Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Velmi pomalý notebook jak na internetu, tak bez internetu.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
jindra.paryzek
Návštěvník
Návštěvník
Příspěvky: 469
Registrován: 04 led 2007 12:37
Bydliště: Louny

Velmi pomalý notebook jak na internetu, tak bez internetu.

#1 Příspěvek od jindra.paryzek »

Dobrý den. Prosím o kontrolu logu. Notebook je velmi pomalý jak na internetu, tak na klasické práci. Velmi dlouhé načítání jak složek, tak všeho. Často zamrzne a musím přes tlačítko zapnout.. natvrdo notebook vypnout..

Log FRST
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-08-2019
Ran by Jindra (20-08-2019 11:57:21)
Running from C:\Users\Jindra\Desktop\Stažené dokumenty
Windows 10 Home Version 1803 17134.885 (X64) (2018-05-22 06:50:06)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1051807356-1113384168-760705998-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1051807356-1113384168-760705998-503 - Limited - Disabled)
Guest (S-1-5-21-1051807356-1113384168-760705998-501 - Limited - Disabled)
Jindra (S-1-5-21-1051807356-1113384168-760705998-1001 - Administrator - Enabled) => C:\Users\Jindra
WDAGUtilityAccount (S-1-5-21-1051807356-1113384168-760705998-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {88AE6B46-DC3C-455A-A21B-085F285A3546}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {33CF8AA2-FA06-4AD4-98AB-332D53DD7FFB}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.238 - Adobe)
Adobe Reader XI (11.0.23) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{7EABB7C4-BD84-2B20-5268-82D547C8F898}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Avira (HKLM-x32\...\{21a0516b-5dd7-4dee-9d36-85ebdc37aa45}) (Version: 1.2.135.51949 - Avira Operations GmbH & Co. KG)
Avira (HKLM-x32\...\{42F08141-3F60-46FF-A5B4-08C4783DACFE}) (Version: 1.2.135.51949 - Avira Operations GmbH & Co. KG) Hidden
Avira (HKLM-x32\...\{b3f1f775-e558-4660-a503-9129ae9d7310}) (Version: 1.2.133.21088 - Avira Operations GmbH & Co. KG)
Avira (HKLM-x32\...\{b7f9e12f-ca78-4964-9ffc-54acebd17675}) (Version: 1.2.134.23796 - Avira Operations GmbH & Co. KG)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.1908.1548 - Avira Operations GmbH & Co. KG)
Brother MFL-Pro Suite DCP-J105 (HKLM-x32\...\{B742757A-7658-4E09-A51A-085CF0F7F4D3}) (Version: 1.0.0.0 - Brother Industries, Ltd.)
BusinessCards MX (HKLM-x32\...\{0D5B5ED2-3E38-4585-B1F3-64B2A9EA95D6}_is1) (Version: 5.0 - MOJOSOFT)
CCleaner (HKLM\...\CCleaner) (Version: 5.60 - Piriform)
Defraggler (HKLM\...\Defraggler) (Version: 2.22 - Piriform)
Dell Digital Delivery Services (HKLM-x32\...\{8D1CFB63-E958-4A5C-8BBC-A5F5DF4ED32F}) (Version: 4.0.36.0 - Dell Inc.)
Dell SupportAssist (HKLM\...\{806422F1-FC4E-4D7C-8855-05748AEFC031}) (Version: 3.2.2.119 - Dell Inc.)
FileZilla Client 3.42.1 (HKLM-x32\...\FileZilla Client) (Version: 3.42.1 - Tim Kosse)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 70.0.3538.77 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
HiSuite (HKLM-x32\...\Hi Suite) (Version: 9.0.3.300 - )
Inpaint 7.2 (HKLM\...\{5808866F-D115-46B2-8123-BB6801968101}_is1) (Version: - Teorex)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation)
Maxx Audio Installer (x64) (HKLM\...\{307032B2-6AF2-46D7-B933-62438DEB2B9A}) (Version: 2.6.6168.9 - Waves Audio Ltd.) Hidden
Microsoft Office Language Pack 2013 - Czech/čeština (HKLM\...\Office15.OMUI.cs-cz) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\OneDriveSetup.exe) (Version: 19.123.0624.0005 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
MozBackup 1.5.1 (HKLM-x32\...\MozBackup) (Version: - Pavel Cvrcek)
Mozilla Firefox 68.0.2 (x64 cs) (HKLM\...\Mozilla Firefox 68.0.2 (x64 cs)) (Version: 68.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 60.2.1 - Mozilla)
Mozilla Thunderbird 60.5.1 (x86 cs) (HKLM-x32\...\Mozilla Thunderbird 60.5.1 (x86 cs)) (Version: 60.5.1 - Mozilla)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
PSPad editor (HKLM-x32\...\PSPad editor_is1) (Version: 5.0.1.312 - Jan Fiala)
PX Profile Update (HKLM-x32\...\{873CCF4A-6FC2-69A5-9AD4-FD37D7FCE6B9}) (Version: 1.00.1. - AMD) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7544 - Realtek Semiconductor Corp.)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft)
Shotcut (HKLM-x32\...\Shotcut) (Version: 19.04.30 - Meltytech, LLC)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.1.18533 - TeamViewer)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.10 - Ghisler Software GmbH)
TRELL Server verze 1.07 (HKLM-x32\...\{3498A1B4-1BBA-4BCB-9581-27EC22AF4F32}_is1) (Version: 1.07 - TRELL Server)
Unity Web Player (x64) (All users) (HKLM\...\UnityWebPlayer) (Version: 4.6.6f2 - Unity Technologies ApS)
Update for Skype for Business 2015 (KB4475564) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{CD0EE05F-11E6-46FA-BB7B-D2A28C47A4F3}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4475564) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{CD0EE05F-11E6-46FA-BB7B-D2A28C47A4F3}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4475564) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{CD0EE05F-11E6-46FA-BB7B-D2A28C47A4F3}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4475564) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{CD0EE05F-11E6-46FA-BB7B-D2A28C47A4F3}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.6 - VideoLAN)
Wampserver64 3.1.4 (HKLM\...\{wampserver64}_is1) (Version: 3.1.4 - Dominique Ottello aka Otomatic)
WinRAR 5.70 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)
Zoner Photo Studio 12 (HKLM-x32\...\ZonerPhotoStudio12_CZ_is1) (Version: 12.0.1.7 - ZONER software)

Packages:
=========
Dell SupportAssist for PCs -> C:\Program Files\WindowsApps\DellInc.DellSupportAssistforPCs_3.2.5.0_x64__htrsf667h5kn2 [2019-05-29] (Dell Inc)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-19] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-19] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.6132.0_x64__8wekyb3d8bbwe [2019-06-25] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.31.11905.0_x64__8wekyb3d8bbwe [2019-07-23] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11901.20184.0_x64__8wekyb3d8bbwe [2019-08-16] (Microsoft Corporation) [MS Ad]
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.12831.0_x64__8wekyb3d8bbwe [2018-10-12] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1051807356-1113384168-760705998-1001_Classes\CLSID\{ED90173A-3B4C-4E7E-B9CF-79714425D4B5}\InprocServer32 -> C:\Program Files (x86)\PSPad editor\pspshellx64.dll () [File not signed]
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2019-08-08] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiacm64.dll [2015-08-06] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-02-24] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2019-08-08] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-1051807356-1113384168-760705998-1001: [EditWithPSPad] -> {ED90173A-3B4C-4E7E-B9CF-79714425D4B5} => C:\Program Files (x86)\PSPad editor\pspshellx64.dll [2014-11-02] () [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2019-03-20 18:02 - 2019-03-20 18:02 - 000018432 _____ () [File not signed] C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.HSA.Server.dll
2018-04-19 21:10 - 2014-11-02 18:45 - 000029184 _____ () [File not signed] C:\Program Files (x86)\PSPad editor\pspshellx64.dll
2018-04-16 21:20 - 2005-04-22 06:36 - 000143360 _____ () [File not signed] C:\WINDOWS\system32\BrSNMP64.dll
2019-05-17 14:47 - 2019-05-17 14:47 - 000032256 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\A4.Foundation\51f4d64c013cdfbceaaaf11934911352\A4.Foundation.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\d1979b7f6529db9770060bd755c39e8c\AEM.Actions.CCAA.Shared.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\bff0f5503c6a74c5565f29604bd1b929\AEM.Plugin.EEU.Shared.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\fcafa7b2491fcf17bba594c6b5df8c8a\AEM.Plugin.Hotkeys.Shared.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\ea02da0a94be9332ee1c1cd7c9f09146\AEM.Plugin.DPPE.Shared.ni.dll
2019-07-13 10:54 - 2019-07-13 10:54 - 000275968 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\19d4ee8f8c3df435acfbf0d02cfee7b1\AEM.Plugin.Source.Kit.Server.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\9bb199e9482c07e6ba849cfe09e6da4f\AEM.Plugin.WinMessages.Shared.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\ca8516bd07d59f20d85f4c8e84e433c5\AEM.Plugin.REG.Shared.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\3f803ec3c0645602e2fc6793e16ca5e3\AEM.Plugin.GD.Shared.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000013824 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\1a43c5c28189dc76271ea107da61002d\AEM.Server.Shared.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server\aec056f57d0bc50086bf485456b0c935\AEM.Server.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000056320 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Foundation\5a9251a31423722304435999accb90ee\APM.Foundation.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000122368 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ATICCCom\8d84ad051d9776c1b848f47c42a6d260\ATICCCom.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000199168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\a90d93436fd8931cc24066582278a9f5\CCC.Implementation.ni.dll
2019-07-13 11:17 - 2019-07-13 11:17 - 000152064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\660bc0faa218cd9020e78cdf19dd7553\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\9ef4a2d94c12675ba9ee4e923cb104d3\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\408ce809daf633bfffc3971ea468c66a\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000104448 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\f5ba58eb06f218063faca95ed9cda73c\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000130048 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\da4a790b756f94b3c01cfd42d8d5a64d\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 000073728 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\2ac47f6ca0d42e480c278f03ed8d314b\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\e8059169d045092d20134ddb1774f719\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000073216 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\de0e625c84be548a9dd557c6d038d6fc\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 000062976 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\1ce0b1c63360e244d58294a409fdd43b\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000727552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\e745aa1e6cdb9ae6891ba76c9acbcf3d\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2019-07-13 10:55 - 2019-07-13 10:55 - 000446464 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\3193af29df0e8e97d7869d4bbc23f1cb\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2019-07-13 10:55 - 2019-07-13 10:55 - 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\49405341565b78d81b445e5827b2fb72\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000056320 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\b99f8f019c13ec7e19bc2ceb8c51dd1c\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 000081920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\615bcf4aae27a5b8dd993e849e797afa\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2019-07-13 10:55 - 2019-07-13 10:55 - 000066560 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\88e4bd41cd980eab0569832aef46236d\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000337408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\e0a4387232c41739720ffc8d07e23b81\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\416472c54c41c0df5cf6327b1b2673b1\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2019-07-13 10:55 - 2019-07-13 10:55 - 000094720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4f2f79c#\9fb4befde8b16662d63ee352116d9804\CLI.Aspect.CrossFireX.Graphics.Dashboard.ni.dll
2019-07-13 10:55 - 2019-07-13 10:55 - 000270848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\8bab181b009896e41f3f019f55badbf6\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2019-07-13 11:17 - 2019-07-13 11:17 - 003281920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\72f7e0b3f7e38e1415fb15ff9afb3b06\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000046592 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\712ce82d63984e9d0845a66958168b5c\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000050176 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\4c9f4a4d8c5c792554b4040a0bc23469\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\b0c3f7ce03508f45486e92478d83a155\CLI.Caste.A4.Runtime.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\440d3be71c2722040c3e71cc678d0db1\CLI.Caste.A4.Shared.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 000027648 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\d8a4a0cef7985e8d3dec43d4fedda7fd\CLI.Caste.A4.Dashboard.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\9024658a5f3b6f7a58d9b33224e6f411\CLI.Caste.Fuel.Shared.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000304640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\8732ab16b99046d1570087f8feacb7c0\CLI.Caste.Fuel.Runtime.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 000027648 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\c422ddaa08015b2e8b86639fb8f50cf4\CLI.Caste.Fuel.Dashboard.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000038400 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\d55b24c2abe00533c33b7e649a90f3ff\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2019-07-13 10:54 - 2019-07-13 10:54 - 001537536 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\2b41fadc2d8571e74975eddc9e4090ae\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2019-07-13 10:54 - 2019-07-13 10:54 - 000574976 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\006367c186080dd7adfa152d1250e8e8\CLI.Caste.Graphics.Dashboard.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\b16fda5181167faba2e35903f91d8d07\CLI.Caste.HydraVision.Runtime.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\ee5429cdc3d0b6a4009f8e37924f5f74\CLI.Caste.HydraVision.Shared.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\d24501e900de289e9f3e6eab32464973\CLI.Caste.HydraVision.Dashboard.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\deee97abbcca82b93ed4d2d58edf64bf\CLI.Caste.Platform.Shared.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000043520 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\c6d79ddc8dffb6aedde5ed92c244750a\CLI.Caste.Platform.Runtime.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\ef85a5661f2d9fbf275ec1b6856c269a\CLI.Caste.Platform.Dashboard.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\6846cba343af8df260bb21bb6d996b68\CLI.Component.Runtime.Shared.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 000168960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\eb7e408a644125057a49af0f2a4725bc\CLI.Component.Dashboard.ProfileManager2.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000149504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\b73e16709b1712e6e4c2e0b116b3dde4\CLI.Component.Runtime.Shared.Private.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\51694391648f6833f72983a99d11472f\CLI.Component.Runtime.Extension.EEU.ni.dll
2019-07-13 10:54 - 2019-07-13 10:54 - 001605632 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\e6191528dc884207e0e3f618d9ca1d35\CLI.Component.Dashboard.Shared.Private.ni.dll
2019-07-13 10:54 - 2019-07-13 10:54 - 000019968 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\6fe17d4f88df6ef69cf08dbaae2d73c3\CLI.Component.Client.Shared.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000086016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\fcca77bd760c97edaafc2de30e75146f\CLI.Component.Dashboard.Shared.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 000486912 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Component.Eeu\b6927976a2fd5bb85441c312996e2caa\CLI.Component.Eeu.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\fcfac862efe4ac7173cb5385579a39ce\CLI.Foundation.Private.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000060928 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\37ad52076afd5c788c5f7a357ab67145\CLI.Foundation.XManifest.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000090624 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\c40d7aa50fc0ec8651eeea6980b4fde4\CLI.Foundation.CoreAudioAPI.ni.dll
2019-07-13 10:54 - 2019-07-13 10:54 - 001052672 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\64da5c46e171f63f6d4f3535ceff8ba6\CLI.Foundation.Client.ni.dll
2019-07-13 10:54 - 2019-07-13 10:54 - 000295424 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\c391af78b0b2f11b20012ce6ea571c23\CLI.Foundation.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\e67713f98e8247089ce0f010899a2fea\DEM.Foundation.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000117248 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\736d78feb194a4a348102ebd1532d5b9\DEM.Graphics.I0601.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000015872 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\daba5d09efd4d9f6cd84d3c1c28d974b\DEM.Graphics.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\e032bbc792a371a5bf568cafa65ca71e\Fuel.Foundation.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 000289792 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\259f2d1aaef9eb5191a671659cd05feb\LOG.Foundation.Implementation.ni.dll
2019-05-17 14:47 - 2019-05-17 14:47 - 000146432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\dfa56c6f185f80167d7b9a66f31760be\LOG.Foundation.Private.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\2907fe90580a7d0ea6800d8d43459afb\LOG.Foundation.Implementation.Private.ni.dll
2019-07-13 10:26 - 2019-07-13 10:26 - 000132096 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\476376b15c1485f151411d3ec8d4773b\LOG.Foundation.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\a515e9c0233ed639b39de03e38eba988\MOM.Foundation.ni.dll
2019-05-17 14:51 - 2019-05-17 14:51 - 000391680 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\15eec5629265d36cd3a8b8f0cf585bd4\MOM.Implementation.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\c5a2b5e557b50fdeaa12db6ffae04719\NEWAEM.Foundation.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000890368 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\2f2c7ae1e2b9768a170c13b318065c68\ADL.Foundation.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 000250368 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Server\033b806ec1e5e907f8e46300e118487b\APM.Server.ni.dll
2019-07-13 11:17 - 2019-07-13 11:17 - 000761344 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.79734f7a#\7f24b1223aab45e5e99c22b9a88b60d2\CLI.Aspect.PowerXpress.Graphics.Runtime.ni.dll
2019-07-13 10:55 - 2019-07-13 10:55 - 000349696 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b3da5a8f#\fb2d6d46a53fe59bb4c5a0ed86a93037\CLI.Aspect.PowerXpress.Graphics.Shared.ni.dll
2019-07-13 11:17 - 2019-07-13 11:17 - 000586752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4846ba2#\0588aeed7952380ce59797eb2c3c1b37\CLI.Aspect.PowerXpress.Graphics.Dashboard.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 007986176 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\5f0510dd240b0daf5b1ea4a7e417debb\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2019-07-13 10:54 - 2019-07-13 10:54 - 000133632 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\23634abedb1beb2e73e4858c95e968cc\CLI.Component.Client.Shared.Private.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000228352 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\a0e8954439b401a6e5589b4a50c3421f\CLI.Component.Runtime.ni.dll
2019-07-13 11:18 - 2019-07-13 11:18 - 000910336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\4058b5ded0973197fa3d9f0f2ba1283e\CLI.Component.Dashboard.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000011776 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0702\54c158b0920ba753b1334c9b0ed4db15\DEM.Graphics.I0702.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000083456 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\812c37611ef161a0a970475dc659e4be\DEM.Graphics.I0709.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0710\4138d15ea9978248f8bd86ddf97d7c93\DEM.Graphics.I0710.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\3b39988002025cc97fe6b01b8549fd81\DEM.Graphics.I0712.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000018944 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\01ff4d1f3e3edbdaffdd488a710bc8be\DEM.Graphics.I0804.ni.dll
2019-05-17 14:49 - 2019-05-17 14:49 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0901\534f6bd6181ecac0dddbec495751df15\DEM.Graphics.I0901.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 000036352 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\0567c329ab30ddaee0068abd324437d4\DEM.Graphics.I1010.ni.dll
2019-05-17 14:48 - 2019-05-17 14:48 - 001144320 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\1435ebfe685257c3b5410e4476e76581\Localization.Foundation.Private.ni.dll
2019-07-13 11:19 - 2019-07-13 11:19 - 000242688 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\bd41a76722e9ab3dc36f56fc7158d1e8\ResourceManagement.Foundation.Implementation.ni.dll
2019-07-13 10:54 - 2019-07-13 10:54 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\15df0f3e37ef27152dc53b1908b12dda\ResourceManagement.Foundation.Private.ni.dll
2019-07-13 10:54 - 2019-07-13 10:54 - 000090112 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\c4c8ad7ef614cb8fbafd29c2df5fcd2b\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2019-07-13 10:54 - 2019-07-13 10:54 - 002786304 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\98c5156bd2fdaaaec5dc72d4b18e10d6\CLI.Caste.Graphics.Shared.ni.dll
2019-05-17 14:50 - 2019-05-17 14:50 - 003187712 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\0b30cd32c7389a0628dde9e76af6cb20\CLI.Caste.Graphics.Runtime.ni.dll
2018-04-16 21:20 - 2012-10-19 14:02 - 000087040 _____ (Brother Industries, Ltd.) [File not signed] C:\WINDOWS\system32\BrNetSti.dll
2019-03-16 23:24 - 2019-02-21 18:00 - 000078336 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm [0]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-29 15:46 - 2018-11-12 20:58 - 000000039 _____ C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1 localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1051807356-1113384168-760705998-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: BrYNSvc => 3
MSCONFIG\Services: DellClientManagementService => 2
MSCONFIG\Services: DellDigitalDelivery => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: TeamViewer => 2
MSCONFIG\Services: trell server => 2
MSCONFIG\Services: trell server master => 2
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "BrHelp"
HKLM\...\StartupApproved\Run32: => "ControlCenter4"
HKLM\...\StartupApproved\Run32: => "BrStsMon00"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{EF355A6F-9B53-4441-AAE3-F325D402E1B5}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{0421D2A7-E829-4C87-9C4F-744438AE95ED}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{45979986-D8BA-4FB2-95B4-34F8ACEDE635}] => (Allow) LPort=1234
FirewallRules: [{A14A5DBB-813E-462B-873F-F8B27C7584CB}] => (Allow) LPort=1234
FirewallRules: [{E76A358B-7E80-4924-9736-D50F538AE321}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{15E834EC-6E9E-4E50-9D4D-C10E51E34406}] => (Allow) LPort=54925
FirewallRules: [{7388750A-0654-4828-819C-10B95B741055}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8C9BACF6-06EC-473E-B591-26671759437F}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{76577C5C-1F20-464F-8F86-F34110A09596}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4435BBE3-97BA-44E2-AF01-9008091644D9}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CFC9923A-DDD0-40A8-91EE-63C1A8669CEC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc -> Google Inc.)
FirewallRules: [TCP Query User{E4EF061D-AC11-4157-A553-004CE165F271}E:\wamp-server\bin\apache\apache2.4.35\bin\httpd.exe] => (Allow) E:\wamp-server\bin\apache\apache2.4.35\bin\httpd.exe (Apache Software Foundation) [File not signed]
FirewallRules: [UDP Query User{160954F5-5247-4417-B096-0FDDA39ECC9A}E:\wamp-server\bin\apache\apache2.4.35\bin\httpd.exe] => (Allow) E:\wamp-server\bin\apache\apache2.4.35\bin\httpd.exe (Apache Software Foundation) [File not signed]
FirewallRules: [{0C9A3301-943E-40A4-ADE0-78264D86C7E4}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{88B88F48-F9A8-4F7A-B430-1824593DC49B}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{083CA0AC-72A2-4E8C-9E80-D8D025C54D29}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{7ED4147E-19ED-4A04-A4AA-BE92564F7371}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{C365432E-8A02-45C8-95A9-76A3D5E65931}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{8D3946EA-088D-4EAF-9A6C-854F971D00D5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)

==================== Restore Points =========================

25-07-2019 10:29:51 AdwCleaner_BeforeCleaning_25/07/2019_10:29:51
04-08-2019 10:43:16 Naplánovaný kontrolní bod
14-08-2019 08:16:57 Naplánovaný kontrolní bod
15-08-2019 09:52:33 AdwCleaner_BeforeCleaning_15/08/2019_09:52:32
19-08-2019 18:48:08 Windows Update

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (08/20/2019 06:35:09 AM) (Source: Dell System Detect) (EventID: 0) (User: )
Description: <Exception><Type>System.Net.WebException</Type><Message><![CDATA[Vzdálený název nelze rozpoznat: 'downloads.dell.com']]></Message><Source><![CDATA[System]]></Source><StackTrace><![CDATA[ v System.Net.HttpWebRequest.GetResponse()
v eSupport.Common.Client.Core.DownloadHelper.IsFileNotModified(String fileLocation, String fileType, String fileName)]]></StackTrace><SysInfo STag="B96CSZ1" SMBIOSMajVer="2" SMBIOSMinVer="7" SMBIOSBIOSVer="A11" SMBIOSPresent="True" Rel_Date="20180730000000.000000+000" DSDVersion="" Vendor="Dell Inc." PName="Inspiron 3537" Ident_Num="DESKTOP-ADVKCNT" TimeZone="(UTC+01:00) Praha, Bratislava, Budapešť, Bělehrad, Lublaň" OSName="Microsoft Windows 10 Home"/><HostIP>127.0.0.1</HostIP></Exception>

Error: (08/20/2019 06:32:54 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Taskmgr.exe verze 10.0.17134.1 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 16d8

Čas spuštění: 01d55710315da595

Čas ukončení: 32

Cesta k aplikaci: C:\Windows\System32\Taskmgr.exe

ID hlášení: 30d06d65-059d-4917-b79b-d961a28cc9c4

Úplný název balíčku s chybou:

ID aplikace související s balíčkem s chybou:

Error: (08/19/2019 01:10:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: backgroundTaskHost.exe, verze: 10.0.17134.1, časové razítko: 0xcb43d9c5
Název chybujícího modulu: twinapi.appcore.dll, verze: 10.0.17134.137, časové razítko: 0xb5d50228
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000009cad5
ID chybujícího procesu: 0x2830
Čas spuštění chybující aplikace: 0x01d5567e98fe9919
Cesta k chybující aplikaci: C:\WINDOWS\system32\backgroundTaskHost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\twinapi.appcore.dll
ID zprávy: 08be5d0d-a558-4455-af8a-49798398a6db
Úplný název chybujícího balíčku: DellInc.DellSupportAssistforPCs_3.2.5.0_x64__htrsf667h5kn2
ID aplikace související s chybujícím balíčkem: App

Error: (08/19/2019 06:20:01 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: backgroundTaskHost.exe, verze: 10.0.17134.1, časové razítko: 0xcb43d9c5
Název chybujícího modulu: twinapi.appcore.dll, verze: 10.0.17134.137, časové razítko: 0xb5d50228
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000009cad5
ID chybujícího procesu: 0x2830
Čas spuštění chybující aplikace: 0x01d556454f577a0f
Cesta k chybující aplikaci: C:\WINDOWS\system32\backgroundTaskHost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\twinapi.appcore.dll
ID zprávy: 4bc5562f-08ca-4678-885c-d32f11d2bd09
Úplný název chybujícího balíčku: DellInc.DellSupportAssistforPCs_3.2.5.0_x64__htrsf667h5kn2
ID aplikace související s chybujícím balíčkem: App

Error: (08/18/2019 03:58:37 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (08/18/2019 01:07:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: backgroundTaskHost.exe, verze: 10.0.17134.1, časové razítko: 0xcb43d9c5
Název chybujícího modulu: twinapi.appcore.dll, verze: 10.0.17134.137, časové razítko: 0xb5d50228
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000009cad5
ID chybujícího procesu: 0x148c
Čas spuštění chybující aplikace: 0x01d555b463f3b4dc
Cesta k chybující aplikaci: C:\WINDOWS\system32\backgroundTaskHost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\twinapi.appcore.dll
ID zprávy: dc71ce56-c4fc-4a5b-9672-4e2ba1e23507
Úplný název chybujícího balíčku: DellInc.DellSupportAssistforPCs_3.2.5.0_x64__htrsf667h5kn2
ID aplikace související s chybujícím balíčkem: App

Error: (08/17/2019 03:08:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: backgroundTaskHost.exe, verze: 10.0.17134.1, časové razítko: 0xcb43d9c5
Název chybujícího modulu: twinapi.appcore.dll, verze: 10.0.17134.137, časové razítko: 0xb5d50228
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000009cad5
ID chybujícího procesu: 0x29ac
Čas spuštění chybující aplikace: 0x01d554fc075b6a17
Cesta k chybující aplikaci: C:\WINDOWS\system32\backgroundTaskHost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\twinapi.appcore.dll
ID zprávy: 9bfc554b-0889-4b75-b4cd-0bc0dc6b7b4c
Úplný název chybujícího balíčku: DellInc.DellSupportAssistforPCs_3.2.5.0_x64__htrsf667h5kn2
ID aplikace související s chybujícím balíčkem: App

Error: (08/17/2019 08:11:49 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: backgroundTaskHost.exe, verze: 10.0.17134.1, časové razítko: 0xcb43d9c5
Název chybujícího modulu: twinapi.appcore.dll, verze: 10.0.17134.137, časové razítko: 0xb5d50228
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000009cad5
ID chybujícího procesu: 0x1bb4
Čas spuštění chybující aplikace: 0x01d554c297103770
Cesta k chybující aplikaci: C:\WINDOWS\system32\backgroundTaskHost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\twinapi.appcore.dll
ID zprávy: 045eb919-e817-4441-98ad-608f63e3c633
Úplný název chybujícího balíčku: DellInc.DellSupportAssistforPCs_3.2.5.0_x64__htrsf667h5kn2
ID aplikace související s chybujícím balíčkem: App


System errors:
=============
Error: (08/20/2019 11:08:58 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscBrokerManager
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (08/20/2019 11:07:14 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (08/20/2019 11:05:41 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Dell Data Vault Collector neuspěla při spuštění v důsledku následující chyby:
Přesměrování bylo ukončeno.

Error: (08/20/2019 11:05:40 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {B91D5831-B1BD-4608-8198-D72E155020F7} se v daném časovém limitu neregistroval u služby DCOM.

Error: (08/20/2019 11:05:11 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avira Web Protection byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (08/20/2019 11:05:11 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avira Service Host byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (08/20/2019 11:05:11 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Dell Digital Delivery Services byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.

Error: (08/20/2019 11:05:11 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Dell Hardware Support byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.


Windows Defender:
===================================
Date: 2019-04-11 09:33:58.790
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:MSIL/Gendows
ID: 2147687558
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Windows\AutoKMS\AutoKMS.exe;process:_pid:1880,ProcessStart:131994413845517142
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\AutoKMS\AutoKMS.exe
Verze podpisu: AV: 1.269.268.0, AS: 1.269.268.0, NIS: 1.269.268.0
Verze modulu: AM: 1.1.15400.5, NIS: 1.1.15400.5

Date: 2019-04-11 09:33:58.790
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:MSIL/Gendows
ID: 2147687558
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_C:\Windows\AutoKMS\AutoKMS.exe;process:_pid:1880,ProcessStart:131994413845517142
Původ zjišťování: Místní počítač
Typ zjišťování: Konkrétní
Zdroj zjišťování: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\AutoKMS\AutoKMS.exe
Verze podpisu: AV: 1.269.268.0, AS: 1.269.268.0, NIS: 1.269.268.0
Verze modulu: AM: 1.1.15400.5, NIS: 1.1.15400.5

Date: 2019-08-10 16:18:18.053
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Windows Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: Ovladač filtru přeskočil prohledávání položek a je v režimu průchodu. Příčinou může být nízký stav prostředků.

Date: 2019-08-10 16:17:38.072
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Windows Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: Ovladač filtru přeskočil prohledávání položek a je v režimu průchodu. Příčinou může být nízký stav prostředků.

Date: 2019-04-12 20:34:56.657
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu: 1.291.1757.0
Předchozí verze podpisu: 1.269.268.0
Zdroj aktualizace: Uživatel
Typ podpisu: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.15800.1
Předchozí verze modulu: 1.1.15800.1
Kód chyby: 0x80509004
Popis chyby :Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.

Date: 2019-04-12 20:34:56.657
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu: 1.291.1757.0
Předchozí verze podpisu: 1.269.268.0
Zdroj aktualizace: Uživatel
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.15800.1
Předchozí verze modulu: 1.1.15800.1
Kód chyby: 0x80509004
Popis chyby :Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.

Date: 2018-11-14 06:51:16.297
Description:
Program Antivirová ochrana v programu Windows Defender zjistil chybu při pokusu o aktualizaci modulu
Nová verze modulu: 1.1.15400.5
Předchozí verze modulu: 1.1.14901.4
Uživatel: NT AUTHORITY\SYSTEM
Kód chyby: 0x80004004
Popis chyby: Operace přerušena

CodeIntegrity:
===================================

Date: 2019-08-14 21:08:48.675
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\AviraSecurityCenterAgent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\libcurl.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-08-10 13:46:28.771
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\AviraSecurityCenterAgent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\libcurl.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-08-08 11:29:13.558
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\AviraSecurityCenterAgent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\libcurl.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-08-05 09:00:28.159
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\AviraSecurityCenterAgent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\libcurl.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-07-28 18:54:22.304
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\AviraSecurityCenterAgent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\libcurl.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-07-25 17:39:42.995
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\AviraSecurityCenterAgent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\libcurl.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-07-19 10:04:27.621
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\AviraSecurityCenterAgent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\libcurl.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-07-02 12:19:46.358
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\AviraSecurityCenterAgent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Avira\Antivirus\libcurl.dll that did not meet the Custom 3 / Antimalware signing level requirements.

==================== Memory info ===========================

BIOS: Dell Inc. A11 07/30/2018
Motherboard: Dell Inc. 0N7YKW
Processor: Intel(R) Core(TM) i5-4200U CPU @ 1.60GHz
Percentage of memory in use: 93%
Total physical RAM: 3976.96 MB
Available physical RAM: 264.33 MB
Total Virtual: 8886.41 MB
Available Virtual: 1240.96 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:735.19 GB) (Free:640.08 GB) NTFS
Drive e: (Eshop) (Fixed) (Total:195.31 GB) (Free:172.77 GB) NTFS

\\?\Volume{559ccd20-7887-4480-a0b9-400f0092e106}\ (Obnovení) (Fixed) (Total:0.29 GB) (Free:0.05 GB) NTFS
\\?\Volume{d9419b91-2cac-4f12-ac85-8459692068ea}\ () (Fixed) (Total:0.5 GB) (Free:0.09 GB) NTFS
\\?\Volume{a5fdbbef-a4e2-48d6-be41-1f98d35ebfc9}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi pomalý notebook jak na internetu, tak bez internet

#2 Příspěvek od Rudy »

Zdravím!
Přidejte ještě obsah souboru frst.txt. Je v C:\Users\Jindra\Desktop\Stažené dokumenty.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jindra.paryzek
Návštěvník
Návštěvník
Příspěvky: 469
Registrován: 04 led 2007 12:37
Bydliště: Louny

Re: Velmi pomalý notebook jak na internetu, tak bez internet

#3 Příspěvek od jindra.paryzek »

Omlouvám se..

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-08-2019
Ran by Jindra (administrator) on DESKTOP-ADVKCNT (Dell Inc. Inspiron 3537) (20-08-2019 11:32:23)
Running from C:\Users\Jindra\Desktop\Stažené dokumenty
Loaded Profiles: Jindra (Available Profiles: Jindra)
Platform: Windows 10 Home Version 1803 17134.885 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\ProtectedService.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\atiw.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Dell Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Huawei Technologies Co., Ltd. -> ) [File not signed] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7033.2285\DSAPI.exe
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7033.2285\pcdrwi.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8504064 2015-08-29] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-08-29] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [611248 2015-05-26] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [] => [X]
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [99048 2019-07-25] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-06] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [23153344 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {4cd8373d-40cd-11e9-b0ba-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {4e0a9f57-9529-11e9-b0d1-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {a5b6760d-ff01-11e8-b0b0-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {a5b6764a-ff01-11e8-b0b0-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4038688 2019-06-13] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\70.0.3538.77\Installer\chrmstp.exe [2018-10-31] (Google Inc -> Google Inc.)
BootExecute: autocheck autochk * sdnclean64.exe

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {09AD2F37-B4CA-4ECF-A5DD-30BC3B303887} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {224DEFA8-2066-40EB-80FD-6D5A284B0E05} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-08-29] (Realtek Semiconductor Corp -> Realtek Semiconductor)
Task: {31B0B73A-763B-454B-A732-43F952AA5BAD} - \CCleanerSkipUAC -> No File <==== ATTENTION
Task: {3998DDD0-0239-4EC3-9328-138B23E846D7} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2756136 2019-08-08] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
Task: {62291D1F-BBDE-4F6D-9EBE-4144E75F6AB2} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-08-17] (Adobe Inc. -> Adobe)
Task: {626DC06D-0AC7-46DD-8F4B-6BDDAB48CC76} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_238_Plugin.exe [1457208 2019-08-17] (Adobe Inc. -> Adobe)
Task: {6D7F1F31-DCDC-491C-AE8E-6B17E03D8A12} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {86B23AAF-E8E9-49EC-B836-16428761FC62} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {8BDF4442-8705-48F4-A458-335E1946C62B} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {996997B6-5F7D-457F-B381-9973EF04D6EC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1236048 2019-07-24] (Adobe Inc. -> Adobe Systems)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{33e0bf5d-fae0-45d9-b5ea-a746d33f6cf0}: [DhcpNameServer] 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{706d3eaf-e879-4c8c-925d-f92b7c41b3a8}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{d1234ee5-1516-4552-9dd7-65bcfbb9a6a4}: [DhcpNameServer] 8.8.8.8 8.8.4.4

Internet Explorer:
==================
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2018-03-14] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF DefaultProfile: 1nlmyq5v.default-1559155487474
FF ProfilePath: C:\Users\Jindra\AppData\Roaming\Mozilla\Firefox\Profiles\1nlmyq5v.default-1559155487474 [2019-08-20]
FF DownloadDir: C:\Users\Jindra\Desktop\Stažené dokumenty
FF Homepage: Mozilla\Firefox\Profiles\1nlmyq5v.default-1559155487474 -> hxxps://www.seznam.cz
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_238.dll [2019-08-17] (Adobe Inc. -> )
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @unity3d.com/UnityPlayer64,version=1.0 -> C:\Program Files\Unity\WebPlayer64\loader-x64\npUnity3D64.dll [2015-06-08] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_238.dll [2019-08-17] (Adobe Inc. -> )
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-09-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc -> Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc -> Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=3.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1051807356-1113384168-760705998-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Jindra\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS -> Unity Technologies ApS)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR NewTab: Default -> "active": true,
"entry": "chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/speeddial/newTab.html"

CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Jindra\AppData\Local\Google\Chrome\User Data\Default [2019-08-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Jindra\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-16]
CHR Extension: (Chrome Media Router) - C:\Users\Jindra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-05]
CHR HKU\S-1-5-21-1051807356-1113384168-760705998-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1051807356-1113384168-760705998-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [265776 2015-09-01] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1206520 2019-08-08] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AntivirProtectedService; C:\Program Files (x86)\Avira\Antivirus\ProtectedService.exe [533816 2019-08-08] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [482288 2019-08-08] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [482288 2019-08-08] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [422056 2019-08-08] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [453408 2019-07-25] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
S4 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [209392 2019-02-28] (Dell Inc -> Dell Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3363824 2019-02-28] (Dell Inc -> Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [218096 2019-02-28] (Dell Inc -> Dell Inc.)
R2 Dell Digital Delivery Services; C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe [38048 2019-03-20] (Dell Inc -> )
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7033.2285\DSAPI.exe [1050952 2019-06-04] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2018-12-12] (Huawei Technologies Co., Ltd. -> ) [File not signed]
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [382448 2017-02-24] (Intel(R) pGFX -> Intel Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [303360 2015-08-29] (Realtek Semiconductor Corp -> Realtek Semiconductor)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [39896 2019-05-24] (Dell Inc. -> Dell Inc.)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [265640 2018-09-26] (Synaptics Incorporated -> Synaptics Incorporated)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11665240 2019-02-26] (TeamViewer GmbH -> TeamViewer GmbH)
S4 trell server; C:\Program Files (x86)\TRELL Server\db_service.exe [1158656 2015-08-02] () [File not signed]
S4 trell server master; C:\Program Files (x86)\TRELL Server\db_service_master.exe [776192 2014-04-13] () [File not signed]
S3 wampapache64; E:\wamp-server\bin\apache\apache2.4.35\bin\httpd.exe [29696 2018-09-19] (Apache Software Foundation) [File not signed]
S3 wampmariadb64; E:\wamp-server\bin\mariadb\mariadb10.3.9\bin\mysqld.exe [15788968 2018-08-14] (MariaDB Corporation Ab -> )
S3 wampmysqld64; E:\wamp-server\bin\mysql\mysql5.7.23\bin\mysqld.exe [39626752 2018-06-08] () [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4413440 2019-03-14] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [107160 2019-02-16] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [21655080 2015-09-01] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [686120 2015-09-01] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [82696 2015-07-31] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 athr; C:\WINDOWS\System32\drivers\athw8x.sys [4233728 2018-04-12] (Microsoft Windows -> Qualcomm Atheros Communications, Inc.)
R0 avdevprot; C:\WINDOWS\System32\DRIVERS\avdevprot.sys [78936 2019-06-12] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
S0 avelam; C:\WINDOWS\System32\drivers\avelam.sys [22336 2019-02-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [199008 2019-07-25] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [196328 2019-07-25] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [46704 2019-02-26] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [89736 2019-02-26] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\WINDOWS\System32\Drivers\avusbflt.sys [45472 2019-02-26] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [40824 2019-02-27] (Microsoft Windows Hardware Compatibility Publisher -> Dell Inc.)
R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [19440 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> OSR Open Systems Resources, Inc.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2018-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2018-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [888064 2017-01-23] (Realtek Semiconductor Corp -> Realtek )
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [429568 2017-07-13] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [53880 2018-09-26] (Synaptics Incorporated -> Synaptics Incorporated)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [22016 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44616 2018-04-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [331680 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [44032 2018-04-12] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-08-20 11:07 - 2019-08-20 11:07 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-08-20 06:23 - 2019-06-04 12:05 - 000058520 _____ C:\WINDOWS\system32\Drivers\iqvw64e.sys
2019-08-19 06:29 - 2019-08-19 06:29 - 007948008 _____ (Tim Kosse) C:\Users\Jindra\Downloads\FileZilla_3.44.2_win64-setup.exe
2019-08-13 13:56 - 2019-08-13 14:17 - 000000000 ____D C:\Users\Jindra\Desktop\sken
2019-08-10 11:11 - 2019-08-10 11:11 - 000003380 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1051807356-1113384168-760705998-1001
2019-08-10 11:10 - 2019-08-10 11:10 - 000002364 _____ C:\Users\Jindra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-08-10 11:08 - 2019-08-10 11:08 - 000004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2019-07-27 12:34 - 2019-07-27 12:34 - 007892544 _____ (Tim Kosse) C:\Users\Jindra\Downloads\FileZilla_3.43.0_win64-setup.exe

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-08-20 11:53 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-08-20 11:32 - 2018-09-20 10:58 - 000000000 ____D C:\FRST
2019-08-20 11:32 - 2018-04-16 19:47 - 000000000 ___RD C:\Users\Jindra\Desktop\Stažené dokumenty
2019-08-20 11:26 - 2019-07-18 09:00 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery Services
2019-08-20 11:18 - 2018-04-16 22:06 - 000000000 ____D C:\Users\Jindra\AppData\LocalLow\Mozilla
2019-08-20 11:09 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF
2019-08-20 11:07 - 2018-04-16 19:49 - 000000000 __SHD C:\Users\Jindra\IntelGraphicsProfiles
2019-08-20 11:06 - 2018-10-14 21:37 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-08-20 11:06 - 2018-05-22 08:48 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-08-20 11:05 - 2018-04-11 23:04 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-08-20 11:01 - 2018-05-22 08:24 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-08-20 06:36 - 2019-07-16 22:24 - 000004210 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2019-08-20 06:25 - 2018-05-22 08:29 - 000000000 ____D C:\Users\Jindra
2019-08-19 21:25 - 2019-01-03 01:08 - 000259584 _____ C:\Users\Jindra\Desktop\Faktury eshop 2019.xls
2019-08-19 21:23 - 2018-04-11 23:04 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-08-19 21:11 - 2019-03-19 14:27 - 000000000 ___HD C:\$WINDOWS.~BT
2019-08-19 21:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Registration
2019-08-19 21:10 - 2018-05-22 08:47 - 000009528 _____ C:\WINDOWS\diagwrn.xml
2019-08-19 21:10 - 2018-05-22 08:47 - 000009528 _____ C:\WINDOWS\diagerr.xml
2019-08-19 20:27 - 2018-04-16 21:22 - 000007887 _____ C:\WINDOWS\BRRBCOM.INI
2019-08-19 19:42 - 2018-05-21 15:47 - 000000000 ___DC C:\WINDOWS\Panther
2019-08-19 18:52 - 2018-04-16 20:19 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2019-08-19 18:50 - 2018-11-16 00:22 - 000000000 ____D C:\Program Files\rempl
2019-08-19 15:55 - 2018-11-23 17:15 - 000000000 ____D C:\Users\Jindra\AppData\Local\CrashDumps
2019-08-19 06:30 - 2018-11-23 14:47 - 000000000 ____D C:\Users\Jindra\AppData\Roaming\FileZilla
2019-08-18 15:58 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-08-17 16:56 - 2018-04-16 20:53 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-08-17 16:51 - 2018-04-16 20:51 - 134272480 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-08-17 16:44 - 2017-09-29 15:46 - 000000167 _____ C:\WINDOWS\win.ini
2019-08-17 15:20 - 2018-04-17 11:02 - 000000000 ____D C:\Users\Jindra\AppData\Local\Adobe
2019-08-17 15:08 - 2018-07-27 21:34 - 000004656 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-08-17 15:08 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-08-17 15:07 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-08-17 07:55 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-08-16 14:27 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-08-15 09:59 - 2018-05-22 08:40 - 001601516 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-08-15 09:59 - 2018-04-12 17:50 - 000681900 _____ C:\WINDOWS\system32\perfh005.dat
2019-08-15 09:59 - 2018-04-12 17:50 - 000136796 _____ C:\WINDOWS\system32\perfc005.dat
2019-08-15 09:55 - 2018-04-16 22:19 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-08-15 06:20 - 2018-04-16 22:19 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-08-15 06:20 - 2018-04-16 22:19 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-08-14 09:14 - 2018-04-17 12:27 - 000000000 ____D C:\Users\Jindra\Desktop\eshop
2019-08-10 11:10 - 2018-04-16 19:43 - 000000000 ___RD C:\Users\Jindra\OneDrive
2019-08-08 14:00 - 2018-04-16 19:38 - 000000000 ____D C:\Users\Jindra\AppData\Local\Packages
2019-08-08 13:31 - 2018-04-16 21:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2019-08-06 14:25 - 2018-04-16 21:32 - 000000000 ____D C:\ProgramData\Package Cache
2019-08-02 09:36 - 2018-07-23 22:19 - 000000000 ____D C:\Users\Jindra\Documents\BusinessCardsMX templates
2019-08-01 07:17 - 2016-06-17 19:40 - 000000000 ____D C:\Trell
2019-07-25 18:31 - 2018-04-16 21:29 - 000199008 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2019-07-25 18:31 - 2018-04-16 21:29 - 000196328 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2019-07-25 10:30 - 2018-09-30 08:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2019-07-25 10:30 - 2018-09-30 08:23 - 000000000 ____D C:\Program Files (x86)\Dell
2019-07-25 10:30 - 2018-08-20 20:18 - 000000000 ____D C:\ProgramData\Dell

==================== Files in the root of some directories ================

2018-11-12 21:30 - 2018-11-12 21:30 - 000007626 _____ () C:\Users\Jindra\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi pomalý notebook jak na internetu, tak bez internet

#4 Příspěvek od Rudy »

OK. Teď spsusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jindra.paryzek
Návštěvník
Návštěvník
Příspěvky: 469
Registrován: 04 led 2007 12:37
Bydliště: Louny

Re: Velmi pomalý notebook jak na internetu, tak bez internet

#5 Příspěvek od jindra.paryzek »

# -------------------------------
# Malwarebytes AdwCleaner 7.4.0.0
# -------------------------------
# Build: 07-23-2019
# Database: 2019-08-13.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 08-20-2019
# Duration: 00:00:04
# OS: Windows 10 Home
# Cleaned: 0
# Failed: 1


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

Not Deleted Preinstalled.DellSupportAssistAgent


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1807 octets] - [14/04/2018 06:35:52]
AdwCleaner[C00].txt - [1782 octets] - [14/04/2018 06:36:27]
AdwCleaner[S01].txt - [1360 octets] - [20/09/2018 12:46:42]
AdwCleaner[S02].txt - [1421 octets] - [20/09/2018 12:48:37]
AdwCleaner[S03].txt - [1482 octets] - [20/09/2018 12:51:00]
AdwCleaner[S04].txt - [2717 octets] - [16/05/2019 10:14:06]
AdwCleaner[C04].txt - [2663 octets] - [16/05/2019 10:16:50]
AdwCleaner[S05].txt - [1677 octets] - [17/05/2019 15:47:13]
AdwCleaner[S06].txt - [1738 octets] - [21/05/2019 15:38:31]
AdwCleaner[S07].txt - [1799 octets] - [21/05/2019 21:55:18]
AdwCleaner[S08].txt - [1860 octets] - [21/05/2019 21:56:03]
AdwCleaner[S09].txt - [1921 octets] - [21/05/2019 21:56:22]
AdwCleaner[S10].txt - [1982 octets] - [21/05/2019 21:56:45]
AdwCleaner[S11].txt - [2043 octets] - [12/07/2019 10:54:45]
AdwCleaner[S12].txt - [2104 octets] - [18/07/2019 08:34:05]
AdwCleaner[S13].txt - [2165 octets] - [18/07/2019 08:34:26]
AdwCleaner[S14].txt - [2346 octets] - [25/07/2019 10:29:11]
AdwCleaner[S15].txt - [2407 octets] - [25/07/2019 10:29:44]
AdwCleaner[C15].txt - [2619 octets] - [25/07/2019 10:31:01]
AdwCleaner[S16].txt - [2490 octets] - [11/08/2019 17:57:13]
AdwCleaner[C16].txt - [2689 octets] - [11/08/2019 17:59:21]
AdwCleaner[S17].txt - [2612 octets] - [15/08/2019 09:52:22]
AdwCleaner[C17].txt - [2811 octets] - [15/08/2019 09:53:33]
AdwCleaner[S18].txt - [2734 octets] - [20/08/2019 11:04:31]
AdwCleaner[C18].txt - [2933 octets] - [20/08/2019 11:05:15]
AdwCleaner[S19].txt - [2856 octets] - [20/08/2019 14:58:49]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C19].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi pomalý notebook jak na internetu, tak bez internet

#6 Příspěvek od Rudy »

Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {4cd8373d-40cd-11e9-b0ba-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {4e0a9f57-9529-11e9-b0d1-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {a5b6760d-ff01-11e8-b0b0-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {a5b6764a-ff01-11e8-b0b0-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4038688 2019-06-13] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION
Task: {31B0B73A-763B-454B-A732-43F952AA5BAD} - \CCleanerSkipUAC -> No File <==== ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat

EmptyTemp:
End
Uložte do C:\Users\Jindra\Desktop\Stažené dokumenty jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jindra.paryzek
Návštěvník
Návštěvník
Příspěvky: 469
Registrován: 04 led 2007 12:37
Bydliště: Louny

Re: Velmi pomalý notebook jak na internetu, tak bez internet

#7 Příspěvek od jindra.paryzek »

Nic nevyskočilo, tak jsem jej našel...

Fix result of Farbar Recovery Scan Tool (x64) Version: 14-08-2019
Ran by Jindra (20-08-2019 15:19:35) Run:2
Running from C:\Users\Jindra\Desktop\Stažené dokumenty
Loaded Profiles: Jindra (Available Profiles: Jindra)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {4cd8373d-40cd-11e9-b0ba-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {4e0a9f57-9529-11e9-b0d1-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {a5b6760d-ff01-11e8-b0b0-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\MountPoints2: {a5b6764a-ff01-11e8-b0b0-645a0434dfd2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4038688 2019-06-13] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION
Task: {31B0B73A-763B-454B-A732-43F952AA5BAD} - \CCleanerSkipUAC -> No File <==== ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => removed successfully
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => not found
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4cd8373d-40cd-11e9-b0ba-645a0434dfd2} => removed successfully
HKLM\Software\Classes\CLSID\{4cd8373d-40cd-11e9-b0ba-645a0434dfd2} => not found
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4e0a9f57-9529-11e9-b0d1-645a0434dfd2} => removed successfully
HKLM\Software\Classes\CLSID\{4e0a9f57-9529-11e9-b0d1-645a0434dfd2} => not found
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a5b6760d-ff01-11e8-b0b0-645a0434dfd2} => removed successfully
HKLM\Software\Classes\CLSID\{a5b6760d-ff01-11e8-b0b0-645a0434dfd2} => not found
HKU\S-1-5-21-1051807356-1113384168-760705998-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a5b6764a-ff01-11e8-b0b0-645a0434dfd2} => removed successfully
HKLM\Software\Classes\CLSID\{a5b6764a-ff01-11e8-b0b0-645a0434dfd2} => not found
"HKU\S-1-5-21-1051807356-1113384168-760705998-1001\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{31B0B73A-763B-454B-A732-43F952AA5BAD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{31B0B73A-763B-454B-A732-43F952AA5BAD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC" => removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 677631415 B
Java, Flash, Steam htmlcache => 1154 B
Windows/system/drivers => 125237 B
Edge => 69632 B
Chrome => 252114 B
Firefox => 38664905 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 904 B
LocalService => 0 B
NetworkService => 0 B
NetworkService => 0 B
Jindra => 3016164 B

RecycleBin => 0 B
EmptyTemp: => 696.4 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 15:20:23 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi pomalý notebook jak na internetu, tak bez internet

#8 Příspěvek od Rudy »

OK, smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jindra.paryzek
Návštěvník
Návštěvník
Příspěvky: 469
Registrován: 04 led 2007 12:37
Bydliště: Louny

Re: Velmi pomalý notebook jak na internetu, tak bez internet

#9 Příspěvek od jindra.paryzek »

Ano, změna nastala, vše jde daleko rychleji...
Co s tím prosím bylo?

Jste opravdu moc šikovný :happy:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi pomalý notebook jak na internetu, tak bez internet

#10 Příspěvek od Rudy »

Většinou jste tam měl zbytečnosti, které byly odstraněny.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jindra.paryzek
Návštěvník
Návštěvník
Příspěvky: 469
Registrován: 04 led 2007 12:37
Bydliště: Louny

Re: Velmi pomalý notebook jak na internetu, tak bez internet

#11 Příspěvek od jindra.paryzek »

Strašně moc Vám děkuji.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi pomalý notebook jak na internetu, tak bez internet

#12 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno