Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

winscomrssrv.dll

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Jespi
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 18 úno 2010 21:28

winscomrssrv.dll

#1 Příspěvek od Jespi »

Zdravím, po odstranění viru přes ESET NOD 32, se mi po každém startu pc objevuje hláška:

Při spouštění souboru winscomrssrv.dll došlo k problému.
Uvedený modul nebyl nalezen.

Prosím moc, co s tím ? :oops:

Jespi
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 18 úno 2010 21:28

Re: winscomrssrv.dll

#2 Příspěvek od Jespi »

Při vkládání souboru s logem mi to napsalo, že přípona txt není povolena :?: :?: :?:
Zasílám ručně

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-07-2019
Ran by Jespi (administrator) on HERNIPC (Micro-Star International Co., Ltd MS-7C02) (02-08-2019 10:48:34)
Running from E:\Stažené
Loaded Profiles: Jespi (Available Profiles: Jespi)
Platform: Windows 10 Education Version 1809 17763.615 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1905.30.0_x64__8wekyb3d8bbwe\Calculator.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(Electronic Arts, Inc. -> Electronic Arts) D:\Program Files\Origin\OriginWebHelperService.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\76.0.3809.21\remoting_host.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\76.0.3809.21\remoting_host.exe
(ICEpower a/s -> ICEpower) C:\Windows\System32\ICEsoundService64.exe
(LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Microsoft Corporation -> Microsoft Corporation) D:\Program Files\Microsoft Office\Office15\MSOSYNC.EXE
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) D:\Program Files\MSI\APP Manager\AppManager_Service.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9279432 2018-10-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-07-04] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [180448 2019-07-27] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [APP Manager] => D:\Program Files\MSI\APP Manager\AppManager.exe [3702456 2018-08-20] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [Command Center] => C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe [835768 2018-09-07] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601936 2018-12-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\Run: [CooLWPC3] => D:\Program Files\CooL Wallpaper Changer\coolwpc.exe [1008128 2003-04-06] (Pavel Chmelař) [File not signed]
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\Run: [Steam] => D:\Program Files\Steam\steam.exe [3210016 2019-07-17] (Valve -> Valve Corporation)
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [371304 2019-06-30] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\MountPoints2: {3b1bedd0-9af6-11e9-b039-309c23e1717c} - "F:\setup.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.142\Installer\chrmstp.exe [2019-07-21] (Google LLC -> Google LLC)
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {000D1486-79F6-41EF-AD6F-81A5D5BF5BEA} - System32\Tasks\MSI_Toast_Server => C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe [31904 2018-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {06AB470E-521F-4C84-B389-B50F657D4016} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-07-21] (Adobe Inc. -> Adobe)
Task: {0A505085-740A-4070-B905-496A6149008C} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1B1474D5-E476-4C16-A8E4-DD5259B87641} - System32\Tasks\PinnacleStudio22Notifier => D:\Program Files\Pinnacle Studio\programs\PinnacleNotifierWrapper.exe
Task: {2219CD57-7540-4859-86F4-B26C1BD8148D} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {26326EFE-3A80-4BEC-84DE-6453AE4F8AE3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-01] (Google Inc -> Google Inc.)
Task: {2A7D1EA6-950E-4D8A-9D58-405B9D6FC8ED} - System32\Tasks\Microsoft Office 15 Sync Maintenance for HERNIPC-Jespi HERNIPC => D:\Program Files\Microsoft Office\Office15\MsoSync.exe [469640 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {2CCFE3EE-FC24-4DB7-AB59-B3D9B6EB2527} - System32\Tasks\Microsoft\Windows\WDI\SrvHost => rundll32.exe winscomrssrv.dll,SrvMainHost <==== ATTENTION
Task: {2D6BD4CA-90DE-44C2-AC73-804153F8BF13} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {589940DE-B8BC-4E88-89C9-DE1EC32E3100} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1642672 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {59A587D7-BD58-477A-AA97-C2A297B62B60} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648504 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7448371C-A4FF-45BE-BE48-8886621CEB32} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {763187E8-C6CA-424E-9006-9201685C8CD3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {77140C28-B2AA-4DE9-9B97-BB0ADB547CD4} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7B8196C6-3920-4DFA-BFD7-A3A607A1911E} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {8107C713-3383-45E5-A4E7-1FA28A26F707} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_223_Plugin.exe [1457208 2019-07-21] (Adobe Inc. -> Adobe)
Task: {8DBB538D-72BE-4E01-84E5-E2A8B2E37704} - System32\Tasks\WiseCleaner\WRCSkipUAC => D:\Program Files\Wise Registry Cleaner\WiseRegCleaner.exe [4155200 2017-05-12] (Lespeed Technology Ltd. -> WiseCleaner.com) [File not signed]
Task: {90920C4D-ECDE-40EA-9470-28DDA328F5CF} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [3727360 2018-10-02] () [File not signed]
Task: {9EB656DD-4A82-4D26-955E-E11A66C69727} - System32\Tasks\KMSAutoNet => C:\ProgramData\KMSAutoS\KMSAuto Net.exe [8991592 2017-10-31] (WZTeam -> MSFree Inc.)
Task: {C28BB6E9-4F31-4EDE-9648-03A5A9737E65} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_223_pepper.exe [1453112 2019-07-21] (Adobe Inc. -> Adobe)
Task: {C53E3AA6-CF3C-408F-97F6-57DD86BB8032} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C8FD286A-8980-4A26-B71E-B4656E07EE94} - System32\Tasks\MSIAfterburner => D:\Program Files\MSI\Afterburner\MSIAfterburner.exe [739624 2018-04-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
Task: {CBF57309-C899-4C07-9199-B66E73FA0CCE} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D8965904-3939-4AE4-9E0E-8F343E34163B} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION
Task: {E1C0CC96-E844-4643-A96A-6F329D175AC9} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EC61B3FF-83B4-47F4-8147-711F7B1627C6} - System32\Tasks\AdobeGCInvoker-1.0-HERNIPC-Jespi => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-07-04] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {EE1080FB-9D8D-41E2-9094-795FACED2A56} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3788144 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F257DF8F-4270-411E-9BF2-286EB845578D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-01] (Google Inc -> Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{dd0e131c-1ab4-432d-9e7b-b8f33ae1f548}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_202\bin\ssv.dll [2019-01-28] (Oracle America, Inc. -> Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_202\bin\jp2ssv.dll [2019-01-28] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF DefaultProfile: uwbmxlyb.default-1542449928429
FF ProfilePath: C:\Users\Jespi\AppData\Roaming\Mozilla\Firefox\Profiles\uwbmxlyb.default-1542449928429 [2019-08-02]
FF Extension: (The Firefox Opening) - C:\Users\Jespi\AppData\Roaming\Mozilla\Firefox\Profiles\uwbmxlyb.default-1542449928429\Extensions\{5aacc0b4-4a56-4604-98f2-1c8a8f8569c9}.xpi [2019-05-14]
FF Extension: (Video DownloadHelper) - C:\Users\Jespi\AppData\Roaming\Mozilla\Firefox\Profiles\uwbmxlyb.default-1542449928429\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-07-21]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_223.dll [2019-07-21] (Adobe Inc. -> )
FF Plugin: @java.com/DTPlugin,version=11.202.2 -> C:\Program Files\Java\jre1.8.0_202\bin\dtplugin\npDeployJava1.dll [2019-01-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.202.2 -> C:\Program Files\Java\jre1.8.0_202\bin\plugin2\npjp2.dll [2019-01-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> D:\Program Files\Microsoft Office\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> D:\Program Files\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> D:\Program Files\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_223.dll [2019-07-21] (Adobe Inc. -> )
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-03] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default [2019-07-29]
CHR Extension: (Prezentace) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-10-01]
CHR Extension: (Dokumenty) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-10-01]
CHR Extension: (Disk Google) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-01]
CHR Extension: (YouTube) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-10-01]
CHR Extension: (Aliexpress SuperStar česky, Historie cen a koruny) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciclollkolafellcaolgccmfjldgpolo [2019-07-29]
CHR Extension: (Tabulky) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-10-01]
CHR Extension: (Vzdálená plocha Chrome) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-07-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-10-04]
CHR Extension: (Selenium IDE) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\mooikfkahbdckldjjndioackbalphokd [2019-07-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-10-01]
CHR Extension: (Gmail) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-01]
CHR Extension: (Chrome Media Router) - C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-30]
CHR Profile: C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-07-29]
CHR Profile: C:\Users\Jespi\AppData\Local\Google\Chrome\User Data\System Profile [2019-07-29]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3117648 2019-07-04] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2888272 2019-07-04] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\76.0.3809.21\remoting_host.exe [73200 2019-06-11] (Google LLC -> Google Inc.)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4452456 2019-06-30] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2018-12-08] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2428848 2019-07-27] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2428848 2019-07-27] (ESET, spol. s r.o. -> ESET)
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 ICEsoundService; C:\WINDOWS\system32\ICEsoundService64.exe [799656 2018-10-01] (ICEpower a/s -> ICEpower)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
S3 MSIClock_CC; C:\Program Files (x86)\MSI\Command Center\ClockGen\MSIClockService_x64.exe [2669240 2018-01-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSICOMM_CC; C:\Program Files (x86)\MSI\Command Center\MSICommService.exe [2343608 2018-01-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSICPU_CC; C:\Program Files (x86)\MSI\Command Center\CPU\MSICPUService_x64.exe [2725048 2017-12-22] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R2 MSICTL_CC; C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe [2255032 2018-08-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSIDDR_CC; C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe [2507448 2018-07-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSISMB_CC; C:\Program Files (x86)\MSI\Command Center\SMBus\MSISMBService.exe [2136248 2018-03-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSISuperIO_CC; C:\Program Files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe [2742968 2018-08-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R2 MSI_AppManager_Service; D:\Program Files\MSI\APP Manager\AppManager_Service.exe [2054840 2018-08-15] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; D:\Program Files\Origin\OriginClientService.exe [2304304 2019-04-09] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; D:\Program Files\Origin\OriginWebHelperService.exe [3175728 2019-04-09] (Electronic Arts, Inc. -> Electronic Arts)
S3 PAExec; C:\WINDOWS\PAExec.exe [189112 2018-02-14] (Power Admin LLC -> Power Admin LLC)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5356848 2019-07-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 sshd; C:\WINDOWS\System32\OpenSSH\sshd.exe [974848 2019-07-26] (Microsoft Windows -> )
S3 SshdBroker; C:\WINDOWS\System32\SshdBroker.dll [288768 2019-07-26] (Microsoft Windows -> Microsoft Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1809.2-0\NisSrv.exe [3847376 2018-10-01] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1809.2-0\MsMpEng.exe [114200 2018-10-01] (Microsoft Corporation -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [34568 2019-04-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [33144 2018-10-01] (AMD PMP-PE CB Code Signer v20160415 -> Advanced Micro Devices, Inc)
S3 amdkmcsp; C:\WINDOWS\system32\DRIVERS\amdkmcsp.sys [101232 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 AMDPCIDev; C:\WINDOWS\System32\drivers\AMDPCIDev.sys [31592 2018-04-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R0 amdpsp; C:\WINDOWS\System32\drivers\amdpsp.sys [137104 2018-10-01] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-06-30] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-06-30] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [149144 2019-07-27] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-07-01] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [189232 2019-07-27] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [113336 2019-07-27] (ESET, spol. s r.o. -> ESET)
S3 ESETCleanersDriver; C:\Windows\system32\Drivers\ESETCleanersDriver.sys [170280 2019-01-09] (ESET, spol. s r.o. -> ESET)
R3 hamachi; C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [45680 2018-05-30] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_547eeefb57db4499\nvlddmkm.sys [21858904 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1139424 2018-10-01] (Realtek Semiconductor Corp. -> Realtek )
S2 SecDrv; C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS [163644 2005-01-21] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [File not signed]
S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [40664 2013-08-22] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R3 UcmCxUcsiNvppc; C:\WINDOWS\System32\drivers\UcmCxUcsiNvppc.sys [453000 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46184 2018-10-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [352424 2018-10-01] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60584 2018-10-01] (Microsoft Windows -> Microsoft Corporation)
S1 lmimirr; \SystemRoot\system32\DRIVERS\lmimirr.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-08-02 10:48 - 2019-08-02 10:48 - 000000000 ____D C:\FRST
2019-08-01 20:14 - 2019-08-01 20:14 - 000000000 ____D C:\Users\Jespi\AppData\Roaming\NVIDIA
2019-08-01 15:40 - 2019-08-01 15:40 - 000000000 ____D C:\Users\Jespi\AppData\Local\NVIDIA
2019-08-01 15:39 - 2019-08-02 10:27 - 000000000 ____D C:\ProgramData\NVIDIA
2019-08-01 15:39 - 2019-08-01 15:39 - 000001443 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2019-08-01 15:39 - 2019-07-18 01:56 - 002785776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2019-08-01 15:39 - 2019-07-18 01:56 - 002164080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2019-08-01 15:39 - 2019-07-18 01:56 - 001316664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2019-08-01 15:39 - 2019-07-18 01:56 - 000179184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2019-08-01 15:39 - 2019-07-18 01:56 - 000154608 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2019-08-01 15:39 - 2019-07-18 01:56 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
2019-08-01 15:39 - 2019-07-18 01:56 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2019-08-01 15:39 - 2019-07-17 23:10 - 005435192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-08-01 15:39 - 2019-07-17 23:10 - 002637352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2019-08-01 15:39 - 2019-07-17 23:10 - 001767920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2019-08-01 15:39 - 2019-07-17 23:10 - 000650608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2019-08-01 15:39 - 2019-07-17 23:10 - 000451056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2019-08-01 15:39 - 2019-07-17 23:10 - 000125424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2019-08-01 15:39 - 2019-07-17 23:10 - 000083440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2019-08-01 15:39 - 2019-07-16 10:18 - 008642772 _____ C:\WINDOWS\system32\nvcoproc.bin
2019-08-01 15:38 - 2019-07-18 21:15 - 001006800 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-08-01 15:38 - 2019-07-18 21:15 - 001006800 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-08-01 15:38 - 2019-07-18 21:15 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-08-01 15:38 - 2019-07-18 21:15 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-08-01 15:38 - 2019-07-18 21:15 - 000552144 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-08-01 15:38 - 2019-07-18 21:15 - 000456912 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-08-01 15:38 - 2019-07-18 21:15 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-08-01 15:38 - 2019-07-18 21:15 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-08-01 15:38 - 2019-07-18 21:15 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-08-01 15:38 - 2019-07-18 21:15 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-08-01 15:38 - 2019-07-18 21:14 - 011059408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-08-01 15:38 - 2019-07-18 21:14 - 009492680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 040411904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 035269568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 020193184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 017470416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 005426104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 004767912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 002042272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 001721816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6443160.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 001543824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 001472600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 001468320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6443160.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 001164376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 001136024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 000914520 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 000822016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 000810912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 000677256 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 000656792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 000633488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 000543944 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-08-01 15:38 - 2019-07-18 21:13 - 000523920 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-08-01 15:38 - 2019-07-18 18:11 - 005087208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-08-01 15:38 - 2019-07-18 18:11 - 004342528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-08-01 15:38 - 2019-07-18 01:56 - 001682368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2019-08-01 15:38 - 2019-07-18 01:56 - 001468000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvppcgenco64_1127831.dll
2019-08-01 15:38 - 2019-07-18 01:56 - 000453000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\UcmCxUcsiNvppc.sys
2019-08-01 15:38 - 2019-07-18 01:56 - 000228608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2019-08-01 15:38 - 2019-07-18 01:56 - 000075600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2019-08-01 15:38 - 2019-07-18 01:56 - 000069840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2019-08-01 15:38 - 2019-07-18 01:56 - 000052622 _____ C:\WINDOWS\system32\nvinfo.pb
2019-08-01 15:38 - 2019-07-18 01:56 - 000046848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2019-08-01 15:31 - 2018-02-14 22:05 - 000189112 _____ (Power Admin LLC) C:\WINDOWS\PAExec.exe
2019-08-01 15:29 - 2019-08-01 15:39 - 000000000 ____D C:\WINDOWS\LastGood
2019-07-29 18:28 - 2019-07-29 18:28 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2019-07-29 18:09 - 2019-07-18 17:07 - 001004936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2019-07-29 18:09 - 2019-07-18 17:07 - 000572352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2019-07-29 18:09 - 2019-07-18 17:06 - 000858520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2019-07-29 18:09 - 2019-07-18 17:06 - 000449928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2019-07-29 11:46 - 2019-07-29 11:46 - 000000216 _____ C:\Users\Jespi\Desktop\Dying Light.url
2019-07-29 00:30 - 2019-07-29 00:30 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2019-07-28 23:59 - 2019-07-29 00:01 - 000000000 ____D C:\Users\Jespi\nvvp_workspace
2019-07-28 23:59 - 2019-07-28 23:59 - 000000000 ____D C:\Users\Jespi\.oracle_jre_usage
2019-07-28 23:59 - 2019-07-28 23:59 - 000000000 ____D C:\Users\Jespi\.eclipse
2019-07-28 23:58 - 2019-07-28 23:58 - 000000000 ____D C:\Users\Jespi\AppData\Roaming\NVIDIA Corporation
2019-07-28 23:53 - 2019-07-28 23:53 - 000000000 ____D C:\Program Files\NVIDIA GPU Computing Toolkit
2019-07-28 21:55 - 2019-07-28 23:56 - 000000000 ____D C:\Users\Jespi\AppData\Roaming\dreamtime-gui
2019-07-28 21:55 - 2019-07-28 21:55 - 000000000 ____D C:\Users\Jespi\AppData\Roaming\DreamTime
2019-07-26 20:41 - 2019-07-26 20:41 - 000000445 _____ C:\Users\Public\Desktop\Overwatch.lnk
2019-07-26 20:41 - 2019-07-26 20:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch
2019-07-26 14:08 - 2019-07-26 14:08 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshdBroker.dll
2019-07-26 14:08 - 2019-07-26 14:08 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshdPinAuthLsa.dll
2019-07-26 14:08 - 2019-07-26 14:08 - 000000000 __RSD C:\WINDOWS\SysWOW64\WindowsDevicePortal
2019-07-26 14:08 - 2019-07-26 14:08 - 000000000 __RSD C:\WINDOWS\system32\WindowsDevicePortal
2019-07-26 14:08 - 2019-07-26 14:08 - 000000000 ___RD C:\WINDOWS\WebManagement
2019-07-26 14:07 - 2018-09-14 21:54 - 000525544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftWebDriver.exe
2019-07-26 14:07 - 2018-09-14 21:09 - 000404200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftWebDriver.exe
2019-07-26 14:07 - 2018-09-14 18:05 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperTools.ProxyStub.dll
2019-07-26 14:07 - 2018-09-14 18:04 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeployUtil.exe
2019-07-26 14:07 - 2018-09-14 18:03 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevToolsLauncher.exe
2019-07-26 14:07 - 2018-09-14 18:03 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvcapi.dll
2019-07-26 14:07 - 2018-09-14 18:02 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationREST.dll
2019-07-26 14:07 - 2018-09-14 18:02 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperToolsSvc.exe
2019-07-26 14:07 - 2018-09-14 17:59 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvc.dll
2019-07-26 14:07 - 2018-09-14 17:57 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdp.dll
2019-07-26 14:07 - 2018-09-14 17:56 - 001303040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebManagement.exe
2019-07-26 14:07 - 2018-09-14 17:37 - 000616448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdp.dll
2019-07-26 13:14 - 2019-07-26 13:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\State of Decay 2
2019-07-26 11:46 - 2019-07-26 11:46 - 000000000 ____D C:\Users\Jespi\AppData\Local\SKIDROW
2019-07-26 11:43 - 2019-07-26 11:43 - 000000758 _____ C:\Users\Jespi\Desktop\State of Decay YOSE - Day One Edition.lnk
2019-07-26 11:43 - 2019-07-26 11:43 - 000000000 ____D C:\Users\Jespi\AppData\Roaming\State of Decay YOSE - Day One Edition
2019-07-26 11:43 - 2019-07-26 11:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2019-07-25 23:55 - 2019-07-25 22:07 - 000618440 ____R (Microsoft Corporation) C:\WINDOWS\system32\msvcp140_app.dll
2019-07-25 23:55 - 2019-07-25 22:07 - 000379304 ____R (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140_app.dll
2019-07-25 23:55 - 2019-07-25 22:07 - 000080264 ____R (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140_app.dll
2019-07-25 23:47 - 2019-07-25 22:07 - 000294912 ____R (Microsoft Corporation) C:\WINDOWS\system32\concrt140_app.dll
2019-07-23 02:12 - 2019-07-23 02:12 - 000000000 ____D C:\Users\Jespi\AppData\Local\GHISLER
2019-07-23 00:49 - 2019-08-01 15:39 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-07-23 00:49 - 2019-08-01 15:39 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-07-23 00:49 - 2019-08-01 15:39 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-07-23 00:49 - 2019-08-01 15:39 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-07-22 14:24 - 2019-07-22 14:24 - 000000000 ____D C:\Users\Jespi\Desktop\Minecraft Server 1.14.3 - kopie
2019-07-21 12:10 - 2019-07-21 12:10 - 000001099 _____ C:\Users\Jespi\Desktop\cpuz_x64.exe – zástupce.lnk
2019-07-21 10:24 - 2019-07-21 10:24 - 026808320 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 023454208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 020816384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 019012096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 012938752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 012243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 008900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 007921664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 007876096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 007727336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 006545304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 006441472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 006308232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 006068224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 005587976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 005436696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 005115384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 004880896 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 003738624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 003656192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 003550384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 003427328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 002942464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 002714624 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 002469432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 002393088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 002323688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 002278784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 002096128 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-07-21 10:24 - 2019-07-21 10:24 - 002017280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-07-21 10:24 - 2019-07-21 10:24 - 002013696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 001763328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 001751040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 001484800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 001477648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 001465464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 001427592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 001266192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-07-21 10:24 - 2019-07-21 10:24 - 001254400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2019-07-21 10:24 - 2019-07-21 10:24 - 001223168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 001159168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 001132032 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 001075712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000964608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000956416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000828728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2019-07-21 10:24 - 2019-07-21 10:24 - 000804744 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-07-21 10:24 - 2019-07-21 10:24 - 000798736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2019-07-21 10:24 - 2019-07-21 10:24 - 000773120 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000747568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2019-07-21 10:24 - 2019-07-21 10:24 - 000743216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2019-07-21 10:24 - 2019-07-21 10:24 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000687896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2019-07-21 10:24 - 2019-07-21 10:24 - 000682496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000673520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2019-07-21 10:24 - 2019-07-21 10:24 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000660032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-07-21 10:24 - 2019-07-21 10:24 - 000652528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfh264enc.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfh264enc.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2019-07-21 10:24 - 2019-07-21 10:24 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2019-07-21 10:24 - 2019-07-21 10:24 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000317456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2019-07-21 10:24 - 2019-07-21 10:24 - 000311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscobj.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-07-21 10:24 - 2019-07-21 10:24 - 000279920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000263360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2019-07-21 10:24 - 2019-07-21 10:24 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscobj.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsutil.exe
2019-07-21 10:24 - 2019-07-21 10:24 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2019-07-21 10:24 - 2019-07-21 10:24 - 000156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fsutil.exe
2019-07-21 10:24 - 2019-07-21 10:24 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
2019-07-21 10:24 - 2019-07-21 10:24 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000092592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2019-07-21 10:24 - 2019-07-21 10:24 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompMgmtLauncher.exe
2019-07-21 10:24 - 2019-07-21 10:24 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-07-21 10:24 - 2019-07-21 10:24 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 022115472 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 017484800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 015221248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 009683472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 007884288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 007687784 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 007645600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 006925312 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 005764608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 005566464 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 005561312 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 005528064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 005297664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 004588752 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 004351448 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 004303872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 004056576 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 003818416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 003636224 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 003630592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 003385856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 003363640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 003335216 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 003081728 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002982400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002871816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 002778760 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002766136 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 002701000 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002693120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002645504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002633216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002626872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 002593336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002421760 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 002406928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002200080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002189312 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002085376 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002073472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 002050048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001994760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001966904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 001929728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001903616 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001893376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001863168 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001837136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001794048 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001721352 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001715000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001713976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001702088 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-07-21 10:23 - 2019-07-21 10:23 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001676288 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001674752 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001668752 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001662480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001622016 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001605632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001522488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 001472808 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001397048 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001345168 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-07-21 10:23 - 2019-07-21 10:23 - 001321784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001316352 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001308672 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001259520 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001253688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 001225216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 001208320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001199616 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 001162320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001125416 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001054928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 001052984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 001052672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001048592 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 001043968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2019-07-21 10:23 - 2019-07-21 10:23 - 001038336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 001010688 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000998928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000987736 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000895552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000871784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000865272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000863544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000850992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000810504 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000807480 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000799776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000773120 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000770096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000768224 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000758896 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000756224 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000740664 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000731104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000730936 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000680176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000652296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000651792 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000637968 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000580024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000553992 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000541184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2019-07-21 10:23 - 2019-07-21 10:23 - 000527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000514136 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000511504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000506408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000482104 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000470528 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000467984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2019-07-21 10:23 - 2019-07-21 10:23 - 000465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000464912 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000439096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000436024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000431416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000423480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2019-07-21 10:23 - 2019-07-21 10:23 - 000414208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000397688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000351432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000333128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000310288 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000298296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000294000 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000292152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiCloudStore.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000241944 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
2019-07-21 10:23 - 2019-07-21 10:23 - 000240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000219448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000212792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000203272 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000198456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000197832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
2019-07-21 10:23 - 2019-07-21 10:23 - 000192824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaSvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spacebridge.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000157024 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000149232 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000141216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000137864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000121896 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000117720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000115120 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2019-07-21 10:23 - 2019-07-21 10:23 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys
2019-07-21 10:23 - 2019-07-21 10:23 - 000071696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2019-07-21 10:23 - 2019-07-21 10:23 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000036360 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-07-21 10:23 - 2019-07-21 10:23 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-07-21 10:23 - 2019-07-21 10:23 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-07-21 10:23 - 2019-07-21 10:23 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-07-21 10:23 - 2019-07-21 10:23 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-07-21 10:23 - 2019-07-21 10:23 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-07-21 10:23 - 2019-07-21 10:23 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-07-21 10:23 - 2019-07-21 10:23 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-07-21 10:23 - 2019-07-21 10:23 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-08-02 10:45 - 2018-10-01 18:01 - 000000000 ____D C:\Users\Jespi\AppData\LocalLow\Mozilla
2019-08-02 10:40 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-08-02 10:31 - 2019-01-14 15:22 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-08-02 10:31 - 2018-09-15 19:39 - 000716776 _____ C:\WINDOWS\system32\perfh005.dat
2019-08-02 10:31 - 2018-09-15 19:39 - 000144856 _____ C:\WINDOWS\system32\perfc005.dat
2019-08-02 10:31 - 2018-09-15 09:31 - 000000000 ____D C:\WINDOWS\INF
2019-08-02 10:29 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-08-02 10:29 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-08-02 10:26 - 2019-01-14 15:18 - 000005218 _____ C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for HERNIPC-Jespi HERNIPC
2019-08-02 10:25 - 2019-01-14 15:18 - 000003114 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2019-08-02 10:25 - 2019-01-14 15:18 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-08-02 01:48 - 2018-09-15 08:09 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2019-08-01 20:59 - 2019-01-14 15:14 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-08-01 20:25 - 2018-10-01 19:46 - 000000000 ____D C:\Users\Jespi\AppData\Local\Ubisoft Game Launcher
2019-08-01 20:19 - 2019-01-14 15:14 - 000000000 ____D C:\Users\Jespi
2019-08-01 20:10 - 2018-10-01 18:51 - 000000000 ____D C:\Users\Jespi\AppData\Local\CrashDumps
2019-08-01 15:45 - 2019-01-28 20:06 - 000000000 ____D C:\Users\Jespi\AppData\Local\LogMeIn Hamachi
2019-08-01 15:42 - 2018-10-01 18:05 - 000000000 ____D C:\Users\Jespi\AppData\Local\NVIDIA Corporation
2019-08-01 15:41 - 2018-10-01 18:04 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-08-01 15:39 - 2019-01-14 15:18 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-01 15:39 - 2019-01-14 15:18 - 000004106 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-01 15:39 - 2019-01-14 15:18 - 000003976 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-01 15:39 - 2019-01-14 15:18 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-01 15:39 - 2019-01-14 15:18 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-01 15:39 - 2019-01-14 15:18 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-01 15:39 - 2018-11-14 10:57 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-08-01 15:39 - 2018-10-01 18:05 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-08-01 15:39 - 2018-10-01 18:04 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-08-01 15:39 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Help
2019-08-01 12:50 - 2019-05-02 12:20 - 000017429 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2019-08-01 12:50 - 2019-05-02 12:20 - 000012927 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2019-08-01 12:50 - 2019-05-02 12:20 - 000006581 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2019-08-01 10:54 - 2019-06-30 18:05 - 000000000 ____D C:\Users\Jespi\AppData\LocalLow\uTorrent
2019-07-30 13:49 - 2018-10-01 19:43 - 000000000 ____D C:\Users\Jespi\AppData\Roaming\discord
2019-07-29 22:59 - 2018-10-03 20:26 - 000003139 _____ C:\Users\Jespi\Desktop\Poznámky.txt
2019-07-29 11:05 - 2018-10-01 19:37 - 000000000 ____D C:\Users\Jespi\AppData\Local\Battle.net
2019-07-29 00:30 - 2018-10-01 18:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-07-28 23:03 - 2018-10-01 17:52 - 000000000 ____D C:\ProgramData\Package Cache
2019-07-28 23:00 - 2019-02-13 20:45 - 000000000 ____D C:\Users\Jespi\AppData\Roaming\Origin
2019-07-28 23:00 - 2019-02-13 20:45 - 000000000 ____D C:\ProgramData\Origin
2019-07-28 21:36 - 2019-06-01 11:26 - 000000000 ____D C:\Users\Jespi\Desktop\Svatba 24.5.2019
2019-07-27 13:36 - 2019-01-28 21:24 - 000000000 ____D C:\Users\Jespi\AppData\Roaming\.minecraft
2019-07-27 13:14 - 2018-09-04 12:23 - 000149144 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys
2019-07-27 13:14 - 2018-09-04 12:23 - 000113336 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys
2019-07-27 13:14 - 2015-07-13 06:14 - 000189232 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys
2019-07-26 20:43 - 2018-10-01 20:29 - 000000000 ____D C:\World of Warcraft
2019-07-26 19:59 - 2018-10-01 19:50 - 000000000 ____D C:\Users\Jespi\AppData\Local\D3DSCache
2019-07-26 14:08 - 2018-10-01 17:28 - 000000000 ____D C:\Users\Jespi\AppData\Local\Packages
2019-07-26 14:08 - 2018-09-15 19:39 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2019-07-26 14:08 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SystemApps
2019-07-26 14:08 - 2018-09-15 09:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-07-22 02:43 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-07-21 18:46 - 2018-10-01 17:28 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-07-21 18:46 - 2018-10-01 17:28 - 000000000 ___RD C:\Users\Jespi\3D Objects
2019-07-21 18:45 - 2019-01-14 15:14 - 005042136 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-07-21 18:44 - 2019-01-16 18:56 - 000000000 ____D C:\WINDOWS\Minidump
2019-07-21 18:44 - 2018-10-01 17:59 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-07-21 18:44 - 2018-09-15 19:40 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-07-21 18:44 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2019-07-21 18:44 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-07-21 18:44 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-07-21 18:44 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-07-21 18:44 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-07-21 18:44 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\ShellComponents
2019-07-21 18:44 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Provisioning
2019-07-21 18:44 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-07-21 18:44 - 2018-09-15 08:09 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-07-21 10:29 - 2019-01-14 15:18 - 000004650 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2019-07-21 10:29 - 2018-10-01 17:59 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-07-21 10:29 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-07-21 10:27 - 2018-10-01 17:37 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-07-21 10:25 - 2018-10-01 17:37 - 136618864 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-07-21 10:19 - 2019-01-14 15:18 - 000004638 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-07-21 10:19 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-07-21 10:15 - 2018-10-01 23:51 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-07-21 10:15 - 2018-10-01 23:51 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-07-03 14:06 - 2019-06-30 14:42 - 000000000 ____D C:\Users\Jespi\AppData\Roaming\Microsoft Games
2019-07-03 14:06 - 2018-10-01 17:53 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information

==================== Files in the root of some directories ================

2019-06-16 22:02 - 2019-07-01 03:00 - 003932750 _____ () C:\Users\Jespi\AppData\Roaming\CooLWPC Wallpaper.bmp
2019-06-06 20:11 - 2019-06-06 20:11 - 000000000 _____ () C:\Users\Jespi\AppData\Roaming\FC29FA0894FE.ini
2019-06-21 14:40 - 2019-06-21 14:40 - 000000208 _____ () C:\Users\Jespi\AppData\Roaming\HERNIPC.MTBF.txt
2019-06-21 14:41 - 2019-06-21 14:41 - 000003584 _____ () C:\Users\Jespi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2019-04-15 17:41 - 2019-04-15 17:41 - 000000000 _____ () C:\Users\Jespi\AppData\Local\oobelibMkey.log

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118254
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: winscomrssrv.dll

#3 Příspěvek od Rudy »

Zdravím!
Ještě přidejte log Addition. Najdete ho v E:\Stažené.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Jespi
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 18 úno 2010 21:28

Re: winscomrssrv.dll

#4 Příspěvek od Jespi »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-07-2019
Ran by Jespi (02-08-2019 10:49:15)
Running from E:\Stažené
Windows 10 Education Version 1809 17763.615 (X64) (2019-01-14 13:18:13)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-656912685-4082690455-4279580212-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-656912685-4082690455-4279580212-503 - Limited - Disabled)
Guest (S-1-5-21-656912685-4082690455-4279580212-501 - Limited - Disabled)
Jespi (S-1-5-21-656912685-4082690455-4279580212-1001 - Administrator - Enabled) => C:\Users\Jespi
WDAGUtilityAccount (S-1-5-21-656912685-4082690455-4279580212-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Disabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Security (Disabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.012.20035 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 32.0.0.89 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.223 - Adobe)
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.223 - Adobe)
Adobe Photoshop CC 2019 (HKLM-x32\...\PHSP_20_0) (Version: 20.0.0 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Age of Empires III - The Asian Dynasties (HKLM-x32\...\{C43C1415-3DFC-4089-9A32-0BECF28A6046}) (Version: 1.00.0000 - Microsoft) Hidden
Age of Empires III - The Asian Dynasties (HKLM-x32\...\InstallShield_{C43C1415-3DFC-4089-9A32-0BECF28A6046}) (Version: 1.00.0000 - Microsoft)
Age of Empires III - The WarChiefs (HKLM-x32\...\{1C08A24C-B168-407E-A826-68FAF5F20710}) (Version: 1.00.0000 - Název společnosti:) Hidden
Age of Empires III - The WarChiefs (HKLM-x32\...\InstallShield_{1C08A24C-B168-407E-A826-68FAF5F20710}) (Version: 1.00.0000 - Název společnosti:)
Age of Empires III (HKLM-x32\...\{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}) (Version: 1.00.0000 - Microsoft Game Studios) Hidden
Age of Empires III (HKLM-x32\...\InstallShield_{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}) (Version: 1.00.0000 - Microsoft Game Studios)
Age of Empires: Definitive Edition [FULL REMOVAL] (HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\{1F36588A-148D-4BED-AD83-12C63E1F780E}_is1) (Version: 1.3.5101.2 - Microsoft Studios)
Age of Mythology: Extended Edition Tale of the Dragon (HKLM\...\YWdlb2ZteXRob2xvZ3lleHRlbmRlZGVkaXRpb24_is1) (Version: 1 - )
Aktualizace NVIDIA 37.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 37.0.0.0 - NVIDIA Corporation) Hidden
AMD Ryzen Master SDK (HKLM\...\{716F53C3-0B3F-4FB7-9AD7-9BC7DB7134A1}) (Version: 1.4.0.0659 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 17.7 - Advanced Micro Devices, Inc.)
Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.0.8 - Electronic Arts, Inc.)
Assassin's Creed III Remastered (HKLM-x32\...\Uplay Install 5183) (Version: - Ubisoft)
Assassin's Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft)
Assassin's Creed Odyssey (HKLM-x32\...\Uplay Install 5059) (Version: - Ubisoft)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Capitalism Lab 5.6.23 (HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\Capitalism Lab) (Version: 5.6.23 - Enlight Software Ltd.)
CooL Wallpaper Changer (odinstalovat) (HKLM-x32\...\CooLWPC3) (Version: - )
CPUID CPU-Z 1.86 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.86 - CPUID, Inc.)
Cuphead.Deluxe.Edition.REPACK verze 1.0 (HKLM-x32\...\{A63BD572-3590-4949-A1AF-997FC1453E0C}}_is1) (Version: 1.0 - Ali213.net)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.11.0.0939 - Disc Soft Ltd)
Defraggler (HKLM\...\Defraggler) (Version: 2.21 - Piriform)
DeskPins (HKLM-x32\...\DeskPins) (Version: 1.32 - Elias Fotinis)
Disciples 2 Gold: Dark Prophecy & Rise of the Elves (HKLM-x32\...\Disciples 2 Gold: Dark Prophecy & Rise of the Elves_is1) (Version: - GOG.com)
Discord (HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\Discord) (Version: 0.0.305 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{0E63B233-DC24-442C-BD38-0B91D90FEC5B}) (Version: 1.1.167.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ESET Security (HKLM\...\{EC96F234-2A42-4D7D-9C33-443566F72BF5}) (Version: 12.2.23.0 - ESET, spol. s r.o.)
Fallout 4 1.10.20 (HKLM-x32\...\Fallout 4 + 6 DLC_is1) (Version: 1.10.20 - yurban.nah@gmail.com)
Far Cry Primal (HKLM-x32\...\{80BD47AF-CF13-49B2-99BF-7E78FBA26124}_is1) (Version: - Ubisoft)
GoldWave v6.36 (HKLM\...\GoldWave v6.36) (Version: 6.36 - GoldWave Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 75.0.3770.142 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Cheat Engine 6.8.3 (HKLM-x32\...\Cheat Engine 6.8.3_is1) (Version: - Cheat Engine)
Chrome Remote Desktop Host (HKLM-x32\...\{A35722E0-FC94-4984-8CA7-100BED21EACA}) (Version: 76.0.3809.21 - Google Inc.)
Installer (HKLM\...\{E9675998-9B12-4560-8E98-A6CCCDE0BE18}) (Version: 1.0.0 - Default Company Name)
Java 8 Update 201 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180201F0}) (Version: 8.0.2010.9 - Oracle Corporation)
Java 8 Update 202 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180202F0}) (Version: 8.0.2020.8 - Oracle Corporation)
Java SE Development Kit 8 Update 202 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180202}) (Version: 8.0.2020.8 - Oracle Corporation)
Kerbal Space Program (HKLM-x32\...\1429864849_is1) (Version: 1.4.5.02243 - GOG.com)
Kerbal Space Program: Making History (HKLM-x32\...\2092205632_is1) (Version: 1.4.5.02243 - GOG.com)
KMPlayer 64X (HKLM\...\KMPlayer 64X) (Version: 1.0.0.2 - PandoraTV)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Little Fighter 2 1.9c (HKLM-x32\...\Little Fighter 2) (Version: 1.9c - )
LogMeIn Hamachi (HKLM-x32\...\{ECC0FA07-863E-44BC-8B1D-DA22F96E5FB7}) (Version: 2.2.0.633 - LogMeIn, Inc.) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.633 - LogMeIn, Inc.)
Mass Effect (HKLM-x32\...\{D5FED686-AF59-454C-91A9-DC357E4AED11}_is1) (Version: - )
Mass Effect 2 Digital Deluxe Edition version 1.2.1604.0 (HKLM-x32\...\Mass Effect 2 Digital Deluxe Edition_is1) (Version: 1.2.1604.0 - Mr DJ)
Mass Effect 3 (HKLM-x32\...\Mass Effect 3_is1) (Version: Mass Effect 3 - )
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4734.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.22.27821 (HKLM-x32\...\{6361b579-2795-4886-b2a8-53d5239b6452}) (Version: 14.22.27821.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.22.27821 (HKLM-x32\...\{5bfc1380-fd35-4b85-9715-7351535d077e}) (Version: 14.22.27821.0 - Microsoft Corporation)
Minecraft1.12.2 (HKLM-x32\...\Minecraft1.12.2) (Version: - )
Mozilla Firefox 68.0.1 (x64 cs) (HKLM\...\Mozilla Firefox 68.0.1 (x64 cs)) (Version: 68.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 62.0.2 - Mozilla)
Mp3tag v2.91 (HKLM-x32\...\Mp3tag) (Version: 2.91 - Florian Heidenreich)
MSI Afterburner 4.5.0 (HKLM-x32\...\Afterburner) (Version: 4.5.0 - MSI Co., LTD)
MSI APP Manager (HKLM-x32\...\{00F47104-12BA-4E58-A7E6-F456C1BA338E}}_is1) (Version: 1.0.0.25 - MSI)
MSI Command Center (HKLM-x32\...\{85A2564E-9ED9-448A-91E4-B9211EE58A08}_is1) (Version: 3.0.0.78 - MSI)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.70.7 - Black Tree Gaming)
Nocturne (HKLM-x32\...\Nocturne) (Version: - )
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.15 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.19.0.107 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.19.0.107 - NVIDIA Corporation)
NVIDIA Nsight Compute v1.0 (HKLM\...\{3A63BBE3-1FA5-4500-B580-BA102E59C55C}) (Version: 1.0.18227.2207 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.16 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 431.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 431.60 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
NVIDIA Tools Extension SDK (NVTX) - 64 bit (HKLM\...\{B56D2F88-8865-40FD-B7AC-F074EE4D201D}) (Version: 1.00.00.00 - NVIDIA Corporation)
NVIDIA USBC Driver 1.1.27.831 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.1.27.831 - NVIDIA Corporation)
OEM Application Profile (HKLM-x32\...\{7F5DCD33-1039-C3B2-9538-B645B65BBA63}) (Version: 1.00.0000 - Název společnosti:)
Origin (HKLM-x32\...\Origin) (Version: 10.5.37.24524 - Electronic Arts, Inc.)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
Ovládací panel NVIDIA 431.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 431.60 - NVIDIA Corporation) Hidden
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
ProxyGate version 3.0.0.1180 (HKLM-x32\...\{1EC095EE-8CA3-43D6-B9F5-0C55B82ED3D7}}_is1) (Version: 3.0.0.1180 - Gold Click Ltd) <==== ATTENTION
RaiderIO 1.2.0 (HKLM\...\ea53c16d-4ef5-533f-83dc-5b0c5bb40cb2) (Version: 1.2.0 - jah@raider.io)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.28.615.2018 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8522 - Realtek Semiconductor Corp.)
Sid Meiers Civilization VI Deluxe Edition Incl 10DLC verze 1.0 (HKLM-x32\...\{392338D1-D5C2-4EC7-8179-7501126C22BD}}_is1) (Version: 1.0 - Ali213.net)
Space Engineers v1.189.041 (HKLM-x32\...\tuttop.com Space Engineers v1.189.041_is1) (Version: 1.189.041 - tuttop.com)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited)
SSDlife Pro (HKLM-x32\...\{6F104B6D-535A-4D27-9A11-8525368AEB1F}) (Version: 2.5.82 - BinarySense Inc.)
State of Decay 2 MULTi7 - ElAmigos version 2.0 (HKLM-x32\...\{328B8269-6FA0-4288-ADED-6FA595C21C8D}_is1) (Version: 2.0 - Microsoft Studios)
State of Decay YOSE - Day One Edition (HKLM-x32\...\State of Decay YOSE - Day One Edition_R.G. Mechanics_is1) (Version: - R.G. Mechanics, markfiter)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\TeamSpeak 3 Client) (Version: 3.2.3 - TeamSpeak Systems GmbH)
The Elder Scrolls IV Oblivion version 1.2.0416.00 (HKLM-x32\...\The Elder Scrolls IV Oblivion_is1) (Version: 1.2.0416.00 - Mr DJ)
The Elder Scrolls V Skyrim Special Edition (HKLM-x32\...\The Elder Scrolls V Skyrim Special Edition_is1) (Version: - )
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.21a - Ghisler Software GmbH)
Two Point Hospital Pebberley Island (HKLM\...\SKIDROW - Two Point Hospital Pebberley Island) (Version: - SKIDROW)
Uplay (HKLM-x32\...\Uplay) (Version: 70.0 - Ubisoft)
VdhCoApp 1.2.4 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.7.1 - VideoLAN)
Warcraft Logs Uploader (HKLM-x32\...\{4D8ACA48-4191-58C6-F252-8A86DF0E20C5}) (Version: 5.41 - UNKNOWN) Hidden
Warcraft Logs Uploader (HKLM-x32\...\com.warcraft.logs) (Version: 5.41 - UNKNOWN)
WebHarvy (HKLM-x32\...\{4C4A2816-D695-40A4-A6D7-35B1A7387DD8}) (Version: 5.4.0.164 - SysNucleus)
Wiggles (HKLM-x32\...\{6CF4CAD7-5102-4CC3-B216-F7AB7462CB96}) (Version: 1.00.000 - Innonics) Hidden
Wiggles (HKLM-x32\...\InstallShield_{6CF4CAD7-5102-4CC3-B216-F7AB7462CB96}) (Version: 1.00.000 - Innonics)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
Wise Registry Cleaner 9.44 (HKLM-x32\...\Wise Registry Cleaner_is1) (Version: 9.44 - WiseCleaner.com, Inc.)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
World of Warcraft Public Test (HKLM-x32\...\World of Warcraft Public Test) (Version: - Blizzard Entertainment)
Zoo Tycoon 2 - Extinct Animals (HKLM-x32\...\{15292416-A464-4FBA-BB96-7298EAACFC07}) (Version: 1.00.0000 - Microsoft Game Studios) Hidden
Zoo Tycoon 2 - Extinct Animals (HKLM-x32\...\InstallShield_{15292416-A464-4FBA-BB96-7298EAACFC07}) (Version: 1.00.0000 - Microsoft Game Studios)
Zoo Tycoon: Complete Collection (HKLM-x32\...\Zoo Tycoon 1.0) (Version: - )
Zoo Tycoon: Ultimate Animal Collection [FULL REMOVAL] (HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\{4A0FF863-48CC-4955-A063-1D2B26A1B4A2}_is1) (Version: 1.1711.52116 - Microsoft Studios)

Packages:
=========
Age of Empires: Definitive Edition -> D:\Age of Empires Definitive Edition [2018-10-04] (Microsoft Studios)
EdgeDevtoolsPlugin -> C:\WINDOWS\SystemApps\Microsoft.EdgeDevtoolsPlugin_cw5n1h2txyewy [2019-07-26] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1807.9.0_x64__8wekyb3d8bbwe [2018-10-01] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1807.9.0_x86__8wekyb3d8bbwe [2018-10-01] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.954.0_x64__56jybvy8sckqj [2019-05-27] (NVIDIA Corp.)
State of Decay 2 -> d:\Games\State of Decay 2\AppFiles [2019-07-26] (Microsoft Studios)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> no filepath
CustomCLSID: HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> no filepath
CustomCLSID: HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> no filepath
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-07-27] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-07-27] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Program Files\WinRar\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Program Files\WinRar\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-06-30] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-07-27] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-07-27] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-06-30] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-07-17] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-07-27] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-07-27] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Program Files\WinRar\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Program Files\WinRar\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


Shortcut: C:\Users\Jespi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft\Minecraft Debugger.lnk -> C:\Users\Jespi\AppData\Roaming\.minecraft\minecraft launcher\Debug.bat ()

ShortcutWithArgument: C:\Users\Jespi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Vzdálená plocha Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp

==================== Loaded Modules (Whitelisted) ==============

2018-10-10 17:44 - 2005-07-18 13:43 - 000160256 _____ () [File not signed] D:\Program Files\MSI\APP Manager\unrar.dll
2019-04-17 18:41 - 2019-02-13 20:47 - 001548288 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Program Files\Origin\LIBEAY32.dll
2019-04-17 18:41 - 2019-02-13 20:47 - 000395776 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Program Files\Origin\ssleay32.dll
2019-04-17 18:41 - 2019-02-13 20:47 - 001611264 _____ (The Qt Company Ltd) [File not signed] D:\Program Files\Origin\platforms\qwindows.dll
2019-04-17 18:41 - 2019-02-13 20:47 - 005487104 _____ (The Qt Company Ltd) [File not signed] D:\Program Files\Origin\Qt5Core.dll
2019-04-17 18:41 - 2019-02-13 20:47 - 005841920 _____ (The Qt Company Ltd) [File not signed] D:\Program Files\Origin\Qt5Gui.dll
2019-04-17 18:41 - 2019-02-13 20:47 - 001177600 _____ (The Qt Company Ltd) [File not signed] D:\Program Files\Origin\Qt5Network.dll
2019-04-17 18:41 - 2019-02-13 20:47 - 005089792 _____ (The Qt Company Ltd) [File not signed] D:\Program Files\Origin\Qt5Widgets.dll
2019-04-17 18:41 - 2019-02-13 20:47 - 000184832 _____ (The Qt Company Ltd) [File not signed] D:\Program Files\Origin\Qt5Xml.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57 [134]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [482]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\123simsen.com -> www.123simsen.com

There are 7943 more sites.


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-12 01:38 - 2019-01-09 01:33 - 000454777 ____R C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 www.10sek.com
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 123fporn.info
127.0.0.1 www.123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 www.123haustiereundmehr.com
127.0.0.1 123moviedownload.com
127.0.0.1 www.123moviedownload.com

There are 15610 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> ;c:\program files (x86)\common files\oracle\java\javapath;c:\windows\system32;c:\windows;c:\windows\system32\wbem;c:\windows\system32\windowspowershell\v1.0\;c:\windows\system32\openssh\;c:\program files\nvidia corporation\nvidia nvdlisr;c:\windows\system32;c:\windows;c:\windows\system32\wbem;c:\windows\system32\windowspowershell\v1.0\;c:\windows\system32\openssh\;C:\Program Files\NVIDIA Corporation\NVIDIA NGX;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jespi\Desktop\hiqgsz9czxb31.png
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "APP Manager"
HKLM\...\StartupApproved\Run32: => "Command Center"
HKLM\...\StartupApproved\Run32: => "SDTray"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager"
HKLM\...\StartupApproved\Run32: => "SwitchBoard"
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{83C324BF-35C1-4618-BAA1-410E740CDE66}C:\program files (x86)\common files\oracle\java\javapath_target_3312546\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_3312546\java.exe
FirewallRules: [UDP Query User{391A7625-D0A6-4D7D-985F-33787322E66C}C:\program files (x86)\common files\oracle\java\javapath_target_3312546\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_3312546\java.exe
FirewallRules: [{50F007A5-5C3E-4ED8-85E4-7B7F6675AF45}] => (Block) C:\program files (x86)\common files\oracle\java\javapath_target_3312546\java.exe
FirewallRules: [{07A8C7AB-932E-4B53-A28A-5C54346B761F}] => (Block) C:\program files (x86)\common files\oracle\java\javapath_target_3312546\java.exe
FirewallRules: [TCP Query User{A958B1EE-7C26-4CA6-9361-C1C1FAFB9101}C:\program files\java\jre1.8.0_202\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_202\bin\javaw.exe
FirewallRules: [UDP Query User{1B8D1458-F087-482E-BB2C-38DDDAF5188D}C:\program files\java\jre1.8.0_202\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_202\bin\javaw.exe
FirewallRules: [{227CB8D9-C8F7-41D4-817D-C815E2163BAD}] => (Block) C:\program files\java\jre1.8.0_202\bin\javaw.exe
FirewallRules: [{7437F896-FFDA-4FAE-A022-C3CECBC8DBA8}] => (Block) C:\program files\java\jre1.8.0_202\bin\javaw.exe
FirewallRules: [TCP Query User{61670529-BC61-4CBB-9658-05BFF3EC0004}C:\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) C:\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{61D1AF46-B9A8-4ED5-8BDC-DD799BE5AC5C}C:\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) C:\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{E8F2F64B-74D4-4BDB-AC96-7A540C063EED}] => (Block) C:\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{10A4126C-C4E5-4DF3-805F-6C0F9DA07988}] => (Block) C:\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{AD981781-487B-408D-BDFE-CB72606807A6}D:\program files\utorrent\utorrent.exe] => (Allow) D:\program files\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{B105699E-E4B4-4E28-81B8-0E816B7F0347}D:\program files\utorrent\utorrent.exe] => (Allow) D:\program files\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{37441AB0-6637-42DB-A437-72F418AA1431}] => (Block) D:\program files\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{31647A5D-28AF-4CF8-A830-F4D926CFCA4A}] => (Block) D:\program files\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{1C31F93A-3028-41E2-AC16-34CBD251938C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{01AE608F-6332-4D45-A51C-301640761AA1}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{BA56E627-5DE6-4136-B3C9-529F9D216619}] => (Allow) D:\Program Files\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{41C507CA-B454-4990-8898-24D87B53A500}] => (Allow) D:\Program Files\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{6173916E-4098-419F-A4B9-E4BCA6F9F4C7}] => (Allow) D:\Program Files\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{94562CA8-54ED-4ABB-8E57-3C9D9B37B8CF}] => (Allow) D:\Program Files\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{C16D1E68-A7B5-4EAF-9365-C46631653CAF}] => (Allow) D:\Program Files\Steam\steamapps\common\Gang Beasts\Gang Beasts.exe () [File not signed]
FirewallRules: [{5721C915-0683-49C0-9607-E432B3262E13}] => (Allow) D:\Program Files\Steam\steamapps\common\Gang Beasts\Gang Beasts.exe () [File not signed]
FirewallRules: [TCP Query User{39EB62AA-4FC4-493C-BEC9-A925A5064B53}D:\overwatch\overwatch.exe] => (Allow) D:\overwatch\overwatch.exe No File
FirewallRules: [UDP Query User{82195490-6903-4D72-A9BE-28882C40C31F}D:\overwatch\overwatch.exe] => (Allow) D:\overwatch\overwatch.exe No File
FirewallRules: [{3DC2728E-D9EC-4519-ACE4-986883361BCC}] => (Block) D:\overwatch\overwatch.exe No File
FirewallRules: [{1507661D-A3DD-44C7-854C-A79B89B18FB6}] => (Block) D:\overwatch\overwatch.exe No File
FirewallRules: [TCP Query User{086F2326-3059-4B6D-9C03-0C7F41F4958D}D:\program files\winamp\winamp.exe] => (Allow) D:\program files\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [UDP Query User{C936D9C4-6722-4A10-A170-4B600AEE1E7F}D:\program files\winamp\winamp.exe] => (Allow) D:\program files\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [{8F48DA54-A224-4137-A89E-CCE7D8CA980C}] => (Block) D:\program files\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [{F4EBFF9A-4BFC-46A1-891F-B33601E6746E}] => (Block) D:\program files\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [{09C1FE6C-1781-4456-8CCA-63D4DC333E1D}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\hamachi-2-ui.exe No File
FirewallRules: [{092CAE3E-8B18-456E-8617-B14AADB1E60F}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe No File
FirewallRules: [{0F3108E0-8132-4581-BD8B-F73D15E6CDBB}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\hamachi-2.exe No File
FirewallRules: [{8553D97C-F457-4043-BC91-22B707A63C46}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe No File
FirewallRules: [{FF73D179-802F-4D41-A4D4-9B22424B84A8}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\hamachi-2.exe No File
FirewallRules: [{344C8498-CA8E-4BAB-8CF6-E69FBA4BBEB6}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe No File
FirewallRules: [{6F11CDB4-41BC-4926-9F13-7DD8FF333149}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe No File
FirewallRules: [{40815D11-06A1-4C6D-B042-A3EC09397DF8}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\hamachi-2-ui.exe No File
FirewallRules: [TCP Query User{2AE1BB08-5329-4B35-950F-FE25B54DBEDD}D:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) D:\program files (x86)\origin games\apex\r5apex.exe No File
FirewallRules: [UDP Query User{B15EAAB4-4D2F-4927-810A-16E02C51709D}D:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) D:\program files (x86)\origin games\apex\r5apex.exe No File
FirewallRules: [TCP Query User{9FB7C23A-6EA2-4DAC-8C10-AA9705677817}C:\program files\java\jdk1.8.0_202\bin\java.exe] => (Block) C:\program files\java\jdk1.8.0_202\bin\java.exe
FirewallRules: [UDP Query User{E15C171B-1DD8-43D9-A0AB-CEC4F42A8EFE}C:\program files\java\jdk1.8.0_202\bin\java.exe] => (Block) C:\program files\java\jdk1.8.0_202\bin\java.exe
FirewallRules: [{1F88B300-887C-439E-AA1A-92B82FB641CB}] => (Allow) D:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe No File
FirewallRules: [{5B9CF63D-DF00-4B80-8B4A-635EB680FE42}] => (Allow) D:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe No File
FirewallRules: [{F9161359-619B-4369-83C5-C2A0E67E9412}] => (Allow) D:\Program Files\Steam\steamapps\common\Human Fall Flat\Human.exe () [File not signed]
FirewallRules: [{3D649639-EC17-46E5-9206-298DE6151970}] => (Allow) D:\Program Files\Steam\steamapps\common\Human Fall Flat\Human.exe () [File not signed]
FirewallRules: [{A31C0E17-EB6D-4847-BC00-5F2B2BA80E9E}] => (Allow) D:\Assassin's Creed IV Black Flag\AC4BFSP.exe (Ubisoft Entertainment -> )
FirewallRules: [{6FBBA716-4A39-4D0C-8B9C-E840F6D36A98}] => (Allow) D:\Assassin's Creed IV Black Flag\AC4BFSP.exe (Ubisoft Entertainment -> )
FirewallRules: [{FCE9AEB7-D8D3-4D58-833B-8DDE36DEA67E}] => (Allow) D:\Assassin's Creed IV Black Flag\AC4BFSP.exe (Ubisoft Entertainment -> )
FirewallRules: [{969A4D1E-3683-4E84-8B06-97139B98CAB3}] => (Allow) D:\Assassin's Creed IV Black Flag\AC4BFSP.exe (Ubisoft Entertainment -> )
FirewallRules: [{973D236E-4333-498F-AECB-A7CF4BCBD0F7}] => (Allow) D:\Assassin's Creed IV Black Flag\AC4BFMP.exe (Ubisoft Entertainment SA -> )
FirewallRules: [{73489759-573F-4260-8D0C-56472AE2E043}] => (Allow) D:\Assassin's Creed IV Black Flag\AC4BFMP.exe (Ubisoft Entertainment SA -> )
FirewallRules: [{D1EF15D7-FB05-4F4A-8B40-603B2E60E5EC}] => (Allow) D:\Assassin's Creed IV Black Flag\AC4BFMP.exe (Ubisoft Entertainment SA -> )
FirewallRules: [{60DFA879-D7E4-42D4-A8B5-DFC89E3363F8}] => (Allow) D:\Assassin's Creed IV Black Flag\AC4BFMP.exe (Ubisoft Entertainment SA -> )
FirewallRules: [{6877DB55-2B47-4A93-8908-2A576A9D18AA}] => (Block) D:\MountBlade Warband\mb_warband.exe ( Taleworlds Entertainment) [File not signed]
FirewallRules: [{E7411875-A99E-4404-9385-25216910C995}] => (Block) D:\Space Engineers\Bin64\SpaceEngineers.exe (Keen Software House a.s. -> Keen Software House)
FirewallRules: [TCP Query User{5E584ECC-9990-44FE-BA1A-0B50340C3B8D}D:\program files\origin games\apex\r5apex.exe] => (Allow) D:\program files\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [UDP Query User{8ECB11C6-3AE0-4A48-8701-108705B4743F}D:\program files\origin games\apex\r5apex.exe] => (Allow) D:\program files\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [TCP Query User{F8446352-C3A4-412D-85B2-B5CBAB3DE2BC}D:\program files\ubisoft\ubisoft game launcher\games\assassin's creed iii remastered\aciii.exe] => (Allow) D:\program files\ubisoft\ubisoft game launcher\games\assassin's creed iii remastered\aciii.exe (Ubisoft Entertainment -> )
FirewallRules: [UDP Query User{4970D568-1794-4095-9D9F-6373518E3CF7}D:\program files\ubisoft\ubisoft game launcher\games\assassin's creed iii remastered\aciii.exe] => (Allow) D:\program files\ubisoft\ubisoft game launcher\games\assassin's creed iii remastered\aciii.exe (Ubisoft Entertainment -> )
FirewallRules: [{E0E6976F-FC2E-4C5B-B7A3-760478588D63}] => (Block) D:\program files\ubisoft\ubisoft game launcher\games\assassin's creed iii remastered\aciii.exe (Ubisoft Entertainment -> )
FirewallRules: [{F29DFAEC-4400-4FA1-987A-F3B4F98004B6}] => (Block) D:\program files\ubisoft\ubisoft game launcher\games\assassin's creed iii remastered\aciii.exe (Ubisoft Entertainment -> )
FirewallRules: [TCP Query User{20530327-CDBB-4075-9C39-DF3C5937BB9D}D:\far cry primal\bin\fcprimal.exe] => (Block) D:\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{0FCF7750-E051-4CDA-8C9E-5E785B2E0DAD}D:\far cry primal\bin\fcprimal.exe] => (Block) D:\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{815A05B7-5085-40B1-9CF9-011B76C4B246}] => (Block) D:\Tropico 6\Tropico6.exe No File
FirewallRules: [{9DDC132F-86CE-4E2C-832B-01BE3CF6DBDD}] => (Block) D:\Tropico 6\Tropico6.exe No File
FirewallRules: [{2615D2A8-6F8A-43A7-AE74-D643E805ABE0}] => (Allow) D:\Program Files\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{A9E17BE0-43A2-4C76-85CF-41E88B705A3E}] => (Allow) D:\Program Files\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [TCP Query User{9FD8CAAD-3A76-492D-9542-4B9B8ADE905A}D:\wiggles\wiggles.exe] => (Block) D:\wiggles\wiggles.exe (SEK-Ost) [File not signed]
FirewallRules: [UDP Query User{A5B6BDAE-A852-4AF4-B116-960CE3B57D06}D:\wiggles\wiggles.exe] => (Block) D:\wiggles\wiggles.exe (SEK-Ost) [File not signed]
FirewallRules: [{115ACBAD-E7BB-478E-B251-D94DCCE67979}] => (Allow) C:\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{C422E960-5D67-48A0-8419-45E7E46A2EF2}] => (Allow) C:\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [TCP Query User{50741135-24DF-44BE-B9D9-B8F422842BAF}E:\stažené\toav01\ost_game\binaries\win64\ost_game-win64-shipping.exe] => (Allow) E:\stažené\toav01\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [UDP Query User{336368FE-46C5-438E-842F-B219599568C6}E:\stažené\toav01\ost_game\binaries\win64\ost_game-win64-shipping.exe] => (Allow) E:\stažené\toav01\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{53FA7C88-29D7-46D9-862D-AA1C8FC3B2AB}] => (Block) E:\stažené\toav01\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{0547D43A-2335-4FCA-A267-13FEF667F141}] => (Block) E:\stažené\toav01\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [TCP Query User{17FB8D4E-F9D8-422C-999A-04D974D4F552}E:\stažené\jr1.0b\ost_game\binaries\win64\ost_game-win64-shipping.exe] => (Allow) E:\stažené\jr1.0b\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [UDP Query User{7EAE08A4-B774-404B-B3C3-779DF1225356}E:\stažené\jr1.0b\ost_game\binaries\win64\ost_game-win64-shipping.exe] => (Allow) E:\stažené\jr1.0b\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{DCF0F00F-0E3B-452B-89DB-234D3EF66F2B}] => (Block) E:\stažené\jr1.0b\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{0356E4BB-5002-461B-A3DB-F893BAD4CCAD}] => (Block) E:\stažené\jr1.0b\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [TCP Query User{D29EB159-D52C-489C-929F-DEFB33350572}D:\warcraft iii\war3.exe] => (Allow) D:\warcraft iii\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [UDP Query User{ECD28C9D-87B5-4AB6-85F1-1505AEC6B32F}D:\warcraft iii\war3.exe] => (Allow) D:\warcraft iii\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [{7D26975A-3BBA-41B1-94E2-669EEDD88879}] => (Block) D:\warcraft iii\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [{3B0D4137-FF9B-43D5-A68E-228C7B102FA9}] => (Block) D:\warcraft iii\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [{A46FFAA1-C5E1-4713-A51D-619364CD082B}] => (Allow) D:\Warcraft III\lancraft.exe () [File not signed]
FirewallRules: [{40A3FCBA-04AC-4309-9A77-CF212ED477C3}] => (Allow) D:\Warcraft III\lancraft.exe () [File not signed]
FirewallRules: [{64B5B1CE-388D-4176-8FE5-8AC385FE94AB}] => (Block) D:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
FirewallRules: [{8DFE3F0C-ABB4-448F-B02B-6F6C1B815431}] => (Block) D:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
FirewallRules: [{D3DB34B4-43B1-418D-8FAB-368DD63088BB}] => (Allow) D:\Program Files\Steam\steamapps\common\Jesus Christ RPG\Game.exe () [File not signed]
FirewallRules: [{A490D108-C2CD-45E0-ABA6-C20509D5E273}] => (Allow) D:\Program Files\Steam\steamapps\common\Jesus Christ RPG\Game.exe () [File not signed]
FirewallRules: [{46960234-34A1-4060-A258-991880C85C20}] => (Block) D:\Fallout 4+DLC\Fallout4.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{6621DF9C-F4C1-4BF5-AAF0-14AF4E90542C}] => (Block) D:\Fallout 4+DLC\Fallout4.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{8FABC0AD-6428-4E71-8B9A-6D336BBA1AA9}] => (Block) D:\Fallout 4+DLC\Fallout4Launcher.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{037BF9C8-923E-4BFA-9CAE-0ED25CB9E4B1}] => (Allow) D:\Program Files\Pinnacle Studio\programs\RM.exe No File
FirewallRules: [{607D56E3-E703-46F0-B6AC-E739AD881ED2}] => (Allow) D:\Program Files\Pinnacle Studio\programs\RM.exe No File
FirewallRules: [{D513F7C1-724A-4C29-B7A2-CF6BD2C47517}] => (Allow) D:\Program Files\Pinnacle Studio\programs\NGStudio.exe No File
FirewallRules: [{B35901DF-7AA1-4F9F-BB83-7D82ABBE40B9}] => (Allow) D:\Program Files\Pinnacle Studio\programs\NGStudio.exe No File
FirewallRules: [{81B2FBD5-5384-4390-BFD9-CAB55D635BD7}] => (Allow) D:\Program Files\Pinnacle Studio\programs\UMI.exe No File
FirewallRules: [{E331FE06-1DBE-4CCE-B844-55829831F5F3}] => (Allow) D:\Program Files\Pinnacle Studio\programs\UMI.exe No File
FirewallRules: [{E9D7F857-6CB5-4270-B4B4-7BD9A49F86F5}] => (Block) E:\Stažené\Pinnacle.Studio.Ultimate.v22.0.1.146-64Bit.E.Content Pack.Multilingua\Pinnacle.Studio.Ultimate.v22.0.1.146-64Bit.E.Content Pack.Multilingua-[WEB]\Setup\Pinnacle-Studio_22 Installer.exe No File
FirewallRules: [{193D65E4-621C-4113-84FE-D672D157D134}] => (Allow) D:\Assassin's Creed Odyssey\ACOdyssey.exe (UBISOFT ENTERTAINMENT INC. -> )
FirewallRules: [{8DF3658D-775B-432E-86B3-31C4C7838C9E}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{2B599ECC-7476-4D32-99DA-4E4B3A1C14F8}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{02D83D59-6C41-4C31-8F94-AE7186C94015}] => (Allow) D:\Zoo Tycoon 2\zt.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{6D86BE66-64FE-4E36-8FBA-FB1021593186}] => (Allow) D:\Zoo Tycoon 2\zt.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{B03C7F18-79B6-4BD2-AA13-7025D3073EBE}] => (Block) D:\Two Point Hospital Pebberley Island\TPH.exe () [File not signed]
FirewallRules: [{751F03FA-ECCA-4005-A5B3-1A271714D6CA}] => (Block) D:\Two Point Hospital Pebberley Island\TPH.exe () [File not signed]
FirewallRules: [{851468B3-A105-47A1-8D6C-8C6E41DC2B2A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{B33BF225-5954-41A4-B833-26B256139B94}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\76.0.3809.21\remoting_host.exe (Google LLC -> Google Inc.)
FirewallRules: [{4020371C-2050-41C0-9489-35123BFD6FBA}] => (Block) D:\State of Decay2\AppFiles\StateOfDecay2\Binaries\UWP64\StateOfDecay2-UWP64-Shipping.exe No File
FirewallRules: [{01643063-E5CF-42CA-BBE0-0764664E10B6}] => (Block) D:\State of Decay2\AppFiles\StateOfDecay2\Binaries\UWP64\StateOfDecay2-UWP64-Shipping.exe No File
FirewallRules: [{24EF3850-5BE9-4F23-8DF9-FA545596618F}] => (Allow) C:\Steam\steamapps\common\Total War WARHAMMER II\launcher\launcher.exe (The Creative Assembly Limited -> Creative Assembly Ltd)
FirewallRules: [{E56A6CEF-FB6A-450D-8898-7CDF35B9B28E}] => (Allow) C:\Steam\steamapps\common\Total War WARHAMMER II\launcher\launcher.exe (The Creative Assembly Limited -> Creative Assembly Ltd)
FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe (Microsoft Windows -> )
FirewallRules: [{3CBC12D1-9B66-4938-83FD-750452F921A7}] => (Allow) D:\Program Files\Steam\steamapps\common\Dying Light\DyingLightGame.exe (Techland Sp. z o.o. -> Techland)
FirewallRules: [{1E935904-3612-44C3-90C3-41503FADE8A1}] => (Allow) D:\Program Files\Steam\steamapps\common\Dying Light\DyingLightGame.exe (Techland Sp. z o.o. -> Techland)
FirewallRules: [{9A931317-F385-4D2B-AE59-C6BDA52E06BE}] => (Allow) D:\Program Files\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe (Techland) [File not signed]
FirewallRules: [{4AE9968D-3BEA-4AFC-A234-C655809E8D2D}] => (Allow) D:\Program Files\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe (Techland) [File not signed]
FirewallRules: [{5D3F5595-791C-449F-A297-6B135A6F0283}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{4FF1F4C9-8343-4AD5-B00C-42A5E6DD736E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{EC544D14-D415-4313-A778-F3ED6A889E25}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{02735542-6BFC-4DFD-8F79-E705DF7479B4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{1FECD1CC-07BC-42B3-9773-E919D012D89F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B40F3C34-93D8-4198-B8BB-0E318B6303C0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{60924847-C37F-49EB-A07A-F787961A4DE7}] => (Allow) C:\Windows\AutoKMS\AutoKMS.exe () [File not signed]
FirewallRules: [{E9613A12-BF68-4291-BDC1-EAF90B469B91}] => (Allow) C:\Windows\AutoKMS\AutoKMS.exe () [File not signed]

==================== Restore Points =========================

26-07-2019 10:45:47 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
26-07-2019 10:45:54 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
28-07-2019 23:00:17 Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.22.27821
01-08-2019 15:31:28 DDU Restore Point

==================== Faulty Device Manager Devices =============

Name: Hamachi Network Interface
Description: Hamachi Network Interface
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: LogMeIn, Inc.
Service: hamachi
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver


==================== Event log errors: =========================

Application errors:
==================
Error: (08/02/2019 10:28:40 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (08/02/2019 10:25:51 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AutoKMS.exe, verze: 2.5.0.0, časové razítko: 0x52aef33f
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.17763.615, časové razítko: 0xb6cb145b
Kód výjimky: 0xe0434352
Posun chyby: 0x0000000000039129
ID chybujícího procesu: 0x7e8
Čas spuštění chybující aplikace: 0x01d5490bdde68c86
Cesta k chybující aplikaci: C:\Windows\AutoKMS\AutoKMS.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: 8114340b-b858-470f-8fe0-1aec0a7ad3c0
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (08/02/2019 10:25:51 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: AutoKMS.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.ApplicationException
na ..()
na ..(., System.String, Boolean, System.String, Int32, System.String, Boolean, Boolean, Boolean, Boolean, Boolean, Boolean, System.String, System.String)
na ..(System.String, Boolean, Boolean, System.String, Boolean, Boolean, System.String, ., Boolean, Int32, System.String, Boolean, Boolean)
na ..(.)
na ..()

Error: (08/01/2019 08:19:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AutoKMS.exe, verze: 2.5.0.0, časové razítko: 0x52aef33f
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.17763.615, časové razítko: 0xb6cb145b
Kód výjimky: 0xe0434352
Posun chyby: 0x0000000000039129
ID chybujícího procesu: 0x1b98
Čas spuštění chybující aplikace: 0x01d548959c468697
Cesta k chybující aplikaci: C:\Windows\AutoKMS\AutoKMS.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: 46b7f1a2-63bb-4169-84d1-82df4828d9a6
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (08/01/2019 08:19:12 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: AutoKMS.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.ApplicationException
na ..()
na ..(., System.String, Boolean, System.String, Int32, System.String, Boolean, Boolean, Boolean, Boolean, Boolean, Boolean, System.String, System.String)
na ..(System.String, Boolean, Boolean, System.String, Boolean, Boolean, System.String, ., Boolean, Int32, System.String, Boolean, Boolean)
na ..(.)
na ..()

Error: (08/01/2019 08:18:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AutoKMS.exe, verze: 2.5.0.0, časové razítko: 0x52aef33f
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.17763.615, časové razítko: 0xb6cb145b
Kód výjimky: 0xe0434352
Posun chyby: 0x0000000000039129
ID chybujícího procesu: 0x670
Čas spuštění chybující aplikace: 0x01d54895898c6e13
Cesta k chybující aplikaci: C:\Windows\AutoKMS\AutoKMS.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: d473ecca-e94b-4322-8461-f759c06979df
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (08/01/2019 08:18:45 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: AutoKMS.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.ApplicationException
na ..()
na ..(., System.String, Boolean, System.String, Int32, System.String, Boolean, Boolean, Boolean, Boolean, Boolean, Boolean, System.String, System.String)
na ..(System.String, Boolean, Boolean, System.String, Boolean, Boolean, System.String, ., Boolean, Int32, System.String, Boolean, Boolean)
na ..(.)
na ..()

Error: (08/01/2019 08:11:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: FCPrimal.exe, verze: 1.0.0.0, časové razítko: 0x57d93bd3
Název chybujícího modulu: d3d11.dll, verze: 10.0.17763.1, časové razítko: 0x13a31007
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000126da0
ID chybujícího procesu: 0x6ec
Čas spuštění chybující aplikace: 0x01d5489469ddbe47
Cesta k chybující aplikaci: D:\Far Cry Primal\bin\FCPrimal.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\d3d11.dll
ID zprávy: daeafd65-53ce-4b22-87f4-c648d0417130
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (08/02/2019 10:27:44 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscBrokerManager
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (08/02/2019 10:27:44 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.SecurityAppBroker
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (08/02/2019 10:25:40 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SecDrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.

Error: (08/02/2019 10:25:40 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\WINDOWS\SysWow64\drivers\SECDRV.SYS

Error: (08/01/2019 11:27:17 PM) (Source: DCOM) (EventID: 10016) (User: HERNIPC)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli HERNIPC\Jespi (SID: S-1-5-21-656912685-4082690455-4279580212-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (08/01/2019 11:27:17 PM) (Source: DCOM) (EventID: 10016) (User: HERNIPC)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli HERNIPC\Jespi (SID: S-1-5-21-656912685-4082690455-4279580212-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (08/01/2019 10:36:28 PM) (Source: DCOM) (EventID: 10016) (User: HERNIPC)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli HERNIPC\Jespi (SID: S-1-5-21-656912685-4082690455-4279580212-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (08/01/2019 10:36:28 PM) (Source: DCOM) (EventID: 10016) (User: HERNIPC)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli HERNIPC\Jespi (SID: S-1-5-21-656912685-4082690455-4279580212-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


CodeIntegrity:
===================================

Date: 2019-07-26 10:03:48.902
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-07-26 10:03:48.900
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-07-26 10:03:48.894
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-07-26 10:03:48.892
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-07-26 10:03:40.598
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-07-26 10:03:40.596
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-07-26 10:03:40.590
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-07-26 10:03:40.588
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: American Megatrends Inc. 1.00 07/02/2018
Motherboard: Micro-Star International Co., Ltd B450 TOMAHAWK (MS-7C02)
Processor: AMD Ryzen 7 2700 Eight-Core Processor
Percentage of memory in use: 21%
Total physical RAM: 16333.51 MB
Available physical RAM: 12750 MB
Total Virtual: 23757.51 MB
Available Virtual: 18777.04 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.16 GB) (Free:228.62 GB) NTFS
Drive d: (Data) (Fixed) (Total:1863 GB) (Free:1301.9 GB) NTFS
Drive e: (Filmy) (Fixed) (Total:1863.01 GB) (Free:1263.41 GB) NTFS

\\?\Volume{190102ee-e41a-4d11-895a-53120b36905e}\ (Obnovení) (Fixed) (Total:0.49 GB) (Free:0.1 GB) NTFS
\\?\Volume{62d9eab2-9328-48bb-bf59-73202b15d752}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 1 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: FFE7E140)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118254
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: winscomrssrv.dll

#5 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
CustomCLSID: HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> no filepath
CustomCLSID: HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> no filepath
CustomCLSID: HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> no filepath
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57 [134]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [482]
FirewallRules: [TCP Query User{39EB62AA-4FC4-493C-BEC9-A925A5064B53}D:\overwatch\overwatch.exe] => (Allow) D:\overwatch\overwatch.exe No File
FirewallRules: [UDP Query User{82195490-6903-4D72-A9BE-28882C40C31F}D:\overwatch\overwatch.exe] => (Allow) D:\overwatch\overwatch.exe No File
FirewallRules: [{3DC2728E-D9EC-4519-ACE4-986883361BCC}] => (Block) D:\overwatch\overwatch.exe No File
FirewallRules: [{1507661D-A3DD-44C7-854C-A79B89B18FB6}] => (Block) D:\overwatch\overwatch.exe No File
FirewallRules: [{09C1FE6C-1781-4456-8CCA-63D4DC333E1D}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\hamachi-2-ui.exe No File
FirewallRules: [{092CAE3E-8B18-456E-8617-B14AADB1E60F}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe No File
FirewallRules: [{0F3108E0-8132-4581-BD8B-F73D15E6CDBB}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\hamachi-2.exe No File
FirewallRules: [{8553D97C-F457-4043-BC91-22B707A63C46}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe No File
FirewallRules: [{FF73D179-802F-4D41-A4D4-9B22424B84A8}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\hamachi-2.exe No File
FirewallRules: [{344C8498-CA8E-4BAB-8CF6-E69FBA4BBEB6}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe No File
FirewallRules: [{6F11CDB4-41BC-4926-9F13-7DD8FF333149}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe No File
FirewallRules: [{40815D11-06A1-4C6D-B042-A3EC09397DF8}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\hamachi-2-ui.exe No File
FirewallRules: [TCP Query User{2AE1BB08-5329-4B35-950F-FE25B54DBEDD}D:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) D:\program files (x86)\origin games\apex\r5apex.exe No File
FirewallRules: [UDP Query User{B15EAAB4-4D2F-4927-810A-16E02C51709D}D:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) D:\program files (x86)\origin games\apex\r5apex.exe No File
FirewallRules: [{815A05B7-5085-40B1-9CF9-011B76C4B246}] => (Block) D:\Tropico 6\Tropico6.exe No File
FirewallRules: [{9DDC132F-86CE-4E2C-832B-01BE3CF6DBDD}] => (Block) D:\Tropico 6\Tropico6.exe No File
FirewallRules: [{53FA7C88-29D7-46D9-862D-AA1C8FC3B2AB}] => (Block) E:\stažené\toav01\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{0547D43A-2335-4FCA-A267-13FEF667F141}] => (Block) E:\stažené\toav01\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{DCF0F00F-0E3B-452B-89DB-234D3EF66F2B}] => (Block) E:\stažené\jr1.0b\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{0356E4BB-5002-461B-A3DB-F893BAD4CCAD}] => (Block) E:\stažené\jr1.0b\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{037BF9C8-923E-4BFA-9CAE-0ED25CB9E4B1}] => (Allow) D:\Program Files\Pinnacle Studio\programs\RM.exe No File
FirewallRules: [{607D56E3-E703-46F0-B6AC-E739AD881ED2}] => (Allow) D:\Program Files\Pinnacle Studio\programs\RM.exe No File
FirewallRules: [{D513F7C1-724A-4C29-B7A2-CF6BD2C47517}] => (Allow) D:\Program Files\Pinnacle Studio\programs\NGStudio.exe No File
FirewallRules: [{B35901DF-7AA1-4F9F-BB83-7D82ABBE40B9}] => (Allow) D:\Program Files\Pinnacle Studio\programs\NGStudio.exe No File
FirewallRules: [{81B2FBD5-5384-4390-BFD9-CAB55D635BD7}] => (Allow) D:\Program Files\Pinnacle Studio\programs\UMI.exe No File
FirewallRules: [{E331FE06-1DBE-4CCE-B844-55829831F5F3}] => (Allow) D:\Program Files\Pinnacle Studio\programs\UMI.exe No File
Pack.Multilingua\Pinnacle.Studio.Ultimate.v22.0.1.146-64Bit.E.Content Pack.Multilingua-[WEB]\Setup\Pinnacle-Studio_22 Installer.exe No File
FirewallRules: [{4020371C-2050-41C0-9489-35123BFD6FBA}] => (Block) D:\State of Decay2\AppFiles\StateOfDecay2\Binaries\UWP64\StateOfDecay2-UWP64-Shipping.exe No File
FirewallRules: [{01643063-E5CF-42CA-BBE0-0764664E10B6}] => (Block) D:\State of Decay2\AppFiles\StateOfDecay2\Binaries\UWP64\StateOfDecay2-UWP64-Shipping.exe No File
C:\Windows\AutoKMS
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\MountPoints2: {3b1bedd0-9af6-11e9-b039-309c23e1717c} - "F:\setup.exe"
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {26326EFE-3A80-4BEC-84DE-6453AE4F8AE3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-01] (Google Inc -> Google Inc.)
Task: {2CCFE3EE-FC24-4DB7-AB59-B3D9B6EB2527} - System32\Tasks\Microsoft\Windows\WDI\SrvHost => rundll32.exe winscomrssrv.dll,SrvMainHost <==== ATTENTION
Task: {90920C4D-ECDE-40EA-9470-28DDA328F5CF} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [3727360 2018-10-02] () [File not signed]
Task: {F257DF8F-4270-411E-9BF2-286EB845578D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-01] (Google Inc -> Google Inc.)
C:\WINDOWS\LastGood.Tmp
C:\Users\Jespi\AppData\Roaming\FC29FA0894FE.ini
C:\Users\Jespi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

EmptyTemp:
Hosts:
End
Uložte do E:\Stažené jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Jespi
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 18 úno 2010 21:28

Re: winscomrssrv.dll

#6 Příspěvek od Jespi »

Po provedení fixu a restartu, se už chybová hláška neobjevuje, děkuju moc za pomoc a rychlou reakci :wub: :wub:

Fix result of Farbar Recovery Scan Tool (x64) Version: 31-07-2019
Ran by Jespi (02-08-2019 18:22:58) Run:1
Running from E:\Stažené
Loaded Profiles: Jespi (Available Profiles: Jespi)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
CustomCLSID: HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> no filepath
CustomCLSID: HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> no filepath
CustomCLSID: HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> no filepath
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57 [134]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [482]
FirewallRules: [TCP Query User{39EB62AA-4FC4-493C-BEC9-A925A5064B53}D:\overwatch\overwatch.exe] => (Allow) D:\overwatch\overwatch.exe No File
FirewallRules: [UDP Query User{82195490-6903-4D72-A9BE-28882C40C31F}D:\overwatch\overwatch.exe] => (Allow) D:\overwatch\overwatch.exe No File
FirewallRules: [{3DC2728E-D9EC-4519-ACE4-986883361BCC}] => (Block) D:\overwatch\overwatch.exe No File
FirewallRules: [{1507661D-A3DD-44C7-854C-A79B89B18FB6}] => (Block) D:\overwatch\overwatch.exe No File
FirewallRules: [{09C1FE6C-1781-4456-8CCA-63D4DC333E1D}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\hamachi-2-ui.exe No File
FirewallRules: [{092CAE3E-8B18-456E-8617-B14AADB1E60F}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe No File
FirewallRules: [{0F3108E0-8132-4581-BD8B-F73D15E6CDBB}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\hamachi-2.exe No File
FirewallRules: [{8553D97C-F457-4043-BC91-22B707A63C46}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe No File
FirewallRules: [{FF73D179-802F-4D41-A4D4-9B22424B84A8}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\hamachi-2.exe No File
FirewallRules: [{344C8498-CA8E-4BAB-8CF6-E69FBA4BBEB6}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe No File
FirewallRules: [{6F11CDB4-41BC-4926-9F13-7DD8FF333149}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe No File
FirewallRules: [{40815D11-06A1-4C6D-B042-A3EC09397DF8}] => (Allow) %ProgramFiles% (x86)\LogMeIn Hamachi\hamachi-2-ui.exe No File
FirewallRules: [TCP Query User{2AE1BB08-5329-4B35-950F-FE25B54DBEDD}D:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) D:\program files (x86)\origin games\apex\r5apex.exe No File
FirewallRules: [UDP Query User{B15EAAB4-4D2F-4927-810A-16E02C51709D}D:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) D:\program files (x86)\origin games\apex\r5apex.exe No File
FirewallRules: [{815A05B7-5085-40B1-9CF9-011B76C4B246}] => (Block) D:\Tropico 6\Tropico6.exe No File
FirewallRules: [{9DDC132F-86CE-4E2C-832B-01BE3CF6DBDD}] => (Block) D:\Tropico 6\Tropico6.exe No File
FirewallRules: [{53FA7C88-29D7-46D9-862D-AA1C8FC3B2AB}] => (Block) E:\sta�en�\toav01\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{0547D43A-2335-4FCA-A267-13FEF667F141}] => (Block) E:\sta�en�\toav01\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{DCF0F00F-0E3B-452B-89DB-234D3EF66F2B}] => (Block) E:\sta�en�\jr1.0b\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{0356E4BB-5002-461B-A3DB-F893BAD4CCAD}] => (Block) E:\sta�en�\jr1.0b\ost_game\binaries\win64\ost_game-win64-shipping.exe No File
FirewallRules: [{037BF9C8-923E-4BFA-9CAE-0ED25CB9E4B1}] => (Allow) D:\Program Files\Pinnacle Studio\programs\RM.exe No File
FirewallRules: [{607D56E3-E703-46F0-B6AC-E739AD881ED2}] => (Allow) D:\Program Files\Pinnacle Studio\programs\RM.exe No File
FirewallRules: [{D513F7C1-724A-4C29-B7A2-CF6BD2C47517}] => (Allow) D:\Program Files\Pinnacle Studio\programs\NGStudio.exe No File
FirewallRules: [{B35901DF-7AA1-4F9F-BB83-7D82ABBE40B9}] => (Allow) D:\Program Files\Pinnacle Studio\programs\NGStudio.exe No File
FirewallRules: [{81B2FBD5-5384-4390-BFD9-CAB55D635BD7}] => (Allow) D:\Program Files\Pinnacle Studio\programs\UMI.exe No File
FirewallRules: [{E331FE06-1DBE-4CCE-B844-55829831F5F3}] => (Allow) D:\Program Files\Pinnacle Studio\programs\UMI.exe No File
Pack.Multilingua\Pinnacle.Studio.Ultimate.v22.0.1.146-64Bit.E.Content Pack.Multilingua-[WEB]\Setup\Pinnacle-Studio_22 Installer.exe No File
FirewallRules: [{4020371C-2050-41C0-9489-35123BFD6FBA}] => (Block) D:\State of Decay2\AppFiles\StateOfDecay2\Binaries\UWP64\StateOfDecay2-UWP64-Shipping.exe No File
FirewallRules: [{01643063-E5CF-42CA-BBE0-0764664E10B6}] => (Block) D:\State of Decay2\AppFiles\StateOfDecay2\Binaries\UWP64\StateOfDecay2-UWP64-Shipping.exe No File
C:\Windows\AutoKMS
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\...\MountPoints2: {3b1bedd0-9af6-11e9-b039-309c23e1717c} - "F:\setup.exe"
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {26326EFE-3A80-4BEC-84DE-6453AE4F8AE3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-01] (Google Inc -> Google Inc.)
Task: {2CCFE3EE-FC24-4DB7-AB59-B3D9B6EB2527} - System32\Tasks\Microsoft\Windows\WDI\SrvHost => rundll32.exe winscomrssrv.dll,SrvMainHost <==== ATTENTION
Task: {90920C4D-ECDE-40EA-9470-28DDA328F5CF} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [3727360 2018-10-02] () [File not signed]
Task: {F257DF8F-4270-411E-9BF2-286EB845578D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-01] (Google Inc -> Google Inc.)
C:\WINDOWS\LastGood.Tmp
C:\Users\Jespi\AppData\Roaming\FC29FA0894FE.ini
C:\Users\Jespi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

EmptyTemp:
Hosts:
End
*****************

Processes closed successfully.
HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => removed successfully
HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => removed successfully
HKU\S-1-5-21-656912685-4082690455-4279580212-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Classes\CLSID\{9AA2F32D-362A-42D9-9328-24A483E2CCC3} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Classes\CLSID\{C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => removed successfully
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{9AA2F32D-362A-42D9-9328-24A483E2CCC3} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx => removed successfully
HKLM\Software\Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => removed successfully
HKLM\Software\Classes\CLSID\{B298D29A-A6ED-11DE-BA8C-A68E55D89593} => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => removed successfully
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => removed successfully
HKLM\Software\Classes\CLSID\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => not found
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx => removed successfully
HKLM\Software\Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => not found
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} => not found
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D} => not found
C:\ProgramData\TEMP => ":4FC01C57" ADS removed successfully
C:\Users\Public\Shared Files => ":VersionCache" ADS removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{39EB62AA-4FC4-493C-BEC9-A925A5064B53}D:\overwatch\overwatch.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{82195490-6903-4D72-A9BE-28882C40C31F}D:\overwatch\overwatch.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3DC2728E-D9EC-4519-ACE4-986883361BCC}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1507661D-A3DD-44C7-854C-A79B89B18FB6}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{09C1FE6C-1781-4456-8CCA-63D4DC333E1D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{092CAE3E-8B18-456E-8617-B14AADB1E60F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0F3108E0-8132-4581-BD8B-F73D15E6CDBB}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8553D97C-F457-4043-BC91-22B707A63C46}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FF73D179-802F-4D41-A4D4-9B22424B84A8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{344C8498-CA8E-4BAB-8CF6-E69FBA4BBEB6}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6F11CDB4-41BC-4926-9F13-7DD8FF333149}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{40815D11-06A1-4C6D-B042-A3EC09397DF8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2AE1BB08-5329-4B35-950F-FE25B54DBEDD}D:\program files (x86)\origin games\apex\r5apex.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B15EAAB4-4D2F-4927-810A-16E02C51709D}D:\program files (x86)\origin games\apex\r5apex.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{815A05B7-5085-40B1-9CF9-011B76C4B246}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9DDC132F-86CE-4E2C-832B-01BE3CF6DBDD}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{53FA7C88-29D7-46D9-862D-AA1C8FC3B2AB}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0547D43A-2335-4FCA-A267-13FEF667F141}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DCF0F00F-0E3B-452B-89DB-234D3EF66F2B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0356E4BB-5002-461B-A3DB-F893BAD4CCAD}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{037BF9C8-923E-4BFA-9CAE-0ED25CB9E4B1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{607D56E3-E703-46F0-B6AC-E739AD881ED2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D513F7C1-724A-4C29-B7A2-CF6BD2C47517}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B35901DF-7AA1-4F9F-BB83-7D82ABBE40B9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{81B2FBD5-5384-4390-BFD9-CAB55D635BD7}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E331FE06-1DBE-4CCE-B844-55829831F5F3}" => removed successfully
Pack.Multilingua\Pinnacle.Studio.Ultimate.v22.0.1.146-64Bit.E.Content Pack.Multilingua-[WEB]\Setup\Pinnacle-Studio_22 Installer.exe No File => Error: No automatic fix found for this entry.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4020371C-2050-41C0-9489-35123BFD6FBA}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{01643063-E5CF-42CA-BBE0-0764664E10B6}" => removed successfully
C:\Windows\AutoKMS => moved successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
"HKU\S-1-5-21-656912685-4082690455-4279580212-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge" => removed successfully
HKU\S-1-5-21-656912685-4082690455-4279580212-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3b1bedd0-9af6-11e9-b039-309c23e1717c} => removed successfully
HKLM\Software\Classes\CLSID\{3b1bedd0-9af6-11e9-b039-309c23e1717c} => not found
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{26326EFE-3A80-4BEC-84DE-6453AE4F8AE3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{26326EFE-3A80-4BEC-84DE-6453AE4F8AE3}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2CCFE3EE-FC24-4DB7-AB59-B3D9B6EB2527}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2CCFE3EE-FC24-4DB7-AB59-B3D9B6EB2527}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\WDI\SrvHost => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WDI\SrvHost" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{90920C4D-ECDE-40EA-9470-28DDA328F5CF}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90920C4D-ECDE-40EA-9470-28DDA328F5CF}" => removed successfully
C:\WINDOWS\System32\Tasks\AutoKMS => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F257DF8F-4270-411E-9BF2-286EB845578D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F257DF8F-4270-411E-9BF2-286EB845578D}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
C:\WINDOWS\LastGood.Tmp => moved successfully
C:\Users\Jespi\AppData\Roaming\FC29FA0894FE.ini => moved successfully
C:\Users\Jespi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 9199616 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 143276784 B
Java, Flash, Steam htmlcache => 367269995 B
Windows/system/drivers => 4610434 B
Edge => 70484 B
Chrome => 186927570 B
Firefox => 1130052231 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 7600 B
LocalService => 272406 B
LocalService => 0 B
NetworkService => 0 B
NetworkService => 0 B
Jespi => 32535700 B

RecycleBin => 0 B
EmptyTemp: => 1.7 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 18:25:33 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118254
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: winscomrssrv.dll

#7 Příspěvek od Rudy »

Smazáno. Log by již měl být OK. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno