Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Win 10 modra smrt

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
blekota
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 črc 2017 11:50

Win 10 modra smrt

#1 Příspěvek od blekota »

Ahoj, asi tak týden mi začala naskakovat modrá obrazovka, v event logu je vždy tento záznam:

Kód: Vybrat vše

Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 a APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 uživateli DESKTOP-CVD1H1S\Jan (SID: S-1-5-21-1654744143-2277480789-2242274244-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Pokaždé jiné CLSID a APPID.

Přikládám FIRST log a addition.zip

Děkuji!

Kód: Vybrat vše

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 04-09-2019
Ran by Jan (administrator) on DESKTOP-CVD1H1S (05-09-2019 11:50:09)
Running from C:\Users\Jan\Desktop
Loaded Profiles: Jan (Available Profiles: Jan & Administrator)
Platform: Windows 10 Pro Version 1809 17763.678 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0345944.inf_amd64_403c37b116746a6f\B345674\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0345944.inf_amd64_403c37b116746a6f\B345674\atiesrxx.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12096.3.41072.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Discord Inc. -> Discord Inc.) C:\Users\Jan\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Jan\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Jan\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Jan\AppData\Local\Discord\app-0.0.305\Discord.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\79.4.143\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\79.4.143\QtWebEngineProcess.exe
(Ghisler Software GmbH -> Ghisler Software GmbH) D:\Programy\Totalcmd 8.51\TOTALCMD64.EXE
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(CHENGDU YIWO Tech Development Co., Ltd. -> ) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
(CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch_base.inf_amd64_b95c9a044993331b\IntelCpHDCPSvc.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech Gaming Software\LAClient\laclient.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1906.53.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19071.901.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.51.72.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.51.72.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Steam\Steam.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16696840 2016-09-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [18727048 2018-10-05] (Logitech Inc -> Logitech Inc.)
HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe [61370712 2019-05-11] (Discord Inc. -> Discord Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [5782336 2019-08-13] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\Run: [Discord] => C:\Users\Jan\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\Run: [Steam] => E:\Steam\steam.exe [3210528 2019-08-22] (Valve -> Valve Corporation)
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {42d20e16-c0f0-11e9-9f10-5cf370723daa} - "F:\setup.exe" 
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {5b0e854e-c1a9-11e9-9f10-5cf370723daa} - "F:\setup.exe" 
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {6c3ec4a5-b1e2-11e9-9f09-7085c263a56c} - "F:\setup.exe" 
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {d88565f3-ae44-11e9-9f09-7085c263a56c} - "F:\setup.exe" 
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\system32\frapsv64.dll [71680 2012-08-30] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [65536 2012-08-30] (Beepa P/L) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.132\Installer\chrmstp.exe [2019-08-27] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Audible Download Manager.lnk [2019-07-14]
ShortcutTarget: Audible Download Manager.lnk -> C:\Program Files (x86)\Audible\Bin\AudibleDownloadHelper.exe (No File)
Startup: C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE AORUS GRAPHICS ENGINE.lnk [2019-08-04]
ShortcutTarget: GIGABYTE AORUS GRAPHICS ENGINE.lnk -> C:\Program Files (x86)\GIGABYTE\AORUS ENGINE\autorun.exe (No File)
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {12C2F199-D539-4D1B-B082-186CDD995B92} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61112 2019-08-08] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {1B6C3C31-E4BB-4835-ACE5-6A816636108E} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [468992 2019-08-09] (Advanced Micro Devices, Inc.) [File not signed]
Task: {3334A571-0852-4D23-BBDC-B2945CBEF976} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe [468992 2019-08-09] (Advanced Micro Devices, Inc.) [File not signed]
Task: {41D1610C-D3B0-4ED0-B47F-48FFF3DA9E19} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3942792 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
Task: {8A60BDDA-169A-42E6-865C-275EE5D2347B} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-05-11] (Dropbox, Inc -> Dropbox, Inc.)
Task: {91BDB1BF-A592-43BB-8755-057276FB727C} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [68280 2019-08-08] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {9227507A-66E2-43DA-8889-31808F3A8D80} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-05-11] (Google Inc -> Google LLC)
Task: {B2196876-8577-44A6-80BD-A19FD5CB2A25} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1236048 2019-07-24] (Adobe Inc. -> Adobe Systems)
Task: {B26CCE43-47B1-4A8F-9AD2-F5ED297F8D87} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-05-11] (Dropbox, Inc -> Dropbox, Inc.)
Task: {BD150DE5-724D-41FC-AEB0-39C3C6BF11DC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-05-11] (Google Inc -> Google LLC)
Task: {F40E6DF0-5EE0-45BD-9E1A-A19427D680A2} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1654744143-2277480789-2242274244-500 => C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task: {FF4E9437-C7EE-4B08-86A3-2EFE3DC8D644} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2045832 2019-08-19] (AVAST Software s.r.o. -> AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 172.16.0.1
Tcpip\..\Interfaces\{3dc16d61-5306-4ede-8417-ebc05eef94e9}: [DhcpNameServer] 8.8.8.8 172.16.0.1
Tcpip\..\Interfaces\{8a39f971-dfc4-4bae-820a-3a4293bd6510}: [DhcpNameServer] 172.20.10.1

Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-07-21] (Oracle America, Inc. -> Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-07-21] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-07-31] (Adobe Inc. -> Adobe Systems Inc.)

Chrome: 
=======
CHR Profile: C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default [2019-09-05]
CHR DownloadDir: D:\Dokumenty\Internet Copy\Download
CHR Extension: (Prezentace) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-05-11]
CHR Extension: (Dokumenty) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-05-11]
CHR Extension: (Disk Google) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-05-11]
CHR Extension: (YouTube) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-05-11]
CHR Extension: (POE Trade Copy to Path Of Building) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfieikfjcjekajhabkpjoffobdlillli [2019-05-11]
CHR Extension: (Mailto: for Gmail™) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgkkmcknielgdhebimdnfahpipajcpjn [2019-05-11]
CHR Extension: (Komponenta I.CA PKI Service) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdolcjnejgbpoadihncaggiicpkhjchl [2019-06-05]
CHR Extension: (Tabulky) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-05-11]
CHR Extension: (Změní barvu na Facebooku ™) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpcehbfdafmgaekkplgdodnnbfohbbjo [2019-05-11]
CHR Extension: (Dokumenty Google offline) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-05-11]
CHR Extension: (AdBlock) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-08-29]
CHR Extension: (Hola Free VPN Proxy Unblocker) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2019-08-24]
CHR Extension: (IE Tab) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2019-08-23]
CHR Extension: (FormApps Extension) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2019-05-11]
CHR Extension: (Morpheon Dark) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mafbdhjdkjnoafhfelkjpchpaepjknad [2019-05-11]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-05-11]
CHR Extension: (Gmail) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-11]
CHR Extension: (Chrome Media Router) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-08-09]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD External Events Utility; C:\Windows\System32\DriverStore\FileRepository\u0345944.inf_amd64_403c37b116746a6f\B345674\atiesrxx.exe [508008 2019-08-20] (Advanced Micro Devices, Inc. -> AMD)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5975136 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [405072 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8577760 2019-08-15] (BattlEye Innovations e.K. -> )
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-05-11] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-05-11] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [51024 2019-08-13] (Dropbox, Inc -> Dropbox, Inc.)
R2 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [40016 2019-04-22] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2019-08-26] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [206472 2018-10-05] (Logitech Inc -> Logitech Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5356848 2019-08-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12001112 2019-08-29] (TeamViewer GmbH -> TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3831576 2019-06-15] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository\u0345944.inf_amd64_403c37b116746a6f\B345674\atikmdag.sys [60437608 2019-08-20] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository\u0345944.inf_amd64_403c37b116746a6f\B345674\atikmpag.sys [597608 2019-08-20] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [209552 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [263008 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [205848 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [61472 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [15488 2019-05-11] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [282768 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [169408 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1030784 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [478096 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [236024 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [387176 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [108152 2019-07-24] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
S3 BazisPortableCDBus; C:\Windows\System32\drivers\BazisPortableCDBus.sys [283480 2019-08-21] (Sysprogs OU -> Sysprogs OU)
S3 EasyAntiCheatSys; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys [1187656 2019-08-29] (EasyAntiCheat Oy -> EasyAntiCheat Oy)
R0 EUBAKUP; C:\Windows\System32\drivers\eubakup.sys [73448 2018-10-08] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
R0 EUBKMON; C:\Windows\System32\drivers\EUBKMON.sys [53504 2018-10-08] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 EUDSKACS; C:\Windows\system32\drivers\eudskacs.sys [22784 2018-10-08] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
R1 EUFDDISK; C:\Windows\system32\drivers\EuFdDisk.sys [341760 2018-10-08] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
S3 gdrv2; C:\Windows\gdrv2.sys [32008 2019-08-04] (GIGA-BYTE Technology Co., Ltd. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
S3 GPCIDrv; C:\Users\Jan\AppData\Local\Temp\7zSB5FA.tmp\N2080_FW_Upgrade_Tool_V003\GPCIDrv64.sys [14376 2018-10-26] (Giga-Byte Technology -> ) <==== ATTENTION
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech)
R3 LGJoyXlCore; C:\Windows\system32\drivers\LGJoyXlCore.sys [67736 2018-10-05] (Logitech Inc -> Logitech Inc.)
S3 Netaapl; C:\Windows\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2019-05-29] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2019-05-29] (MiniTool Solution Ltd -> )
R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions)
S3 UcmCxUcsiNvppc; C:\Windows\system32\DRIVERS\UcmCxUcsiNvppc.sys [453000 2019-05-06] (NVIDIA Corporation -> NVIDIA Corporation)
S3 ViGEmBus; C:\Windows\System32\drivers\ViGEmBus.sys [69168 2019-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-09-05 11:50 - 2019-09-05 11:50 - 000028375 _____ C:\Users\Jan\Desktop\FRST.txt
2019-09-05 11:50 - 2019-09-05 11:50 - 000000000 ____D C:\FRST
2019-09-05 11:49 - 2019-09-05 11:49 - 001615360 _____ (Farbar) C:\Users\Jan\Desktop\FRST64.exe
2019-09-05 11:45 - 2019-09-05 11:45 - 000762500 _____ C:\Windows\Minidump\090519-24187-01.dmp
2019-09-05 11:39 - 2019-09-05 11:43 - 000009568 _____ C:\Users\Jan\Desktop\odvoz materialu z Libčic.xlsx
2019-09-05 11:39 - 2019-09-05 11:39 - 000000165 ____H C:\Users\Jan\Desktop\~$odvoz materialu z Libčic.xlsx
2019-09-05 10:28 - 2019-09-05 10:28 - 000873684 _____ C:\Windows\Minidump\090519-17890-01.dmp
2019-09-04 12:02 - 2019-09-04 12:02 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\AVAST Software
2019-09-04 12:00 - 2019-09-04 12:00 - 000000000 ____D C:\Users\Administrator\AppData\LocalLow\AMD
2019-09-04 11:56 - 2019-09-04 11:56 - 000000000 ____D C:\Users\Administrator\AppData\Local\PlaceholderTileLogoFolder
2019-09-04 11:55 - 2019-09-04 20:42 - 000002858 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1654744143-2277480789-2242274244-500
2019-09-04 11:55 - 2019-09-04 11:57 - 000000000 ____D C:\Users\Administrator\AppData\Local\LogMeIn Hamachi
2019-09-04 11:55 - 2019-09-04 11:56 - 000000000 ___RD C:\Users\Administrator\OneDrive
2019-09-04 11:55 - 2019-09-04 11:56 - 000000000 ____D C:\Users\Administrator\AppData\Local\Dropbox
2019-09-04 11:55 - 2019-09-04 11:55 - 000002276 _____ C:\Users\Administrator\Desktop\Discord.lnk
2019-09-04 11:55 - 2019-09-04 11:55 - 000001446 _____ C:\Users\Administrator\Desktop\Microsoft Edge.lnk
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\Discord
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Local\SquirrelTemp
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Local\LogMeIn
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Local\Logitech
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Local\Discord
2019-09-04 11:54 - 2019-09-04 12:00 - 000000000 ____D C:\Users\Administrator\AppData\Local\Packages
2019-09-04 11:54 - 2019-09-04 11:56 - 000002388 _____ C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-09-04 11:54 - 2019-09-04 11:56 - 000000000 ____D C:\Users\Administrator\AppData\Local\D3DSCache
2019-09-04 11:54 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator
2019-09-04 11:54 - 2019-09-04 11:54 - 000000020 ___SH C:\Users\Administrator\ntuser.ini
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ___RD C:\Users\Administrator\3D Objects
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ___HD C:\Users\Administrator\MicrosoftEdgeBackups
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\Adobe
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Local\Publishers
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Local\MicrosoftEdge
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Local\Google
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Local\ConnectedDevicesPlatform
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Local\AMD
2019-09-04 11:54 - 2019-06-11 11:23 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\Apple Computer
2019-09-04 11:54 - 2019-05-12 19:34 - 000000000 ____D C:\Users\Administrator\AppData\Local\Microsoft Help
2019-09-04 11:54 - 2019-05-11 14:18 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\Macromedia
2019-09-03 12:28 - 2019-09-03 12:28 - 000363912 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-09-03 12:28 - 2019-09-03 12:28 - 000236024 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-09-03 12:28 - 2019-09-03 12:28 - 000169408 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-09-02 15:39 - 2019-09-02 15:39 - 004875596 _____ C:\Users\Jan\Downloads\Classic 20826.rar
2019-08-29 23:59 - 2019-08-29 23:59 - 000019680 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_5003619287669.dll
2019-08-29 22:17 - 2019-08-29 22:17 - 000019680 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_66556177087252.dll
2019-08-29 17:49 - 2019-08-29 17:49 - 000000000 ___HD C:\$WINDOWS.~BT
2019-08-27 12:23 - 2019-09-05 11:45 - 000000000 ____D C:\Windows\Minidump
2019-08-27 12:15 - 2019-08-27 12:15 - 000000571 _____ C:\Users\Public\Desktop\World of Warcraft Classic.lnk
2019-08-27 12:15 - 2019-08-27 12:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft Classic
2019-08-27 12:05 - 2019-08-27 12:05 - 000000000 ____D C:\Users\Jan\AppData\Local\AutoIt v3
2019-08-26 19:38 - 2019-08-26 19:38 - 000000113 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2019-08-26 19:38 - 2019-08-26 19:38 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Fatshark
2019-08-26 17:29 - 2019-08-26 17:29 - 000000202 _____ C:\Users\Jan\Desktop\Warhammer Vermintide 2.url
2019-08-26 16:13 - 2019-08-26 16:13 - 000000670 _____ C:\Users\Public\Desktop\Fraps.lnk
2019-08-26 16:13 - 2019-08-26 16:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
2019-08-25 17:11 - 2019-08-25 17:11 - 000000000 ____D C:\Users\Jan\AppData\Local\NVIDIA Corporation
2019-08-25 16:14 - 2019-08-25 16:14 - 000000000 ____D C:\Users\Jan\AppData\Roaming\ATI
2019-08-25 16:14 - 2019-08-25 16:14 - 000000000 ____D C:\Users\Jan\AppData\Local\ATI
2019-08-25 16:14 - 2019-08-25 16:14 - 000000000 ____D C:\ProgramData\ATI
2019-08-25 16:13 - 2019-08-27 12:22 - 000002516 _____ C:\Windows\System32\Tasks\AMDLinkUpdate
2019-08-25 16:13 - 2019-08-27 12:22 - 000002452 _____ C:\Windows\System32\Tasks\ModifyLinkUpdate
2019-08-25 16:13 - 2019-08-25 16:15 - 000000000 ____D C:\Users\Jan\AppData\Local\RadeonSettings
2019-08-25 16:13 - 2019-08-25 16:13 - 000000000 ____D C:\Users\Jan\AppData\Local\cache
2019-08-25 16:12 - 2019-08-27 12:22 - 000002262 _____ C:\Windows\System32\Tasks\StartCN
2019-08-25 16:12 - 2019-08-27 12:22 - 000002182 _____ C:\Windows\System32\Tasks\StartDVR
2019-08-25 16:12 - 2019-08-25 16:12 - 000000000 ____D C:\Windows\LastGood.Tmp
2019-08-25 16:12 - 2019-08-25 16:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2019-08-25 16:12 - 2019-08-25 16:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Problem Report Wizard
2019-08-25 16:12 - 2019-08-25 16:12 - 000000000 ____D C:\Program Files (x86)\AMD
2019-08-25 16:11 - 2019-08-25 19:19 - 000000000 ____D C:\Users\Jan\AppData\LocalLow\AMD
2019-08-25 16:11 - 2019-08-25 16:13 - 000000000 ____D C:\Users\Jan\AppData\Local\AMD
2019-08-25 16:11 - 2019-08-25 16:11 - 000000000 ____D C:\Windows\system32\AMD
2019-08-25 16:08 - 2019-08-25 16:12 - 000000000 ____D C:\Program Files\AMD
2019-08-25 16:08 - 2019-08-25 16:09 - 000000000 ____D C:\AMD
2019-08-25 16:08 - 2019-08-25 16:08 - 000000000 ____D C:\Users\Jan\AppData\Local\RadeonInstaller
2019-08-25 16:08 - 2019-08-25 16:08 - 000000000 ____D C:\ProgramData\AMD
2019-08-24 23:07 - 2019-08-24 23:07 - 000000000 ____D C:\Users\Jan\AppData\Local\CrashReportClient
2019-08-22 11:56 - 2019-08-22 11:56 - 000001056 _____ C:\Users\Jan\Desktop\Remnant – zástupce.lnk
2019-08-21 19:58 - 2019-08-21 19:58 - 000000000 ____D C:\Users\Jan\AppData\Local\LogMeIn
2019-08-21 19:58 - 2019-08-21 19:58 - 000000000 ____D C:\ProgramData\LogMeIn
2019-08-21 17:53 - 2019-08-21 17:53 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Goldberg SteamEmu Saves
2019-08-20 12:31 - 2019-08-20 12:31 - 003913824 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 003516000 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 001712232 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 001242216 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 001242216 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 001010704 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 001010704 _____ C:\Windows\system32\vulkan-1.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000873648 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000873648 _____ C:\Windows\SysWOW64\vulkan-1.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000761448 _____ (AMD) C:\Windows\system32\atieclxx.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000574056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Rapidfire64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000493160 _____ C:\Windows\system32\dgtrayicon.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000484968 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\Rapidfire.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000480352 _____ C:\Windows\system32\GameManager64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000468584 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000439912 _____ C:\Windows\system32\atieah64.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000416872 _____ C:\Windows\system32\EEURestart.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000381544 _____ C:\Windows\SysWOW64\GameManager32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000352360 _____ C:\Windows\SysWOW64\atieah32.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000348776 _____ C:\Windows\system32\clinfo.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000304232 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000304232 _____ C:\Windows\system32\vulkaninfo.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000276072 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000276072 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000242280 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000214120 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000183904 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000178752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000162920 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000158824 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000157592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000152680 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000138344 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000135784 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000134760 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000125544 _____ (AMD) C:\Windows\system32\atimuixx.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000124008 _____ C:\Windows\system32\atidxx64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000121448 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000120936 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdxc64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000107104 _____ C:\Windows\SysWOW64\atidxx32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000105568 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdxc32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000090728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mcl64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000075368 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mcl32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000070248 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ati2erec.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000046696 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\RapidFireServer64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000043624 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\RapidFireServer.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000019768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 068013152 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdhip64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 059438696 _____ C:\Windows\system32\amdcomgr64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 049335400 _____ C:\Windows\SysWOW64\amdcomgr.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 001686000 _____ (AMD) C:\Windows\system32\amf-mft-mjpeg-decoder64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 001365352 _____ (AMD) C:\Windows\SysWOW64\amf-mft-mjpeg-decoder32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000941160 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000768616 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000554072 _____ C:\Windows\system32\amdmiracast.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000553576 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmcl64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000472680 _____ C:\Windows\system32\amdgfxinfo64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000466536 _____ C:\Windows\system32\amdlogum.exe
2019-08-20 12:30 - 2019-08-20 12:30 - 000383592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmcl32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000381544 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000134832 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000128112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000128112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000119224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000107728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000107728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2019-08-20 08:54 - 2019-08-20 08:54 - 003471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2019-08-20 08:54 - 2019-08-20 08:54 - 003437632 _____ C:\Windows\system32\atiumd6a.cap
2019-08-20 08:54 - 2019-08-20 08:54 - 000550928 _____ C:\Windows\SysWOW64\atiapfxx.blb
2019-08-20 08:54 - 2019-08-20 08:54 - 000550928 _____ C:\Windows\system32\atiapfxx.blb
2019-08-20 08:54 - 2019-08-20 08:54 - 000204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2019-08-20 08:54 - 2019-08-20 08:54 - 000204952 _____ C:\Windows\system32\ativvsvl.dat
2019-08-20 08:54 - 2019-08-20 08:54 - 000157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2019-08-20 08:54 - 2019-08-20 08:54 - 000157144 _____ C:\Windows\system32\ativvsva.dat
2019-08-20 08:54 - 2019-08-20 08:54 - 000154384 _____ C:\Windows\system32\samu_krnl_ci.sbin
2019-08-20 08:54 - 2019-08-20 08:54 - 000138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2019-08-20 08:54 - 2019-08-20 08:54 - 000125488 _____ C:\Windows\system32\kapp_ci.sbin
2019-08-20 08:54 - 2019-08-20 08:54 - 000121168 _____ C:\Windows\system32\kapp_si.sbin
2019-08-20 08:54 - 2019-08-20 08:54 - 000034488 _____ C:\Windows\system32\AMDKernelEvents.man
2019-08-17 17:09 - 2019-08-17 17:09 - 000000000 ____D C:\Users\Jan\AppData\Local\Remnant
2019-08-17 14:10 - 2019-08-17 14:10 - 000000000 ____D C:\Users\Jan\AppData\Local\TslGame
2019-08-17 14:10 - 2019-08-17 14:10 - 000000000 ____D C:\Users\Jan\AppData\Local\BattlEye
2019-08-17 14:06 - 2019-09-04 11:37 - 000000000 ____D C:\Users\Public\Logi
2019-08-17 14:06 - 2019-08-17 14:06 - 000000000 ____D C:\Users\Jan\AppData\Local\Logitech
2019-08-17 14:06 - 2019-08-17 14:06 - 000000000 ____D C:\ProgramData\LogiShrd
2019-08-17 14:05 - 2019-08-17 14:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2019-08-17 14:05 - 2019-08-17 14:05 - 000000000 ____D C:\Program Files\Logitech Gaming Software
2019-08-17 14:04 - 2019-08-17 14:04 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Logitech
2019-08-17 14:04 - 2019-08-17 14:04 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Logishrd
2019-08-15 15:57 - 2019-08-15 15:57 - 000000202 _____ C:\Users\Jan\Desktop\PLAYERUNKNOWN'S BATTLEGROUNDS.url
2019-08-14 20:26 - 2019-08-14 20:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2019-08-14 17:43 - 2019-08-25 01:34 - 000011667 _____ C:\Users\Jan\Desktop\macros.xlsx
2019-08-14 15:52 - 2019-08-14 15:52 - 026808320 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 023453696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 022114960 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 020816896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 019011584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 012939776 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 012244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 011724288 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 009941504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 009682744 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 008900608 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 007921664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 007884288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 007871488 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 007687784 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 007645392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 006925312 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 006544552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 006441472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 006308016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 006065152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 005764608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 005587968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 005570968 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 005086208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 004737536 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 004628992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 004588544 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 004351656 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 004344832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 004056576 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003978240 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003818632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 003656704 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003635200 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 003614720 _____ (Microsoft Corporation) C:\Windows\system32\tellib.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003567104 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003385856 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003363856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 003335224 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003333632 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002999808 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002942976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002926096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 002842112 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002778760 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002767160 _____ (Microsoft Corporation) C:\Windows\system32\UpdateAgent.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002765312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 002700792 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002593544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002469440 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002438576 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002421760 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 002346496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002323688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002298880 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002278792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002189312 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002177336 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002096128 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-08-14 15:52 - 2019-08-14 15:52 - 002073232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002022096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002017792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2019-08-14 15:52 - 2019-08-14 15:52 - 001966904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 001892864 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001733120 _____ (Microsoft Corporation) C:\Windows\system32\CoreShell.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001715712 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001715000 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001711104 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001701888 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001701880 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-08-14 15:52 - 2019-08-14 15:52 - 001674752 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001668752 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001662264 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001641400 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001605632 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001506304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001485312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001483872 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001479184 _____ (Microsoft Corporation) C:\Windows\system32\rdpbase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001477432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001472568 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001466880 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001465984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001391096 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001344960 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-08-14 15:52 - 2019-08-14 15:52 - 001321784 _____ (Microsoft Corporation) C:\Windows\system32\wpx.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001294488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001290752 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001280000 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001278808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001267712 _____ (Microsoft Corporation) C:\Windows\system32\APMon.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001260560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 001257472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001253688 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001232384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 001224704 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001222160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpbase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001221528 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001205248 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001182240 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001180464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001171968 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001160704 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001098272 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001057792 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001054712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001048376 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001038336 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001020416 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001008640 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001004544 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000993792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000980992 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000956416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000927232 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000900096 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000895792 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000889344 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000888832 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000882688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000869888 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000864568 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000853504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000850976 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000840192 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000833024 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000831288 _____ (Microsoft Corporation) C:\Windows\system32\AppVClient.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000816640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000806024 _____ (Microsoft Corporation) C:\Windows\system32\BioIso.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000799784 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000794040 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000791040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000788480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000783184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000771072 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000764416 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000763392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000758688 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000743224 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000732168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000730112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FlightSettings.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000684544 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000684032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000680184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000678680 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000669184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000664576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000658944 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000652088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000649528 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000632320 _____ (Microsoft Corporation) C:\Windows\system32\SyncController.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000622080 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000616960 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000603280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000586256 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000580024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000574464 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000553784 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000535056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000532992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000529408 _____ (Microsoft Corporation) C:\Windows\system32\ShellCommonCommonProxyStub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000525824 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000523776 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000522104 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000519168 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000515440 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000508968 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncController.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000495104 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000482104 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000449576 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000447488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000444728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000440320 _____ (Microsoft Corporation) C:\Windows\system32\P2PGraph.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000431616 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000425984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000415744 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000407040 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000398928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000398848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000396088 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000394240 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000387832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000385536 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000383504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000378880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Lights.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000375752 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000371200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Diagnostics.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000363520 _____ (Microsoft Corporation) C:\Windows\system32\LicensingDiagSpp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000360960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2PGraph.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000356352 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000349696 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000349184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000346624 _____ (Microsoft Corporation) C:\Windows\system32\ncryptprov.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000345600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000334848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicensingDiagSpp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.SystemManagement.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000317952 _____ (Microsoft Corporation) C:\Windows\system32\ComposableShellProxyStub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000317240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssecflt.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000310072 _____ (Microsoft Corporation) C:\Windows\system32\computestorage.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000305664 _____ (Microsoft Corporation) C:\Windows\system32\wc_storage.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000297984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Diagnostics.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000294512 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000281600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptprov.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000278624 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000270848 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000264704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Lights.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000262336 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicCapsule.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000254976 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShellCommonCommonProxyStub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000253256 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000248120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000241664 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000241664 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000230848 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.SystemManagement.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000228352 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000217088 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2019-08-14 15:52 - 2019-08-14 15:52 - 000212792 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000205824 _____ (Microsoft Corporation) C:\Windows\system32\p2pnetsh.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000203064 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000201528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000200504 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SIUF.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000197632 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000193536 _____ (Microsoft Corporation) C:\Windows\system32\Win32CompatibilityAppraiserCSP.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000193040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000189712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000182784 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000180736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2019-08-14 15:52 - 2019-08-14 15:52 - 000180224 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000178176 _____ (Microsoft Corporation) C:\Windows\system32\appsruprov.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000177664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\p2pnetsh.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000173568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000173216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000165888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComposableShellProxyStub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000152576 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSoftwareInstallationClient.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000152408 _____ (Microsoft Corporation) C:\Windows\system32\KerbClientShared.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000152080 _____ (Microsoft Corporation) C:\Windows\system32\rmclient.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000148480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000141736 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000134968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scmbus.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000125440 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000125016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KerbClientShared.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000122368 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000121656 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000120832 _____ (Microsoft Corporation) C:\Windows\system32\updatecsp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000118480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wldp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pmem.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000114128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rmclient.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\usoapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\drvsetup.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000107008 _____ (Microsoft Corporation) C:\Windows\system32\CoreShellExtFramework.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000104248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bindflt.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000092832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2019-08-14 15:52 - 2019-08-14 15:52 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\DiskSnapshot.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvsetup.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000087056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\Groupinghc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000071168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usoapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\hmkd.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000058882 _____ C:\Windows\system32\srms.dat
2019-08-14 15:52 - 2019-08-14 15:52 - 000058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000056320 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\UsoClient.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\WindowsUpdateElevatedInstaller.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hmkd.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000032784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000032568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\uefi.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000027136 _____ (Microsoft Corporation) C:\Windows\system32\kdcpw.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shunimpl.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2019-08-14 00:12 - 2019-08-14 00:12 - 000000000 ____D C:\Users\Jan\Documents\CPY_SAVES
2019-08-14 00:12 - 2019-08-14 00:12 - 000000000 ____D C:\Users\Jan\Documents\Assassin's Creed Odyssey
2019-08-13 13:49 - 2019-08-13 13:49 - 000051024 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2019-08-13 13:49 - 2019-08-13 13:49 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2019-08-13 13:49 - 2019-08-13 13:49 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2019-08-13 13:49 - 2019-08-13 13:49 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2019-08-09 22:36 - 2019-08-09 22:37 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Sekiro
2019-08-08 19:27 - 2019-08-08 19:27 - 000174768 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdihk64.dll
2019-08-08 19:27 - 2019-08-08 19:27 - 000146440 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdihk32.dll

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-09-05 11:45 - 2019-05-11 14:19 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Discord
2019-09-05 11:45 - 2019-05-11 14:19 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-09-05 11:45 - 2019-05-11 14:15 - 000000000 ____D C:\Users\Jan
2019-09-05 11:45 - 2019-05-11 14:13 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-09-05 11:45 - 2019-05-11 14:13 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-09-05 11:45 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-09-05 11:44 - 2019-07-28 19:53 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Twitch
2019-09-05 11:30 - 2019-05-14 23:51 - 000000000 ____D C:\Users\Jan\AppData\Local\Battle.net
2019-09-05 10:32 - 2019-05-11 14:17 - 001693636 _____ C:\Windows\system32\PerfStringBackup.INI
2019-09-05 10:32 - 2018-09-15 19:39 - 000716902 _____ C:\Windows\system32\perfh005.dat
2019-09-05 10:32 - 2018-09-15 19:39 - 000144982 _____ C:\Windows\system32\perfc005.dat
2019-09-05 10:32 - 2018-09-15 09:31 - 000000000 ____D C:\Windows\INF
2019-09-05 10:28 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\LiveKernelReports
2019-09-04 20:44 - 2019-05-11 18:29 - 000000000 ____D C:\Users\Jan\AppData\Local\D3DSCache
2019-09-04 20:39 - 2019-05-11 14:24 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2019-09-04 18:15 - 2019-07-13 12:33 - 000000000 ____D C:\Users\Jan\AppData\Roaming\TS3Client
2019-09-04 17:51 - 2019-05-11 14:17 - 000000000 ___RD C:\Users\Jan\OneDrive
2019-09-04 12:00 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\AppReadiness
2019-09-04 11:54 - 2019-05-11 14:16 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-09-04 11:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\Registration
2019-09-04 11:43 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-09-04 00:25 - 2019-05-11 23:14 - 000000000 ____D C:\Users\Jan\AppData\Local\CrashDumps
2019-09-04 00:25 - 2019-05-11 23:13 - 000000000 ____D C:\Users\Jan\AppData\Roaming\uTorrent
2019-09-03 12:28 - 2019-05-11 14:24 - 001030784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000478096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000387176 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000282768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000263008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000209552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000205848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000112312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000087944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000061472 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000037104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000003990 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-09-03 12:28 - 2018-09-15 09:33 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-08-29 20:20 - 2019-05-11 14:19 - 000001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 14.lnk
2019-08-29 17:50 - 2019-05-11 15:07 - 000000000 ____D C:\Windows\Panther
2019-08-27 12:23 - 2019-05-11 14:20 - 000000934 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2019-08-27 12:23 - 2019-05-11 14:20 - 000000930 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2019-08-27 12:22 - 2019-06-01 20:23 - 000003410 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{D2602DB7-2170-4412-B589-1B0860A440A0}
2019-08-27 12:22 - 2019-05-13 10:59 - 000003542 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2019-08-27 12:22 - 2019-05-11 14:20 - 000003508 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA
2019-08-27 12:22 - 2019-05-11 14:20 - 000003284 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore
2019-08-27 12:22 - 2019-05-11 14:18 - 000003460 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-08-27 12:22 - 2019-05-11 14:18 - 000003236 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-08-27 01:27 - 2019-05-11 14:18 - 000002304 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-08-27 00:39 - 2019-07-13 12:33 - 000000000 ____D C:\Program Files\TeamSpeak 3 Client
2019-08-26 19:38 - 2019-07-24 19:30 - 000000000 ____D C:\Users\Jan\AppData\Roaming\EasyAntiCheat
2019-08-25 16:11 - 2019-07-13 12:33 - 000000000 ____D C:\ProgramData\Package Cache
2019-08-25 16:06 - 2019-05-11 16:51 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-08-25 16:06 - 2019-05-11 16:47 - 001169008 _____ C:\Windows\ntbtlog.txt
2019-08-25 16:06 - 2019-05-11 16:47 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job
2019-08-25 16:06 - 2019-05-11 14:34 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-08-25 16:06 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\Help
2019-08-25 16:06 - 2018-09-15 08:09 - 000524288 _____ C:\Windows\system32\config\BBI
2019-08-25 12:48 - 2019-05-11 16:51 - 000003016 _____ C:\Windows\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000003016 _____ C:\Windows\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000003016 _____ C:\Windows\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000002984 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000002956 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000002838 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000002744 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-24 12:33 - 2019-05-13 10:59 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-08-21 17:48 - 2019-07-27 22:20 - 000283480 _____ (Sysprogs OU) C:\Windows\system32\Drivers\BazisPortableCDBus.sys
2019-08-19 00:25 - 2019-06-16 12:33 - 000000000 ____D C:\Users\Jan\AppData\Roaming\obs-studio
2019-08-17 14:10 - 2019-07-22 16:32 - 000000000 ____D C:\Users\Jan\AppData\Local\UnrealEngine
2019-08-17 12:01 - 2019-05-11 18:27 - 000000273 _____ C:\Users\Jan\Desktop\Dofus.txt
2019-08-15 11:28 - 2019-05-11 14:16 - 000000000 ___RD C:\Users\Jan\3D Objects
2019-08-15 11:28 - 2019-05-11 14:13 - 000361328 _____ C:\Windows\system32\FNTCACHE.DAT
2019-08-15 01:45 - 2018-09-15 19:40 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ___SD C:\Windows\system32\UNP
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\SysWOW64\oobe
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\oobe
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\Provisioning
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\bcastdvr
2019-08-14 20:26 - 2019-05-11 14:20 - 000000000 ____D C:\Program Files (x86)\Dropbox
2019-08-14 15:55 - 2019-05-11 14:22 - 000000000 ____D C:\Windows\system32\MRT
2019-08-14 15:53 - 2019-05-11 14:22 - 134272480 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-08-14 15:53 - 2018-09-15 09:23 - 000000000 ____D C:\Windows\CbsTemp
2019-08-12 13:27 - 2019-05-18 10:24 - 000000600 _____ C:\Users\Jan\AppData\Roaming\winscp.rnd
2019-08-10 15:41 - 2019-07-28 20:02 - 000000000 ____D C:\Users\Jan\AppData\Roaming\.minecraft
2019-08-08 21:38 - 2019-07-07 21:14 - 000000000 ____D C:\Windows\system32\appmgmt
2019-08-08 21:37 - 2019-05-11 23:19 - 000000000 ____D C:\Program Files\PerformanceTest

==================== Files in the root of some directories ================

2019-05-18 10:24 - 2019-08-12 13:27 - 000000600 _____ () C:\Users\Jan\AppData\Roaming\winscp.rnd
2019-06-05 22:35 - 2019-06-05 22:35 - 000003968 _____ () C:\Users\Jan\AppData\Local\recently-used.xbel

==================== FLock ================

2019-05-11 14:14 C:\Windows\CSC

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================
Přílohy
Addition.zip
(10.16 KiB) Staženo 67 x

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Win 10 modra smrt

#2 Příspěvek od Conder »

Ahoj :)

:arrow: Skontroluj, ci sa v adresari "C:\Windows\Minidump" nachadzaju nejake subory. Ak ano, skopiruj ich do inej zlozky (napr. na plochu, dokumentov), zabal do archivu RAR alebo ZIP a posli ako prilohu k dalsiemu prispevku.

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

blekota
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 črc 2017 11:50

Re: Win 10 modra smrt

#3 Příspěvek od blekota »

AdwCleaner nic nenašel.
Přikládám minidump.
Přílohy
Minidump.zip
(318.44 KiB) Staženo 76 x

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Win 10 modra smrt

#4 Příspěvek od Conder »

:arrow: Poprosim o obidva nove logy z FRST.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

blekota
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 črc 2017 11:50

Re: Win 10 modra smrt

#5 Příspěvek od blekota »

Kód: Vybrat vše

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 04-09-2019
Ran by Jan (administrator) on DESKTOP-CVD1H1S (06-09-2019 12:05:01)
Running from C:\Users\Jan\Desktop
Loaded Profiles: Jan (Available Profiles: Jan & Administrator)
Platform: Windows 10 Pro Version 1809 17763.678 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0345944.inf_amd64_403c37b116746a6f\B345674\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0345944.inf_amd64_403c37b116746a6f\B345674\atiesrxx.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12096.3.41072.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(BitTorrent Inc -> BitTorrent, Inc.) C:\Program Files (x86)\uTorrent\uTorrent.exe
(Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Discord Inc. -> Discord Inc.) C:\Users\Jan\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Jan\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Jan\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Jan\AppData\Local\Discord\app-0.0.305\Discord.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\79.4.143\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\79.4.143\QtWebEngineProcess.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(CHENGDU YIWO Tech Development Co., Ltd. -> ) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
(CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch_base.inf_amd64_b95c9a044993331b\IntelCpHDCPSvc.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech Gaming Software\LAClient\laclient.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19051.16210.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1906.53.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19071.901.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.51.72.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.51.72.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) E:\Steam\Steam.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16696840 2016-09-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [18727048 2018-10-05] (Logitech Inc -> Logitech Inc.)
HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe [61370712 2019-05-11] (Discord Inc. -> Discord Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [5782336 2019-08-13] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\Run: [Discord] => C:\Users\Jan\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\Run: [Steam] => E:\Steam\steam.exe [3210528 2019-08-22] (Valve -> Valve Corporation)
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {42d20e16-c0f0-11e9-9f10-5cf370723daa} - "F:\setup.exe" 
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {5b0e854e-c1a9-11e9-9f10-5cf370723daa} - "F:\setup.exe" 
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {6c3ec4a5-b1e2-11e9-9f09-7085c263a56c} - "F:\setup.exe" 
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {d88565f3-ae44-11e9-9f09-7085c263a56c} - "F:\setup.exe" 
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\system32\frapsv64.dll [71680 2012-08-30] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [65536 2012-08-30] (Beepa P/L) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.132\Installer\chrmstp.exe [2019-08-27] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Audible Download Manager.lnk [2019-07-14]
ShortcutTarget: Audible Download Manager.lnk -> C:\Program Files (x86)\Audible\Bin\AudibleDownloadHelper.exe (No File)
Startup: C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE AORUS GRAPHICS ENGINE.lnk [2019-08-04]
ShortcutTarget: GIGABYTE AORUS GRAPHICS ENGINE.lnk -> C:\Program Files (x86)\GIGABYTE\AORUS ENGINE\autorun.exe (No File)
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 172.16.0.1
Tcpip\..\Interfaces\{3dc16d61-5306-4ede-8417-ebc05eef94e9}: [DhcpNameServer] 8.8.8.8 172.16.0.1
Tcpip\..\Interfaces\{8a39f971-dfc4-4bae-820a-3a4293bd6510}: [DhcpNameServer] 172.20.10.1

Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-07-21] (Oracle America, Inc. -> Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-07-21] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-07-31] (Adobe Inc. -> Adobe Systems Inc.)

Chrome: 
=======
CHR Profile: C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default [2019-09-06]
CHR DownloadDir: D:\Dokumenty\Internet Copy\Download
CHR Extension: (Prezentace) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-05-11]
CHR Extension: (Dokumenty) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-05-11]
CHR Extension: (Disk Google) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-05-11]
CHR Extension: (YouTube) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-05-11]
CHR Extension: (POE Trade Copy to Path Of Building) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfieikfjcjekajhabkpjoffobdlillli [2019-05-11]
CHR Extension: (Mailto: for Gmail™) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgkkmcknielgdhebimdnfahpipajcpjn [2019-05-11]
CHR Extension: (Komponenta I.CA PKI Service) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdolcjnejgbpoadihncaggiicpkhjchl [2019-06-05]
CHR Extension: (Tabulky) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-05-11]
CHR Extension: (Změní barvu na Facebooku ™) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpcehbfdafmgaekkplgdodnnbfohbbjo [2019-05-11]
CHR Extension: (Dokumenty Google offline) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-05-11]
CHR Extension: (AdBlock) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-08-29]
CHR Extension: (Hola Free VPN Proxy Unblocker) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2019-08-24]
CHR Extension: (IE Tab) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2019-09-06]
CHR Extension: (FormApps Extension) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2019-05-11]
CHR Extension: (Morpheon Dark) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mafbdhjdkjnoafhfelkjpchpaepjknad [2019-05-11]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-05-11]
CHR Extension: (Gmail) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-11]
CHR Extension: (Chrome Media Router) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-08-09]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD External Events Utility; C:\Windows\System32\DriverStore\FileRepository\u0345944.inf_amd64_403c37b116746a6f\B345674\atiesrxx.exe [508008 2019-08-20] (Advanced Micro Devices, Inc. -> AMD)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5975136 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [405072 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8577760 2019-08-15] (BattlEye Innovations e.K. -> )
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-05-11] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-05-11] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [51024 2019-08-13] (Dropbox, Inc -> Dropbox, Inc.)
R2 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [40016 2019-04-22] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2019-08-26] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [206472 2018-10-05] (Logitech Inc -> Logitech Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5356848 2019-08-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12001112 2019-08-29] (TeamViewer GmbH -> TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3831576 2019-06-15] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository\u0345944.inf_amd64_403c37b116746a6f\B345674\atikmdag.sys [60437608 2019-08-20] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository\u0345944.inf_amd64_403c37b116746a6f\B345674\atikmpag.sys [597608 2019-08-20] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [209552 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [263008 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [205848 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [61472 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [15488 2019-05-11] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [282768 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [169408 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1030784 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [478096 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [236024 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [387176 2019-09-03] (AVAST Software s.r.o. -> AVAST Software)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [108152 2019-07-24] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
S3 BazisPortableCDBus; C:\Windows\System32\drivers\BazisPortableCDBus.sys [283480 2019-08-21] (Sysprogs OU -> Sysprogs OU)
S3 EasyAntiCheatSys; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys [1187656 2019-08-29] (EasyAntiCheat Oy -> EasyAntiCheat Oy)
R0 EUBAKUP; C:\Windows\System32\drivers\eubakup.sys [73448 2018-10-08] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
R0 EUBKMON; C:\Windows\System32\drivers\EUBKMON.sys [53504 2018-10-08] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 EUDSKACS; C:\Windows\system32\drivers\eudskacs.sys [22784 2018-10-08] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
R1 EUFDDISK; C:\Windows\system32\drivers\EuFdDisk.sys [341760 2018-10-08] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
S3 gdrv2; C:\Windows\gdrv2.sys [32008 2019-08-04] (GIGA-BYTE Technology Co., Ltd. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
S3 GPCIDrv; C:\Users\Jan\AppData\Local\Temp\7zSB5FA.tmp\N2080_FW_Upgrade_Tool_V003\GPCIDrv64.sys [14376 2018-10-26] (Giga-Byte Technology -> ) <==== ATTENTION
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech)
R3 LGJoyXlCore; C:\Windows\system32\drivers\LGJoyXlCore.sys [67736 2018-10-05] (Logitech Inc -> Logitech Inc.)
S3 Netaapl; C:\Windows\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2019-05-29] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2019-05-29] (MiniTool Solution Ltd -> )
R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions)
S3 UcmCxUcsiNvppc; C:\Windows\system32\DRIVERS\UcmCxUcsiNvppc.sys [453000 2019-05-06] (NVIDIA Corporation -> NVIDIA Corporation)
S3 ViGEmBus; C:\Windows\System32\drivers\ViGEmBus.sys [69168 2019-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-09-05 17:08 - 2019-09-05 17:08 - 000000000 ____D C:\AdwCleaner
2019-09-05 11:50 - 2019-09-06 12:05 - 000022982 _____ C:\Users\Jan\Desktop\FRST.txt
2019-09-05 11:50 - 2019-09-06 12:04 - 000000000 ____D C:\FRST
2019-09-05 11:49 - 2019-09-05 11:49 - 001615360 _____ (Farbar) C:\Users\Jan\Desktop\FRST64.exe
2019-09-05 11:45 - 2019-09-05 11:45 - 000762500 _____ C:\Windows\Minidump\090519-24187-01.dmp
2019-09-05 11:39 - 2019-09-05 17:18 - 000009910 _____ C:\Users\Jan\Desktop\odvoz materialu z Libčic.xlsx
2019-09-05 11:39 - 2019-09-05 11:39 - 000000165 ____H C:\Users\Jan\Desktop\~$odvoz materialu z Libčic.xlsx
2019-09-05 10:28 - 2019-09-05 10:28 - 000873684 _____ C:\Windows\Minidump\090519-17890-01.dmp
2019-09-04 12:02 - 2019-09-04 12:02 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\AVAST Software
2019-09-04 12:00 - 2019-09-04 12:00 - 000000000 ____D C:\Users\Administrator\AppData\LocalLow\AMD
2019-09-04 11:56 - 2019-09-04 11:56 - 000000000 ____D C:\Users\Administrator\AppData\Local\PlaceholderTileLogoFolder
2019-09-04 11:55 - 2019-09-05 18:00 - 000002858 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1654744143-2277480789-2242274244-500
2019-09-04 11:55 - 2019-09-04 11:57 - 000000000 ____D C:\Users\Administrator\AppData\Local\LogMeIn Hamachi
2019-09-04 11:55 - 2019-09-04 11:56 - 000000000 ___RD C:\Users\Administrator\OneDrive
2019-09-04 11:55 - 2019-09-04 11:56 - 000000000 ____D C:\Users\Administrator\AppData\Local\Dropbox
2019-09-04 11:55 - 2019-09-04 11:55 - 000002276 _____ C:\Users\Administrator\Desktop\Discord.lnk
2019-09-04 11:55 - 2019-09-04 11:55 - 000001446 _____ C:\Users\Administrator\Desktop\Microsoft Edge.lnk
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\Discord
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Local\SquirrelTemp
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Local\LogMeIn
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Local\Logitech
2019-09-04 11:55 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator\AppData\Local\Discord
2019-09-04 11:54 - 2019-09-04 12:00 - 000000000 ____D C:\Users\Administrator\AppData\Local\Packages
2019-09-04 11:54 - 2019-09-04 11:56 - 000002388 _____ C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-09-04 11:54 - 2019-09-04 11:56 - 000000000 ____D C:\Users\Administrator\AppData\Local\D3DSCache
2019-09-04 11:54 - 2019-09-04 11:55 - 000000000 ____D C:\Users\Administrator
2019-09-04 11:54 - 2019-09-04 11:54 - 000000020 ___SH C:\Users\Administrator\ntuser.ini
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ___RD C:\Users\Administrator\3D Objects
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ___HD C:\Users\Administrator\MicrosoftEdgeBackups
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\Adobe
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Local\Publishers
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Local\MicrosoftEdge
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Local\Google
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Local\ConnectedDevicesPlatform
2019-09-04 11:54 - 2019-09-04 11:54 - 000000000 ____D C:\Users\Administrator\AppData\Local\AMD
2019-09-04 11:54 - 2019-06-11 11:23 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\Apple Computer
2019-09-04 11:54 - 2019-05-12 19:34 - 000000000 ____D C:\Users\Administrator\AppData\Local\Microsoft Help
2019-09-04 11:54 - 2019-05-11 14:18 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\Macromedia
2019-09-03 12:28 - 2019-09-03 12:28 - 000363912 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-09-03 12:28 - 2019-09-03 12:28 - 000236024 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-09-03 12:28 - 2019-09-03 12:28 - 000169408 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-09-02 15:39 - 2019-09-02 15:39 - 004875596 _____ C:\Users\Jan\Downloads\Classic 20826.rar
2019-08-29 23:59 - 2019-08-29 23:59 - 000019680 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_5003619287669.dll
2019-08-29 22:17 - 2019-08-29 22:17 - 000019680 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_66556177087252.dll
2019-08-29 17:49 - 2019-08-29 17:49 - 000000000 ___HD C:\$WINDOWS.~BT
2019-08-27 12:23 - 2019-09-05 11:45 - 000000000 ____D C:\Windows\Minidump
2019-08-27 12:15 - 2019-08-27 12:15 - 000000571 _____ C:\Users\Public\Desktop\World of Warcraft Classic.lnk
2019-08-27 12:15 - 2019-08-27 12:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft Classic
2019-08-27 12:05 - 2019-08-27 12:05 - 000000000 ____D C:\Users\Jan\AppData\Local\AutoIt v3
2019-08-26 19:38 - 2019-08-26 19:38 - 000000113 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2019-08-26 19:38 - 2019-08-26 19:38 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Fatshark
2019-08-26 17:29 - 2019-08-26 17:29 - 000000202 _____ C:\Users\Jan\Desktop\Warhammer Vermintide 2.url
2019-08-26 16:13 - 2019-08-26 16:13 - 000000670 _____ C:\Users\Public\Desktop\Fraps.lnk
2019-08-26 16:13 - 2019-08-26 16:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
2019-08-25 17:11 - 2019-08-25 17:11 - 000000000 ____D C:\Users\Jan\AppData\Local\NVIDIA Corporation
2019-08-25 16:14 - 2019-08-25 16:14 - 000000000 ____D C:\Users\Jan\AppData\Roaming\ATI
2019-08-25 16:14 - 2019-08-25 16:14 - 000000000 ____D C:\Users\Jan\AppData\Local\ATI
2019-08-25 16:14 - 2019-08-25 16:14 - 000000000 ____D C:\ProgramData\ATI
2019-08-25 16:13 - 2019-08-27 12:22 - 000002516 _____ C:\Windows\System32\Tasks\AMDLinkUpdate
2019-08-25 16:13 - 2019-08-27 12:22 - 000002452 _____ C:\Windows\System32\Tasks\ModifyLinkUpdate
2019-08-25 16:13 - 2019-08-25 16:15 - 000000000 ____D C:\Users\Jan\AppData\Local\RadeonSettings
2019-08-25 16:13 - 2019-08-25 16:13 - 000000000 ____D C:\Users\Jan\AppData\Local\cache
2019-08-25 16:12 - 2019-08-27 12:22 - 000002262 _____ C:\Windows\System32\Tasks\StartCN
2019-08-25 16:12 - 2019-08-27 12:22 - 000002182 _____ C:\Windows\System32\Tasks\StartDVR
2019-08-25 16:12 - 2019-08-25 16:12 - 000000000 ____D C:\Windows\LastGood.Tmp
2019-08-25 16:12 - 2019-08-25 16:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2019-08-25 16:12 - 2019-08-25 16:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Problem Report Wizard
2019-08-25 16:12 - 2019-08-25 16:12 - 000000000 ____D C:\Program Files (x86)\AMD
2019-08-25 16:11 - 2019-08-25 19:19 - 000000000 ____D C:\Users\Jan\AppData\LocalLow\AMD
2019-08-25 16:11 - 2019-08-25 16:13 - 000000000 ____D C:\Users\Jan\AppData\Local\AMD
2019-08-25 16:11 - 2019-08-25 16:11 - 000000000 ____D C:\Windows\system32\AMD
2019-08-25 16:08 - 2019-08-25 16:12 - 000000000 ____D C:\Program Files\AMD
2019-08-25 16:08 - 2019-08-25 16:09 - 000000000 ____D C:\AMD
2019-08-25 16:08 - 2019-08-25 16:08 - 000000000 ____D C:\Users\Jan\AppData\Local\RadeonInstaller
2019-08-25 16:08 - 2019-08-25 16:08 - 000000000 ____D C:\ProgramData\AMD
2019-08-24 23:07 - 2019-08-24 23:07 - 000000000 ____D C:\Users\Jan\AppData\Local\CrashReportClient
2019-08-22 11:56 - 2019-08-22 11:56 - 000001056 _____ C:\Users\Jan\Desktop\Remnant – zástupce.lnk
2019-08-21 19:58 - 2019-08-21 19:58 - 000000000 ____D C:\Users\Jan\AppData\Local\LogMeIn
2019-08-21 19:58 - 2019-08-21 19:58 - 000000000 ____D C:\ProgramData\LogMeIn
2019-08-21 17:53 - 2019-08-21 17:53 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Goldberg SteamEmu Saves
2019-08-20 12:31 - 2019-08-20 12:31 - 003913824 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 003516000 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 001712232 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 001242216 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 001242216 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 001010704 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 001010704 _____ C:\Windows\system32\vulkan-1.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000873648 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000873648 _____ C:\Windows\SysWOW64\vulkan-1.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000761448 _____ (AMD) C:\Windows\system32\atieclxx.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000574056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Rapidfire64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000493160 _____ C:\Windows\system32\dgtrayicon.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000484968 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\Rapidfire.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000480352 _____ C:\Windows\system32\GameManager64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000468584 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000439912 _____ C:\Windows\system32\atieah64.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000416872 _____ C:\Windows\system32\EEURestart.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000381544 _____ C:\Windows\SysWOW64\GameManager32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000352360 _____ C:\Windows\SysWOW64\atieah32.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000348776 _____ C:\Windows\system32\clinfo.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000304232 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000304232 _____ C:\Windows\system32\vulkaninfo.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000276072 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000276072 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2019-08-20 12:31 - 2019-08-20 12:31 - 000242280 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000214120 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000183904 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000178752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000162920 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000158824 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000157592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000152680 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000138344 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000135784 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000134760 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000125544 _____ (AMD) C:\Windows\system32\atimuixx.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000124008 _____ C:\Windows\system32\atidxx64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000121448 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000120936 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdxc64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000107104 _____ C:\Windows\SysWOW64\atidxx32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000105568 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdxc32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000090728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mcl64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000075368 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mcl32.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000070248 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ati2erec.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000046696 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\RapidFireServer64.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000043624 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\RapidFireServer.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000019768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2019-08-20 12:31 - 2019-08-20 12:31 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 068013152 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdhip64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 059438696 _____ C:\Windows\system32\amdcomgr64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 049335400 _____ C:\Windows\SysWOW64\amdcomgr.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 001686000 _____ (AMD) C:\Windows\system32\amf-mft-mjpeg-decoder64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 001365352 _____ (AMD) C:\Windows\SysWOW64\amf-mft-mjpeg-decoder32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000941160 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000768616 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000554072 _____ C:\Windows\system32\amdmiracast.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000553576 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmcl64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000472680 _____ C:\Windows\system32\amdgfxinfo64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000466536 _____ C:\Windows\system32\amdlogum.exe
2019-08-20 12:30 - 2019-08-20 12:30 - 000383592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmcl32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000381544 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000134832 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000128112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000128112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000119224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000107728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2019-08-20 12:30 - 2019-08-20 12:30 - 000107728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2019-08-20 08:54 - 2019-08-20 08:54 - 003471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2019-08-20 08:54 - 2019-08-20 08:54 - 003437632 _____ C:\Windows\system32\atiumd6a.cap
2019-08-20 08:54 - 2019-08-20 08:54 - 000550928 _____ C:\Windows\SysWOW64\atiapfxx.blb
2019-08-20 08:54 - 2019-08-20 08:54 - 000550928 _____ C:\Windows\system32\atiapfxx.blb
2019-08-20 08:54 - 2019-08-20 08:54 - 000204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2019-08-20 08:54 - 2019-08-20 08:54 - 000204952 _____ C:\Windows\system32\ativvsvl.dat
2019-08-20 08:54 - 2019-08-20 08:54 - 000157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2019-08-20 08:54 - 2019-08-20 08:54 - 000157144 _____ C:\Windows\system32\ativvsva.dat
2019-08-20 08:54 - 2019-08-20 08:54 - 000154384 _____ C:\Windows\system32\samu_krnl_ci.sbin
2019-08-20 08:54 - 2019-08-20 08:54 - 000138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2019-08-20 08:54 - 2019-08-20 08:54 - 000125488 _____ C:\Windows\system32\kapp_ci.sbin
2019-08-20 08:54 - 2019-08-20 08:54 - 000121168 _____ C:\Windows\system32\kapp_si.sbin
2019-08-20 08:54 - 2019-08-20 08:54 - 000034488 _____ C:\Windows\system32\AMDKernelEvents.man
2019-08-17 17:09 - 2019-08-17 17:09 - 000000000 ____D C:\Users\Jan\AppData\Local\Remnant
2019-08-17 14:10 - 2019-08-17 14:10 - 000000000 ____D C:\Users\Jan\AppData\Local\TslGame
2019-08-17 14:10 - 2019-08-17 14:10 - 000000000 ____D C:\Users\Jan\AppData\Local\BattlEye
2019-08-17 14:06 - 2019-09-05 17:12 - 000000000 ____D C:\Users\Public\Logi
2019-08-17 14:06 - 2019-08-17 14:06 - 000000000 ____D C:\Users\Jan\AppData\Local\Logitech
2019-08-17 14:06 - 2019-08-17 14:06 - 000000000 ____D C:\ProgramData\LogiShrd
2019-08-17 14:05 - 2019-08-17 14:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2019-08-17 14:05 - 2019-08-17 14:05 - 000000000 ____D C:\Program Files\Logitech Gaming Software
2019-08-17 14:04 - 2019-08-17 14:04 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Logitech
2019-08-17 14:04 - 2019-08-17 14:04 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Logishrd
2019-08-15 15:57 - 2019-08-15 15:57 - 000000202 _____ C:\Users\Jan\Desktop\PLAYERUNKNOWN'S BATTLEGROUNDS.url
2019-08-14 20:26 - 2019-08-14 20:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2019-08-14 17:43 - 2019-08-25 01:34 - 000011667 _____ C:\Users\Jan\Desktop\macros.xlsx
2019-08-14 15:52 - 2019-08-14 15:52 - 026808320 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 023453696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 022114960 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 020816896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 019011584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 012939776 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 012244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 011724288 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 009941504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 009682744 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 008900608 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 007921664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 007884288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 007871488 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 007687784 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 007645392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 006925312 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 006544552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 006441472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 006308016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 006065152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 005764608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 005587968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 005570968 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 005086208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 004737536 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 004628992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 004588544 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 004351656 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 004344832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 004056576 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003978240 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003818632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 003656704 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003635200 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 003614720 _____ (Microsoft Corporation) C:\Windows\system32\tellib.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003567104 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003385856 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003363856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 003335224 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 003333632 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002999808 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002942976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002926096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 002842112 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002778760 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002767160 _____ (Microsoft Corporation) C:\Windows\system32\UpdateAgent.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002765312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 002700792 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002593544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002469440 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002438576 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002421760 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 002346496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002323688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002298880 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002278792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002189312 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002177336 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002096128 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-08-14 15:52 - 2019-08-14 15:52 - 002073232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002022096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 002017792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2019-08-14 15:52 - 2019-08-14 15:52 - 001966904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 001892864 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001733120 _____ (Microsoft Corporation) C:\Windows\system32\CoreShell.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001715712 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001715000 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001711104 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001701888 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001701880 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-08-14 15:52 - 2019-08-14 15:52 - 001674752 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001668752 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001662264 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001641400 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001605632 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001506304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001485312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001483872 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001479184 _____ (Microsoft Corporation) C:\Windows\system32\rdpbase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001477432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001472568 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001466880 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001465984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001391096 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001344960 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-08-14 15:52 - 2019-08-14 15:52 - 001321784 _____ (Microsoft Corporation) C:\Windows\system32\wpx.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001294488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001290752 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001280000 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001278808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001267712 _____ (Microsoft Corporation) C:\Windows\system32\APMon.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001260560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 001257472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001253688 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001232384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 001224704 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001222160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpbase.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001221528 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001205248 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001182240 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001180464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001171968 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001160704 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001098272 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001057792 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001054712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001048376 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 001038336 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001020416 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001008640 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 001004544 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000993792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000980992 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000956416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000927232 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000900096 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000895792 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000889344 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000888832 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000882688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000869888 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000864568 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000853504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000850976 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000840192 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000833024 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000831288 _____ (Microsoft Corporation) C:\Windows\system32\AppVClient.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000816640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000806024 _____ (Microsoft Corporation) C:\Windows\system32\BioIso.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000799784 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000794040 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000791040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000788480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000783184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000771072 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000764416 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000763392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000758688 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000743224 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000732168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000730112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FlightSettings.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000684544 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000684032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000680184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000678680 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000669184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000664576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000658944 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000652088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000649528 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000632320 _____ (Microsoft Corporation) C:\Windows\system32\SyncController.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000622080 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000616960 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000603280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000586256 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000580024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000574464 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000553784 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000535056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000532992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000529408 _____ (Microsoft Corporation) C:\Windows\system32\ShellCommonCommonProxyStub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000525824 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000523776 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000522104 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000519168 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000515440 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000508968 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncController.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000495104 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000482104 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000449576 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000447488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000444728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000440320 _____ (Microsoft Corporation) C:\Windows\system32\P2PGraph.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000431616 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000425984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000415744 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000407040 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000398928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000398848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000396088 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000394240 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000387832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000385536 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000383504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000378880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Lights.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000375752 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000371200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Diagnostics.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000363520 _____ (Microsoft Corporation) C:\Windows\system32\LicensingDiagSpp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000360960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2PGraph.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000356352 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000349696 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000349184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000346624 _____ (Microsoft Corporation) C:\Windows\system32\ncryptprov.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000345600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000334848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicensingDiagSpp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.SystemManagement.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000317952 _____ (Microsoft Corporation) C:\Windows\system32\ComposableShellProxyStub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000317240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssecflt.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000310072 _____ (Microsoft Corporation) C:\Windows\system32\computestorage.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000305664 _____ (Microsoft Corporation) C:\Windows\system32\wc_storage.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000297984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Diagnostics.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000294512 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000281600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptprov.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000278624 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000270848 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000264704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Lights.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000262336 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicCapsule.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000254976 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShellCommonCommonProxyStub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000253256 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000248120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000241664 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000241664 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000230848 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.SystemManagement.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000228352 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000217088 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2019-08-14 15:52 - 2019-08-14 15:52 - 000212792 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000205824 _____ (Microsoft Corporation) C:\Windows\system32\p2pnetsh.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000203064 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000201528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000200504 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SIUF.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000197632 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000193536 _____ (Microsoft Corporation) C:\Windows\system32\Win32CompatibilityAppraiserCSP.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000193040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000189712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000182784 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000180736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2019-08-14 15:52 - 2019-08-14 15:52 - 000180224 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000178176 _____ (Microsoft Corporation) C:\Windows\system32\appsruprov.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000177664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\p2pnetsh.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000173568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000173216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000165888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComposableShellProxyStub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000152576 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSoftwareInstallationClient.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000152408 _____ (Microsoft Corporation) C:\Windows\system32\KerbClientShared.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000152080 _____ (Microsoft Corporation) C:\Windows\system32\rmclient.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000148480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000141736 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000134968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scmbus.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000125440 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000125016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KerbClientShared.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000122368 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000121656 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000120832 _____ (Microsoft Corporation) C:\Windows\system32\updatecsp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000118480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wldp.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pmem.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000114128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rmclient.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\usoapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\drvsetup.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000107008 _____ (Microsoft Corporation) C:\Windows\system32\CoreShellExtFramework.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000104248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bindflt.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000092832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2019-08-14 15:52 - 2019-08-14 15:52 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\DiskSnapshot.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvsetup.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000087056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\Groupinghc.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000071168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usoapi.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\hmkd.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000058882 _____ C:\Windows\system32\srms.dat
2019-08-14 15:52 - 2019-08-14 15:52 - 000058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000056320 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\UsoClient.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\WindowsUpdateElevatedInstaller.exe
2019-08-14 15:52 - 2019-08-14 15:52 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hmkd.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000032784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000032568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\uefi.sys
2019-08-14 15:52 - 2019-08-14 15:52 - 000027136 _____ (Microsoft Corporation) C:\Windows\system32\kdcpw.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shunimpl.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2019-08-14 15:52 - 2019-08-14 15:52 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2019-08-14 00:12 - 2019-08-14 00:12 - 000000000 ____D C:\Users\Jan\Documents\CPY_SAVES
2019-08-14 00:12 - 2019-08-14 00:12 - 000000000 ____D C:\Users\Jan\Documents\Assassin's Creed Odyssey
2019-08-13 13:49 - 2019-08-13 13:49 - 000051024 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2019-08-13 13:49 - 2019-08-13 13:49 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2019-08-13 13:49 - 2019-08-13 13:49 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2019-08-13 13:49 - 2019-08-13 13:49 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2019-08-09 22:36 - 2019-08-09 22:37 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Sekiro
2019-08-08 19:27 - 2019-08-08 19:27 - 000174768 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdihk64.dll
2019-08-08 19:27 - 2019-08-08 19:27 - 000146440 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdihk32.dll

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-09-06 12:05 - 2019-05-11 23:13 - 000000000 ____D C:\Users\Jan\AppData\Roaming\uTorrent
2019-09-06 11:45 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-09-06 02:08 - 2019-05-14 23:51 - 000000000 ____D C:\Users\Jan\AppData\Local\Battle.net
2019-09-06 00:07 - 2019-07-13 12:33 - 000000000 ____D C:\Users\Jan\AppData\Roaming\TS3Client
2019-09-05 18:00 - 2019-05-11 14:13 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-09-05 17:43 - 2019-05-11 14:24 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2019-09-05 17:17 - 2019-05-11 14:17 - 001693636 _____ C:\Windows\system32\PerfStringBackup.INI
2019-09-05 17:17 - 2018-09-15 19:39 - 000716902 _____ C:\Windows\system32\perfh005.dat
2019-09-05 17:17 - 2018-09-15 19:39 - 000144982 _____ C:\Windows\system32\perfc005.dat
2019-09-05 17:17 - 2018-09-15 09:31 - 000000000 ____D C:\Windows\INF
2019-09-05 17:11 - 2019-05-11 14:19 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-09-05 17:11 - 2019-05-11 14:15 - 000000000 ____D C:\Users\Jan
2019-09-05 17:11 - 2019-05-11 14:13 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-09-05 17:11 - 2018-09-15 08:09 - 000524288 _____ C:\Windows\system32\config\BBI
2019-09-05 17:08 - 2019-05-11 14:19 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Discord
2019-09-05 12:06 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-09-05 12:06 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\AppReadiness
2019-09-05 11:44 - 2019-07-28 19:53 - 000000000 ____D C:\Users\Jan\AppData\Roaming\Twitch
2019-09-05 10:28 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\LiveKernelReports
2019-09-04 20:44 - 2019-05-11 18:29 - 000000000 ____D C:\Users\Jan\AppData\Local\D3DSCache
2019-09-04 17:51 - 2019-05-11 14:17 - 000000000 ___RD C:\Users\Jan\OneDrive
2019-09-04 11:54 - 2019-05-11 14:16 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-09-04 11:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\Registration
2019-09-04 00:25 - 2019-05-11 23:14 - 000000000 ____D C:\Users\Jan\AppData\Local\CrashDumps
2019-09-03 12:28 - 2019-05-11 14:24 - 001030784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000478096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000387176 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000282768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000263008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000209552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000205848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000112312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000087944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000061472 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000037104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-09-03 12:28 - 2019-05-11 14:24 - 000003990 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-09-03 12:28 - 2018-09-15 09:33 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-08-29 20:20 - 2019-05-11 14:19 - 000001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 14.lnk
2019-08-29 17:50 - 2019-05-11 15:07 - 000000000 ____D C:\Windows\Panther
2019-08-27 12:23 - 2019-05-11 14:20 - 000000934 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2019-08-27 12:23 - 2019-05-11 14:20 - 000000930 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2019-08-27 12:22 - 2019-06-01 20:23 - 000003410 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{D2602DB7-2170-4412-B589-1B0860A440A0}
2019-08-27 12:22 - 2019-05-13 10:59 - 000003542 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2019-08-27 12:22 - 2019-05-11 14:20 - 000003508 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA
2019-08-27 12:22 - 2019-05-11 14:20 - 000003284 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore
2019-08-27 12:22 - 2019-05-11 14:18 - 000003460 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-08-27 12:22 - 2019-05-11 14:18 - 000003236 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-08-27 01:27 - 2019-05-11 14:18 - 000002304 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-08-27 00:39 - 2019-07-13 12:33 - 000000000 ____D C:\Program Files\TeamSpeak 3 Client
2019-08-26 19:38 - 2019-07-24 19:30 - 000000000 ____D C:\Users\Jan\AppData\Roaming\EasyAntiCheat
2019-08-25 16:11 - 2019-07-13 12:33 - 000000000 ____D C:\ProgramData\Package Cache
2019-08-25 16:06 - 2019-05-11 16:51 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-08-25 16:06 - 2019-05-11 16:47 - 001169008 _____ C:\Windows\ntbtlog.txt
2019-08-25 16:06 - 2019-05-11 16:47 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job
2019-08-25 16:06 - 2019-05-11 14:34 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-08-25 16:06 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\Help
2019-08-25 12:48 - 2019-05-11 16:51 - 000003016 _____ C:\Windows\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000003016 _____ C:\Windows\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000003016 _____ C:\Windows\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000002984 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000002956 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000002838 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-25 12:48 - 2019-05-11 16:51 - 000002744 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-24 12:33 - 2019-05-13 10:59 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-08-21 17:48 - 2019-07-27 22:20 - 000283480 _____ (Sysprogs OU) C:\Windows\system32\Drivers\BazisPortableCDBus.sys
2019-08-19 00:25 - 2019-06-16 12:33 - 000000000 ____D C:\Users\Jan\AppData\Roaming\obs-studio
2019-08-17 14:10 - 2019-07-22 16:32 - 000000000 ____D C:\Users\Jan\AppData\Local\UnrealEngine
2019-08-17 12:01 - 2019-05-11 18:27 - 000000273 _____ C:\Users\Jan\Desktop\Dofus.txt
2019-08-15 11:28 - 2019-05-11 14:16 - 000000000 ___RD C:\Users\Jan\3D Objects
2019-08-15 11:28 - 2019-05-11 14:13 - 000361328 _____ C:\Windows\system32\FNTCACHE.DAT
2019-08-15 01:45 - 2018-09-15 19:40 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ___SD C:\Windows\system32\UNP
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\SysWOW64\oobe
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\oobe
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\Provisioning
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-08-15 01:45 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\bcastdvr
2019-08-14 20:26 - 2019-05-11 14:20 - 000000000 ____D C:\Program Files (x86)\Dropbox
2019-08-14 15:55 - 2019-05-11 14:22 - 000000000 ____D C:\Windows\system32\MRT
2019-08-14 15:53 - 2019-05-11 14:22 - 134272480 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-08-14 15:53 - 2018-09-15 09:23 - 000000000 ____D C:\Windows\CbsTemp
2019-08-12 13:27 - 2019-05-18 10:24 - 000000600 _____ C:\Users\Jan\AppData\Roaming\winscp.rnd
2019-08-10 15:41 - 2019-07-28 20:02 - 000000000 ____D C:\Users\Jan\AppData\Roaming\.minecraft
2019-08-08 21:38 - 2019-07-07 21:14 - 000000000 ____D C:\Windows\system32\appmgmt
2019-08-08 21:37 - 2019-05-11 23:19 - 000000000 ____D C:\Program Files\PerformanceTest

==================== Files in the root of some directories ================

2019-05-18 10:24 - 2019-08-12 13:27 - 000000600 _____ () C:\Users\Jan\AppData\Roaming\winscp.rnd
2019-06-05 22:35 - 2019-06-05 22:35 - 000003968 _____ () C:\Users\Jan\AppData\Local\recently-used.xbel

==================== FLock ================

2019-05-11 14:14 C:\Windows\CSC

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================
Přílohy
Addition.zip
(10.03 KiB) Staženo 60 x

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Win 10 modra smrt

#6 Příspěvek od Conder »

:arrow: Zapni obnovu systemu
  • Stlac Win+R, napis "sysdm.cpl" (bez uvodzoviek) a stlac enter
  • Klikni na kartu Ochrana systemu a potom na Konfigurovat
  • Vyber moznost Zapnut ochranu systemu a klikni na OK
:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    File: C:\Program Files (x86)\Audible\Bin\AudibleDownloadHelper.exe
    File: C:\Program Files (x86)\GIGABYTE\AORUS ENGINE\autorun.exe
    File: C:\Users\Jan\AppData\Local\Temp\7zSB5FA.tmp\N2080_FW_Upgrade_Tool_V003\GPCIDrv64.sys
    
    HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {42d20e16-c0f0-11e9-9f10-5cf370723daa} - "F:\setup.exe" 
    HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {5b0e854e-c1a9-11e9-9f10-5cf370723daa} - "F:\setup.exe" 
    HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {6c3ec4a5-b1e2-11e9-9f09-7085c263a56c} - "F:\setup.exe" 
    HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {d88565f3-ae44-11e9-9f09-7085c263a56c} - "F:\setup.exe" 
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Audible Download Manager.lnk [2019-07-14]
    Startup: C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE AORUS GRAPHICS ENGINE.lnk [2019-08-04]
    CustomCLSID: HKU\S-1-5-21-1654744143-2277480789-2242274244-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Jan\AppData\Local\Microsoft\OneDrive\19.152.0801.0007\amd64\FileSyncShell64.dll => No File
    CustomCLSID: HKU\S-1-5-21-1654744143-2277480789-2242274244-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Jan\AppData\Local\Microsoft\OneDrive\19.152.0801.0007\amd64\FileSyncShell64.dll => No File
    CustomCLSID: HKU\S-1-5-21-1654744143-2277480789-2242274244-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Jan\AppData\Local\Microsoft\OneDrive\19.152.0801.0007\amd64\FileSyncShell64.dll => No File
    AlternateDataStreams: C:\Users\Jan\Data aplikací:00e481b5e22dbe1f649fcddd505d3eb7 [394]
    AlternateDataStreams: C:\Users\Jan\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]
    FirewallRules: [TCP Query User{D2BBAB0E-6EBE-4392-AA65-D45CC764F16E}D:\dokumenty\internet copy\download\enigma\dreamboxedit.exe] => (Allow) D:\dokumenty\internet copy\download\enigma\dreamboxedit.exe No File
    FirewallRules: [UDP Query User{77B96CEA-3619-474E-B9C0-C88F1BB47BEB}D:\dokumenty\internet copy\download\enigma\dreamboxedit.exe] => (Allow) D:\dokumenty\internet copy\download\enigma\dreamboxedit.exe No File
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

blekota
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 črc 2017 11:50

Re: Win 10 modra smrt

#7 Příspěvek od blekota »

Kód: Vybrat vše

Fix result of Farbar Recovery Scan Tool (x64) Version: 04-09-2019
Ran by Jan (07-09-2019 17:56:03) Run:1
Running from C:\Users\Jan\Desktop
Loaded Profiles: Jan & Administrator (Available Profiles: Jan & Administrator)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
File: C:\Program Files (x86)\Audible\Bin\AudibleDownloadHelper.exe
File: C:\Program Files (x86)\GIGABYTE\AORUS ENGINE\autorun.exe
File: C:\Users\Jan\AppData\Local\Temp\7zSB5FA.tmp\N2080_FW_Upgrade_Tool_V003\GPCIDrv64.sys

HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {42d20e16-c0f0-11e9-9f10-5cf370723daa} - "F:\setup.exe"
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {5b0e854e-c1a9-11e9-9f10-5cf370723daa} - "F:\setup.exe"
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {6c3ec4a5-b1e2-11e9-9f09-7085c263a56c} - "F:\setup.exe"
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\...\MountPoints2: {d88565f3-ae44-11e9-9f09-7085c263a56c} - "F:\setup.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Audible Download Manager.lnk [2019-07-14]
Startup: C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE AORUS GRAPHICS ENGINE.lnk [2019-08-04]
CustomCLSID: HKU\S-1-5-21-1654744143-2277480789-2242274244-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Jan\AppData\Local\Microsoft\OneDrive\19.152.0801.0007\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-1654744143-2277480789-2242274244-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Jan\AppData\Local\Microsoft\OneDrive\19.152.0801.0007\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-1654744143-2277480789-2242274244-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Jan\AppData\Local\Microsoft\OneDrive\19.152.0801.0007\amd64\FileSyncShell64.dll => No File
AlternateDataStreams: C:\Users\Jan\Data aplikac�:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\Jan\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]
FirewallRules: [TCP Query User{D2BBAB0E-6EBE-4392-AA65-D45CC764F16E}D:\dokumenty\internet copy\download\enigma\dreamboxedit.exe] => (Allow) D:\dokumenty\internet copy\download\enigma\dreamboxedit.exe No File
FirewallRules: [UDP Query User{77B96CEA-3619-474E-B9C0-C88F1BB47BEB}D:\dokumenty\internet copy\download\enigma\dreamboxedit.exe] => (Allow) D:\dokumenty\internet copy\download\enigma\dreamboxedit.exe No File

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count    : 34
Average  : 
Sum      : 1853826
Maximum  : 
Minimum  : 
Property : Length




========= End of Powershell: =========


========================= File: C:\Program Files (x86)\Audible\Bin\AudibleDownloadHelper.exe ========================

"C:\Program Files (x86)\Audible\Bin\AudibleDownloadHelper.exe" => not found
====== End of File: ======


========================= File: C:\Program Files (x86)\GIGABYTE\AORUS ENGINE\autorun.exe ========================

"C:\Program Files (x86)\GIGABYTE\AORUS ENGINE\autorun.exe" => not found
====== End of File: ======


========================= File: C:\Users\Jan\AppData\Local\Temp\7zSB5FA.tmp\N2080_FW_Upgrade_Tool_V003\GPCIDrv64.sys ========================

C:\Users\Jan\AppData\Local\Temp\7zSB5FA.tmp\N2080_FW_Upgrade_Tool_V003\GPCIDrv64.sys
File is digitally signed
MD5: 5D4DF0BAC74E9AC62AF6BC99440B050B
Creation and modification date: 2019-08-04 00:38 - 2018-10-26 08:11
Size: 000014376
Attributes: ----N
Company Name: Giga-Byte Technology -> 
Internal Name: 
Original Name: 
Product: 
Description: 
File Version: 
Product Version: 
Copyright: 
VirusTotal: https://www.virustotal.com/file/655110646bff890c448c0951e11132dc3592bda6e080696341b930d090224723/analysis/1556479640/

====== End of File: ======

HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{42d20e16-c0f0-11e9-9f10-5cf370723daa} => removed successfully
HKLM\Software\Classes\CLSID\{42d20e16-c0f0-11e9-9f10-5cf370723daa} => not found
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5b0e854e-c1a9-11e9-9f10-5cf370723daa} => removed successfully
HKLM\Software\Classes\CLSID\{5b0e854e-c1a9-11e9-9f10-5cf370723daa} => not found
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6c3ec4a5-b1e2-11e9-9f09-7085c263a56c} => removed successfully
HKLM\Software\Classes\CLSID\{6c3ec4a5-b1e2-11e9-9f09-7085c263a56c} => not found
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d88565f3-ae44-11e9-9f09-7085c263a56c} => removed successfully
HKLM\Software\Classes\CLSID\{d88565f3-ae44-11e9-9f09-7085c263a56c} => not found
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Audible Download Manager.lnk => moved successfully
C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE AORUS GRAPHICS ENGINE.lnk => moved successfully
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => removed successfully
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => removed successfully
HKU\S-1-5-21-1654744143-2277480789-2242274244-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => removed successfully
"C:\Users\Jan\Data aplikac�" => ":00e481b5e22dbe1f649fcddd505d3eb7" ADS not found.
C:\Users\Jan\AppData\Roaming => ":00e481b5e22dbe1f649fcddd505d3eb7" ADS removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D2BBAB0E-6EBE-4392-AA65-D45CC764F16E}D:\dokumenty\internet copy\download\enigma\dreamboxedit.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{77B96CEA-3619-474E-B9C0-C88F1BB47BEB}D:\dokumenty\internet copy\download\enigma\dreamboxedit.exe" => removed successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 11558912 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 121415788 B
Java, Flash, Steam htmlcache => 47081142 B
Windows/system/drivers => 108288 B
Edge => 1093493 B
Chrome => 331044986 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 77630 B
LocalService => 0 B
NetworkService => 1668 B
NetworkService => 0 B
Jan => 135348685 B
Administrator => 36603844 B

RecycleBin => 73243 B
EmptyTemp: => 652.7 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 17:58:14 ====

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Win 10 modra smrt

#8 Příspěvek od Conder »

:arrow: Urob v Malwarebytes uplny sken
  • Stiahni a nainstaluj Malwarebytes (MB/MBAM): https://www.malwarebytes.com/mwb-download/thankyou/
  • Otvor Malwarebytes a vlavo klikni na "Skenovat"
  • Klikni na "Vlastne skenovanie" a potom na "Nakonfigurovat skenovanie" (Nastavit sken)
  • Vpravo oznac vsetky disky v PC a vlavo oznac moznost "Vyhladavat rootkity"
  • Klikni na Skenovat teraz a pockaj na dokoncenie
  • Po dokonceni klikni na Exportovat zhrnutie -> Skopirovat do schranky
  • Skopirovany log vloz do dalsej odpovede
  • Obrazkovy navod (bohuzial pre starsiu verziu): https://forum.viry.cz/viewtopic.php?f=29&t=144868
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

blekota
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 črc 2017 11:50

Re: Win 10 modra smrt

#9 Příspěvek od blekota »

Kód: Vybrat vše

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 09.09.19
Čas skenování: 11:32
Logovací soubor: b33a138e-d2e4-11e9-8e01-7085c263a56c.json

-Informace o softwaru-
Verze: 3.8.3.2965
Verze komponentů: 1.0.613
Aktualizovat verzi balíku komponent: 1.0.12381
Licence: Zkušební

-Systémová informace-
OS: Windows 10 (Build 17763.678)
CPU: x64
Systém souborů: NTFS
Uživatel: DESKTOP-CVD1H1S\Jan

-Shrnutí skenování-
Typ skenování: Vlastní skenování
Spuštění skenování: Ruční
Výsledek: Dokončeno
Skenované objekty: 671614
Zjištěné hrozby: 2
Hrozby umístěné do karantény: 0
Uplynulý čas: 57 min, 14 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Povoleno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)

Soubor: 2
Adware.InstallCore, D:\DOKUMENTY\INTERNET COPY\DOWNLOAD\MESSENGERFORDESKTOP_SETUP_0353118085.EXE, Žádná uživatelská akce, [452], [681051],1.0.12381
Generic.Malware/Suspicious, D:\IMAGE\SW\HIREN'S BOOTCD\HBCDCUSTOMIZE.EXE, Žádná uživatelská akce, [0], [392686],1.0.12381

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)

WMI: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Win 10 modra smrt

#10 Příspěvek od Conder »

:arrow: OK, PC vyzera cisty co sa tyka malware.

:arrow: Spusti kontrolu integrity systemovych suborov:
  • Otvor Start, napis "cmd" (bez uvodzoviek), klikni pravym tlacitkom mysi na Prikazovy riadok a klikni na Spustit ako spravca
  • Skopiruj a spusti prikaz:

    Kód: Vybrat vše

    DISM.exe /Online /Cleanup-image /Restorehealth
  • Po dokonceni skopiruj a spusti druhy prikaz:

    Kód: Vybrat vše

    sfc /scannow
  • Po dokonceni obidvoch prikazov skopiruj a spusti tento prikaz:

    Kód: Vybrat vše

    findstr /c:"[SR]" %windir%\logs\cbs\cbs.log >> "%userprofile%\desktop\sfcdetails.txt" && copy %windir%\logs\dism\dism.log %userprofile%\desktop\dism.txt
  • Na ploche sa vytvoria subory sfcdetails.txt a dism.txt, tieto subory zabal ho do archivu RAR alebo ZIP a posli ako prilohu k dalsiemu prispevku
  • Restartuj PC a napis ako sa chova PC
:arrow: Ak BSOD pretrvavaju, mozme potom este skontrolovat HW.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

blekota
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 črc 2017 11:50

Re: Win 10 modra smrt

#11 Příspěvek od blekota »

přikládám
Přílohy
sfcdetails.zip
(314.88 KiB) Staženo 38 x

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Win 10 modra smrt

#12 Příspěvek od Conder »

:arrow: Ako to momentalne vyzera s PC? Vyskytuju sa este BSOD (modre obrazovky smrti)?
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

blekota
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 črc 2017 11:50

Re: Win 10 modra smrt

#13 Příspěvek od blekota »

ano, stale ta sama hlaska v event logu. prisel jsem na to, ze to dela jen kdyz pustim YT video, ne pokazde, ani ne pokazde po restartu, ale kdyz uz to spadne, tak pri YT

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Win 10 modra smrt

#14 Příspěvek od Conder »

Aka je v PC graficka karta?

Ak Nvidia, chod na stranku nvidia.com/drivers, vypln udaje o grafickej karte a operacnom systeme (Windows 10 64-bit), stiahni aktualnu verziu ovladacu a nainstaluj. Pri instalacii oznac moznost Vykonat uplnu instalaciu.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

blekota
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 črc 2017 11:50

Re: Win 10 modra smrt

#15 Příspěvek od blekota »

Měl jsem nově AMD, to sem vrátil a teď mám nVidii a už to nepadá, takže asi vyřešeno :)

Odpovědět