5c\SkypeApp.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x86__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
() [File not signed] C:\OEM\FixLockkeyAP\InputDetect.exe
(Intel(R) Baytrail Wintablet -> Intel Corporation) C:\Windows\System32\DptfPolicyLpmServiceHelper.exe
(Acer Incorporated -> ) C:\OEM\Preload\FubTracking\FubTracking.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\AOP Framework\BackgroundAgent.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Acer Incorporated -> ) C:\Program Files\Acer\Care Center\ACCStd.exe
(Acer Incorporated -> acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [InputDetect] => C:\oem\FixLockkeyAP\InputDetect.exe [47616 2015-07-02] () [File not signed]
HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [113664 2015-06-23] (Intel(R) Baytrail Wintablet -> Intel Corporation)
HKLM\Software\...\AppCompatFlags\InstalledSDB\{49cd2afd-8679-48a5-90ab-e7044bee2465}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{49cd2afd-8679-48a5-90ab-e7044bee2465}.sdb [2018-06-27]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\73.0.3683.103\Installer\chrmstp.exe [2019-04-11] (Google LLC -> Google Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{0c9a74c9-93df-4acc-a2bb-f4c29900d24b}: [DhcpNameServer] 10.61.56.1
Tcpip\..\Interfaces\{aec0a7c6-0047-4045-a689-dd7a47bce434}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKU\S-1-5-21-3241954173-155425805-1236241262-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer15.msn.com/?pc=ACTE
HKU\S-1-5-21-3241954173-155425805-1236241262-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer15.msn.com/?pc=ACTE
SearchScopes: HKU\S-1-5-21-3241954173-155425805-1236241262-1001 -> DefaultScope {57C55690-4BDB-415A-874F-2C524F82D635} URL =
SearchScopes: HKU\S-1-5-21-3241954173-155425805-1236241262-1001 -> {57C55690-4BDB-415A-874F-2C524F82D635} URL =

FireFox:
========
FF DefaultProfile: eoqquet4.default
FF ProfilePath: C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\eoqquet4.default [2019-04-11]
FF Extension: (Czech (CZ) Language Pack) - C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\eoqquet4.default\Extensions\langpack-cs@firefox.mozilla.org [2018-03-21] [Legacy]
FF Extension: (Mozilla Partner Defaults) - C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\eoqquet4.default\Extensions\partnerdefaults@mozilla.com [2018-03-21] [Legacy]
FF Extension: (Czech (CZ) Language Pack) - C:\Program Files\Mozilla Firefox\distribution\extensions\langpack-cs@firefox.mozilla.org [2016-05-09] [Legacy]
FF Extension: (Mozilla Partner Defaults) - C:\Program Files\Mozilla Firefox\distribution\extensions\partnerdefaults@mozilla.com [2016-05-09] [Legacy]
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-28] (Google Inc -> Google LLC)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-28] (Google Inc -> Google LLC)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.centrum.cz/#utm_source=icq&utm_medium=generic
CHR StartupUrls: Default -> "","hxxp://google.cz/","hxxp://www.msn.com/?pc=UP97&ocid=UP97DHP"
CHR Profile: C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default [2019-02-11]
CHR Extension: (Prezentace) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-01-08]
CHR Extension: (Dokumenty) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-01-08]
CHR Extension: (Disk Google) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-01-08]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2018-11-29]
CHR Extension: (Seznam doplněk - Esko-) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2018-11-29]
CHR Extension: (YouTube) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-01-08]
CHR Extension: (Adblock Plus) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-12-05]
CHR Extension: (Tabulky) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-01-08]
CHR Extension: (Dokumenty Google offline) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-16]
CHR Extension: (AdBlock) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-02-11]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2018-11-29]
CHR Extension: (Gmail) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-01-08]
CHR Extension: (Chrome Media Router) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-01-08]
CHR HKLM\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 BTDevManager; C:\Program Files\REALTEK\REALTEK Bluetooth\BTDevMgr.exe [144600 2015-05-28] (Realtek Semiconductor Corp -> )
R2 CCDMonitorService; C:\Program Files\Acer\AOP Framework\CCDMonitorService.exe [2278616 2017-03-20] (Acer Incorporated -> Acer Incorporated)
S3 cphs; C:\WINDOWS\system32\IntelCpHeciSvc.exe [299488 2016-05-03] (Intel(R) pGFX -> Intel Corporation)
S2 Dashlane Upgrade Service; C:\Program Files\Dashlane\Upgrade\DashlaneUpgradeService.exe [83992 2017-08-23] (Dashlane -> Dashlane, Inc.)
R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [118792 2015-06-23] (Intel(R) Baytrail Wintablet -> Intel Corporation)
R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [115712 2015-06-23] (Intel(R) Baytrail Wintablet -> Intel Corporation)
R2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [125952 2015-06-23] (Intel(R) Baytrail Wintablet -> Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [292832 2016-05-03] (Intel(R) pGFX -> Intel Corporation)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [291232 2016-02-01] (Acer Incorporated -> acer)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\NisSrv.exe [3196208 2019-04-09] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\MsMpEng.exe [91560 2019-04-09] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 camera; C:\WINDOWS\system32\DRIVERS\iacamera32.sys [697360 2015-07-09] (WDKTestCert viedifw,130729818588344082 -> Intel(R) Corporation)
S3 DptfDevAmbient; C:\WINDOWS\System32\drivers\DptfDevAmbient.sys [88584 2015-06-23] (Intel(R) Baytrail Wintablet -> Intel Corporation)
S3 DptfDevDBPT; C:\WINDOWS\System32\drivers\DptfDevPower.sys [55816 2015-06-23] (Intel(R) Baytrail Wintablet -> Intel Corporation)
S3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [59392 2015-06-23] (Intel(R) Baytrail Wintablet -> Intel Corporation)
S3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [85000 2015-06-23] (Intel(R) Baytrail Wintablet -> Intel Corporation)
R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [203264 2015-06-23] (Intel(R) Baytrail Wintablet -> Intel Corporation)
R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [467968 2015-06-23] (Intel(R) Baytrail Wintablet -> Intel Corporation)
R3 GPIO; C:\WINDOWS\System32\drivers\iaiogpioe.sys [34176 2015-06-10] (WDKTestCert sys_dpebuild,130676845367974970 -> Intel Corporation)
R3 GpioVirtual; C:\WINDOWS\System32\drivers\iaiogpiovirtual.sys [27496 2015-06-10] (WDKTestCert sys_dpebuild,130676845367974970 -> Intel Corporation)
R3 iaioi2c; C:\WINDOWS\System32\drivers\iaioi2ce.sys [57360 2015-06-18] (WDKTestCert sys_dpebuild,130676858587893502 -> Intel Corporation)
R3 iaiouart; C:\WINDOWS\System32\drivers\iaiouart.sys [98560 2015-06-10] (WDKTestCert sys_dpebuild,130676858587893502 -> Intel Corporation)
R3 IDTP9145; C:\WINDOWS\System32\drivers\IDTP9145.sys [40960 2015-07-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 igfx; C:\WINDOWS\system32\DRIVERS\igdkmd32.sys [3048928 2016-05-03] (Intel(R) pGFX -> Intel Corporation)
S3 intaud_WaveExtensible; C:\WINDOWS\system32\drivers\intelaud.sys [44016 2015-12-01] (Intel(R) Wireless Display -> Intel Corporation)
R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [277264 2015-11-11] (WDKTestCert sys_dpebuild,130676845285008007 -> Intel(R) Corporation)
R3 iwdbus; C:\WINDOWS\System32\drivers\iwdbus.sys [35320 2015-12-01] (Intel(R) Wireless Display -> Intel Corporation)
R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [33792 2015-06-16] (Intel(R) Baytrail Wintablet -> Intel Corporation)
R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [208624 2015-06-12] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R3 RtkUart; C:\WINDOWS\System32\drivers\RtkUart.sys [544000 2015-05-22] (Realtek Semiconductor Corp -> Realtek Semiconductor Corporation)
R3 RtlWlans; C:\WINDOWS\System32\drivers\rtwlans.sys [6555136 2018-04-11] (Microsoft Windows -> Realtek Semiconductor Corporation )
R3 TXEI; C:\WINDOWS\System32\drivers\TXEI.sys [84520 2015-05-27] (Intel Corporation - Client Components Group -> Intel Corporation)
R3 unicam; C:\WINDOWS\System32\drivers\ov2680.sys [82960 2015-07-10] (WDKTestCert huizhou1,130735866078346983 -> Intel(R) Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [38280 2019-04-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [269792 2019-04-09] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [50144 2019-04-09] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-04-11 20:33 - 2019-04-11 20:36 - 000015046 _____ C:\Users\Acer\Desktop\FRST.txt
2019-04-11 20:33 - 2019-04-11 20:33 - 000000000 ____D C:\FRST
2019-04-11 20:32 - 2019-04-11 20:32 - 001793024 _____ (Farbar) C:\Users\Acer\Desktop\FRST.exe
2019-04-11 19:56 - 2019-04-11 19:56 - 000000000 ____D C:\Users\Acer\AppData\Roaming\CareCenter
2019-04-11 19:51 - 2019-04-11 19:51 - 000000000 ___HD C:\$WINDOWS.~BT
2019-04-11 19:47 - 2019-04-11 19:47 - 000000000 ____D C:\Users\Acer\AppData\Local\OneDrive
2019-04-11 18:21 - 2019-04-11 18:21 - 000000000 ____D C:\Users\Acer\AppData\Local\mbamtray
2019-04-11 18:21 - 2019-04-11 18:21 - 000000000 ____D C:\Users\Acer\AppData\Local\mbam
2019-04-11 18:18 - 2019-04-11 19:42 - 000200870 _____ C:\WINDOWS\ntbtlog.txt
2019-04-11 18:18 - 2019-04-11 18:18 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2019-04-11 17:31 - 2019-04-02 11:25 - 001465512 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-04-11 17:31 - 2019-04-02 11:21 - 000078864 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2019-04-11 17:31 - 2019-04-02 11:18 - 000636880 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-04-11 17:31 - 2019-04-02 11:11 - 011919360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-04-11 17:31 - 2019-04-02 11:11 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-04-11 17:31 - 2019-04-02 11:10 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2019-04-11 17:31 - 2019-04-02 11:08 - 002889216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-04-11 17:31 - 2019-04-02 11:08 - 001459200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-04-11 17:31 - 2019-04-02 11:08 - 001082880 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-04-11 17:31 - 2019-04-02 11:08 - 000890880 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-04-11 17:31 - 2019-04-02 11:07 - 004054528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-04-11 17:31 - 2019-04-02 11:07 - 001586688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-04-11 17:31 - 2019-04-02 11:06 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-04-11 17:31 - 2019-04-02 11:05 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2019-04-11 17:31 - 2019-04-02 11:05 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2019-04-11 17:31 - 2019-04-02 07:10 - 000994264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-04-11 17:31 - 2019-04-02 07:05 - 002350392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-04-11 17:31 - 2019-04-02 07:05 - 002144272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-04-11 17:31 - 2019-04-02 07:05 - 001989544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-04-11 17:31 - 2019-04-02 07:05 - 000633360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-04-11 17:31 - 2019-04-02 07:05 - 000343056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-04-11 17:31 - 2019-04-02 07:04 - 006683664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-04-11 17:31 - 2019-04-02 07:04 - 006572120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-04-11 17:31 - 2019-04-02 07:04 - 000604008 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-04-11 17:31 - 2019-04-02 07:04 - 000560600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-04-11 17:31 - 2019-04-02 06:56 - 022018048 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-04-11 17:31 - 2019-04-02 06:50 - 019404800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-04-11 17:31 - 2019-04-02 06:45 - 002811392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-04-11 17:31 - 2019-04-02 06:43 - 005788160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-04-11 17:31 - 2019-04-02 06:43 - 001753088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-04-11 17:31 - 2019-04-02 06:43 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-04-11 17:31 - 2019-04-02 06:43 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-04-11 17:31 - 2019-04-02 06:42 - 001295360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2019-04-11 17:31 - 2019-04-02 06:42 - 001280000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-04-11 17:31 - 2019-04-02 06:41 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-04-11 17:31 - 2019-04-02 06:41 - 001235968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-04-11 17:31 - 2019-04-02 06:41 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2019-04-11 17:31 - 2019-04-02 06:41 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-04-11 17:31 - 2019-04-02 06:40 - 001733632 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-04-11 17:31 - 2019-04-02 06:40 - 001073664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-04-11 17:31 - 2019-04-02 06:40 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-04-11 17:31 - 2019-03-14 16:10 - 000142136 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2019-04-11 17:31 - 2019-03-14 16:08 - 003611264 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-04-11 17:31 - 2019-03-14 15:56 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2019-04-11 17:31 - 2019-03-14 15:56 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-04-11 17:31 - 2019-03-14 15:55 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpdr.sys
2019-04-11 17:31 - 2019-03-14 15:55 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storqosflt.sys
2019-04-11 17:31 - 2019-03-14 15:55 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcPing.exe
2019-04-11 17:31 - 2019-03-14 15:53 - 000625664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2019-04-11 17:31 - 2019-03-14 15:53 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2019-04-11 17:31 - 2019-03-14 15:53 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2019-04-11 17:31 - 2019-03-14 15:52 - 000502784 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsound.dll
2019-04-11 17:31 - 2019-03-14 10:58 - 000289080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-04-11 17:31 - 2019-03-14 10:57 - 000480264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-04-11 17:31 - 2019-03-14 10:39 - 000119328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-04-11 17:31 - 2019-03-14 10:38 - 000380728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-04-11 17:31 - 2019-03-14 10:38 - 000090360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2019-04-11 17:31 - 2019-03-14 10:37 - 006043496 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-04-11 17:31 - 2019-03-14 10:37 - 002256248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-04-11 17:31 - 2019-03-14 10:37 - 002031112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-04-11 17:31 - 2019-03-14 10:37 - 001190704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-04-11 17:31 - 2019-03-14 10:37 - 001171568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-04-11 17:31 - 2019-03-14 10:37 - 001051264 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-04-11 17:31 - 2019-03-14 10:37 - 000950088 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-04-11 17:31 - 2019-03-14 10:37 - 000831736 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-04-11 17:31 - 2019-03-14 10:37 - 000140832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-04-11 17:31 - 2019-03-14 10:22 - 002700288 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-04-11 17:31 - 2019-03-14 10:21 - 003255296 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-04-11 17:31 - 2019-03-14 10:20 - 006661632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-04-11 17:31 - 2019-03-14 10:20 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2019-04-11 17:31 - 2019-03-14 10:19 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-04-11 17:31 - 2019-03-14 10:19 - 002969600 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-04-11 17:31 - 2019-03-14 10:18 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2019-04-11 17:31 - 2019-03-14 10:18 - 002367488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2019-04-11 17:31 - 2019-03-14 10:18 - 001844224 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2019-04-11 17:31 - 2019-03-14 10:18 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-04-11 17:31 - 2019-03-14 10:18 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2019-04-11 17:31 - 2019-03-14 10:18 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-04-11 17:31 - 2019-03-14 10:18 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\credui.dll
2019-04-11 17:31 - 2019-03-14 10:18 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-04-11 17:31 - 2019-03-14 10:17 - 002258944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-04-11 17:31 - 2019-03-14 10:17 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-04-11 17:31 - 2019-03-14 10:17 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-04-11 17:31 - 2019-03-14 10:17 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2019-04-11 17:31 - 2019-03-14 10:17 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-04-11 17:31 - 2019-03-14 10:17 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2019-04-11 17:31 - 2019-03-14 10:17 - 000193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2019-04-11 17:31 - 2019-03-14 10:17 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmapi.dll
2019-04-11 17:31 - 2019-03-14 10:17 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll
2019-04-11 17:31 - 2019-03-14 10:17 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2019-04-11 17:31 - 2019-03-14 10:17 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe
2019-04-11 17:31 - 2019-03-14 10:16 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-04-11 17:31 - 2019-03-14 10:16 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-04-11 17:31 - 2019-03-14 10:16 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-04-11 17:31 - 2019-03-14 10:16 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2019-04-11 17:31 - 2019-03-14 10:15 - 002415104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-04-11 17:31 - 2019-03-14 10:15 - 000879616 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-04-11 17:31 - 2019-03-14 10:15 - 000548352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-04-11 17:31 - 2019-03-14 10:15 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-04-11 17:31 - 2019-03-14 10:15 - 000318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2019-04-11 17:31 - 2019-03-14 10:15 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2019-04-11 17:31 - 2019-03-14 10:15 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\negoexts.dll
2019-04-11 17:31 - 2019-03-14 10:14 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2019-04-11 17:31 - 2019-03-14 10:14 - 000856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-04-11 17:31 - 2019-03-14 10:14 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-04-11 17:31 - 2019-03-14 10:14 - 000733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-04-11 17:31 - 2019-03-14 10:14 - 000373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll
2019-04-11 17:31 - 2019-03-14 10:14 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-04-11 17:31 - 2019-03-14 10:14 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2019-04-11 17:31 - 2019-03-14 10:14 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-04-11 17:31 - 2019-03-14 10:14 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2019-04-11 17:31 - 2019-03-14 10:14 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2019-04-11 17:31 - 2019-03-14 10:13 - 001468416 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2019-04-11 17:31 - 2019-03-14 10:13 - 000700928 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2019-04-11 17:31 - 2019-03-14 10:13 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-04-11 17:31 - 2019-03-14 10:13 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-04-11 17:31 - 2019-03-14 03:57 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msjet40.dll
2019-04-11 17:31 - 2019-03-14 03:57 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxbde40.dll
2019-04-11 17:31 - 2019-03-14 03:57 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspbde40.dll
2019-04-11 17:31 - 2019-03-14 03:57 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrd3x40.dll
2019-04-11 17:31 - 2019-03-14 03:57 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msexcl40.dll
2019-04-11 17:13 - 2019-02-13 07:07 - 001926672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2019-04-11 15:37 - 2019-04-11 17:59 - 000000000 ____D C:\ProgramData\Temp
2019-04-11 15:12 - 2019-04-11 15:18 - 000000000 ____D C:\AdwCleaner
2019-04-11 15:11 - 2019-04-11 17:58 - 000000000 ____D C:\Users\Acer\AppData\Local\ESET
2019-04-11 14:59 - 2019-04-11 14:59 - 000000000 ____D C:\Users\Acer\AppData\Local\D3DSCache
2019-03-15 20:21 - 2019-03-16 20:17 - 000000000 ____D C:\WINDOWS\Minidump
2019-03-14 20:46 - 2019-02-16 09:54 - 000161312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-03-14 20:46 - 2019-02-16 09:50 - 000371000 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2019-03-14 20:46 - 2019-02-16 09:50 - 000371000 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-03-14 20:46 - 2019-02-16 09:31 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2019-03-14 20:45 - 2019-03-06 08:14 - 000816232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2019-03-14 20:45 - 2019-03-06 08:13 - 000197128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2019-03-14 20:45 - 2019-03-06 07:52 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2019-03-14 20:45 - 2019-03-06 07:51 - 000260096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2019-03-14 20:45 - 2019-03-06 07:50 - 001347584 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2019-03-14 20:45 - 2019-03-06 07:50 - 000625664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-03-14 20:45 - 2019-03-06 07:49 - 004516352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-03-14 20:45 - 2019-03-06 07:47 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys
2019-03-14 20:45 - 2019-02-21 05:26 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrd2x40.dll
2019-03-14 20:45 - 2019-02-16 14:36 - 002712368 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-03-14 20:45 - 2019-02-16 14:36 - 001396016 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-03-14 20:45 - 2019-02-16 14:36 - 000626488 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-03-14 20:45 - 2019-02-16 14:36 - 000601904 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-03-14 20:45 - 2019-02-16 14:36 - 000527160 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-03-14 20:45 - 2019-02-16 14:36 - 000369976 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-03-14 20:45 - 2019-02-16 14:36 - 000126472 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-03-14 20:45 - 2019-02-16 14:36 - 000061448 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-03-14 20:45 - 2019-02-16 14:24 - 000456736 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-03-14 20:45 - 2019-02-16 14:24 - 000449544 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2019-03-14 20:45 - 2019-02-16 14:24 - 000444176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2019-03-14 20:45 - 2019-02-16 14:22 - 001322176 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-03-14 20:45 - 2019-02-16 14:22 - 000970688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2019-03-14 20:45 - 2019-02-16 14:06 - 001530880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2019-03-14 20:45 - 2019-02-16 14:05 - 001544704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2019-03-14 20:45 - 2019-02-16 14:04 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2019-03-14 20:45 - 2019-02-16 10:02 - 005821440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2019-03-14 20:45 - 2019-02-16 09:58 - 000388920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-03-14 20:45 - 2019-02-16 09:57 - 000383288 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-03-14 20:45 - 2019-02-16 09:53 - 004170688 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-03-14 20:45 - 2019-02-16 09:53 - 000443632 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-03-14 20:45 - 2019-02-16 09:51 - 002479168 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-03-14 20:45 - 2019-02-16 09:51 - 001584536 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2019-03-14 20:45 - 2019-02-16 09:51 - 000358712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-03-14 20:45 - 2019-02-16 09:50 - 001805648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-03-14 20:45 - 2019-02-16 09:50 - 001011872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-03-14 20:45 - 2019-02-16 09:50 - 000986936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-03-14 20:45 - 2019-02-16 09:50 - 000803640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2019-03-14 20:45 - 2019-02-16 09:50 - 000502608 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-03-14 20:45 - 2019-02-16 09:34 - 005883904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2019-03-14 20:45 - 2019-02-16 09:33 - 006646784 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2019-03-14 20:45 - 2019-02-16 09:31 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2019-03-14 20:45 - 2019-02-16 09:31 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2019-03-14 20:45 - 2019-02-16 09:30 - 002449408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2019-03-14 20:45 - 2019-02-16 09:30 - 002199040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2019-03-14 20:45 - 2019-02-16 09:30 - 001986560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2019-03-14 20:45 - 2019-02-16 09:30 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-03-14 20:45 - 2019-02-16 09:30 - 000601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-03-14 20:45 - 2019-02-16 09:29 - 000879104 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll
2019-03-14 20:45 - 2019-02-16 09:29 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-03-14 20:45 - 2019-02-16 09:28 - 001051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2019-03-14 20:45 - 2019-02-16 09:28 - 000837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2019-03-14 20:45 - 2019-02-16 09:28 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2019-03-14 20:45 - 2019-02-16 09:28 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2019-03-14 20:45 - 2019-02-16 09:28 - 000528384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-03-14 20:45 - 2019-02-16 09:27 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2019-03-14 20:44 - 2019-03-06 14:18 - 000918032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2019-03-14 20:44 - 2019-03-06 14:09 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2019-03-14 20:44 - 2019-03-06 14:08 - 000686592 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2019-03-14 20:44 - 2019-03-06 14:06 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-03-14 20:44 - 2019-03-06 14:05 - 001015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-03-14 20:44 - 2019-03-06 14:05 - 000998400 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2019-03-14 20:44 - 2019-03-06 14:04 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2019-03-14 20:44 - 2019-03-06 08:17 - 000146712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2019-03-14 20:44 - 2019-03-06 08:15 - 000434488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-03-14 20:44 - 2019-03-06 08:14 - 000665224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-03-14 20:44 - 2019-03-06 08:14 - 000512312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2019-03-14 20:44 - 2019-03-06 08:14 - 000450872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpx.dll
2019-03-14 20:44 - 2019-03-06 08:14 - 000447288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2019-03-14 20:44 - 2019-03-06 08:14 - 000307000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2019-03-14 20:44 - 2019-03-06 08:13 - 000607248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-03-14 20:44 - 2019-03-06 07:52 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2019-03-14 20:44 - 2019-03-06 07:52 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2019-03-14 20:44 - 2019-03-06 07:51 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-03-14 20:44 - 2019-03-06 07:50 - 001628160 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-03-14 20:44 - 2019-03-06 07:47 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys
2019-03-14 20:44 - 2019-03-06 07:47 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msfs.sys
2019-03-14 20:44 - 2019-02-16 14:36 - 000262968 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-03-14 20:44 - 2019-02-16 14:08 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2019-03-14 20:44 - 2019-02-16 14:07 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-03-14 20:44 - 2019-02-16 14:07 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-03-14 20:44 - 2019-02-16 14:06 - 001451520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-03-14 20:44 - 2019-02-16 14:06 - 000774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-03-14 20:44 - 2019-02-16 14:06 - 000765952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2019-03-14 20:44 - 2019-02-16 14:05 - 001132544 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2019-03-14 20:44 - 2019-02-16 14:04 - 000707584 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2019-03-14 20:44 - 2019-02-16 14:04 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-03-14 20:44 - 2019-02-16 10:01 - 000535856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-03-14 20:44 - 2019-02-16 09:57 - 000030520 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-03-14 20:44 - 2019-02-16 09:52 - 000071752 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-03-14 20:44 - 2019-02-16 09:51 - 000170952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2019-03-14 20:44 - 2019-02-16 09:50 - 000504072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2019-03-14 20:44 - 2019-02-16 09:33 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2019-03-14 20:44 - 2019-02-16 09:31 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2019-03-14 20:44 - 2019-02-16 09:30 - 000254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2019-03-14 20:44 - 2019-02-16 09:28 - 000833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-04-11 20:33 - 2018-04-11 22:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-04-11 20:28 - 2018-10-25 20:18 - 001689050 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-04-11 20:28 - 2018-04-12 06:53 - 000717824 _____ C:\WINDOWS\system32\perfh005.dat
2019-04-11 20:28 - 2018-04-12 06:53 - 000145384 _____ C:\WINDOWS\system32\perfc005.dat
2019-04-11 20:28 - 2018-04-11 22:31 - 000000000 ____D C:\WINDOWS\INF
2019-04-11 20:24 - 2018-01-02 12:22 - 000000000 __SHD C:\Users\Acer\IntelGraphicsProfiles
2019-04-11 20:04 - 2018-10-25 20:19 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-04-11 20:03 - 2018-04-11 14:45 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-04-11 19:52 - 2018-10-22 20:10 - 000000000 ___DC C:\WINDOWS\Panther
2019-04-11 19:45 - 2018-10-25 20:05 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-04-11 19:43 - 2018-01-02 21:12 - 000000000 ____D C:\Program Files\Amazon
2019-04-11 17:59 - 2018-10-25 20:05 - 000258632 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-04-11 17:59 - 2016-05-09 15:21 - 000000000 ____D C:\ProgramData\OEM
2019-04-11 17:57 - 2018-04-11 22:36 - 000000000 ___RD C:\Program Files\Windows Defender
2019-04-11 17:57 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\TextInput
2019-04-11 17:57 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-04-11 17:38 - 2018-04-11 22:25 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-04-11 17:18 - 2018-01-08 14:53 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-04-11 17:13 - 2018-01-03 13:19 - 128044056 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-04-11 16:13 - 2016-05-09 15:22 - 000000000 ____D C:\Users\Default\AppData\Local\Host App Service
2019-04-11 16:13 - 2016-05-09 15:22 - 000000000 ____D C:\Users\Default User\AppData\Local\Host App Service
2019-04-11 15:43 - 2018-01-08 14:58 - 000002251 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-04-11 15:36 - 2018-10-25 20:07 - 000002362 _____ C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-04-11 15:36 - 2018-01-02 12:25 - 000000000 ___RD C:\Users\Acer\OneDrive
2019-04-11 15:21 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-04-11 15:20 - 2018-10-25 20:07 - 000000000 ____D C:\Users\Acer
2019-04-11 15:18 - 2017-09-29 13:55 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-04-11 15:14 - 2018-04-11 22:36 - 000000000 ___HD C:\Program Files\WindowsApps
2019-04-09 20:25 - 2018-02-27 20:24 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-04-05 19:51 - 2018-01-03 08:12 - 000000000 ____D C:\Program Files\rempl
2019-04-01 19:51 - 2018-04-11 22:39 - 000835480 _____ (Adobe) C:\WINDOWS\system32\FlashPlayerApp.exe
2019-04-01 19:51 - 2018-04-11 22:39 - 000179608 _____ (Adobe) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2019-03-15 20:24 - 2018-04-11 22:36 - 000000000 ___SD C:\WINDOWS\system32\UNP
2019-03-15 20:24 - 2018-04-11 22:36 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-03-15 20:24 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-03-15 20:24 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-03-15 20:24 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-03-14 20:49 - 2018-11-16 13:10 - 000806320 _____ C:\WINDOWS\system32\locale.nls
2019-03-14 20:22 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\LiveKernelReports

Some files in TEMP:
====================
2019-04-11 15:04 - 2019-04-11 15:06 - 045727456 _____ (SweetLabs,Inc.) C:\Users\Acer\AppData\Local\Temp\oct1B46.tmp.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\dllhost.exe => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-10-25 20:05

==================== End of FRST.txt ============================

Tony182
Návštěvník
Návštěvník
Příspěvky: 78
Registrován: 05 čer 2016 17:14

Re: Poprosím o kontrolu logu

#2 Příspěvek od Tony182 »

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 17-03-2019
Ran by Acer (11-04-2019 20:37:41)
Running from C:\Users\Acer\Desktop
Microsoft Windows 10 Home Version 1803 17134.706 (X86) (2018-10-25 18:20:16)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Acer (S-1-5-21-3241954173-155425805-1236241262-1001 - Administrator - Enabled) => C:\Users\Acer
Administrator (S-1-5-21-3241954173-155425805-1236241262-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3241954173-155425805-1236241262-503 - Limited - Disabled)
Guest (S-1-5-21-3241954173-155425805-1236241262-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3241954173-155425805-1236241262-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

abFiles (HKLM\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.03.2003 - Acer Incorporated)
abPhoto (HKLM\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 4.00.2001.1 - Acer Incorporated)
Acer Care Center (HKLM\...\{1AF41E84-3408-499A-8C93-8891F0612719}) (Version: 2.00.3019 - Acer Incorporated)
Acer Configuration Manager (HKLM\...\{414D554E-4453-454E-0201-000000016258}) (Version: 2.1.16258 - Acer)
Acer Portal (HKLM\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.12.2006 - Acer Incorporated)
Acer UEIP Framework (HKLM\...\{F89EF116-C406-4436-AC12-2FEF6A6F117C}) (Version: 3.01.3001 - Acer Incorporated)
Amazon Assistant (HKLM\...\{0538B1C2-85C1-4ECC-BA77-61F537D81092}) (Version: 10.18.0221 - Amazon) <==== ATTENTION
AOP Framework (HKLM\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.25.2001.0 - Acer Incorporated)
Bonjour (HKLM\...\{0CB9668D-F979-4F31-B8B8-67FE90F929F8}) (Version: 2.0.2.0 - Apple Inc.)
Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.)
Dashlane Upgrade Service (HKLM\...\Dashlane Upgrade Service) (Version: 2.1.17.0 - Dashlane, Inc.)
eBay (HKLM\...\{5A9A1C97-DFF1-42A0-926B-39553CE88332}) (Version: 1.0.17365 - Acer)
Google Chrome (HKLM\...\Google Chrome) (Version: 73.0.3683.103 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.7 - Google LLC) Hidden
Microsoft OneDrive (HKU\S-1-5-21-3241954173-155425805-1236241262-1001\...\OneDriveSetup.exe) (Version: 19.043.0304.0007 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Mozilla Firefox 45.0 (x86 en-US) (HKLM\...\Mozilla Firefox 45.0 (x86 en-US)) (Version: 45.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 45.0 - Mozilla)
OpenOffice 4.1.5 (HKLM\...\{2FEA9841-64DE-4FA5-A36F-1CD23E2790EB}) (Version: 4.15.9789 - Apache Software Foundation)
Pomocník s aktualizací Windows 10 (HKLM\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22532 - Microsoft Corporation)
REALTEK Bluetooth (HKLM\...\{192979A0-37F4-4703-B1BB-62052142CE44}) (Version: 1.0.95.50602 - REALTEK Semiconductor Corp.) Hidden
REALTEK Bluetooth (HKLM\...\InstallShield_{192979A0-37F4-4703-B1BB-62052142CE44}) (Version: 1.0.95.50602 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM\...\{33AABC60-A52F-41FF-B2B9-17321240CD5}) (Version: 1.00.0282 - REALTEK Semiconductor Corp.)
UpdateAssistant (HKLM\...\{D66FEADA-C0EB-446E-955B-77E60B1FD5A1}) (Version: 1.19.0.0 - Microsoft Corporation) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 3.0.6 - VideoLAN)
Windows Driver Package - Kionix (WUDFRd) Sensor (07/30/2015 1.0.0.6) (HKLM\...\382C168E514F6CE64FDCF21159DD6ECEC5449121) (Version: 07/30/2015 1.0.0.6 - Kionix)
Windows Setup Remediations (x86) (KB4023057) (HKLM\...\{49cd2afd-8679-48a5-90ab-e7044bee2465}.sdb) (Version: - )

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3241954173-155425805-1236241262-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}
CustomCLSID: HKU\S-1-5-21-3241954173-155425805-1236241262-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation)
ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files\Acer\shellext\Win32\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files\Acer\shellext\Win32\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files\Acer\shellext\Win32\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {3744CB4F-A2F1-4903-B408-72BCAC1CB0A3} - System32\Tasks\ACCAgent => C:\Program Files\Acer\Care Center\LiveUpdateAgent.exe (Acer Incorporated -> )
Task: {545FB556-4409-4AD9-B6CC-1B41D4EF7659} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {6A73FE3C-C2C0-4AF1-9EB8-0EBFB0BE1EC5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {6B611DFC-15A3-42D9-9B16-5F21DEC792C6} - System32\Tasks\AcerCloud => C:\Program Files\Acer\Acer Portal\AcerPortal.exe (Acer Incorporated -> Acer)
Task: {6C47369D-D444-4EE2-BAFC-87DDF2AC0D31} - System32\Tasks\ACCBackgroundApplication => C:\Program Files\Acer\Care Center\ACCStd.exe (Acer Incorporated -> )
Task: {751B0BB7-CCDD-400D-8719-D06202B0135C} - System32\Tasks\DashlaneUpgradeCheck => net [Argument = start "Dashlane Upgrade Service"]
Task: {7A8F8E8E-A85F-4F8D-9FE7-997B756B51CA} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe (Acer Incorporated -> Acer Incorporated)
Task: {9E9815AB-F21C-4136-AFF4-32572FF17E2A} - System32\Tasks\BacKGroundAgent => C:\Program Files\Acer\AOP Framework\BackgroundAgent.exe (Acer Incorporated -> Acer Incorporated)
Task: {AF7C59D1-5964-4FB6-BC9D-F199BCE630ED} - System32\Tasks\FUBTrackingByPLD => C:\OEM\Preload\FubTracking\FubTracking.exe (Acer Incorporated -> )
Task: {B84A621D-606F-4ED6-9E0F-2F7DA53D1A0D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {B889A6D8-646F-417C-B0ED-193AAA019B57} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {BEF678A0-BCD7-4443-8BB2-4E37054084D7} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe (Acer Incorporated -> TODO: <Company name>)
Task: {BF3B7F1F-8885-4768-9834-999A93A9FA13} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {C99510C9-5761-4BF6-A957-E106BDD0AB1A} - System32\Tasks\ACC => C:\Program Files\Acer\Care Center\LiveUpdateChecker.exe (Acer Incorporated -> )
Task: {CF18ABA0-2B26-48EA-84A4-D0CD590B277E} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures
Task: {D030F803-576C-4819-992B-F04B5051AFA0} - System32\Tasks\AcerCMUpdateTask2.1.16258 => C:\Program Files\Acer\Amundsen\2.1.16258\AWC.exe (Acer Incorporated -> )
Task: {F63FDF35-3FF7-40CE-A8F3-2C758B00A445} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {F842DA40-AA51-4A40-B4B0-BE36540C6844} - System32\Tasks\CareCenter\SecurityHealth_Reg_HKLMRun => C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Windows -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2018-01-03 17:03 - 2015-07-02 10:58 - 000047616 _____ () C:\OEM\FixLockkeyAP\InputDetect.exe

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-10-30 07:48 - 2015-10-30 07:47 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3241954173-155425805-1236241262-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Acer01.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{60C87783-DF13-4EBF-9CAF-D5B5ABEA187C}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{9EC690E6-7CAA-40B2-9921-871D8382F379}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CE4F5D6F-DAF7-40AF-B41A-18811E918998}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{128B6064-8D67-408A-AD1A-2F774F7840C9}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{D33DD7B6-3F5C-422B-AFF5-A166CE380CBE}] => (Allow) C:\Program Files\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology)
FirewallRules: [{AE6269C6-CC7E-4725-8729-AE72C2DE6796}] => (Allow) C:\Program Files\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology)
FirewallRules: [{59AE74B2-146F-45B7-B46F-4E8558B8A5D7}] => (Allow) C:\Program Files\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{F87E2DDA-B92C-47DB-9004-B10206D58696}] => (Allow) C:\Program Files\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{4C26A707-9793-42A3-958A-C15E973666E4}] => (Allow) C:\Program Files\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer)
FirewallRules: [{30101212-2311-45AE-85D4-CF67CDF784BB}] => (Allow) C:\Program Files\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer)
FirewallRules: [{3C751D97-EAB7-4256-ABED-7A25BCE0CE61}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (04/05/2019 07:50:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: sedsvc.exe, verze: 10.0.17134.10024, časové razítko: 0x5e87c25a
Název chybujícího modulu: sedsvc.exe, verze: 10.0.17134.10024, časové razítko: 0x5e87c25a
Kód výjimky: 0xc0000005
Posun chyby: 0x00017413
ID chybujícího procesu: 0x14b8
Čas spuštění chybující aplikace: 0x01d4df45fc17445e
Cesta k chybující aplikaci: C:\Program Files\rempl\sedsvc.exe
Cesta k chybujícímu modulu: C:\Program Files\rempl\sedsvc.exe
ID zprávy: 8a67da81-f85e-44ee-9c9d-3aece2b0fb25
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (04/05/2019 07:43:58 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname DESKTOP-IDC62IU.local already in use; will try DESKTOP-IDC62IU-2.local instead

Error: (04/05/2019 07:43:58 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 1; will rename 16 DESKTOP-IDC62IU.local. AAAA FE80:0000:0000:0000:AC27:13CA:A158:6D7F

Error: (04/05/2019 07:43:57 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from FE80:0000:0000:0000:AC27:13CA:A158:6D7F:5353 4 DESKTOP-IDC62IU.local. Addr 192.168.1.243

Error: (03/30/2019 08:01:43 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname DESKTOP-IDC62IU.local already in use; will try DESKTOP-IDC62IU-2.local instead

Error: (03/30/2019 08:01:43 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 2; will rename 16 DESKTOP-IDC62IU.local. AAAA FE80:0000:0000:0000:AC27:13CA:A158:6D7F

Error: (03/30/2019 08:01:43 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from FE80:0000:0000:0000:AC27:13CA:A158:6D7F:5353 4 DESKTOP-IDC62IU.local. Addr 192.168.1.243

Error: (03/26/2019 08:43:33 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNS_Execute: SendResponses didn't send all its responses; will try again in one second


System errors:
=============
Error: (04/11/2019 08:24:57 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/11/2019 08:24:57 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/11/2019 08:24:56 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/11/2019 08:06:40 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscDataProtection
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/11/2019 08:04:29 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/11/2019 08:04:29 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/11/2019 07:47:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscDataProtection
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/11/2019 07:45:21 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


Windows Defender:
===================================
Date: 2019-04-11 18:17:32.596
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {E0777A68-8419-4477-9F3C-9E06250EB7B5}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: DESKTOP-IDC62IU\Acer

Date: 2019-03-31 20:55:05.140
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {24FABADA-EB3B-4D13-87E7-6CDFDA22BC2C}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-03-22 20:31:22.091
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {ADDD745F-23A1-4A7F-B7B8-EC18DC066CEF}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-03-22 20:04:06.802
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {24C15D71-681E-4E78-A449-CF66D8CB445D}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-03-21 20:31:29.121
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {EBFA7F53-A12D-446B-AAB9-92FB7069E01E}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-04-11 18:29:36.325
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.291.1667.0
Zdroj aktualizace: Server Microsoft Update
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15800.1
Kód chyby: 0x8007043c
Popis chyby :Tuto službu nelze spustit v nouzovém režimu.

Date: 2019-04-11 18:18:33.646
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Windows Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x8007043c
Popis chyby: Tuto službu nelze spustit v nouzovém režimu.
Důvod: Antimalwarová ochrana přestala z neznámých důvodů fungovat. V některých případech lze tento problém vyřešit restartováním služby.

Date: 2019-03-11 20:20:17.299
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.289.692.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15700.9
Kód chyby: 0x80072ee7
Popis chyby :Nelze rozpoznat název nebo adresu serveru.

Date: 2019-03-11 20:20:17.297
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.289.692.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ podpisu: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15700.9
Kód chyby: 0x80072ee7
Popis chyby :Nelze rozpoznat název nebo adresu serveru.

Date: 2019-03-11 20:20:17.296
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.289.692.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15700.9
Kód chyby: 0x80072ee7
Popis chyby :Nelze rozpoznat název nebo adresu serveru.

==================== Memory info ===========================

Processor: Intel(R) Atom(TM) CPU Z3735G @ 1.33GHz
Percentage of memory in use: 91%
Total physical RAM: 962.92 MB
Available physical RAM: 84.63 MB
Total Virtual: 2156.61 MB
Available Virtual: 374.79 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:28.01 GB) (Free:2.65 GB) NTFS
Drive d: () (Removable) (Total:14.94 GB) (Free:4.86 GB) NTFS

\\?\Volume{a21eeb61-69e5-4521-b304-c6d18d9edac9}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.7 GB) NTFS
\\?\Volume{f8cf14df-459e-4c88-8fb9-a4755617e3bb}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.05 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 29.1 GB) (Disk ID: 1D611CD1)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 14.9 GB) (Disk ID: 052DF199)
Partition 1: (Active) - (Size=14.9 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118265
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Poprosím o kontrolu logu

#3 Příspěvek od Rudy »

Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
Task: {545FB556-4409-4AD9-B6CC-1B41D4EF7659} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {F63FDF35-3FF7-40CE-A8F3-2C758B00A445} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
SearchScopes: HKU\S-1-5-21-3241954173-155425805-1236241262-1001 -> DefaultScope {57C55690-4BDB-415A-874F-2C524F82D635} URL =
SearchScopes: HKU\S-1-5-21-3241954173-155425805-1236241262-1001 -> {57C55690-4BDB-415A-874F-2C524F82D635} URL =
C:\Users\Acer\AppData\Local\Temp

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Tony182
Návštěvník
Návštěvník
Příspěvky: 78
Registrován: 05 čer 2016 17:14

Re: Poprosím o kontrolu logu

#4 Příspěvek od Tony182 »

Fix result of Farbar Recovery Scan Tool (x86) Version: 17-03-2019
Ran by Acer (11-04-2019 21:35:10) Run:1
Running from C:\Users\Acer\Desktop
Loaded Profiles: Acer (Available Profiles: Acer)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start

CloseProcesses:
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
Task: {545FB556-4409-4AD9-B6CC-1B41D4EF7659} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {F63FDF35-3FF7-40CE-A8F3-2C758B00A445} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
SearchScopes: HKU\S-1-5-21-3241954173-155425805-1236241262-1001 -> DefaultScope {57C55690-4BDB-415A-874F-2C524F82D635} URL =
SearchScopes: HKU\S-1-5-21-3241954173-155425805-1236241262-1001 -> {57C55690-4BDB-415A-874F-2C524F82D635} URL =
C:\Users\Acer\AppData\Local\Temp

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => removed successfully.
HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => removed successfully.
HKLM\Software\Classes\CLSID\{B298D29A-A6ED-11DE-BA8C-A68E55D89593} => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully.
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => removed successfully.
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => removed successfully.
HKLM\Software\Classes\CLSID\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => not found
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => removed successfully.
HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} => not found
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => removed successfully.
HKLM\Software\Classes\CLSID\{474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => not found
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully.
HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => not found
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully.
HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D} => not found
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => removed successfully.
HKLM\Software\Classes\CLSID\{474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{545FB556-4409-4AD9-B6CC-1B41D4EF7659}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{545FB556-4409-4AD9-B6CC-1B41D4EF7659}" => removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F63FDF35-3FF7-40CE-A8F3-2C758B00A445}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F63FDF35-3FF7-40CE-A8F3-2C758B00A445}" => removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully.
"HKU\S-1-5-21-3241954173-155425805-1236241262-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => removed successfully.
HKU\S-1-5-21-3241954173-155425805-1236241262-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{57C55690-4BDB-415A-874F-2C524F82D635} => removed successfully.
HKLM\Software\Classes\CLSID\{57C55690-4BDB-415A-874F-2C524F82D635} => not found
C:\Users\Acer\AppData\Local\Temp => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 7888896 B
DOMStoree, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 232722247 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 2585842 B
Edge => 1497773 B
Chrome => 20466395 B
Firefox => 37787956 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
LocalService => 874 B
NetworkService => 262478 B
Acer => 443861 B

RecycleBin => 0 B
EmptyTemp: => 289.6 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 21:37:25 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118265
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Poprosím o kontrolu logu

#5 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Tony182
Návštěvník
Návštěvník
Příspěvky: 78
Registrován: 05 čer 2016 17:14

Re: Poprosím o kontrolu logu

#6 Příspěvek od Tony182 »

je to lepší...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118265
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Poprosím o kontrolu logu

#7 Příspěvek od Rudy »

Zkuste ještě defragmentovat disk.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět