Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

sobory lnk

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
bohumil33
Návštěvník
Návštěvník
Příspěvky: 2
Registrován: 01 zář 2017 17:17

sobory lnk

#1 Příspěvek od bohumil33 »

Dobrý den, mám problém při kterém se kopírované soubory na USB Flash nebo SD kartu změní na soubor lnk
Děkuji za podporu.

viz níže posílám logy

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 30-07-2019 01
Ran by Uzivatel (administrator) on PRACOVNI (LENOVO 4391B76) (31-07-2019 14:32:39)
Running from D:\Stažené soubory
Loaded Profiles: Uzivatel (Available Profiles: Uzivatel)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\AppleFirefoxHost.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\iCloudDrive.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\iCloudPhotos.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Apple Inc. -> Apple, Inc.) C:\Program Files\Common Files\Apple\Apple Application Support\secd.exe
(Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe
(Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe
(Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
(Flvto.biz) [File not signed] C:\Users\Uzivatel\AppData\Local\Flvto Youtube Downloader\FlvtoYoutubeDownloader.Redesign.exe
(Google Inc -> Google LLC) C:\Program Files\Google\Update\1.3.34.11\GoogleCrashHandler.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(IBM -> IBM Corp.) C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
(IBM -> IBM Corp.) C:\Program Files\Trusteer\Rapport\bin\RapportService.exe
(Intel Corporation -> Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel Corporation -> Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation -> Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Lenovo -> ) C:\Program Files\Lenovo\System Update\SUService.exe
(LENOVO -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe
(LENOVO -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
(LENOVO -> Lenovo Group Limited) C:\Program Files\Lenovo\ZOOM\TpScrex.exe
(LENOVO -> Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(LENOVO(JAPAN)LTD. -> Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CamMute.exe
(LENOVO(JAPAN)LTD. -> Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
(LENOVO(JAPAN)LTD. -> Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
(Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe
(Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe
(Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe
(Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlk.exe
(Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe
(Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wscript.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Ricoh co.,Ltd.) [File not signed] C:\Program Files\Integrated Camera Driver\RCIMGDIR.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ALTOOLS] => AccessL.exe
HKLM\...\Run: [Mouse Suite 98 Daemon] => ICO.EXE
HKLM\...\Run: [TrackPointSrv] => C:\Program Files\Lenovo\TrackPoint\tp4serv.exe [138784 2011-11-01] (Lenovo (Japan) Ltd. -> Lenovo Group Limited)
HKLM\...\Run: [IMSS] => C:\Program Files\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [111928 2013-05-03] (Intel Corporation -> Intel Corporation)
HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [60920 2013-05-29] (LENOVO(JAPAN)LTD. -> Lenovo Group Limited)
HKLM\...\Run: [RotateImage] => C:\Program Files\Integrated Camera Driver\RCIMGDIR.exe [31744 2008-10-30] (Ricoh co.,Ltd.) [File not signed]
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [267576 2019-03-24] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-1536506920-532420862-747104770-1001\...\Run: [iCloudServices] => C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2019-03-13] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-1536506920-532420862-747104770-1001\...\Run: [iCloudDrive] => C:\Program Files\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2019-03-13] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-1536506920-532420862-747104770-1001\...\Run: [ApplePhotoStreams] => C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2019-03-13] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-1536506920-532420862-747104770-1001\...\Run: [iCloudPhotos] => C:\Program Files\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2019-03-13] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-1536506920-532420862-747104770-1001\...\Run: [data] => wscript.exe //B "C:\Users\Uzivatel\AppData\Local\Temp\data.vbs" <==== ATTENTION
HKU\S-1-5-21-1536506920-532420862-747104770-1001\...\Run: [Flvto Youtube Downloader] => C:\Users\Uzivatel\AppData\Local\Flvto Youtube Downloader\FlvtoYoutubeDownloader.Redesign.exe [923136 2019-07-16] (Flvto.biz) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\76.0.3809.87\Installer\chrmstp.exe [2019-07-30] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-05-03] (Adobe Inc. -> Adobe Systems, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\ThinkPad\Bluetooth Software\\BtwCP.dll [2013-05-14] (Broadcom Corporation -> Broadcom Corporation.)
HKLM\Software\...\Authentication\Credential Providers: [{D28973E5-8630-41af-8831-50A15FEB396B}] -> C:\Program Files\ThinkPad\Bluetooth Software\BtwProximityCP.dll [2013-05-14] (Broadcom Corporation -> Broadcom Corporation.)
Lsa: [Notification Packages] scecli C:\Program Files\ThinkPad\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2018-11-02]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.)
Startup: C:\Users\Uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\data.vbs [2016-03-12] () [File not signed]
Startup: C:\Users\Uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sledovat výstrahy inkoustu - HP DeskJet 2130 series.lnk [2019-07-30]
ShortcutAndArgument: Sledovat výstrahy inkoustu - HP DeskJet 2130 series.lnk -> C:\Windows\system32\RunDll32.exe => "C:\Program Files\HP\HP DeskJet 2130 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN73O4B6H5067S;CONNECTION=USB;MONITOR=1;

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01E708FE-340F-4AE8-AE2A-2BBE7B6F4F77} - System32\Tasks\Synaptics TouchPad Enhancements => Program Files\Synaptics\SynTP\SynTPEnh.exe
Task: {094DD21A-7453-48D7-8AFD-4B1FF4499A9D} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2093232 2018-11-26] (Microsoft Corporation -> Microsoft)
Task: {19D25DB4-4532-4CF3-8190-6949341FFD62} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1333616 2018-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {1F13DA8B-6306-4865-A794-CB3BE7E18A3E} - System32\Tasks\HPCustParticipation HP DeskJet 2130 series => C:\Program Files\HP\HP DeskJet 2130 series\Bin\HPCustPartic.exe [4140552 2015-04-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
Task: {3D6C197F-F1EE-46D1-A427-79F7738F26BD} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files\Lenovo\System Update\tvsuShim.exe [1758488 2019-05-24] (Lenovo -> )
Task: {4022FB15-8030-4F62-BBD0-6E11D830162C} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [1903984 2018-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {4D2CC6AB-07BD-4814-87D8-A576280D2290} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files\Lenovo\System Update\tvsuShim.exe [1758488 2019-05-24] (Lenovo -> )
Task: {60A763CD-36D5-4B15-93F6-1326E7E31FFA} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ceip.exe [40112 2018-11-26] (Microsoft Corporation -> Microsoft)
Task: {70EF7B20-3AA8-4293-82D6-6CA09C459A93} - System32\Tasks\Apple Diagnostics => C:\Program Files\Common Files\Apple\Internet Services\EReporter.exe [67896 2019-03-13] (Apple Inc. -> Apple Inc.)
Task: {73863248-0A11-4AD7-B4B2-9E84EB09B994} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [153168 2018-11-02] (Google Inc -> Google Inc.)
Task: {859E5074-878A-4AA7-A80B-B34E9700FDD8} - System32\Tasks\HPCustParticipation HP DeskJet 3630 series => C:\Program Files\HP\HP DeskJet 3630 series\Bin\HPCustPartic.exe [4423816 2017-02-08] (Hewlett Packard -> HP Inc.)
Task: {889ECC2C-C6D2-4AE1-82F1-7995F02AD5F3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.)
Task: {8D81DE3B-4D94-47AD-BAF0-DD2DB443556D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {9669A437-3474-47B4-A293-97ACE5F3F033} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [1903984 2018-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C1E16E5-33FC-4640-B4F2-AD2EDAE4DE67} - System32\Tasks\HPCustPartic.exe_{650E29AF-9761-4603-A4F7-6EECD8A3A45C} => C:\Program Files\HP\HP DeskJet 3630 series\Bin\HPCustPartic.exe [4423816 2017-02-08] (Hewlett Packard -> HP Inc.)
Task: {B6B1345F-F0E9-455F-8ECC-766CDCB43D2D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [153168 2018-11-02] (Google Inc -> Google Inc.)
Task: {DC735637-F133-48F3-966E-3DFEAA5824D7} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1333616 2018-11-26] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{5F6F5B95-2BF3-4528-BD72-12A2F3676851}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{64B41A7A-DA56-4D68-918F-39FD296FC8FD}: [DhcpNameServer] 192.168.43.1

Internet Explorer:
==================
HKU\S-1-5-21-1536506920-532420862-747104770-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.seznam.cz
SearchScopes: HKLM -> DefaultScope {8436CC63-1183-4732-BDB1-3DB3FF5C4793} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {8436CC63-1183-4732-BDB1-3DB3FF5C4793} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2006-10-27] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF DefaultProfile: fwr4l1o6.default
FF ProfilePath: C:\Users\Uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\fwr4l1o6.default [2019-07-31]
FF Homepage: Mozilla\Firefox\Profiles\fwr4l1o6.default -> hxxps://www.seznam.cz/
FF NewTabOverride: Mozilla\Firefox\Profiles\fwr4l1o6.default -> Enabled: {ea614400-e918-4741-9a97-7a972ff7c30b}
FF Extension: (IBM Security Rapport) - C:\Users\Uzivatel\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\rapportext@trusteer.com.xpi [2019-04-24] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx]
FF Extension: (Záložky na iCloudu) - C:\Users\Uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\fwr4l1o6.default\Extensions\firefoxdav@icloud.com.xpi [2018-11-02]
FF Extension: (Seznam doplněk - Esko) - C:\Users\Uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\fwr4l1o6.default\Extensions\sko-extension@firma.seznam.cz.xpi [2019-07-30]
FF Extension: (Seznam doplněk - Email) - C:\Users\Uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\fwr4l1o6.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}.xpi [2018-11-27]
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-03] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://google.cz/
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR Profile: C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default [2019-07-01]
CHR Extension: (Prezentace) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-11-02]
CHR Extension: (Dokumenty) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-11-02]
CHR Extension: (Disk Google) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-11-02]
CHR Extension: (IBM Security Rapport) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbjllphbppobebmjpjcijfbakobcheof [2019-07-01]
CHR Extension: (YouTube) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-11-02]
CHR Extension: (Tabulky) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-11-02]
CHR Extension: (Dokumenty Google offline) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-11-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-11-02]
CHR Extension: (Gmail) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-07-01]
CHR Extension: (Chrome Media Router) - C:\Users\Uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-07-01]
CHR HKU\S-1-5-21-1536506920-532420862-747104770-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bbjllphbppobebmjpjcijfbakobcheof] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 HsfXAudioService; C:\Windows\system32\XAudio32.dll [410624 2009-04-29] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.)
R2 LENOVO.CAMMUTE; C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe [44024 2013-05-29] (LENOVO(JAPAN)LTD. -> Lenovo Group Limited)
R2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [110128 2014-05-27] (Lenovo(Japan)Ltd. -> Lenovo Group Limited)
R2 LENOVO.TPKNRSVC; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [62456 2013-05-29] (LENOVO(JAPAN)LTD. -> Lenovo Group Limited)
S2 LPlatSvc; C:\Windows\system32\LPlatSvc.exe [694272 2016-07-13] (LENOVO -> Lenovo.)
R2 RapportMgmtService; C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe [5274560 2019-04-15] (IBM -> IBM Corp.)
R3 SUService; C:\Program Files\Lenovo\System Update\SUService.exe [23832 2019-05-24] (Lenovo -> )
R2 TPHKLOAD; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [116208 2014-06-10] (LENOVO -> Lenovo Group Limited)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 WirelessKB850NotificationService; C:\Windows\system32\WirelessKB850NotificationService.exe [150192 2018-05-14] (Microsoft Corporation -> Microsoft Corporation)
S2 BalloonService; C:\Program Files\SPICE Guest Tools\drivers\win7\x86\blnsvr.exe [X]
S2 vdservice; C:\Program Files\SPICE Guest Tools\32\vdservice.exe [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 5U877; C:\Windows\System32\DRIVERS\5U877.sys [132864 2011-05-23] (Microsoft Windows Hardware Compatibility Publisher -> Ricoh co.,Ltd.)
S3 BALLOON; C:\Windows\system32\drivers\balloon.sys [29864 2015-04-23] (Red Hat, Inc. -> Red Hat Inc.)
R3 btwampfl; C:\Windows\system32\drivers\btwampfl.sys [508184 2012-12-04] (Broadcom Corporation -> Broadcom Corporation.)
R3 btwaudio; C:\Windows\System32\drivers\btwaudio.sys [152400 2012-05-02] (Broadcom Corporation -> Broadcom Corporation.)
R3 btwavdt; C:\Windows\System32\DRIVERS\btwavdt.sys [175144 2012-03-06] (Broadcom Corporation -> Broadcom Corporation.)
R3 btwl2cap; C:\Windows\System32\DRIVERS\btwl2cap.sys [33832 2011-09-18] (Broadcom Corporation -> Broadcom Corporation.)
R3 btwrchid; C:\Windows\System32\DRIVERS\btwrchid.sys [18728 2012-03-06] (Broadcom Corporation -> Broadcom Corporation.)
S3 e36gbus; C:\Windows\system32\drivers\e36gbus.sys [285056 2009-06-30] (MCCI Corporation -> MCCI Corporation)
S3 e36gmgmt; C:\Windows\system32\drivers\e36gmgmt.sys [357376 2009-06-30] (MCCI Corporation -> MCCI Corporation)
S3 e36wgps; C:\Windows\system32\drivers\e36wgps.sys [82984 2009-07-10] (Ericsson AB -> Ericsson AB)
S3 ecnssndis; C:\Windows\System32\Drivers\wwanuss.sys [23592 2011-10-05] (Ericsson AB -> Ericsson AB)
S3 ecnssndisfltr; C:\Windows\System32\Drivers\wwanussf.sys [25640 2011-10-05] (Ericsson AB -> Ericsson AB)
S3 ew_hwusbdev; C:\Windows\system32\drivers\ew_hwusbdev.sys [102784 2010-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 ew_usbenumfilter; C:\Windows\system32\drivers\ew_usbenumfilter.sys [11136 2010-03-20] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 HBtnKey; C:\Windows\system32\drivers\tkbtnpn.sys [14632 2010-06-28] (Wistron Corporation -> Lenovo)
R3 HSF_DPV; C:\Windows\System32\DRIVERS\HSX_DPV.sys [981504 2009-06-30] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.)
R3 HSXHWAZL; C:\Windows\System32\DRIVERS\HSXHWAZL.sys [207360 2009-06-30] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.)
S3 huawei_cdcacm; C:\Windows\system32\drivers\ew_jucdcacm.sys [82816 2010-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 huawei_enumerator; C:\Windows\system32\drivers\ew_jubusenum.sys [72832 2010-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 huawei_ext_ctrl; C:\Windows\system32\drivers\ew_juextctrl.sys [26880 2010-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 huawei_update; C:\Windows\system32\drivers\ew_hwupgrade.sys [19456 2010-05-04] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwdatacard; C:\Windows\system32\drivers\ewusbmdm.sys [106496 2010-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusbdev; C:\Windows\system32\drivers\ewusbdev.sys [100736 2009-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R0 iusb3hcs; C:\Windows\System32\drivers\iusb3hcs.sys [16880 2013-07-18] (Intel Corporation - Software and Firmware Products -> Intel Corporation)
S3 iusb3hub; C:\Windows\system32\drivers\iusb3hub.sys [352752 2013-07-18] (Intel Corporation - Software and Firmware Products -> Intel Corporation)
S3 iusb3xhc; C:\Windows\system32\drivers\iusb3xhc.sys [801776 2013-07-18] (Intel Corporation - Software and Firmware Products -> Intel Corporation)
S3 l36wgps; C:\Windows\system32\drivers\l36wgps.sys [88848 2012-03-01] (Ericsson AB -> Ericsson AB)
S3 LC57XXPORTS_DS; C:\Windows\system32\drivers\lc57xx_port_ds.sys [67072 2009-10-13] (Microsoft Windows Hardware Compatibility Publisher -> LeadCore Technology Co.,Ltd.)
S3 LC57XXPORTS_SS; C:\Windows\system32\drivers\lc57xx_port_ss.sys [67072 2009-10-13] (Microsoft Windows Hardware Compatibility Publisher -> LeadCore Technology Co.,Ltd.)
S3 Lc57xxVBus; C:\Windows\system32\drivers\lc57xx_usbvbus.sys [30208 2010-03-22] (Microsoft Windows Hardware Compatibility Publisher -> LeadCore Technology Co.,Ltd.)
S3 Mbm3CBus; C:\Windows\system32\drivers\Mbm3CBus.sys [394056 2012-10-02] (MCCI Corporation -> MCCI Corporation)
S3 Mbm3DevMt; C:\Windows\system32\drivers\Mbm3DevMt.sys [402504 2011-04-29] (MCCI Corporation -> MCCI Corporation)
R2 mdmxsdk; C:\Windows\System32\DRIVERS\mdmxsdk.sys [12672 2006-06-18] (Microsoft Windows Hardware Compatibility Publisher -> Conexant)
S3 MEI; C:\Windows\system32\drivers\HECI.sys [49272 2013-02-19] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R3 NETwNs32; C:\Windows\System32\DRIVERS\NETwsn01.sys [10387216 2015-05-04] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation)
R3 nusb3hub; C:\Windows\System32\DRIVERS\nusb3hub.sys [75904 2012-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Renesas Electronics Corporation)
R3 nusb3xhc; C:\Windows\System32\DRIVERS\nusb3xhc.sys [168448 2012-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Renesas Electronics Corporation)
S3 NvStUSB; C:\Windows\system32\drivers\nvstusb.sys [432672 2013-01-18] (NVIDIA Corporation -> NVIDIA Corporation)
S3 pelbtm; C:\Windows\system32\drivers\pelbtm.sys [13312 2012-06-19] (Microsoft Windows Hardware Compatibility Publisher -> Primax Electronics Ltd.)
R1 pelmoubt; C:\Windows\system32\drivers\pelmoubt.sys [18944 2012-06-19] (Microsoft Windows Hardware Compatibility Publisher -> Primax Electronics Ltd.)
S3 pelmouse; C:\Windows\system32\drivers\pelmouse.sys [19456 2011-04-02] (Microsoft Windows Hardware Compatibility Publisher -> TPMX Electronics Ltd.)
S3 pelusblf; C:\Windows\system32\drivers\pelusblf.sys [25600 2011-09-28] (Microsoft Windows Hardware Compatibility Publisher -> TPMX Electronics Ltd.)
S3 pelvendr; C:\Windows\system32\drivers\pelvendr.sys [10240 2009-11-02] (Microsoft Windows Hardware Compatibility Publisher -> TPMX Electronics Ltd.)
S3 phidmice; C:\Windows\system32\drivers\phidmice.sys [26624 2013-03-26] (Microsoft Windows Hardware Compatibility Publisher -> TPMX Electronics Ltd.)
S3 pmouself; C:\Windows\system32\drivers\pmouself.sys [19456 2013-03-26] (Microsoft Windows Hardware Compatibility Publisher -> TPMX Electronics Ltd.)
S3 pvendrlf; C:\Windows\system32\drivers\pvendrlf.sys [10240 2013-03-26] (Microsoft Windows Hardware Compatibility Publisher -> TPMX Electronics Ltd.)
S3 qxl; C:\Windows\System32\DRIVERS\qxl.sys [15656 2013-12-14] (Red Hat, Inc. -> Red Hat Inc.)
R1 RapportAegle; C:\Program Files\Trusteer\Rapport\bin\RapportAegle.sys [308760 2019-04-15] (IBM -> IBM Corp.)
R1 RapportCerberus_1930415; C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus32_1930415.sys [1142872 2019-04-24] (IBM -> IBM Corp.)
R1 RapportEI; C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys [410200 2019-04-15] (IBM -> IBM Corp.)
R0 RapportHades; C:\Windows\System32\Drivers\RapportHades.sys [221168 2019-04-15] (IBM -> IBM Corp.)
R0 RapportKELL; C:\Windows\System32\Drivers\RapportKELL.sys [332760 2019-04-15] (IBM -> IBM Corp.)
R1 RapportPG; C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys [488432 2019-04-15] (IBM -> IBM Corp.)
R2 rimspci; C:\Windows\System32\DRIVERS\rimspe86.sys [48640 2009-10-26] (Microsoft Windows Hardware Compatibility Publisher -> REDC)
S3 risdxc; C:\Windows\system32\drivers\risdxc86.sys [76288 2011-05-25] (Microsoft Windows Hardware Compatibility Publisher -> REDC)
S3 rixdpcie; C:\Windows\system32\drivers\rixdpe86.sys [38912 2009-09-28] (Microsoft Windows Hardware Compatibility Publisher -> REDC)
S3 RTL8023xp; C:\Windows\System32\DRIVERS\Rtnicxp.sys [43008 2009-07-14] (Microsoft Windows -> Realtek Semiconductor Corporation )
S3 rusb3hub; C:\Windows\system32\drivers\rusb3hub.sys [78592 2011-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Renesas Electronics Corporation)
S3 rusb3xhc; C:\Windows\system32\drivers\rusb3xhc.sys [168320 2011-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Renesas Electronics Corporation)
S3 SmbDrv; C:\Windows\system32\drivers\Smb_driver_AMDASF.sys [36592 2013-05-29] (Synaptics Incorporated -> Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [39280 2014-07-28] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SNXPPALX; C:\Windows\system32\drivers\snxppalx.sys [85088 2012-06-21] (SUNIX CO., LTD. -> SUNIX Co., Ltd.)
S3 SNXPSERX; C:\Windows\system32\drivers\snxpserx.sys [79456 2012-06-21] (SUNIX CO., LTD. -> SUNIX Co., Ltd.)
S3 swg3knmea01; C:\Windows\system32\drivers\swg3knmea01.sys [216192 2012-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Sierra Wireless Incorporated)
S3 swg3kser01; C:\Windows\system32\drivers\swg3kser01.sys [216192 2012-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Sierra Wireless Incorporated)
S3 swibus01; C:\Windows\system32\drivers\swibus01.sys [66048 2012-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Sierra Wireless Inc.)
S3 swibusflt01; C:\Windows\system32\drivers\swibusflt01.sys [66048 2012-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Sierra Wireless Inc.)
S3 SWUMX01; C:\Windows\system32\drivers\swumx01.sys [70656 2007-01-12] (Microsoft Windows Hardware Compatibility Publisher -> Sierra Wireless Inc.)
S3 Tp4Track; C:\Windows\system32\drivers\tp4track.sys [29992 2011-11-01] (Lenovo (Japan) Ltd. -> Lenovo Group Limited)
S3 USBAAPL; C:\Windows\System32\Drivers\usbaapl.sys [45056 2018-08-22] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 vioscsi; C:\Windows\system32\drivers\vioscsi.sys [23720 2015-04-23] (Red Hat, Inc. -> Red Hat Inc.)
S3 viostor; C:\Windows\system32\drivers\viostor.sys [24744 2015-04-23] (Red Hat, Inc. -> Red Hat Inc.)
S3 VirtioSerial; C:\Windows\system32\drivers\vioser.sys [52392 2015-04-23] (Red Hat, Inc. -> Red Hat Inc.)
S3 wacomhidfilter; C:\Windows\system32\drivers\wacomhidfilter.sys [8960 2012-03-23] (Microsoft Windows Hardware Compatibility Publisher -> Wacom Technology)
S3 WacomVTHid; C:\Windows\system32\drivers\WacomVTHid.sys [14320 2012-03-23] (Wacom Technology Corp. -> Wacom Technology)
R3 winachsf; C:\Windows\System32\DRIVERS\HSX_CNXT.sys [661504 2009-06-30] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.)
S3 wisdpen; C:\Windows\system32\drivers\wisdpen.sys [37232 2012-03-23] (Wacom Technology Corp. -> Wacom Technology)
R2 XAudio; C:\Windows\System32\DRIVERS\XAudio32.sys [8704 2009-04-29] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.)
S3 LENPPALX; \SystemRoot\system32\drivers\lenppalx.sys [X]
S3 LENPSERX; \SystemRoot\system32\drivers\lenpserx.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-07-31 14:30 - 2019-07-31 14:32 - 000000000 ____D C:\FRST
2019-07-22 09:20 - 2019-07-30 20:00 - 000001293 _____ C:\Users\Uzivatel\AppData\Roaming\downloads.json
2019-07-22 09:20 - 2019-07-22 09:20 - 000002292 _____ C:\Users\Uzivatel\Desktop\Flvto Youtube Downloader.lnk
2019-07-22 09:20 - 2019-07-22 09:20 - 000000000 ____D C:\Users\Uzivatel\Documents\YouTubeDownloads
2019-07-22 09:20 - 2019-07-22 09:20 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flvto Youtube Downloader
2019-07-22 09:20 - 2019-07-22 09:20 - 000000000 ____D C:\Users\Uzivatel\AppData\Roaming\FlvtoConverter
2019-07-22 09:20 - 2019-07-22 09:20 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\Flvto.biz
2019-07-22 09:19 - 2019-07-22 09:20 - 000000000 ____D C:\Users\Uzivatel\AppData\Local\Flvto Youtube Downloader
2019-07-20 10:42 - 2019-07-20 10:42 - 000000000 ____D C:\Ecru
2019-07-20 08:39 - 2019-07-30 19:58 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-07-11 18:50 - 2019-06-28 07:23 - 000829440 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2019-07-11 18:50 - 2019-06-28 07:23 - 000428032 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2019-07-11 18:50 - 2019-06-28 07:23 - 000392704 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2019-07-11 18:50 - 2019-06-28 07:23 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2019-07-11 18:50 - 2019-06-28 07:23 - 000080896 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2019-07-11 18:50 - 2019-06-21 05:05 - 000628224 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2019-07-11 18:50 - 2019-06-21 04:44 - 002406912 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-07-11 18:50 - 2019-06-21 03:41 - 001251840 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2019-07-11 18:50 - 2019-06-20 10:15 - 000348976 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-07-11 18:50 - 2019-06-19 05:06 - 006135296 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-07-11 18:50 - 2019-06-18 05:56 - 020274688 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-07-11 18:50 - 2019-06-18 05:51 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-07-11 18:50 - 2019-06-18 05:50 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-07-11 18:50 - 2019-06-18 05:39 - 000496128 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-07-11 18:50 - 2019-06-18 05:39 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-07-11 18:50 - 2019-06-18 05:38 - 000341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-07-11 18:50 - 2019-06-18 05:38 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-07-11 18:50 - 2019-06-18 05:37 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-07-11 18:50 - 2019-06-18 05:35 - 002297344 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-07-11 18:50 - 2019-06-18 05:32 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-07-11 18:50 - 2019-06-18 05:32 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-07-11 18:50 - 2019-06-18 05:30 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-07-11 18:50 - 2019-06-18 05:29 - 000663040 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-07-11 18:50 - 2019-06-18 05:29 - 000620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-07-11 18:50 - 2019-06-18 05:29 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-07-11 18:50 - 2019-06-18 05:29 - 000104960 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-07-11 18:50 - 2019-06-18 05:23 - 000668160 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-07-11 18:50 - 2019-06-18 05:21 - 000416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-07-11 18:50 - 2019-06-18 05:16 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-07-11 18:50 - 2019-06-18 05:16 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-07-11 18:50 - 2019-06-18 05:16 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-07-11 18:50 - 2019-06-18 05:13 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-07-11 18:50 - 2019-06-18 05:13 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-07-11 18:50 - 2019-06-18 05:11 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-07-11 18:50 - 2019-06-18 05:10 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-07-11 18:50 - 2019-06-18 05:07 - 004494336 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-07-11 18:50 - 2019-06-18 05:04 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-07-11 18:50 - 2019-06-18 05:03 - 013706752 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-07-11 18:50 - 2019-06-18 05:03 - 002060288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-07-11 18:50 - 2019-06-18 05:03 - 000696320 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-07-11 18:50 - 2019-06-18 05:03 - 000692224 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-07-11 18:50 - 2019-06-18 05:02 - 001155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-07-11 18:50 - 2019-06-18 04:44 - 004386304 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-07-11 18:50 - 2019-06-18 04:41 - 001323008 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-07-11 18:50 - 2019-06-18 04:39 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-07-11 18:50 - 2019-06-13 05:23 - 000135400 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2019-07-11 18:50 - 2019-06-13 05:17 - 000593920 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2019-07-11 18:50 - 2019-06-12 17:25 - 001310520 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-07-11 18:50 - 2019-06-12 17:24 - 000189672 _____ (Microsoft Corporation) C:\Windows\system32\halmacpi.dll
2019-07-11 18:50 - 2019-06-12 17:24 - 000189672 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-07-11 18:50 - 2019-06-12 17:24 - 000135912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-07-11 18:50 - 2019-06-12 17:24 - 000067304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-07-11 18:50 - 2019-06-12 17:23 - 004057320 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2019-07-11 18:50 - 2019-06-12 17:23 - 003964136 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-07-11 18:50 - 2019-06-12 17:23 - 000136424 _____ (Microsoft Corporation) C:\Windows\system32\halacpi.dll
2019-07-11 18:50 - 2019-06-12 17:23 - 000078568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2019-07-11 18:50 - 2019-06-12 17:21 - 011411968 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2019-07-11 18:50 - 2019-06-12 17:21 - 000617984 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 003207168 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 001329664 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 001072640 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000988160 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000555520 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000442368 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000354816 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000261632 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000167936 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2019-07-11 18:50 - 2019-06-12 17:20 - 000103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2019-07-11 18:50 - 2019-06-12 17:19 - 001177088 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2019-07-11 18:50 - 2019-06-12 17:19 - 001005056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2019-07-11 18:50 - 2019-06-12 17:19 - 000744960 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2019-07-11 18:50 - 2019-06-12 17:19 - 000644096 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-07-11 18:50 - 2019-06-12 17:19 - 000474624 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2019-07-11 18:50 - 2019-06-12 17:19 - 000373248 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2019-07-11 18:50 - 2019-06-12 17:19 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2019-07-11 18:50 - 2019-06-12 17:16 - 000593920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2019-07-11 18:50 - 2019-06-12 17:04 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2019-07-11 18:50 - 2019-06-12 17:04 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2019-07-11 18:50 - 2019-06-12 16:51 - 000107008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2019-07-11 18:50 - 2019-06-12 16:49 - 000205312 _____ (Microsoft Corporation) C:\Windows\system32\Dism.exe
2019-07-11 18:50 - 2019-06-12 16:48 - 000317440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2019-07-11 18:50 - 2019-06-12 16:48 - 000314880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-07-11 18:50 - 2019-06-12 16:48 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-07-11 18:50 - 2019-06-12 16:48 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-07-11 18:50 - 2019-06-12 16:48 - 000116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2019-07-11 18:50 - 2019-06-12 16:47 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-07-11 18:50 - 2019-06-11 04:59 - 002703360 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2019-07-11 18:50 - 2019-06-11 04:59 - 001460224 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2019-07-11 18:50 - 2019-06-11 04:59 - 000617984 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2019-07-11 18:50 - 2019-06-11 04:59 - 000535040 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2019-07-11 18:50 - 2019-06-11 04:59 - 000378368 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2019-07-11 18:50 - 2019-06-11 04:59 - 000366080 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2019-07-11 18:50 - 2019-06-11 04:59 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2019-07-11 18:50 - 2019-06-11 04:59 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2019-07-11 18:50 - 2019-06-07 17:18 - 001425920 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2019-07-11 18:50 - 2019-06-07 17:18 - 000380416 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-07-11 18:50 - 2019-06-02 06:07 - 000180224 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2019-07-11 18:49 - 2019-06-12 17:21 - 012574208 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2019-07-11 18:49 - 2019-06-12 17:21 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2019-07-11 18:49 - 2019-06-12 17:21 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2019-07-11 18:49 - 2019-06-12 17:21 - 000171008 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000872448 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000276480 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000157184 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2019-07-11 18:49 - 2019-06-12 17:20 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000106496 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000080896 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 17:06 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2019-07-11 18:49 - 2019-06-12 17:06 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2019-07-11 18:49 - 2019-06-12 17:06 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2019-07-11 18:49 - 2019-06-12 17:05 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2019-07-11 18:49 - 2019-06-12 16:58 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2019-07-11 18:49 - 2019-06-12 16:55 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2019-07-11 18:49 - 2019-06-12 16:55 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-07-11 18:49 - 2019-06-12 16:55 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2019-07-11 18:49 - 2019-06-12 16:55 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2019-07-11 18:49 - 2019-06-12 16:55 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2019-07-11 18:49 - 2019-06-12 16:54 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2019-07-11 18:49 - 2019-06-12 16:52 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-07-11 18:49 - 2019-06-12 16:51 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2019-07-11 18:49 - 2019-06-12 16:50 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2019-07-11 18:49 - 2019-06-12 16:50 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2019-07-11 18:49 - 2019-06-12 16:50 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2019-07-11 18:49 - 2019-06-12 16:48 - 000098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-07-11 18:49 - 2019-06-12 16:47 - 000055296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-07-11 18:49 - 2019-06-12 16:47 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-07-11 18:49 - 2019-06-12 16:47 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\viac7.sys
2019-07-11 18:49 - 2019-06-12 16:47 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-07-11 18:49 - 2019-06-12 16:47 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-07-11 18:49 - 2019-06-12 16:47 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2019-07-11 18:49 - 2019-06-12 16:47 - 000035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2019-07-11 18:49 - 2019-06-12 16:47 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2019-07-11 18:49 - 2019-06-12 16:47 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2019-07-11 18:49 - 2019-06-12 16:46 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 16:46 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 16:46 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-07-11 18:49 - 2019-06-12 16:46 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-07-11 18:49 - 2019-06-07 17:18 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
2019-07-11 18:49 - 2019-06-07 16:55 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-07-31 14:12 - 2018-11-02 21:57 - 000000000 ____D C:\Users\Uzivatel\AppData\LocalLow\Mozilla
2019-07-31 07:20 - 2009-07-14 06:34 - 000027200 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-07-31 07:20 - 2009-07-14 06:34 - 000027200 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-07-30 20:10 - 2018-11-02 12:22 - 000002183 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-07-30 20:10 - 2018-11-02 12:22 - 000002142 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-07-30 20:04 - 2011-04-12 03:37 - 000668792 _____ C:\Windows\system32\perfh005.dat
2019-07-30 20:04 - 2011-04-12 03:37 - 000141420 _____ C:\Windows\system32\perfc005.dat
2019-07-30 20:04 - 2010-11-20 23:01 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2019-07-30 20:04 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\inf
2019-07-30 19:59 - 2019-02-03 13:48 - 000000000 ___RD C:\Users\Uzivatel\iCloudDrive
2019-07-30 19:58 - 2018-11-02 21:56 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2019-07-30 19:58 - 2009-07-14 06:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-07-22 08:40 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\rescache
2019-07-19 16:50 - 2009-07-14 06:33 - 000412608 _____ C:\Windows\system32\FNTCACHE.DAT
2019-07-19 16:49 - 2018-11-03 09:53 - 000000000 ___SD C:\Windows\system32\CompatTel
2019-07-19 16:49 - 2018-11-03 09:53 - 000000000 ____D C:\Windows\system32\appraiser
2019-07-19 16:49 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\Dism
2019-07-19 16:27 - 2016-08-14 04:12 - 000000000 ____D C:\Windows\system32\MRT
2019-07-19 16:24 - 2016-08-14 04:12 - 133475400 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-07-09 22:04 - 2016-08-13 23:16 - 000606264 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2019-07-02 17:16 - 2018-11-02 12:23 - 000000000 ____D C:\ProgramData\Lenovo
2019-07-01 19:58 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\NDF

==================== Files in the root of some directories ================

2019-07-22 09:20 - 2019-07-30 20:00 - 000001293 _____ () C:\Users\Uzivatel\AppData\Roaming\downloads.json

==================== FLock ================

2018-11-02 12:14 C:\Windows\CSC

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2019-07-22 08:33
==================== End of FRST.txt ============================

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 30-07-2019 01
Ran by Uzivatel (31-07-2019 14:33:46)
Running from D:\Stažené soubory
Microsoft Windows 7 Professional Service Pack 1 (X86) (2018-11-02 10:17:22)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1536506920-532420862-747104770-500 - Administrator - Disabled)
bobo (S-1-5-21-1536506920-532420862-747104770-1004 - Administrator - Enabled)
Guest (S-1-5-21-1536506920-532420862-747104770-501 - Limited - Enabled)
Uzivatel (S-1-5-21-1536506920-532420862-747104770-1001 - Administrator - Enabled) => C:\Users\Uzivatel

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.012.20035 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 32.0.0.89 - Adobe Systems Incorporated)
Apple Mobile Device Support (HKLM\...\{0658F3CB-BEA8-4E72-87BC-3B58A83E5560}) (Version: 12.2.0.15 - Apple Inc.)
Apple Software Update (HKLM\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
Bonjour (HKLM\...\{D168AAD0-6686-47C1-B599-CDD4888B9D1A}) (Version: 3.1.0.1 - Apple Inc.)
Conexant 20585 SmartAudio HD (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.95.48.50 - Conexant)
Flvto Youtube Downloader (HKLM\...\Flvto Youtube Downloader) (Version: 1.3.7 - Flvto.biz)
Google Chrome (HKLM\...\Google Chrome) (Version: 76.0.3809.87 - Google LLC)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
HP DeskJet 2130 series Nápověda (HKLM\...\{C8CCFDF2-9CB2-4714-BCE5-17178CB71646}) (Version: 35.0.0 - Hewlett Packard)
HP DeskJet 3630 series Nápověda (HKLM\...\{709BFCAC-2966-4132-BD40-32079BF6C635}) (Version: 35.0.0 - Hewlett Packard)
HP Dropbox Plugin (HKLM\...\{0078F518-B5B5-4857-8939-199E752A4190}) (Version: 36.0.41.58587 - HP)
HP Google Drive Plugin (HKLM\...\{F260117F-45E4-483E-B10F-C80224558C4D}) (Version: 36.0.41.58587 - HP)
HP Photo Creations (HKLM\...\HP Photo Creations) (Version: 1.0.0.9572 - HP)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
iCloud (HKLM\...\{3C458F1D-F925-44BA-87A6-D1F03C404215}) (Version: 7.11.0.19 - Apple Inc.)
Integrated Camera Driver Installer Package Ver.1.1.0.48 (HKLM\...\{C3CD17B4-08B0-492D-8A4C-81716D33E520}) (Version: 1.1.0.48 - RICOH)
Intel(R) Control Center (HKLM\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1011 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.2.50.1050 - Intel Corporation)
iTunes (HKLM\...\{A0BD5BF9-A842-43E6-B7EA-903E3233E63D}) (Version: 12.9.4.102 - Apple Inc.)
Lenovo Patch Utility (HKLM\...\{6E6E7725-C7BC-4C39-8B3F-14B67331A120}) (Version: 1.3.0.9 - Lenovo Group Limited)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.12.14 - Lenovo) Hidden
Lenovo System Interface Driver (HKLM\...\LENOVO.SMIIF) (Version: 1.05 - )
Lenovo System Update (HKLM\...\TVSU_is1) (Version: 5.07.0084 - Lenovo)
Microsoft .NET Framework 4.7.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 11.1.137.0 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Mozilla Firefox 68.0.1 (x86 cs) (HKLM\...\Mozilla Firefox 68.0.1 (x86 cs)) (Version: 68.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.0.1.7137 - Mozilla)
NEC Electronics USB 3.0 Host Controller Driver (HKLM\...\{D7BF9739-8A68-4335-BBEE-37752AD9E86B}) (Version: 1.0.19.0 - NEC Electronics Corporation) Hidden
NEC Electronics USB 3.0 Host Controller Driver (HKLM\...\InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}) (Version: 1.0.19.0 - NEC Electronics Corporation)
Ochrana koncového bodu Trusteer (HKLM\...\Rapport_msi) (Version: 3.5.1930.429 - Trusteer)
On Screen Display (HKLM\...\OnScreenDisplay) (Version: 6.73.01 - )
Ovládací panel NVIDIA 312.69 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 312.69 - NVIDIA Corporation) Hidden
Podpora aplikací Apple (32bitová) (HKLM\...\{9F7041CB-8398-4691-B8CB-0D52273BB3D9}) (Version: 7.4 - Apple Inc.)
PRO100 (HKLM\...\{B3DBB43D-9451-45D0-B5A9-6413C98D091B}) (Version: 1.0.0 - Ecru)
ProFact 2017 (HKLM\...\ProFact_is1) (Version: - eXmind)
Rapport (HKLM\...\{1DD81E7D-0D28-4CEB-87B2-C041A4FCB215}) (Version: 3.5.1930.429 - Trusteer) Hidden
RICOH R5U230 Media Driver ver.2.06.02.02 (HKLM\...\{022CBB38-CEF0-42BA-906A-A49BEFAE0BEE}) (Version: 2.06.02.02 - RICOH)
Studie vylepšování produktu HP DeskJet 2130 series (HKLM\...\{9B043ABC-69B9-45B2-B858-7AF5D2810B4F}) (Version: 35.0.61.54677 - Hewlett-Packard Co.)
Studie vylepšování produktu HP DeskJet 3630 series (HKLM\...\{08169F2D-D757-4BE1-82B5-AAE0BC3F0180}) (Version: 40.11.1107.1739 - HP Inc.)
ThinkPad Bluetooth with Enhanced Data Rate Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.4500 - Broadcom Corporation)
ThinkPad FullScreen Magnifier (HKLM\...\ThinkPad FullScreen Magnifier) (Version: 2.42 - )
ThinkPad Modem Adapter (HKLM\...\CNXT_MODEM_HDA_HSF) (Version: 7.80.5.50 - Conexant Systems)
ThinkPad TrackPoint Driver (HKLM\...\TrackPoint) (Version: 4.73.1.0 - Lenovo)
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.19.14 - )
ThinkPad UltraNav Utility (HKLM\...\{17CBC505-D1AE-459D-B445-3D2000A85842}) (Version: 2.13.0 - Lenovo)
ThinkVantage Communications Utility (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 2.11.0.0 - Lenovo)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: - )
Trachea OS (HKLM\...\{19E6ED02-16BE-01FE-0757-D4A98028D9BD}) (Version: 4.2.138 - SOFTconsult spol. s r.o.) Hidden
Trachea OS (HKLM\...\TracheaOS) (Version: 4.2.138 - SOFTconsult spol. s r.o.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.6 - VideoLAN)
Základní software zařízení HP DeskJet 2130 series (HKLM\...\{8508D625-9097-4DA8-B5D8-786BB57199F1}) (Version: 35.0.61.54677 - Hewlett-Packard Co.)
Základní software zařízení HP DeskJet 3630 series (HKLM\...\{81220383-2CC9-4B00-B35D-A9B692455FC9}) (Version: 40.11.1107.1739 - HP Inc.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2210608 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams.dll [2019-03-13] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2013-10-29] (NVIDIA Corporation -> NVIDIA Corporation)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]

==================== Loaded Modules (Whitelisted) ==============

2018-11-02 12:27 - 2013-04-17 16:33 - 000024576 _____ ( ) [File not signed] C:\Program Files\Intel\Intel(R) Management Engine Components\IMSS\AMT_COM_InterfaceLib.dll
2015-06-02 15:51 - 2015-06-02 15:51 - 000545792 _____ () [File not signed] C:\Program Files\Trusteer\Rapport\bin\js32.dll
2018-11-02 12:27 - 2013-04-17 16:01 - 001892352 _____ (Apache Software Foundation) [File not signed] C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\xerces-c_2_7.dll
2019-07-16 10:12 - 2019-07-16 10:12 - 000923136 _____ (Flvto.biz) [File not signed] C:\Users\Uzivatel\AppData\Local\Flvto Youtube Downloader\FlvtoYoutubeDownloader.Redesign.exe
2018-11-02 12:27 - 2013-04-17 16:01 - 000454656 _____ (Intel Corporation) [File not signed] C:\Program Files\Intel\Intel(R) Management Engine Components\IMSS\AMT_SW_GUI.dll
2018-11-02 12:27 - 2013-04-17 16:34 - 000229376 _____ (Intel Corporation) [File not signed] C:\Program Files\Intel\Intel(R) Management Engine Components\IMSS\cs-CZ\PrivacyIconClient.resources.dll
2018-11-02 12:27 - 2013-04-17 16:01 - 000069632 _____ (Intel Corporation) [File not signed] C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\StatusStrings.dll
2018-11-11 10:40 - 2018-11-11 10:40 - 000095744 _____ (Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.42_none_dc990e4797f81af1\ATL80.DLL
2018-11-02 12:28 - 2008-10-30 16:23 - 000031744 _____ (Ricoh co.,Ltd.) [File not signed] C:\Program Files\Integrated Camera Driver\RCIMGDIR.exe

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2009-06-10 23:39 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1536506920-532420862-747104770-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Uzivatel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.43.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{0DBBAF0C-296B-4B5F-8CF6-922D78E9BD10}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1CC7CCA3-0601-42B7-AF1D-3C4C4AAB2458}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{2D61F513-209F-4E14-9B10-A82411111058}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{1B08757E-F1D5-461B-A19C-8462F727FE25}C:\users\uzivatel\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\uzivatel\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{3EDB8B7F-C9F7-4E95-8935-ACF0C5CFB51C}C:\users\uzivatel\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\uzivatel\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [{144541D2-B66F-47F4-8069-F23772456CFB}] => (Allow) C:\Program Files\HP\HP DeskJet 3630 series\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{48A65363-9567-4535-92CE-62C3C940C067}] => (Allow) LPort=5357
FirewallRules: [{3B8D6A74-CA9B-4C0C-9464-8EB36C70F80B}] => (Allow) C:\Program Files\HP\HP DeskJet 3630 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{8276D8D6-CE0D-4C0D-8FDE-81541BF7B901}] => (Allow) C:\Program Files\HP\HP DeskJet 2130 series\Bin\USBSetup.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{8A05B8DF-C848-4B44-A89F-656DE79614F1}] => (Allow) C:\Program Files\HP\HP DeskJet 2130 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{885EF9D0-900A-4347-A51F-CB810B302EF1}] => (Allow) C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D267AB3A-140A-48B1-A37B-0EB8414F18A0}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{73532E8D-0E47-4F5D-BD61-3FFEC1977E2A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{36F7EA8C-2E11-4586-BDAF-93D11C5DCEE2}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E55D2DD9-D01F-4CFC-A20D-4F1F4D02F142}] => (Allow) C:\Program Files\Lenovo\System Update\uncserver.exe (Lenovo -> )
FirewallRules: [{662EE87C-0249-4855-B6F6-E8D24BF0C1AF}] => (Allow) C:\Program Files\Lenovo\System Update\uncserver.exe (Lenovo -> )
FirewallRules: [{DA3D34D6-75C0-49B3-A6E8-600F6E6E326D}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:76.89 GB) (Free:8.95 GB) (12%)

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (07/30/2019 08:00:19 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (07/22/2019 10:37:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 524928

Error: (07/22/2019 10:37:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 524928

Error: (07/22/2019 10:37:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (07/22/2019 10:37:45 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 523804

Error: (07/22/2019 10:37:45 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 523804

Error: (07/22/2019 10:37:45 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (07/22/2019 10:29:03 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2153


System errors:
=============
Error: (07/30/2019 07:58:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SPICE VDAgent neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/30/2019 07:58:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Balloon Service neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/30/2019 07:58:33 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Lenovo Platform Service bylo dosaženo časového limitu (30000 ms).

Error: (07/20/2019 01:05:38 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (07/20/2019 01:05:21 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.

Error: (07/19/2019 04:50:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SPICE VDAgent neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/19/2019 04:50:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Balloon Service neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/19/2019 04:50:17 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Lenovo Platform Service bylo dosaženo časového limitu (30000 ms).


Windows Defender:
===================================
Date: 2019-07-01 21:05:17.599
Description:
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání:{B695D211-0DF1-427A-BE91-90FA86E5B2CD}
Typ prohledávání:Antispywarový program
Parametry prohledávání:Rychlé prohledávání
Uživatel:PRACOVNI\Uzivatel

Date: 2019-04-23 17:52:47.788
Description:
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání:{B9C6C350-A546-4B52-981C-32A984F086F5}
Typ prohledávání:Antispywarový program
Parametry prohledávání:Rychlé prohledávání
Uživatel:NT AUTHORITY\NETWORK SERVICE

Date: 2019-04-22 19:24:52.139
Description:
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání:{C99F979B-1409-413E-B357-4D94495EBCA7}
Typ prohledávání:Antispywarový program
Parametry prohledávání:Rychlé prohledávání
Uživatel:NT AUTHORITY\NETWORK SERVICE

==================== Memory info ===========================

BIOS: LENOVO 6LET73WW (1.34 ) 09/17/2010
Motherboard: LENOVO 4391B76
Processor: Intel(R) Core(TM) i7 CPU M 620 @ 2.67GHz
Percentage of memory in use: 90%
Total physical RAM: 3059.52 MB
Available physical RAM: 298.89 MB
Total Virtual: 6115.3 MB
Available Virtual: 2379.07 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:76.89 GB) (Free:8.95 GB) NTFS
Drive d: (Nový svazek) (Fixed) (Total:146.48 GB) (Free:98.81 GB) NTFS

\\?\Volume{fd3982a3-de87-11e8-b40c-806e6f6e6963}\ (System) (Fixed) (Total:0.2 GB) (Free:0.16 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: E3C0D04A)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=76.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=146.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118302
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: sobory lnk

#2 Příspěvek od Rudy »

Zdravím!
Vytvoří se místo souborů pouze jejich zástupci. Nejprve projeďte flešku USBFix: http://forum.viry.cz/viewtopic.php?f=24&t=140144 a vše co najde, smažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

bohumil33
Návštěvník
Návštěvník
Příspěvky: 2
Registrován: 01 zář 2017 17:17

Re: sobory lnk

#3 Příspěvek od bohumil33 »

Po kontrole USBfixem a následném promazání škodlivých souborů, to zatím vypadá dobře.
Na flešku se zapisujou data, tak jak mají a přípony souborů se již nemění na "lnk"
Děkuji za pomoc :thumbsup: :worship:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118302
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: sobory lnk

#4 Příspěvek od Rudy »

OK, to jsem rád. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno