Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil se

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Martin D.
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 29 bře 2009 11:09

Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil se

#1 Příspěvek od Martin D. »

Dobrý den,

Nedopatřením nebo svou blbostí jsem odklikl přihlášení na discordu, viz obrázek v příloze. Přihlásil jsem se tam a zadal své údaje k discordu a na můj kanál to hodilo asi fakeového bota, kterého jsem hned zablokoval. Ihned jsem si změnil heslo k discordu a Vás bych chtěl poprosit o kontrolu logů, zda se mi do pc nedostal nějaký nežádoucí.

Děkuji. Udělal jsem blbost. :(

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-04-2020
Ran by Admin (administrator) on DESKTOP-CTPNGS7 (Micro-Star International Co., Ltd. MS-7B48) (06-04-2020 22:32:14)
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin (Available Profiles: Admin)
Platform: Windows 10 Pro Version 1909 18363.752 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files (x86)\VATSpy\VATSpy.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Admin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19081.28230.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12003.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20022.82.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\Display.NvContainer\NVDisplay.Container.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(ROCCAT GmbH -> ROCCAT) C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_Swarm_Monitor.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [956920 2020-02-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [185648 2020-04-03] (ESET, spol. s r.o. -> ESET)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3371296 2020-04-04] (Valve -> Valve Corporation)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [Discord] => C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe [90950968 2020-02-24] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\MountPoints2: {deb0a980-54b6-11ea-b6f1-309c23aeb77d} - "E:\Installer_Windows.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.163\Installer\chrmstp.exe [2020-04-03] (Google LLC -> Google LLC)
Startup: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2020-02-25]
ShortcutTarget: Twitch.lnk -> C:\Users\Admin\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ROCCAT Swarm Monitor.lnk [2020-02-25]
ShortcutTarget: ROCCAT Swarm Monitor.lnk -> C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_Swarm_Monitor.exe (ROCCAT GmbH -> ROCCAT)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {02C51C79-BF2C-4895-9B06-A535EC0E733D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115032 2020-03-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {087C634A-271A-45A8-917B-FDAEE245A6DC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {0AB667EC-DC1C-4E36-A0B8-0834BB954077} - System32\Tasks\ROCCAT DEVICE SERVICE => C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_dev_service.exe [442264 2020-02-13] (ROCCAT GmbH -> ROCCAT)
Task: {1FB799AA-DB32-4B90-9676-2921C7E9D276} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {25CE8071-03C3-4B1E-BD68-D0B598EF77B3} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653848 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {345BAEAC-B3A9-4741-92E7-DA728C87A8F9} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {38976440-6BD8-4258-B12E-1A248F968A8B} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3B048FE4-0B55-49D4-9EA5-0885CDE03D4B} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {490A9139-8BB7-4DC9-A1CD-69DD31042F99} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {49A0F94B-BABE-4CC2-B7F5-7BAFB547E37B} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {51615761-AC6C-4A77-A673-61DCB9122CE7} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115032 2020-03-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {5EFEEFB1-A6D0-4AE9-86E4-CEB15FB2BF2D} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {65B6C09B-19B1-4C76-8028-6B2BC691DBA2} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {66986F72-FA8A-4BFC-B637-90DA6AEA400D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24600440 2020-03-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {7CC8F553-BFEE-488E-A6DA-3FE519DC1BC7} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1443424 2020-03-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {7EEC4FB8-72A9-4A40-A411-CA5A8D2845EF} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24600440 2020-03-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {88205B92-4DF6-4015-96F8-F950C3A70159} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302880 2019-12-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {90216E3B-7A79-4CCB-8492-87ECB1FD8657} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-25] (Google LLC -> Google LLC)
Task: {90FD74AF-7FE0-4528-AC1E-4E20E602A0DD} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {ABCA8327-D587-4749-9A4B-DDB6AE2CFF08} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F90AB258-E98E-4F49-836F-69C5614EFDD8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-25] (Google LLC -> Google LLC)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{ee3fbf1a-8b95-4acf-845c-ef6ad6a45b3d}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-03-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-03-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-03-06] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default [2020-04-06]
CHR Notifications: Default -> hxxps://play.gll.gg; hxxps://teams.microsoft.com; hxxps://virtualsoaring.eu
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.facebook.com/"
CHR DefaultSearchURL: Default -> hxxps://skysight.io/ozsoar/img/logo-192.png
CHR Session Restore: Default -> is enabled.
CHR Extension: (Překladač Google) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-03-19]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-04-05]
CHR Extension: (FACEIT Enhancer) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mokknliiomknodkdmpcellamkopbdmao [2020-02-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-02-25]
CHR Extension: (Rychlý přesun Google) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc [2020-02-25]
CHR Extension: (SkySight) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pamakffedijpmmlnfbnockomoafhiiec [2020-02-25]
CHR Extension: (Chrome Media Router) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-03]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8553552 2020-03-18] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11091224 2020-03-05] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2020-02-25] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-03] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-03] (ESET, spol. s r.o. -> ESET)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
R2 RtkAudioUniversalService; C:\Windows\System32\RtkAudUService64.exe [956920 2020-02-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5930136 2020-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13206544 2020-02-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [231936 2019-10-07] (Microsoft Corporation) [File not signed]
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [154336 2020-04-03] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [106840 2020-03-20] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15800 2019-10-16] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [188872 2020-03-20] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [53048 2020-03-20] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [79520 2020-03-20] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [115960 2020-03-20] (ESET, spol. s r.o. -> ESET)
R3 MEIx64; C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_84dfa9390100e6bc\x64\TeeDriverW8x64.sys [253840 2019-05-12] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\nvlddmkm.sys [23439288 2020-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [75600 2019-08-22] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [662528 2019-03-19] (Microsoft Windows -> Realtek )
R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [44080 2016-09-27] (Shaul Eizikovich -> Nefarius Software Solutions)
R3 VirtualHID; C:\Windows\System32\drivers\VirtualHID.sys [26768 2020-02-05] (Voyetra Turtle Beach, Inc. -> TurtleBeach)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [45664 2020-02-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [355760 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [54192 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz149; \??\C:\Windows\temp\cpuz149\cpuz149_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-04-06 22:32 - 2020-04-06 22:32 - 000022214 _____ C:\Users\Admin\Desktop\FRST.txt
2020-04-06 22:31 - 2020-04-06 22:32 - 000000000 ____D C:\FRST
2020-04-06 22:21 - 2020-04-06 22:21 - 002281472 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe
2020-04-06 16:42 - 2020-04-06 16:42 - 000554512 _____ C:\Users\Admin\Downloads\6.4.2020.xlsx
2020-04-06 16:14 - 2020-04-06 16:14 - 000000017 _____ C:\Users\Admin\Desktop\účet.txt
2020-04-06 14:04 - 2020-04-06 14:04 - 000000000 ___HD C:\OneDriveTemp
2020-04-05 20:12 - 2020-04-05 20:15 - 509643790 _____ C:\Users\Admin\Downloads\BSS FFA320V1.5.zip
2020-04-04 14:09 - 2020-04-04 14:09 - 000000000 ____D C:\Users\Admin\AppData\Roaming\HiFi
2020-04-04 14:05 - 2020-04-04 14:05 - 000001135 _____ C:\Users\Admin\Desktop\Active Sky XP.lnk
2020-04-04 14:05 - 2020-04-04 14:05 - 000000143 _____ C:\Users\Admin\Desktop\AS Wx Web Companion.url
2020-04-04 14:05 - 2020-04-04 14:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiFi
2020-04-04 11:25 - 2020-04-04 11:25 - 000000000 ____D C:\ProgramData\boost_interprocess
2020-04-03 15:28 - 2020-04-03 15:28 - 000000000 ____D C:\Users\Admin\AppData\Local\PilotUI
2020-04-03 15:28 - 2020-04-03 15:28 - 000000000 ____D C:\Users\Admin\AppData\Local\cache
2020-04-03 15:24 - 2020-04-03 16:35 - 000000000 ____D C:\Program Files (x86)\Teamspeak2_RC2
2020-04-03 12:59 - 2020-04-03 12:59 - 000034064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lhacm.acm
2020-04-03 12:59 - 2020-04-03 12:59 - 000000000 ____D C:\Users\Admin\AppData\Roaming\teamspeak2
2020-04-03 12:39 - 2020-04-03 12:39 - 000000157 _____ C:\Users\Admin\Documents\IVAO.txt
2020-04-03 11:55 - 2020-04-03 11:57 - 000000000 ____D C:\Users\Admin\AppData\Roaming\IVAO
2020-04-03 11:55 - 2020-04-03 11:55 - 000000000 ____D C:\ProgramData\Oracle
2020-04-02 09:01 - 2020-04-02 09:01 - 000086927 _____ C:\Users\Admin\Downloads\BP 2020.xlsx
2020-04-01 11:16 - 2020-04-01 11:16 - 000000000 ____D C:\Users\Public\Documents\FSLabs Data
2020-04-01 11:16 - 2020-04-01 11:16 - 000000000 ____D C:\Users\Admin\AppData\Roaming\IsolatedStorage
2020-04-01 11:16 - 2020-04-01 11:16 - 000000000 ____D C:\ProgramData\IsolatedStorage
2020-04-01 11:16 - 2020-04-01 11:16 - 000000000 ____D C:\Program Files\FlightSimLabs
2020-03-31 19:26 - 2020-03-31 19:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XHT-Labs
2020-03-31 18:32 - 2020-04-04 14:05 - 000000000 ____D C:\Program Files (x86)\HiFi
2020-03-31 12:57 - 2020-03-31 12:57 - 000000000 ____D C:\Users\Admin\AppData\Local\Lockheed Martin
2020-03-31 12:57 - 2020-03-31 12:57 - 000000000 ____D C:\ProgramData\Lockheed Martin
2020-03-29 17:56 - 2020-03-29 17:56 - 000001936 _____ C:\Users\Admin\Desktop\VATSpy.lnk
2020-03-29 17:56 - 2020-03-29 17:56 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VATSpy
2020-03-29 16:36 - 2020-03-29 16:36 - 000001287 _____ C:\Users\Admin\Desktop\smartCARS - DLH Virtual (en-US).lnk
2020-03-29 16:36 - 2020-03-29 16:36 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TFDi Design
2020-03-29 16:36 - 2020-03-29 16:36 - 000000000 ____D C:\Program Files (x86)\smartCARS
2020-03-29 16:33 - 2020-03-29 16:33 - 000000000 ____D C:\Users\Admin\AppData\Local\FS-Products
2020-03-29 16:32 - 2020-03-29 16:32 - 000000000 ____D C:\Users\Admin\Documents\FS Products
2020-03-29 11:54 - 2020-04-06 14:29 - 000000000 ____D C:\ZIBO updater
2020-03-29 11:52 - 2020-04-06 14:30 - 000000000 ____D C:\Users\Admin\Downloads\ZIBO update
2020-03-28 16:16 - 2020-03-28 16:18 - 000000000 ____D C:\Users\Admin\AppData\Local\org.swift-project
2020-03-28 10:51 - 2020-03-28 10:51 - 025444352 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 022636544 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 019813376 _____ (Microsoft Corporation) C:\Windows\system32\HologramWorld.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 018027008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 017790464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 014818816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 009930552 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 008013824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 007849216 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 007604584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 007017472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 006525424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 006168064 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 004563200 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 004129416 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003977216 _____ (Microsoft Corporation) C:\Windows\system32\tellib.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003799552 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003753472 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003742544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003728384 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 003708928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003586872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 003547648 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003109376 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002986808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 002871608 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 002800128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 002768440 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002494744 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002369576 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.AppAgent.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002188600 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002143232 _____ (Microsoft Corporation) C:\Windows\system32\WpcDesktopMonSvc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002126144 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002114560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002087168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001960448 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001945600 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001942528 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001918976 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001835008 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001783296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001762816 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001757096 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-03-28 10:51 - 2020-03-28 10:51 - 001726264 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001719808 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001659408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.AppAgent.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001610240 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001587712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001545216 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001512832 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001497600 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001495864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVEntSubsystems32.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001480192 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001477112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001427456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001413704 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001397560 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001386296 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystemController.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001378528 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001368576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001368576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001300280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 001264640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001263856 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001261808 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001257472 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001245184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001243648 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001180672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001136128 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001127424 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001083904 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001081856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Vpn.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001077264 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001071616 _____ (Microsoft Corporation) C:\Windows\system32\BTAGService.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001011200 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000993280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000980832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000974336 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000924672 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000915192 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000912896 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000893952 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000892416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000879616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Service.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000874512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000865280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000865280 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000840704 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Language.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000811320 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000785920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000759272 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000747320 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000744960 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Office2013CustomActions.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000735744 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000729600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FlightSettings.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000722072 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BTAGService.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000684560 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000673704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000654912 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000647680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000638480 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000637240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000632832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000628408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000618296 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000605184 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000604984 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000589384 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000555008 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2020-03-28 10:51 - 2020-03-28 10:51 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000538160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000530432 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000529408 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000524264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000516096 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000515600 _____ (Microsoft Corporation) C:\Windows\system32\dcntel.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000513576 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000507152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000498688 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000497152 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000491008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000487784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000477496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2020-03-28 10:51 - 2020-03-28 10:51 - 000469504 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000465208 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000459688 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000456504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000456192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2020-03-28 10:51 - 2020-03-28 10:51 - 000452096 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000441144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000437560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000416016 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000415760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000410112 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000406480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\es.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000374784 _____ (Microsoft Corporation) C:\Windows\system32\ncbservice.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\WpcApi.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\es.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000330240 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000324408 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000323584 _____ (Microsoft Corporation) C:\Windows\system32\sppcommdlg.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000321536 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000297272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000278016 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000277864 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000259776 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000259072 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000256000 _____ (Microsoft Corporation) C:\Windows\system32\UpdateDeploymentProvider.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000251704 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000251392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\policymanagerprecheck.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000234496 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000231912 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000211256 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000203264 _____ (Microsoft Corporation) C:\Windows\system32\LanguageComponentsInstaller.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000200192 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000197632 _____ (Microsoft Corporation) C:\Windows\system32\Win32CompatibilityAppraiserCSP.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000193848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000190048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000185952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.XamlHost.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000178192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\SpatialAudioLicenseSrv.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000164368 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000152408 _____ (Microsoft Corporation) C:\Windows\system32\KerbClientShared.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000151352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scmbus.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000147696 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000142544 _____ (Microsoft Corporation) C:\Windows\system32\LicensingUI.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000136192 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.XamlHost.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000127064 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000123952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KerbClientShared.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000122368 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000115120 _____ (Microsoft Corporation) C:\Windows\system32\phoneactivate.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000102216 _____ (Microsoft Corporation) C:\Windows\system32\changepk.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000093712 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000089912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000089536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000088352 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000084280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\autopilot.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000071480 _____ (Microsoft Corporation) C:\Windows\system32\win32appinventorycsp.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\keepaliveprovider.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000066624 _____ (Microsoft Corporation) C:\Windows\system32\iumcrypt.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\tbauth.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\CloudNotifications.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000059192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storufs.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\audioresourceregistrar.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000050544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudNotifications.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\iaspolcy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbauth.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000047208 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Office2010CustomActions.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.Common.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\UpgradeResultsUI.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iaspolcy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\WpcProxyStubs.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerCookies.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000036152 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000033080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\KNetPwrDepBroker.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmintegrator.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerCookies.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ias.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.ps.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\sbservicetrigger.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000021520 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slcext.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sfloppy.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.ps.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\DMAlertListener.ProxyStub.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DMAlertListener.ProxyStub.dll
2020-03-26 14:53 - 2020-04-06 14:30 - 000000000 ____D C:\Users\Admin\AppData\Local\ZIBO Updater Resources
2020-03-26 14:53 - 2020-03-29 11:54 - 000000000 ____D C:\Users\Admin\AppData\Local\ZIBO_Updater
2020-03-25 09:37 - 2020-03-25 09:37 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2020-03-23 20:24 - 2020-03-18 11:39 - 000039824 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhdap64.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 001729232 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2020-03-23 20:22 - 2020-03-19 01:26 - 001729232 _____ C:\Windows\system32\vulkaninfo.exe
2020-03-23 20:22 - 2020-03-19 01:26 - 001329360 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-03-23 20:22 - 2020-03-19 01:26 - 001329360 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2020-03-23 20:22 - 2020-03-19 01:26 - 001078992 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 001078992 _____ C:\Windows\system32\vulkan-1.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 000937680 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 000937680 _____ C:\Windows\SysWOW64\vulkan-1.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 000450464 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 000348048 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2020-03-23 20:22 - 2020-03-19 01:25 - 011944864 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2020-03-23 20:22 - 2020-03-19 01:25 - 010285472 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 002073200 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 001565136 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 001481144 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 001351776 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 001142384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 001022560 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 000817264 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 000680048 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 000676240 _____ C:\Windows\system32\nvofapi64.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 000573024 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2020-03-23 20:22 - 2020-03-19 01:24 - 000546928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 000544144 _____ C:\Windows\SysWOW64\nvofapi.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 017601120 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 015157664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 005856864 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 005158512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 001049696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 000849848 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2020-03-23 20:22 - 2020-03-19 01:23 - 000811632 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 000445024 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2020-03-23 20:22 - 2020-03-18 11:39 - 000111058 _____ C:\Windows\system32\nvidia-smi.1.pdf
2020-03-23 20:22 - 2020-03-18 11:39 - 000077314 _____ C:\Windows\system32\nvinfo.pb
2020-03-22 21:35 - 2020-03-22 21:35 - 001166488 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2020-03-22 21:35 - 2020-03-22 21:35 - 000778912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2020-03-22 21:35 - 2020-03-22 21:35 - 000124568 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2020-03-22 21:35 - 2020-03-22 21:35 - 000103072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2020-03-22 21:35 - 2020-03-22 21:35 - 000035592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2020-03-22 21:35 - 2020-03-22 21:35 - 000035592 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2020-03-22 21:35 - 2020-03-22 21:35 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer
2020-03-22 21:35 - 2020-03-22 21:35 - 000000000 ____D C:\Program Files\Reference Assemblies
2020-03-22 21:35 - 2020-03-22 21:35 - 000000000 ____D C:\Program Files\MSBuild
2020-03-22 21:35 - 2020-03-22 21:35 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2020-03-22 21:35 - 2020-03-22 21:35 - 000000000 ____D C:\Program Files (x86)\MSBuild
2020-03-22 21:27 - 2020-03-22 21:27 - 000000735 _____ C:\Users\Admin\Desktop\AudioForVATSIM.lnk
2020-03-22 21:21 - 2020-03-28 15:49 - 000000000 ____D C:\AudioForVATSIM
2020-03-22 21:21 - 2020-03-22 21:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio For VATSIM
2020-03-22 13:39 - 2020-03-22 13:39 - 001438363 _____ C:\Users\Admin\Downloads\twr_training_manual_1.4.pdf
2020-03-22 12:55 - 2020-03-22 12:55 - 000000000 ____D C:\Users\Admin\Documents\Euroscope
2020-03-22 11:45 - 2020-03-22 11:45 - 000000000 ____D C:\Users\Admin\AppData\Local\VACC-CZ.org
2020-03-22 11:42 - 2020-03-22 21:06 - 000000927 _____ C:\Users\Public\Desktop\EuroScope for VACC-CZ.lnk
2020-03-22 11:42 - 2020-03-22 11:45 - 000000000 ____D C:\EuroScope for VACC-CZ
2020-03-22 11:42 - 2020-03-22 11:42 - 000000939 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EuroScope for VACC-CZ.lnk
2020-03-22 11:42 - 2020-03-22 11:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EuroScope for VACC-CZ
2020-03-21 23:57 - 2020-03-21 23:57 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Macromedia
2020-03-21 23:55 - 2020-03-21 23:55 - 000000350 _____ C:\Users\Admin\Desktop\vroute.info.appref-ms
2020-03-21 23:55 - 2020-03-21 23:55 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vroute
2020-03-21 23:51 - 2020-04-04 20:19 - 000000000 ____D C:\Users\Admin\AppData\Local\Deployment
2020-03-21 23:51 - 2020-03-21 23:51 - 000000000 ____D C:\Users\Admin\AppData\Local\Apps\2.0
2020-03-21 23:38 - 2020-03-29 17:59 - 000000000 ____D C:\Users\Admin\AppData\Roaming\VAT-Spy
2020-03-21 23:38 - 2020-03-29 17:56 - 000000000 ____D C:\Program Files (x86)\VATSpy
2020-03-19 19:11 - 2020-03-19 04:22 - 004196160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2020-03-16 13:46 - 2020-03-16 13:46 - 000000000 ____D C:\Users\Admin\AppData\Roaming\ESET
2020-03-16 13:38 - 2020-03-16 13:38 - 000666274 _____ C:\Users\Admin\Desktop\cenik_noark_electric_cz_20191219.xlsm
2020-03-16 08:58 - 2020-03-16 08:58 - 000000000 ____D C:\Users\Admin\Documents\Vlastní šablony Office
2020-03-15 16:56 - 2020-03-15 16:56 - 000000000 ____D C:\Users\Admin\AppData\Local\Blizzard Entertainment
2020-03-15 16:56 - 2020-03-15 16:56 - 000000000 ____D C:\ProgramData\Battle.net
2020-03-15 12:15 - 2020-03-28 15:51 - 000001097 _____ C:\Users\Admin\Desktop\xPilot.lnk
2020-03-15 12:15 - 2020-03-15 12:15 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\xPilot
2020-03-15 12:15 - 2020-03-15 12:15 - 000000000 ____D C:\Users\Admin\AppData\Local\xPilot
2020-03-13 14:59 - 2020-03-13 14:59 - 000772096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2020-03-13 14:59 - 2020-03-13 14:59 - 000561464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2020-03-12 21:04 - 2020-03-12 21:04 - 000001248 _____ C:\Users\Admin\Desktop\AIDA64 Extreme.lnk
2020-03-12 21:04 - 2020-03-12 21:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire
2020-03-12 21:04 - 2020-03-12 21:04 - 000000000 ____D C:\Program Files (x86)\FinalWire
2020-03-10 22:10 - 2020-03-10 22:10 - 019850240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 011607552 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 009711616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 007905784 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 007755776 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 007263992 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 006084344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 005911040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 005764664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 004898144 _____ (Microsoft Corporation) C:\Windows\system32\rtmpltfm.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 004855808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 004580352 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 003860832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpltfm.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 003819520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 003488768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 003263488 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002956688 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002870272 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002715648 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2020-03-10 22:10 - 2020-03-10 22:10 - 002698040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2020-03-10 22:10 - 2020-03-10 22:10 - 002561536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002305536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002289152 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002224952 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002180408 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002072664 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001999952 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001867816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001835128 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001770552 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001764336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001751040 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001697792 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001665416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001664896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001657120 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001647072 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001581056 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001555904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001490640 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001484600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001458688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001417976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001354080 _____ (Microsoft Corporation) C:\Windows\system32\rtmpal.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001284096 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001282944 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001214976 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001153024 _____ (Microsoft Corporation) C:\Windows\system32\windowsperformancerecordercontrol.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 001108040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001098720 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001097728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001091936 _____ (Microsoft Corporation) C:\Windows\system32\rtmcodecs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001088000 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001032544 _____ (Microsoft Corporation) C:\Windows\system32\ortcengine.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000980320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpal.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000915296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmcodecs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000898048 _____ (Microsoft Corporation) C:\Windows\system32\MdmDiagnostics.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000877232 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowsperformancerecordercontrol.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000851968 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000835584 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000757632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000739328 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000734720 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000732000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ortcengine.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000705536 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000680184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000670720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000669496 _____ (Microsoft Corporation) C:\Windows\system32\computecore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000668672 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000636848 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000613888 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\SppExtComObj.Exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000551824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000535552 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000525312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000510768 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000455168 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000379904 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000368128 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticLogCSP.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000287744 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacEncoder.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000271872 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000248064 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacEncoder.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000232960 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000226816 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000221200 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2020-03-10 22:10 - 2020-03-10 22:10 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000199480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000193592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngOnline.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000165504 _____ (Microsoft Corporation) C:\Windows\system32\dmcmnutils.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000146712 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\provpackageapidll.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\DeviceMetadataRetrievalClient.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000131896 _____ (Microsoft Corporation) C:\Windows\system32\DTUHandler.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000130112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcmnutils.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000120560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000114176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2020-03-10 22:10 - 2020-03-10 22:10 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\enterpriseresourcemanager.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enterpriseresourcemanager.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000056672 _____ (Microsoft Corporation) C:\Windows\system32\rtmmvrortc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmmvrortc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000042296 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\MUILanguageCleanup.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2020-03-10 22:07 - 2020-02-11 06:48 - 000390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2020-03-10 22:07 - 2020-02-11 06:37 - 000492544 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2020-03-08 21:38 - 2020-03-08 21:38 - 000000261 _____ C:\Users\Admin\AppData\Roaming\OpenSceneryX Installer.plist
2020-03-08 17:01 - 2020-03-08 17:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IXEG 737 Classic
2020-03-08 16:34 - 2020-03-24 17:25 - 000000993 _____ C:\Users\Admin\Desktop\X-Plane.lnk
2020-03-08 16:25 - 2020-03-08 16:25 - 000000000 ____D C:\Users\Admin\AppData\Local\GMap.NET
2020-03-08 16:24 - 2020-03-11 18:23 - 000001236 _____ C:\Users\Public\Desktop\EFASS NG.lnk
2020-03-08 16:24 - 2020-03-08 16:24 - 000000000 ____D C:\Users\Admin\Documents\Froom
2020-03-08 16:24 - 2020-03-08 16:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EFASS
2020-03-08 16:24 - 2020-03-08 16:24 - 000000000 ____D C:\Program Files (x86)\Froom
2020-03-08 16:12 - 2020-03-08 16:15 - 000000026 _____ C:\Users\Admin\Documents\VATSIM ID a heslo.txt
2020-03-08 15:04 - 2020-04-05 20:12 - 000000000 ____D C:\X-Plane 11
2020-03-08 15:04 - 2020-03-08 15:04 - 000000016 _____ C:\Users\Admin\AppData\Local\x-plane_install_11.txt
2020-03-08 15:03 - 2020-04-06 15:50 - 000000112 _____ C:\Users\Admin\AppData\Local\X-Plane_drm_11.prf
2020-03-08 15:03 - 2020-04-05 20:17 - 000000102 _____ C:\Users\Admin\AppData\Local\X-Plane_xdd_11.prf
2020-03-08 15:03 - 2020-03-08 16:29 - 000000037 _____ C:\Users\Admin\AppData\Local\X-Plane Installer.prf
2020-03-08 15:02 - 2020-03-08 15:02 - 000000056 _____ C:\Users\Admin\AppData\Local\X-Plane 11 Preferences.prf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-04-06 22:29 - 2020-02-25 17:36 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Discord
2020-04-06 22:23 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-06 22:20 - 2020-02-25 16:37 - 000000000 ____D C:\Program Files (x86)\Steam
2020-04-06 19:59 - 2020-02-25 16:31 - 000000000 ____D C:\ProgramData\NVIDIA
2020-04-06 19:24 - 2020-02-21 15:35 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-04-06 18:34 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\AppReadiness
2020-04-06 16:42 - 2020-02-21 15:37 - 000000000 ____D C:\Users\Admin\AppData\Local\Packages
2020-04-06 15:01 - 2020-02-25 17:32 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Twitch
2020-04-06 14:04 - 2020-02-21 15:38 - 000000000 ___RD C:\Users\Admin\OneDrive
2020-04-05 23:20 - 2020-02-24 10:28 - 000016321 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1
2020-04-05 00:08 - 2020-02-25 18:50 - 000000000 ____D C:\Users\Admin\AppData\Local\CrashDumps
2020-04-05 00:08 - 2020-02-21 15:40 - 000019581 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1
2020-04-04 00:18 - 2020-02-21 15:47 - 000011710 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2020-04-03 23:34 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-04-03 20:09 - 2020-02-21 15:41 - 001694640 _____ C:\Windows\system32\PerfStringBackup.INI
2020-04-03 20:09 - 2019-03-19 13:57 - 000717182 _____ C:\Windows\system32\perfh005.dat
2020-04-03 20:09 - 2019-03-19 13:57 - 000145262 _____ C:\Windows\system32\perfc005.dat
2020-04-03 20:09 - 2019-03-19 06:50 - 000000000 ____D C:\Windows\INF
2020-04-03 20:03 - 2020-03-04 19:57 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-04-03 20:03 - 2020-02-21 15:40 - 000022030 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2020-04-03 20:03 - 2020-02-21 15:40 - 000018109 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2020-04-03 20:03 - 2020-02-21 15:35 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-04-03 20:03 - 2019-03-19 06:37 - 000524288 _____ C:\Windows\system32\config\BBI
2020-04-03 19:45 - 2019-11-29 09:30 - 000154336 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2020-04-03 16:41 - 2020-02-25 16:29 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-04-03 16:41 - 2020-02-25 16:29 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-04-03 13:31 - 2020-02-21 15:40 - 000001206 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1
2020-04-03 13:30 - 2020-02-28 00:24 - 000013913 _____ C:\ProgramData\DisplaySessionContainer4.log_backup1
2020-04-03 11:55 - 2020-02-21 15:37 - 000000000 ____D C:\Users\Admin
2020-04-02 10:02 - 2020-02-25 17:09 - 000000000 ____D C:\Condor2
2020-04-01 19:18 - 2020-03-02 11:17 - 000000000 ____D C:\Users\Admin\Documents\Záloha registry
2020-04-01 19:17 - 2020-02-25 19:57 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update
2020-04-01 19:17 - 2020-02-25 19:57 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-04-01 19:15 - 2020-02-25 17:00 - 000000000 ____D C:\ProgramData\Package Cache
2020-04-01 19:11 - 2019-03-19 06:52 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2020-04-01 11:59 - 2020-02-21 15:39 - 000000000 ____D C:\Users\Admin\AppData\Local\D3DSCache
2020-03-28 10:56 - 2020-02-21 15:35 - 000441552 _____ C:\Windows\system32\FNTCACHE.DAT
2020-03-28 10:56 - 2019-03-19 13:59 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SystemResources
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\ShellExperiences
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\Provisioning
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\PolicyDefinitions
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\bcastdvr
2020-03-28 10:53 - 2019-03-19 06:37 - 000000000 ____D C:\Windows\CbsTemp
2020-03-28 01:27 - 2020-03-05 01:03 - 000011369 _____ C:\ProgramData\DisplaySessionContainer5.log_backup1
2020-03-25 20:13 - 2020-02-21 15:48 - 000000000 ____D C:\Users\Admin\AppData\Local\ElevatedDiagnostics
2020-03-24 18:04 - 2020-03-04 19:57 - 000000000 ____D C:\Users\Admin\AppData\Roaming\TeamViewer
2020-03-24 12:18 - 2020-02-25 17:04 - 000000000 ____D C:\Users\Admin\AppData\Local\NVIDIA
2020-03-22 21:35 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SysWOW64\MUI
2020-03-22 21:35 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\MUI
2020-03-22 11:49 - 2020-02-21 15:37 - 000000000 ____D C:\Users\Admin\AppData\Local\VirtualStore
2020-03-21 10:24 - 2020-02-25 16:46 - 000000000 ___RD C:\Users\Admin\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App
2020-03-21 10:23 - 2020-02-21 15:48 - 000000000 ____D C:\Users\Admin\AppData\Local\Comms
2020-03-20 22:35 - 2020-02-25 16:29 - 000003474 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-03-20 22:35 - 2020-02-25 16:29 - 000003350 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-03-20 20:48 - 2019-11-29 09:30 - 000188872 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
2020-03-20 20:48 - 2019-11-29 09:30 - 000115960 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
2020-03-20 20:48 - 2019-11-29 09:30 - 000106840 _____ (ESET) C:\Windows\system32\Drivers\edevmon.sys
2020-03-20 20:48 - 2019-11-29 09:30 - 000079520 _____ (ESET) C:\Windows\system32\Drivers\epfw.sys
2020-03-20 20:48 - 2019-11-29 09:30 - 000053048 _____ (ESET) C:\Windows\system32\Drivers\ekbdflt.sys
2020-03-20 00:29 - 2020-02-25 18:51 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2020-03-20 00:29 - 2020-02-25 18:51 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-03-19 16:40 - 2020-03-06 00:30 - 000013747 _____ C:\ProgramData\DisplaySessionContainer6.log_backup1
2020-03-19 04:22 - 2020-02-21 15:40 - 004927048 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2020-03-19 01:23 - 2020-02-25 17:06 - 000655472 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2020-03-18 22:27 - 2020-02-25 20:15 - 000000000 ____D C:\Users\Admin\AppData\Roaming\slobs-client
2020-03-18 11:39 - 2020-02-21 15:40 - 000222112 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2020-03-15 17:35 - 2020-02-21 15:37 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Adobe
2020-03-14 21:55 - 2020-02-21 15:38 - 000003376 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3465363423-735592264-602919839-1001
2020-03-14 21:55 - 2020-02-21 15:37 - 000002361 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-13 13:02 - 2020-02-25 20:06 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-03-12 14:53 - 2020-02-21 15:39 - 000000000 ____D C:\Users\Admin\AppData\Local\PlaceholderTileLogoFolder
2020-03-10 22:24 - 2020-02-21 15:37 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-03-10 22:24 - 2020-02-21 15:37 - 000000000 ___RD C:\Users\Admin\3D Objects
2020-03-10 22:23 - 2019-03-19 06:52 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2020-03-10 22:23 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SysWOW64\Dism
2020-03-10 22:23 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2020-03-10 22:23 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\Dism
2020-03-10 22:23 - 2019-03-19 06:37 - 000000000 ____D C:\Windows\servicing
2020-03-10 22:12 - 2020-02-21 15:45 - 000000000 ____D C:\Windows\system32\MRT
2020-03-10 22:11 - 2020-02-21 15:44 - 121542864 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2020-03-07 20:10 - 2020-02-25 18:29 - 000000073 _____ C:\Users\Admin\AppData\Local\X-Plane_drm.prf

==================== Files in the root of some directories ========

2020-03-08 21:38 - 2020-03-08 21:38 - 000000261 _____ () C:\Users\Admin\AppData\Roaming\OpenSceneryX Installer.plist
2020-03-08 15:02 - 2020-03-08 15:02 - 000000056 _____ () C:\Users\Admin\AppData\Local\X-Plane 11 Preferences.prf
2020-03-08 15:03 - 2020-03-08 16:29 - 000000037 _____ () C:\Users\Admin\AppData\Local\X-Plane Installer.prf
2020-02-25 18:29 - 2020-03-07 20:10 - 000000073 _____ () C:\Users\Admin\AppData\Local\X-Plane_drm.prf
2020-03-08 15:03 - 2020-04-06 15:50 - 000000112 _____ () C:\Users\Admin\AppData\Local\X-Plane_drm_11.prf
2020-02-25 18:29 - 2020-02-25 18:29 - 000000016 _____ () C:\Users\Admin\AppData\Local\x-plane_install_10.txt
2020-03-08 15:04 - 2020-03-08 15:04 - 000000016 _____ () C:\Users\Admin\AppData\Local\x-plane_install_11.txt
2020-03-08 15:03 - 2020-04-05 20:17 - 000000102 _____ () C:\Users\Admin\AppData\Local\X-Plane_xdd_11.prf

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================



Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-04-2020
Ran by Admin (06-04-2020 22:32:55)
Running from C:\Users\Admin\Desktop
Windows 10 Pro Version 1909 18363.752 (X64) (2020-02-21 13:36:35)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Admin (S-1-5-21-3465363423-735592264-602919839-1001 - Administrator - Enabled) => C:\Users\Admin
Administrator (S-1-5-21-3465363423-735592264-602919839-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3465363423-735592264-602919839-503 - Limited - Disabled)
Guest (S-1-5-21-3465363423-735592264-602919839-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3465363423-735592264-602919839-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
FW: ESET Firewall (Enabled) {B066057A-E576-007C-D591-56C163D3B33B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Active Sky XP (HKLM-x32\...\{693405BE-9994-42B5-BAE6-0F20CF8C7DBE}_is1) (Version: 1.0.7205.25150 - HiFi Technologies, Inc.)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.006.20042 - Adobe Systems Incorporated)
AIDA64 Extreme v6.20 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 6.20 - FinalWire Ltd.)
Aktualizace NVIDIA 38.0.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.4.0 - NVIDIA Corporation) Hidden
ASXPConnect Plugin (HKLM-x32\...\{EC0FE36D-00CE-4D89-8859-7A630FB9EF3B}_is1) (Version: 1.0.7205.25150 - HiFi Technologies, Inc.)
Audio For VATSIM (HKLM-x32\...\{B0D70FE1-B891-41D0-ACE2-895F625BA382}) (Version: 1.7.21 - VATSIM)
CCleaner (HKLM\...\CCleaner) (Version: 5.65 - Piriform)
Discord (HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Discord) (Version: 0.0.306 - Discord Inc.)
EFASS version NG (HKLM-x32\...\{C99177FE-4E7B-46CA-B3C2-73581D4063C1}_is1) (Version: NG - Froom Simulation Software)
ESET Security (HKLM\...\{D8E84711-EDFC-4D4E-B579-95AEB40DAA4D}) (Version: 13.1.21.0 - ESET, spol. s r.o.)
EuroScope for VACC-CZ (HKLM-x32\...\{B380FB0A-B123-4327-812C-B6F215813B79}) (Version: 2.0.0 - VACC-CZ.org)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.163 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
IXEG 737 Classic (HKLM\...\IXEG 737 Classic 1.2+) (Version: 1.2+ - X-Aviation)
Microsoft Flight Simulator SimConnect Client v10.0.61259.0 (HKLM-x32\...\{D61CA184-3F6D-4A50-B2CC-7A18447D6A8D}) (Version: 10.0.61259.0 - Microsoft Corporation)
Microsoft Office 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.12527.20278 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27027 (HKLM-x32\...\{39e28474-b67b-4209-af1b-e9ad0a83d8ca}) (Version: 14.16.27027.1 - Microsoft Corporation)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.2.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.2.34 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.26 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 445.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 445.75 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8858.1 - Realtek Semiconductor Corp.)
ROCCAT Swarm (HKLM-x32\...\{9D12397F-45AF-4517-B492-1D1E2FA475EE}) (Version: 1.93.640 - ROCCAT GmbH) Hidden
ROCCAT Swarm (HKLM-x32\...\InstallShield_{9D12397F-45AF-4517-B492-1D1E2FA475EE}) (Version: 1.93.640 - ROCCAT GmbH)
smartCARS - DLH Virtual (en-US) (HKLM\...\{1F2D0F9E-3FF0-8A90-A0D5-574E65F10AD5_en-US}) (Version: 2.1.34.0 - TFDi Design)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Streamlabs Chatbot version 1.0.2.61 (HKLM-x32\...\{08D3C5BB-C492-4916-B111-725081845380}_is1) (Version: 1.0.2.61 - Streamlabs)
Streamlabs OBS 0.20.2 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.20.2 - General Workings, Inc.)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.3.2682 - TeamViewer)
Twitch (HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
VAT-Spy (HKLM-x32\...\VATSpy) (Version: - )
vroute.info (HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\5ff0fb0cf6679301) (Version: 2.1.1.16 - vroute)
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-02-21] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-02-21] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.1224.0_x64__8wekyb3d8bbwe [2020-03-01] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-26] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.956.0_x64__56jybvy8sckqj [2020-02-21] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.9.205.0_x64__dt26b99r8h8gj [2020-02-24] (Realtek Semiconductor Corp)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0 [2020-03-31] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-03] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-03] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\nvshext.dll [2020-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-03] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [msacm.lhacm] => C:\Windows\SysWOW64\lhacm.acm [34064 2020-04-03] (Microsoft Corporation) [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-02-05 12:58 - 2020-02-05 12:58 - 000632832 _____ () [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\aimo.dll
2015-12-29 07:25 - 2015-12-29 07:25 - 000120334 _____ () [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\libgcc_s_dw2-1.dll
2015-12-29 07:25 - 2015-12-29 07:25 - 001540622 _____ () [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\libstdc++-6.dll
2019-10-24 12:16 - 2019-10-24 12:16 - 007523840 _____ () [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\resource.dll
2015-12-29 07:25 - 2015-12-29 07:25 - 000079360 _____ (MingW-W64 Project. All rights reserved.) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\libwinpthread-1.dll
2016-08-11 19:26 - 2016-08-11 19:26 - 000019456 _____ (Roccat GmbH) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\UDPServer.dll
2010-03-09 05:46 - 2010-03-09 05:46 - 001138688 _____ (Tao Framework -- hxxp://www.taoframework.com) [File not signed] C:\Program Files (x86)\VATSpy\Tao.OpenGl.dll
2010-03-09 05:46 - 2010-03-09 05:46 - 000098304 _____ (Tao Framework -- hxxp://www.taoframework.com) [File not signed] C:\Program Files (x86)\VATSpy\Tao.Platform.Windows.dll
2015-12-29 07:52 - 2015-12-29 07:52 - 002177536 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\LIBEAY32.dll
2015-12-29 07:52 - 2015-12-29 07:52 - 000462336 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ssleay32.dll
2016-06-11 03:15 - 2016-06-11 03:15 - 000058880 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qdds.dll
2016-06-10 16:32 - 2016-06-10 16:32 - 000033792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qgif.dll
2016-06-11 03:15 - 2016-06-11 03:15 - 000046592 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qicns.dll
2016-06-10 16:33 - 2016-06-10 16:33 - 000036352 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qico.dll
2016-06-10 16:32 - 2016-06-10 16:32 - 000258560 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qjpeg.dll
2016-06-11 02:51 - 2016-06-11 02:51 - 000028672 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qsvg.dll
2016-06-11 03:15 - 2016-06-11 03:15 - 000028672 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qtga.dll
2016-06-11 03:15 - 2016-06-11 03:15 - 000495616 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qtiff.dll
2016-06-11 03:15 - 2016-06-11 03:15 - 000027648 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qwbmp.dll
2016-06-11 03:16 - 2016-06-11 03:16 - 000416768 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qwebp.dll
2016-06-13 04:38 - 2016-06-13 04:38 - 000317440 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\mediaservice\dsengine.dll
2016-06-10 16:34 - 2016-06-10 16:34 - 001489920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\platforms\qwindows.dll
2020-01-13 10:29 - 2020-01-13 10:29 - 005384704 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Core.dll
2016-06-10 16:23 - 2016-06-10 16:23 - 005283840 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Gui.dll
2016-06-13 04:29 - 2016-06-13 04:29 - 000853504 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Multimedia.dll
2016-06-10 16:17 - 2016-06-10 16:17 - 001610240 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Network.dll
2016-06-11 02:51 - 2016-06-11 02:51 - 000348160 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Svg.dll
2016-06-10 16:29 - 2016-06-10 16:29 - 006358528 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Widgets.dll
2016-06-10 16:17 - 2016-06-10 16:17 - 000216064 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Xml.dll
2015-08-24 11:10 - 2015-08-24 11:10 - 000110207 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\BASS.dll
2015-08-24 11:10 - 2015-08-24 11:10 - 000012166 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\BASSWASAPI.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Admin\Data aplikací:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\Admin\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2019-03-19 06:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3465363423-735592264-602919839-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Admin\Pictures\best-pubg-wallpapers-hd-download-with-4k-1080p-resolution-for-mobile-and-desktop.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{21EE3FA4-372C-4E4A-A23A-1F36EA99B822}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{4A4447AA-E3E9-4860-813C-CB814CDF830F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{3CBDEF82-9377-4045-9E97-0079C490CCF4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [{5D48189D-05EA-4349-A665-7853F457DEFD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [{CFADA6A4-91E6-44CA-ACF1-6D9BBA62EB97}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F24FA6C2-6B42-49A5-90FF-9A92BFDEA3C3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{AA699F53-CE1B-4EB4-BB9D-F34FD6734BE0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0A9353D4-8F30-402C-A419-A70BA48ED983}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{A410AACA-E98A-4000-B048-4B1BB84E1DC8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{60A5C7C6-A76A-40ED-8F97-70148DE712AD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{011B8CA6-73A4-40BD-AC6F-9E024645E40F}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6A12094A-BE2A-4370-ABF8-40FBD595E398}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{E3F900BD-AB06-4C1E-9FE8-708A8294F72B}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{CBFDBE99-0A7A-4B94-B0A5-2F5EB75F3805}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{FE41CB4E-E935-4F63-9434-76F6C5B1FFA6}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{58D51EEF-1531-4E9B-BBF4-4D55A36A8C1A}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{605C5B0C-6836-460E-AE87-3398C28160BD}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{A8D88D3A-CFC0-4097-80C4-F4F03BD89850}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{9F450028-78F5-4B92-8690-87C1CE805564}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{4BB883DD-025C-440E-9262-6CFE8366DAED}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1EE10599-560F-488C-BD74-320CCC6E3BED}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{4E3E726A-7D1D-4F74-970A-D9B2387021CF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{E9CBE1A8-D4B7-4E7B-A3F8-55D2CA7F437B}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{F480C42E-7BB8-4FCA-B5D1-7B1366351813}] => (Allow) LPort=445
FirewallRules: [{931F4056-33A0-4E7A-B647-03368B8965EB}] => (Allow) LPort=19284
FirewallRules: [{32CE7D58-650E-4024-9C67-E713F7FF29F4}] => (Allow) LPort=19285
FirewallRules: [{264BF0DD-B24B-4B87-800D-D251B4E449FF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{E7C31809-4C16-4769-B145-404F21AF0CD7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8F3FEACD-174D-4729-81AF-D1EDCDD54E05}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3019D9DE-8371-44E7-88CF-444C0D8DE355}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CC4B94E4-49B8-4CB6-A2B1-6FFFA57D3046}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{271E78C8-159E-4488-9503-749A87630BA6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{BAEED163-BAC2-4A16-9C00-04575D166102}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3889AEAC-A25A-4C7B-9D5A-7B1077F31BE0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{48A7CD34-C2C3-47DE-B4CA-408892892B6B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

29-03-2020 16:32:12 Installed DLH Virtual Groups Custom ACARS
31-03-2020 12:51:52 Prepar3D v4 Academic
01-04-2020 19:12:36 Prepar3D v4 Academic

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (04/06/2020 02:29:50 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1023) (User: DESKTOP-CTPNGS7)
Description: Systém Windows nemůže načíst knihovnu DLL rozšiřitelných čítačů C:\Windows\system32\sysmain.dll (kód chyby Win32 126).

Error: (04/05/2020 09:39:37 AM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: Velikost požadované vyrovnávací paměti je větší než velikost vyrovnávací paměti předané do funkce Collect knihovny DLL rozšiřitelných čítačů C:\Windows\System32\perfts.dll pro službu LSM. Velikost dané vyrovnávací paměti: 31464; požadovaná velikost: 32304.

Error: (04/05/2020 12:08:27 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: X-Plane.exe, verze: 11.0.41.0, časové razítko: 0x5de7fd61
Název chybujícího modulu: xPilot.xpl, verze: 0.0.0.0, časové razítko: 0x5e2ba16f
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000017d6ba
ID chybujícího procesu: 0x1130
Čas spuštění chybující aplikace: 0x01d60acd599e05f8
Cesta k chybující aplikaci: C:\X-Plane 11\X-Plane.exe
Cesta k chybujícímu modulu: C:\X-Plane 11\Resources\plugins\xPilot\win_x64\xPilot.xpl
ID zprávy: d3fa61f1-a021-4cb9-acf6-e14fec5057c8
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (04/04/2020 07:08:20 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program AS_XPL.exe verze 1.0.7205.25150 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 3408

Čas spuštění: 01d60aa34542aa92

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files (x86)\HiFi\ASXP\AS_XPL.exe

ID hlášení: 5f8f5eea-6ee4-4131-ac66-2fc2024f82a1

Úplný název balíčku s chybou:

ID aplikace relativní podle balíčku s chybou:

Typ zablokování: Cross-thread

Error: (04/03/2020 07:47:44 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1023) (User: DESKTOP-CTPNGS7)
Description: Systém Windows nemůže načíst knihovnu DLL rozšiřitelných čítačů C:\Windows\system32\sysmain.dll (kód chyby Win32 126).

Error: (04/03/2020 10:43:50 AM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: Velikost požadované vyrovnávací paměti je větší než velikost vyrovnávací paměti předané do funkce Collect knihovny DLL rozšiřitelných čítačů C:\Windows\System32\perfts.dll pro službu LSM. Velikost dané vyrovnávací paměti: 27776; požadovaná velikost: 33408.

Error: (04/02/2020 05:52:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: X-Plane.exe, verze: 11.0.41.0, časové razítko: 0x5de7fd61
Název chybujícího modulu: xPilot.xpl, verze: 0.0.0.0, časové razítko: 0x5e2ba16f
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000017d6ba
ID chybujícího procesu: 0x2168
Čas spuštění chybující aplikace: 0x01d60906999768dc
Cesta k chybující aplikaci: C:\X-Plane 11\X-Plane.exe
Cesta k chybujícímu modulu: C:\X-Plane 11\Resources\plugins\xPilot\win_x64\xPilot.xpl
ID zprávy: 0b3fd452-7793-4bef-8dc9-d0a99ffa0fc3
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (04/01/2020 07:31:47 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: Velikost požadované vyrovnávací paměti je větší než velikost vyrovnávací paměti předané do funkce Collect knihovny DLL rozšiřitelných čítačů C:\Windows\System32\perfts.dll pro službu LSM. Velikost dané vyrovnávací paměti: 28048; požadovaná velikost: 32304.


System errors:
=============
Error: (04/06/2020 02:04:16 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (04/06/2020 02:04:16 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).

Error: (04/01/2020 11:18:16 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-CTPNGS7)
Description: Server {38E441FB-3D16-422F-8750-B2DACEC5CEFC} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/28/2020 01:27:39 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-CTPNGS7)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/28/2020 01:27:39 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-CTPNGS7)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/28/2020 01:27:39 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-CTPNGS7)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/28/2020 01:27:39 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-CTPNGS7)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/28/2020 01:27:39 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-CTPNGS7)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.


CodeIntegrity:
===================================

Date: 2020-04-06 14:04:22.021
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-06 14:04:22.019
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-06 14:04:22.014
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-06 14:04:22.012
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-06 14:04:22.005
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-05 09:39:44.023
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-05 09:39:44.021
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-05 09:39:44.017
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: American Megatrends Inc. 2.A0 08/24/2019
Motherboard: Micro-Star International Co., Ltd. Z370-A PRO (MS-7B48)
Processor: Intel(R) Core(TM) i7-9700F CPU @ 3.00GHz
Percentage of memory in use: 33%
Total physical RAM: 16326.23 MB
Available physical RAM: 10830.25 MB
Total Virtual: 22470.23 MB
Available Virtual: 14069.06 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.13 GB) (Free:239.62 GB) NTFS

\\?\Volume{9841689a-c0e7-4d75-bd78-1744326b21c6}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.09 GB) NTFS
\\?\Volume{eface461-89d4-4dea-878d-548c7daf0605}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================
Přílohy
Výstřižek.JPG
Výstřižek.JPG (87.63 KiB) Zobrazeno 1785 x

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil s

#2 Příspěvek od Conder »

Ahoj :)

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • V pripade nalezov nechaj vsetky nalezy oznacene a klikni na Karantena
  • Ak nebudu ziadne nalezy, klikni na
  • Pockaj na dokoncenie a potvrd restartovanie PC
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Martin D.
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 29 bře 2009 11:09

Re: Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil s

#3 Příspěvek od Martin D. »

Ahoj,

děkuji. Tady je log:

# -------------------------------
# Malwarebytes AdwCleaner 8.0.4.0
# -------------------------------
# Build: 04-03-2020
# Database: 2020-04-03.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 04-06-2020
# Duration: 00:00:00
# OS: Windows 10 Pro
# Cleaned: 2
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

Deleted Rychlý přesun Google - okanipcmceoeemlbjnmnbdibhgpbllgc

***** [ Chromium URLs ] *****

Deleted DAEMON Search

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1468 octets] - [06/04/2020 23:27:25]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil s

#4 Příspěvek od Conder »

Poprosim o obidva nove logy z FRST.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Martin D.
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 29 bře 2009 11:09

Re: Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil s

#5 Příspěvek od Martin D. »

Ahoj,

tady:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-04-2020
Ran by Admin (administrator) on DESKTOP-CTPNGS7 (Micro-Star International Co., Ltd. MS-7B48) (07-04-2020 08:34:33)
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin (Available Profiles: Admin)
Platform: Windows 10 Pro Version 1909 18363.752 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Admin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12003.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20022.82.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\TiWorker.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\Display.NvContainer\NVDisplay.Container.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(ROCCAT GmbH -> ROCCAT) C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_Swarm_Monitor.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [956920 2020-02-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [185648 2020-04-03] (ESET, spol. s r.o. -> ESET)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3371296 2020-04-04] (Valve -> Valve Corporation)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [Discord] => C:\Users\Admin\AppData\Local\Discord\app-0.0.306\Discord.exe [90950968 2020-02-24] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\MountPoints2: {deb0a980-54b6-11ea-b6f1-309c23aeb77d} - "E:\Installer_Windows.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.163\Installer\chrmstp.exe [2020-04-03] (Google LLC -> Google LLC)
Startup: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2020-02-25]
ShortcutTarget: Twitch.lnk -> C:\Users\Admin\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ROCCAT Swarm Monitor.lnk [2020-02-25]
ShortcutTarget: ROCCAT Swarm Monitor.lnk -> C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_Swarm_Monitor.exe (ROCCAT GmbH -> ROCCAT)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {02C51C79-BF2C-4895-9B06-A535EC0E733D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115032 2020-03-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {087C634A-271A-45A8-917B-FDAEE245A6DC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {1FB799AA-DB32-4B90-9676-2921C7E9D276} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {25CE8071-03C3-4B1E-BD68-D0B598EF77B3} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653848 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {345BAEAC-B3A9-4741-92E7-DA728C87A8F9} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {38976440-6BD8-4258-B12E-1A248F968A8B} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3B048FE4-0B55-49D4-9EA5-0885CDE03D4B} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {490A9139-8BB7-4DC9-A1CD-69DD31042F99} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {49A0F94B-BABE-4CC2-B7F5-7BAFB547E37B} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {51615761-AC6C-4A77-A673-61DCB9122CE7} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115032 2020-03-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {5EFEEFB1-A6D0-4AE9-86E4-CEB15FB2BF2D} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {65B6C09B-19B1-4C76-8028-6B2BC691DBA2} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {66986F72-FA8A-4BFC-B637-90DA6AEA400D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24600440 2020-03-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {7CC8F553-BFEE-488E-A6DA-3FE519DC1BC7} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1443424 2020-03-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {7EEC4FB8-72A9-4A40-A411-CA5A8D2845EF} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24600440 2020-03-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {88205B92-4DF6-4015-96F8-F950C3A70159} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302880 2019-12-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {90216E3B-7A79-4CCB-8492-87ECB1FD8657} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-25] (Google LLC -> Google LLC)
Task: {90FD74AF-7FE0-4528-AC1E-4E20E602A0DD} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {ABCA8327-D587-4749-9A4B-DDB6AE2CFF08} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F625CC42-BDAB-4F42-856E-FAE330900626} - System32\Tasks\ROCCAT DEVICE SERVICE => C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_dev_service.exe [442264 2020-03-24] (ROCCAT GmbH -> ROCCAT)
Task: {F90AB258-E98E-4F49-836F-69C5614EFDD8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-25] (Google LLC -> Google LLC)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{ee3fbf1a-8b95-4acf-845c-ef6ad6a45b3d}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-03-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-03-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-03-06] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default [2020-04-07]
CHR Notifications: Default -> hxxps://play.gll.gg; hxxps://teams.microsoft.com; hxxps://virtualsoaring.eu
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.facebook.com/"
CHR DefaultSearchURL: Default -> hxxps://skysight.io/ozsoar/img/logo-192.png
CHR Session Restore: Default -> is enabled.
CHR Extension: (Překladač Google) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-03-19]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-04-05]
CHR Extension: (FACEIT Enhancer) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mokknliiomknodkdmpcellamkopbdmao [2020-02-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-02-25]
CHR Extension: (Rychlý přesun Google) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc [2020-04-06]
CHR Extension: (SkySight) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pamakffedijpmmlnfbnockomoafhiiec [2020-02-25]
CHR Extension: (Chrome Media Router) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-03]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8553552 2020-03-18] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11091224 2020-03-05] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2020-02-25] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-03] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-03] (ESET, spol. s r.o. -> ESET)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
R2 RtkAudioUniversalService; C:\Windows\System32\RtkAudUService64.exe [956920 2020-02-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5930136 2020-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13206544 2020-02-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [231936 2019-10-07] (Microsoft Corporation) [File not signed]
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [154336 2020-04-03] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [106840 2020-03-20] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15800 2019-10-16] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [188872 2020-03-20] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [53048 2020-03-20] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [79520 2020-03-20] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [115960 2020-03-20] (ESET, spol. s r.o. -> ESET)
R3 MEIx64; C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_84dfa9390100e6bc\x64\TeeDriverW8x64.sys [253840 2019-05-12] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\nvlddmkm.sys [23439288 2020-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [75600 2019-08-22] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [662528 2019-03-19] (Microsoft Windows -> Realtek )
R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [44080 2016-09-27] (Shaul Eizikovich -> Nefarius Software Solutions)
R3 VirtualHID; C:\Windows\System32\drivers\VirtualHID.sys [26768 2020-02-05] (Voyetra Turtle Beach, Inc. -> TurtleBeach)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [45664 2020-02-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [355760 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [54192 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz149; \??\C:\Windows\temp\cpuz149\cpuz149_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-04-07 08:34 - 2020-04-07 08:34 - 000021933 _____ C:\Users\Admin\Desktop\FRST.txt
2020-04-07 08:33 - 2020-04-07 08:33 - 000000000 ___HD C:\OneDriveTemp
2020-04-06 23:26 - 2020-04-06 23:27 - 000000000 ____D C:\AdwCleaner
2020-04-06 23:26 - 2020-04-06 23:26 - 008196784 _____ (Malwarebytes) C:\Users\Admin\Desktop\adwcleaner_8.0.4.exe
2020-04-06 23:14 - 2020-04-06 23:14 - 000000000 ____D C:\ProgramData\Twitch
2020-04-06 22:31 - 2020-04-07 08:34 - 000000000 ____D C:\FRST
2020-04-06 22:21 - 2020-04-06 22:21 - 002281472 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe
2020-04-06 16:42 - 2020-04-06 16:42 - 000554512 _____ C:\Users\Admin\Downloads\6.4.2020.xlsx
2020-04-06 16:14 - 2020-04-06 16:14 - 000000017 _____ C:\Users\Admin\Desktop\účet.txt
2020-04-05 20:12 - 2020-04-05 20:15 - 509643790 _____ C:\Users\Admin\Downloads\BSS FFA320V1.5.zip
2020-04-04 14:09 - 2020-04-04 14:09 - 000000000 ____D C:\Users\Admin\AppData\Roaming\HiFi
2020-04-04 14:05 - 2020-04-04 14:05 - 000001135 _____ C:\Users\Admin\Desktop\Active Sky XP.lnk
2020-04-04 14:05 - 2020-04-04 14:05 - 000000143 _____ C:\Users\Admin\Desktop\AS Wx Web Companion.url
2020-04-04 14:05 - 2020-04-04 14:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiFi
2020-04-04 11:25 - 2020-04-06 23:33 - 000000000 ____D C:\ProgramData\boost_interprocess
2020-04-03 15:28 - 2020-04-03 15:28 - 000000000 ____D C:\Users\Admin\AppData\Local\PilotUI
2020-04-03 15:28 - 2020-04-03 15:28 - 000000000 ____D C:\Users\Admin\AppData\Local\cache
2020-04-03 15:24 - 2020-04-03 16:35 - 000000000 ____D C:\Program Files (x86)\Teamspeak2_RC2
2020-04-03 12:59 - 2020-04-03 12:59 - 000034064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lhacm.acm
2020-04-03 12:59 - 2020-04-03 12:59 - 000000000 ____D C:\Users\Admin\AppData\Roaming\teamspeak2
2020-04-03 12:39 - 2020-04-03 12:39 - 000000157 _____ C:\Users\Admin\Documents\IVAO.txt
2020-04-03 11:55 - 2020-04-03 11:57 - 000000000 ____D C:\Users\Admin\AppData\Roaming\IVAO
2020-04-03 11:55 - 2020-04-03 11:55 - 000000000 ____D C:\ProgramData\Oracle
2020-04-02 09:01 - 2020-04-02 09:01 - 000086927 _____ C:\Users\Admin\Downloads\BP 2020.xlsx
2020-04-01 11:16 - 2020-04-01 11:16 - 000000000 ____D C:\Users\Public\Documents\FSLabs Data
2020-04-01 11:16 - 2020-04-01 11:16 - 000000000 ____D C:\Users\Admin\AppData\Roaming\IsolatedStorage
2020-04-01 11:16 - 2020-04-01 11:16 - 000000000 ____D C:\ProgramData\IsolatedStorage
2020-03-31 19:26 - 2020-03-31 19:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XHT-Labs
2020-03-31 18:32 - 2020-04-04 14:05 - 000000000 ____D C:\Program Files (x86)\HiFi
2020-03-31 12:57 - 2020-03-31 12:57 - 000000000 ____D C:\Users\Admin\AppData\Local\Lockheed Martin
2020-03-29 17:56 - 2020-03-29 17:56 - 000001936 _____ C:\Users\Admin\Desktop\VATSpy.lnk
2020-03-29 17:56 - 2020-03-29 17:56 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VATSpy
2020-03-29 16:36 - 2020-03-29 16:36 - 000001287 _____ C:\Users\Admin\Desktop\smartCARS - DLH Virtual (en-US).lnk
2020-03-29 16:36 - 2020-03-29 16:36 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TFDi Design
2020-03-29 16:36 - 2020-03-29 16:36 - 000000000 ____D C:\Program Files (x86)\smartCARS
2020-03-29 16:33 - 2020-03-29 16:33 - 000000000 ____D C:\Users\Admin\AppData\Local\FS-Products
2020-03-29 16:32 - 2020-03-29 16:32 - 000000000 ____D C:\Users\Admin\Documents\FS Products
2020-03-29 11:54 - 2020-04-06 14:29 - 000000000 ____D C:\ZIBO updater
2020-03-29 11:52 - 2020-04-06 14:30 - 000000000 ____D C:\Users\Admin\Downloads\ZIBO update
2020-03-28 16:16 - 2020-03-28 16:18 - 000000000 ____D C:\Users\Admin\AppData\Local\org.swift-project
2020-03-28 10:51 - 2020-03-28 10:51 - 025444352 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 022636544 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 019813376 _____ (Microsoft Corporation) C:\Windows\system32\HologramWorld.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 018027008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 017790464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 014818816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 009930552 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 008013824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 007849216 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 007604584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 007017472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 006525424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 006168064 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 004563200 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 004129416 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003977216 _____ (Microsoft Corporation) C:\Windows\system32\tellib.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003799552 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003753472 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003742544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003728384 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 003708928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003586872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 003547648 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 003109376 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002986808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 002871608 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 002800128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 002768440 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002494744 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002369576 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.AppAgent.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002188600 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002143232 _____ (Microsoft Corporation) C:\Windows\system32\WpcDesktopMonSvc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002126144 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002114560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 002087168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001960448 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001945600 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001942528 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001918976 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001835008 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001783296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001762816 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001757096 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-03-28 10:51 - 2020-03-28 10:51 - 001726264 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001719808 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001659408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.AppAgent.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001610240 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001587712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001545216 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001512832 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001497600 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001495864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVEntSubsystems32.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001480192 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001477112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001427456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001413704 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001397560 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001386296 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystemController.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001378528 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001368576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001368576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001300280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 001264640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001263856 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001261808 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001257472 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001245184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001243648 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001180672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001136128 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001127424 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001083904 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001081856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Vpn.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001077264 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 001071616 _____ (Microsoft Corporation) C:\Windows\system32\BTAGService.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 001011200 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000993280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000980832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000974336 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000924672 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000915192 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000912896 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000893952 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000892416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000879616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Service.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000874512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000865280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000865280 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000840704 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Language.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000811320 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000785920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000759272 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000747320 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000744960 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Office2013CustomActions.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000735744 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000729600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FlightSettings.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000722072 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BTAGService.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000684560 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000673704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000654912 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000647680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000638480 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000637240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000632832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000628408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000618296 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000605184 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000604984 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000589384 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000555008 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2020-03-28 10:51 - 2020-03-28 10:51 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000538160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000530432 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000529408 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000524264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000516096 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000515600 _____ (Microsoft Corporation) C:\Windows\system32\dcntel.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000513576 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000507152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000498688 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000497152 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000491008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000487784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000477496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2020-03-28 10:51 - 2020-03-28 10:51 - 000469504 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000465208 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000459688 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000456504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000456192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2020-03-28 10:51 - 2020-03-28 10:51 - 000452096 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000441144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000437560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000416016 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000415760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000410112 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000406480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\es.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000374784 _____ (Microsoft Corporation) C:\Windows\system32\ncbservice.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\WpcApi.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\es.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000330240 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000324408 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000323584 _____ (Microsoft Corporation) C:\Windows\system32\sppcommdlg.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000321536 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000297272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000278016 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000277864 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000259776 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000259072 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000256000 _____ (Microsoft Corporation) C:\Windows\system32\UpdateDeploymentProvider.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000251704 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000251392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\policymanagerprecheck.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000234496 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000231912 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000211256 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000203264 _____ (Microsoft Corporation) C:\Windows\system32\LanguageComponentsInstaller.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000200192 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000197632 _____ (Microsoft Corporation) C:\Windows\system32\Win32CompatibilityAppraiserCSP.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000193848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000190048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000185952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.XamlHost.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000178192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\SpatialAudioLicenseSrv.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000164368 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000152408 _____ (Microsoft Corporation) C:\Windows\system32\KerbClientShared.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000151352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scmbus.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000147696 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000142544 _____ (Microsoft Corporation) C:\Windows\system32\LicensingUI.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000136192 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.XamlHost.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000127064 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000123952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KerbClientShared.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000122368 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000115120 _____ (Microsoft Corporation) C:\Windows\system32\phoneactivate.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000102216 _____ (Microsoft Corporation) C:\Windows\system32\changepk.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000093712 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000089912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000089536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000088352 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000084280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\autopilot.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000071480 _____ (Microsoft Corporation) C:\Windows\system32\win32appinventorycsp.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\keepaliveprovider.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000066624 _____ (Microsoft Corporation) C:\Windows\system32\iumcrypt.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\tbauth.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\CloudNotifications.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000059192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storufs.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\audioresourceregistrar.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000050544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudNotifications.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\iaspolcy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbauth.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000047208 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Office2010CustomActions.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.Common.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\UpgradeResultsUI.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iaspolcy.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\WpcProxyStubs.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerCookies.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000036152 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000033080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\KNetPwrDepBroker.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmintegrator.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerCookies.exe
2020-03-28 10:51 - 2020-03-28 10:51 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ias.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.ps.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\sbservicetrigger.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000021520 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slcext.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sfloppy.sys
2020-03-28 10:51 - 2020-03-28 10:51 - 000017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.ps.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\DMAlertListener.ProxyStub.dll
2020-03-28 10:51 - 2020-03-28 10:51 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DMAlertListener.ProxyStub.dll
2020-03-26 14:53 - 2020-04-06 14:30 - 000000000 ____D C:\Users\Admin\AppData\Local\ZIBO Updater Resources
2020-03-26 14:53 - 2020-03-29 11:54 - 000000000 ____D C:\Users\Admin\AppData\Local\ZIBO_Updater
2020-03-25 09:37 - 2020-03-25 09:37 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2020-03-23 20:24 - 2020-03-18 11:39 - 000039824 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhdap64.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 001729232 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2020-03-23 20:22 - 2020-03-19 01:26 - 001729232 _____ C:\Windows\system32\vulkaninfo.exe
2020-03-23 20:22 - 2020-03-19 01:26 - 001329360 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-03-23 20:22 - 2020-03-19 01:26 - 001329360 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2020-03-23 20:22 - 2020-03-19 01:26 - 001078992 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 001078992 _____ C:\Windows\system32\vulkan-1.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 000937680 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 000937680 _____ C:\Windows\SysWOW64\vulkan-1.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 000450464 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2020-03-23 20:22 - 2020-03-19 01:26 - 000348048 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2020-03-23 20:22 - 2020-03-19 01:25 - 011944864 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2020-03-23 20:22 - 2020-03-19 01:25 - 010285472 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 002073200 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 001565136 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 001481144 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 001351776 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 001142384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 001022560 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 000817264 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 000680048 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 000676240 _____ C:\Windows\system32\nvofapi64.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 000573024 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2020-03-23 20:22 - 2020-03-19 01:24 - 000546928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2020-03-23 20:22 - 2020-03-19 01:24 - 000544144 _____ C:\Windows\SysWOW64\nvofapi.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 017601120 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 015157664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 005856864 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 005158512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 001049696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 000849848 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2020-03-23 20:22 - 2020-03-19 01:23 - 000811632 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2020-03-23 20:22 - 2020-03-19 01:23 - 000445024 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2020-03-23 20:22 - 2020-03-18 11:39 - 000111058 _____ C:\Windows\system32\nvidia-smi.1.pdf
2020-03-23 20:22 - 2020-03-18 11:39 - 000077314 _____ C:\Windows\system32\nvinfo.pb
2020-03-22 21:35 - 2020-03-22 21:35 - 001166488 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2020-03-22 21:35 - 2020-03-22 21:35 - 000778912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2020-03-22 21:35 - 2020-03-22 21:35 - 000124568 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2020-03-22 21:35 - 2020-03-22 21:35 - 000103072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2020-03-22 21:35 - 2020-03-22 21:35 - 000035592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2020-03-22 21:35 - 2020-03-22 21:35 - 000035592 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2020-03-22 21:35 - 2020-03-22 21:35 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer
2020-03-22 21:35 - 2020-03-22 21:35 - 000000000 ____D C:\Program Files\Reference Assemblies
2020-03-22 21:35 - 2020-03-22 21:35 - 000000000 ____D C:\Program Files\MSBuild
2020-03-22 21:35 - 2020-03-22 21:35 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2020-03-22 21:35 - 2020-03-22 21:35 - 000000000 ____D C:\Program Files (x86)\MSBuild
2020-03-22 21:27 - 2020-03-22 21:27 - 000000735 _____ C:\Users\Admin\Desktop\AudioForVATSIM.lnk
2020-03-22 21:21 - 2020-03-28 15:49 - 000000000 ____D C:\AudioForVATSIM
2020-03-22 21:21 - 2020-03-22 21:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio For VATSIM
2020-03-22 13:39 - 2020-03-22 13:39 - 001438363 _____ C:\Users\Admin\Downloads\twr_training_manual_1.4.pdf
2020-03-22 12:55 - 2020-03-22 12:55 - 000000000 ____D C:\Users\Admin\Documents\Euroscope
2020-03-22 11:45 - 2020-03-22 11:45 - 000000000 ____D C:\Users\Admin\AppData\Local\VACC-CZ.org
2020-03-22 11:42 - 2020-03-22 21:06 - 000000927 _____ C:\Users\Public\Desktop\EuroScope for VACC-CZ.lnk
2020-03-22 11:42 - 2020-03-22 11:45 - 000000000 ____D C:\EuroScope for VACC-CZ
2020-03-22 11:42 - 2020-03-22 11:42 - 000000939 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EuroScope for VACC-CZ.lnk
2020-03-22 11:42 - 2020-03-22 11:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EuroScope for VACC-CZ
2020-03-21 23:57 - 2020-03-21 23:57 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Macromedia
2020-03-21 23:55 - 2020-03-21 23:55 - 000000350 _____ C:\Users\Admin\Desktop\vroute.info.appref-ms
2020-03-21 23:55 - 2020-03-21 23:55 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vroute
2020-03-21 23:51 - 2020-04-04 20:19 - 000000000 ____D C:\Users\Admin\AppData\Local\Deployment
2020-03-21 23:51 - 2020-03-21 23:51 - 000000000 ____D C:\Users\Admin\AppData\Local\Apps\2.0
2020-03-21 23:38 - 2020-03-29 17:59 - 000000000 ____D C:\Users\Admin\AppData\Roaming\VAT-Spy
2020-03-21 23:38 - 2020-03-29 17:56 - 000000000 ____D C:\Program Files (x86)\VATSpy
2020-03-19 19:11 - 2020-03-19 04:22 - 004196160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2020-03-16 13:46 - 2020-03-16 13:46 - 000000000 ____D C:\Users\Admin\AppData\Roaming\ESET
2020-03-16 13:38 - 2020-03-16 13:38 - 000666274 _____ C:\Users\Admin\Desktop\cenik_noark_electric_cz_20191219.xlsm
2020-03-16 08:58 - 2020-03-16 08:58 - 000000000 ____D C:\Users\Admin\Documents\Vlastní šablony Office
2020-03-15 16:56 - 2020-03-15 16:56 - 000000000 ____D C:\Users\Admin\AppData\Local\Blizzard Entertainment
2020-03-15 16:56 - 2020-03-15 16:56 - 000000000 ____D C:\ProgramData\Battle.net
2020-03-15 12:15 - 2020-03-28 15:51 - 000001097 _____ C:\Users\Admin\Desktop\xPilot.lnk
2020-03-15 12:15 - 2020-03-15 12:15 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\xPilot
2020-03-15 12:15 - 2020-03-15 12:15 - 000000000 ____D C:\Users\Admin\AppData\Local\xPilot
2020-03-13 14:59 - 2020-03-13 14:59 - 000772096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2020-03-13 14:59 - 2020-03-13 14:59 - 000561464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2020-03-12 21:04 - 2020-03-12 21:04 - 000001248 _____ C:\Users\Admin\Desktop\AIDA64 Extreme.lnk
2020-03-12 21:04 - 2020-03-12 21:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire
2020-03-12 21:04 - 2020-03-12 21:04 - 000000000 ____D C:\Program Files (x86)\FinalWire
2020-03-10 22:10 - 2020-03-10 22:10 - 019850240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 011607552 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 009711616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 007905784 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 007755776 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 007263992 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 006084344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 005911040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 005764664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 004898144 _____ (Microsoft Corporation) C:\Windows\system32\rtmpltfm.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 004855808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 004580352 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 003860832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpltfm.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 003819520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 003488768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 003263488 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002956688 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002870272 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002715648 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2020-03-10 22:10 - 2020-03-10 22:10 - 002698040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2020-03-10 22:10 - 2020-03-10 22:10 - 002561536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002305536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002289152 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002224952 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002180408 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002072664 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001999952 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001867816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001835128 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001770552 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001764336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001751040 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001697792 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001665416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001664896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001657120 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001647072 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001581056 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001555904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001490640 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001484600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001458688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001417976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001354080 _____ (Microsoft Corporation) C:\Windows\system32\rtmpal.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001284096 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001282944 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001214976 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001153024 _____ (Microsoft Corporation) C:\Windows\system32\windowsperformancerecordercontrol.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 001108040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001098720 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001097728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001091936 _____ (Microsoft Corporation) C:\Windows\system32\rtmcodecs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001088000 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 001032544 _____ (Microsoft Corporation) C:\Windows\system32\ortcengine.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000980320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpal.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000915296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmcodecs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000898048 _____ (Microsoft Corporation) C:\Windows\system32\MdmDiagnostics.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000877232 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowsperformancerecordercontrol.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000851968 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000835584 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000757632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000739328 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000734720 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000732000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ortcengine.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000705536 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000680184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000670720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000669496 _____ (Microsoft Corporation) C:\Windows\system32\computecore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000668672 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000636848 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000613888 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\SppExtComObj.Exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000551824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000535552 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000525312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000510768 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000455168 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000379904 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000368128 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticLogCSP.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000287744 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacEncoder.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000271872 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000248064 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacEncoder.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000232960 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000226816 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000221200 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2020-03-10 22:10 - 2020-03-10 22:10 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000199480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000193592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngOnline.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000165504 _____ (Microsoft Corporation) C:\Windows\system32\dmcmnutils.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000146712 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\provpackageapidll.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\DeviceMetadataRetrievalClient.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000131896 _____ (Microsoft Corporation) C:\Windows\system32\DTUHandler.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000130112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcmnutils.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000120560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000114176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2020-03-10 22:10 - 2020-03-10 22:10 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\enterpriseresourcemanager.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enterpriseresourcemanager.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000056672 _____ (Microsoft Corporation) C:\Windows\system32\rtmmvrortc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmmvrortc.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000042296 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.exe
2020-03-10 22:10 - 2020-03-10 22:10 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\MUILanguageCleanup.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2020-03-10 22:10 - 2020-03-10 22:10 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2020-03-10 22:07 - 2020-02-11 06:48 - 000390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2020-03-10 22:07 - 2020-02-11 06:37 - 000492544 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2020-03-08 21:38 - 2020-03-08 21:38 - 000000261 _____ C:\Users\Admin\AppData\Roaming\OpenSceneryX Installer.plist
2020-03-08 17:01 - 2020-03-08 17:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IXEG 737 Classic
2020-03-08 16:34 - 2020-03-24 17:25 - 000000993 _____ C:\Users\Admin\Desktop\X-Plane.lnk
2020-03-08 16:25 - 2020-03-08 16:25 - 000000000 ____D C:\Users\Admin\AppData\Local\GMap.NET
2020-03-08 16:24 - 2020-03-11 18:23 - 000001236 _____ C:\Users\Public\Desktop\EFASS NG.lnk
2020-03-08 16:24 - 2020-03-08 16:24 - 000000000 ____D C:\Users\Admin\Documents\Froom
2020-03-08 16:24 - 2020-03-08 16:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EFASS
2020-03-08 16:24 - 2020-03-08 16:24 - 000000000 ____D C:\Program Files (x86)\Froom
2020-03-08 16:12 - 2020-03-08 16:15 - 000000026 _____ C:\Users\Admin\Documents\VATSIM ID a heslo.txt
2020-03-08 15:04 - 2020-04-05 20:12 - 000000000 ____D C:\X-Plane 11
2020-03-08 15:04 - 2020-03-08 15:04 - 000000016 _____ C:\Users\Admin\AppData\Local\x-plane_install_11.txt
2020-03-08 15:03 - 2020-04-06 23:35 - 000000112 _____ C:\Users\Admin\AppData\Local\X-Plane_drm_11.prf
2020-03-08 15:03 - 2020-04-06 23:33 - 000000102 _____ C:\Users\Admin\AppData\Local\X-Plane_xdd_11.prf
2020-03-08 15:03 - 2020-03-08 16:29 - 000000037 _____ C:\Users\Admin\AppData\Local\X-Plane Installer.prf
2020-03-08 15:02 - 2020-03-08 15:02 - 000000056 _____ C:\Users\Admin\AppData\Local\X-Plane 11 Preferences.prf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-04-07 08:34 - 2020-02-25 17:32 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Twitch
2020-04-07 08:33 - 2020-02-25 17:36 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Discord
2020-04-07 08:33 - 2020-02-25 16:37 - 000000000 ____D C:\Program Files (x86)\Steam
2020-04-07 08:33 - 2020-02-25 16:31 - 000000000 ____D C:\ProgramData\NVIDIA
2020-04-07 08:33 - 2020-02-21 15:38 - 000000000 ___RD C:\Users\Admin\OneDrive
2020-04-06 23:55 - 2020-02-21 15:47 - 000011334 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2020-04-06 23:54 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-04-06 23:54 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\AppReadiness
2020-04-06 23:54 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-06 23:34 - 2020-02-21 15:41 - 001694640 _____ C:\Windows\system32\PerfStringBackup.INI
2020-04-06 23:34 - 2019-03-19 13:57 - 000717182 _____ C:\Windows\system32\perfh005.dat
2020-04-06 23:34 - 2019-03-19 13:57 - 000145262 _____ C:\Windows\system32\perfc005.dat
2020-04-06 23:34 - 2019-03-19 06:50 - 000000000 ____D C:\Windows\INF
2020-04-06 23:28 - 2020-03-04 19:57 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-04-06 23:28 - 2020-02-21 15:35 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-04-06 23:27 - 2019-03-19 06:37 - 000524288 _____ C:\Windows\system32\config\BBI
2020-04-06 23:25 - 2020-02-25 17:01 - 000003694 _____ C:\Windows\system32\Tasks\ROCCAT DEVICE SERVICE
2020-04-06 23:24 - 2020-02-21 15:40 - 000014179 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2020-04-06 23:24 - 2020-02-21 15:40 - 000012398 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2020-04-06 23:24 - 2020-02-21 15:40 - 000001206 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1
2020-04-06 23:23 - 2020-02-25 18:50 - 000000000 ____D C:\Users\Admin\AppData\Local\CrashDumps
2020-04-06 19:24 - 2020-02-21 15:35 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-04-06 16:42 - 2020-02-21 15:37 - 000000000 ____D C:\Users\Admin\AppData\Local\Packages
2020-04-05 23:20 - 2020-02-24 10:28 - 000016321 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1
2020-04-05 00:08 - 2020-02-21 15:40 - 000011379 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1
2020-04-03 19:45 - 2019-11-29 09:30 - 000154336 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2020-04-03 16:41 - 2020-02-25 16:29 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-04-03 16:41 - 2020-02-25 16:29 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-04-03 13:30 - 2020-02-28 00:24 - 000013913 _____ C:\ProgramData\DisplaySessionContainer4.log_backup1
2020-04-03 11:55 - 2020-02-21 15:37 - 000000000 ____D C:\Users\Admin
2020-04-02 10:02 - 2020-02-25 17:09 - 000000000 ____D C:\Condor2
2020-04-01 19:18 - 2020-03-02 11:17 - 000000000 ____D C:\Users\Admin\Documents\Záloha registry
2020-04-01 19:17 - 2020-02-25 19:57 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update
2020-04-01 19:17 - 2020-02-25 19:57 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-04-01 19:15 - 2020-02-25 17:00 - 000000000 ____D C:\ProgramData\Package Cache
2020-04-01 19:11 - 2019-03-19 06:52 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2020-04-01 11:59 - 2020-02-21 15:39 - 000000000 ____D C:\Users\Admin\AppData\Local\D3DSCache
2020-03-28 10:56 - 2020-02-21 15:35 - 000441552 _____ C:\Windows\system32\FNTCACHE.DAT
2020-03-28 10:56 - 2019-03-19 13:59 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SystemResources
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\ShellExperiences
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\Provisioning
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\PolicyDefinitions
2020-03-28 10:56 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\bcastdvr
2020-03-28 10:53 - 2019-03-19 06:37 - 000000000 ____D C:\Windows\CbsTemp
2020-03-28 01:27 - 2020-03-05 01:03 - 000011369 _____ C:\ProgramData\DisplaySessionContainer5.log_backup1
2020-03-25 20:13 - 2020-02-21 15:48 - 000000000 ____D C:\Users\Admin\AppData\Local\ElevatedDiagnostics
2020-03-24 18:04 - 2020-03-04 19:57 - 000000000 ____D C:\Users\Admin\AppData\Roaming\TeamViewer
2020-03-24 12:18 - 2020-02-25 17:04 - 000000000 ____D C:\Users\Admin\AppData\Local\NVIDIA
2020-03-22 21:35 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SysWOW64\MUI
2020-03-22 21:35 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\MUI
2020-03-22 11:49 - 2020-02-21 15:37 - 000000000 ____D C:\Users\Admin\AppData\Local\VirtualStore
2020-03-21 10:24 - 2020-02-25 16:46 - 000000000 ___RD C:\Users\Admin\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App
2020-03-21 10:23 - 2020-02-21 15:48 - 000000000 ____D C:\Users\Admin\AppData\Local\Comms
2020-03-20 22:35 - 2020-02-25 16:29 - 000003474 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-03-20 22:35 - 2020-02-25 16:29 - 000003350 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-03-20 20:48 - 2019-11-29 09:30 - 000188872 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
2020-03-20 20:48 - 2019-11-29 09:30 - 000115960 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
2020-03-20 20:48 - 2019-11-29 09:30 - 000106840 _____ (ESET) C:\Windows\system32\Drivers\edevmon.sys
2020-03-20 20:48 - 2019-11-29 09:30 - 000079520 _____ (ESET) C:\Windows\system32\Drivers\epfw.sys
2020-03-20 20:48 - 2019-11-29 09:30 - 000053048 _____ (ESET) C:\Windows\system32\Drivers\ekbdflt.sys
2020-03-20 00:29 - 2020-02-25 18:51 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2020-03-20 00:29 - 2020-02-25 18:51 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-03-19 16:40 - 2020-03-06 00:30 - 000013747 _____ C:\ProgramData\DisplaySessionContainer6.log_backup1
2020-03-19 04:22 - 2020-02-21 15:40 - 004927048 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2020-03-19 01:23 - 2020-02-25 17:06 - 000655472 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2020-03-18 22:27 - 2020-02-25 20:15 - 000000000 ____D C:\Users\Admin\AppData\Roaming\slobs-client
2020-03-18 11:39 - 2020-02-21 15:40 - 000222112 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2020-03-15 17:35 - 2020-02-21 15:37 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Adobe
2020-03-14 21:55 - 2020-02-21 15:38 - 000003376 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3465363423-735592264-602919839-1001
2020-03-14 21:55 - 2020-02-21 15:37 - 000002361 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-13 13:02 - 2020-02-25 20:06 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-03-12 14:53 - 2020-02-21 15:39 - 000000000 ____D C:\Users\Admin\AppData\Local\PlaceholderTileLogoFolder
2020-03-10 22:24 - 2020-02-21 15:37 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-03-10 22:24 - 2020-02-21 15:37 - 000000000 ___RD C:\Users\Admin\3D Objects
2020-03-10 22:23 - 2019-03-19 06:52 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2020-03-10 22:23 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SysWOW64\Dism
2020-03-10 22:23 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2020-03-10 22:23 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\Dism
2020-03-10 22:23 - 2019-03-19 06:37 - 000000000 ____D C:\Windows\servicing
2020-03-10 22:12 - 2020-02-21 15:45 - 000000000 ____D C:\Windows\system32\MRT
2020-03-10 22:11 - 2020-02-21 15:44 - 121542864 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe

==================== Files in the root of some directories ========

2020-03-08 21:38 - 2020-03-08 21:38 - 000000261 _____ () C:\Users\Admin\AppData\Roaming\OpenSceneryX Installer.plist
2020-03-08 15:02 - 2020-03-08 15:02 - 000000056 _____ () C:\Users\Admin\AppData\Local\X-Plane 11 Preferences.prf
2020-03-08 15:03 - 2020-03-08 16:29 - 000000037 _____ () C:\Users\Admin\AppData\Local\X-Plane Installer.prf
2020-02-25 18:29 - 2020-03-07 20:10 - 000000073 _____ () C:\Users\Admin\AppData\Local\X-Plane_drm.prf
2020-03-08 15:03 - 2020-04-06 23:35 - 000000112 _____ () C:\Users\Admin\AppData\Local\X-Plane_drm_11.prf
2020-02-25 18:29 - 2020-02-25 18:29 - 000000016 _____ () C:\Users\Admin\AppData\Local\x-plane_install_10.txt
2020-03-08 15:04 - 2020-03-08 15:04 - 000000016 _____ () C:\Users\Admin\AppData\Local\x-plane_install_11.txt
2020-03-08 15:03 - 2020-04-06 23:33 - 000000102 _____ () C:\Users\Admin\AppData\Local\X-Plane_xdd_11.prf

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================




Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-04-2020
Ran by Admin (07-04-2020 08:35:09)
Running from C:\Users\Admin\Desktop
Windows 10 Pro Version 1909 18363.752 (X64) (2020-02-21 13:36:35)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Admin (S-1-5-21-3465363423-735592264-602919839-1001 - Administrator - Enabled) => C:\Users\Admin
Administrator (S-1-5-21-3465363423-735592264-602919839-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3465363423-735592264-602919839-503 - Limited - Disabled)
Guest (S-1-5-21-3465363423-735592264-602919839-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3465363423-735592264-602919839-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
FW: ESET Firewall (Enabled) {B066057A-E576-007C-D591-56C163D3B33B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Active Sky XP (HKLM-x32\...\{693405BE-9994-42B5-BAE6-0F20CF8C7DBE}_is1) (Version: 1.0.7205.25150 - HiFi Technologies, Inc.)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.006.20042 - Adobe Systems Incorporated)
AIDA64 Extreme v6.20 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 6.20 - FinalWire Ltd.)
Aktualizace NVIDIA 38.0.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.4.0 - NVIDIA Corporation) Hidden
ASXPConnect Plugin (HKLM-x32\...\{EC0FE36D-00CE-4D89-8859-7A630FB9EF3B}_is1) (Version: 1.0.7205.25150 - HiFi Technologies, Inc.)
Audio For VATSIM (HKLM-x32\...\{B0D70FE1-B891-41D0-ACE2-895F625BA382}) (Version: 1.7.21 - VATSIM)
CCleaner (HKLM\...\CCleaner) (Version: 5.65 - Piriform)
Discord (HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\Discord) (Version: 0.0.306 - Discord Inc.)
EFASS version NG (HKLM-x32\...\{C99177FE-4E7B-46CA-B3C2-73581D4063C1}_is1) (Version: NG - Froom Simulation Software)
ESET Security (HKLM\...\{D8E84711-EDFC-4D4E-B579-95AEB40DAA4D}) (Version: 13.1.21.0 - ESET, spol. s r.o.)
EuroScope for VACC-CZ (HKLM-x32\...\{B380FB0A-B123-4327-812C-B6F215813B79}) (Version: 2.0.0 - VACC-CZ.org)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.163 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
IXEG 737 Classic (HKLM\...\IXEG 737 Classic 1.2+) (Version: 1.2+ - X-Aviation)
Microsoft Flight Simulator SimConnect Client v10.0.61259.0 (HKLM-x32\...\{D61CA184-3F6D-4A50-B2CC-7A18447D6A8D}) (Version: 10.0.61259.0 - Microsoft Corporation)
Microsoft Office 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.12527.20278 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27027 (HKLM-x32\...\{39e28474-b67b-4209-af1b-e9ad0a83d8ca}) (Version: 14.16.27027.1 - Microsoft Corporation)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.2.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.2.34 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.26 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 445.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 445.75 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8858.1 - Realtek Semiconductor Corp.)
ROCCAT Swarm (HKLM-x32\...\{9D12397F-45AF-4517-B492-1D1E2FA475EE}) (Version: 1.93.650 - ROCCAT GmbH) Hidden
ROCCAT Swarm (HKLM-x32\...\InstallShield_{9D12397F-45AF-4517-B492-1D1E2FA475EE}) (Version: 1.93.650 - ROCCAT GmbH)
smartCARS - DLH Virtual (en-US) (HKLM\...\{1F2D0F9E-3FF0-8A90-A0D5-574E65F10AD5_en-US}) (Version: 2.1.34.0 - TFDi Design)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Streamlabs Chatbot version 1.0.2.61 (HKLM-x32\...\{08D3C5BB-C492-4916-B111-725081845380}_is1) (Version: 1.0.2.61 - Streamlabs)
Streamlabs OBS 0.20.2 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.20.2 - General Workings, Inc.)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.3.2682 - TeamViewer)
Twitch (HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
VAT-Spy (HKLM-x32\...\VATSpy) (Version: - )
vroute.info (HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\5ff0fb0cf6679301) (Version: 2.1.1.16 - vroute)
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-02-21] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-02-21] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.1224.0_x64__8wekyb3d8bbwe [2020-03-01] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-26] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.956.0_x64__56jybvy8sckqj [2020-02-21] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.9.205.0_x64__dt26b99r8h8gj [2020-02-24] (Realtek Semiconductor Corp)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0 [2020-03-31] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-03] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-03] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8c5e3f480513d171\nvshext.dll [2020-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-03] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [msacm.lhacm] => C:\Windows\SysWOW64\lhacm.acm [34064 2020-04-03] (Microsoft Corporation) [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-02-05 12:58 - 2020-03-24 04:11 - 000642048 _____ () [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\aimo.dll
2015-12-29 07:25 - 2015-12-29 00:25 - 000120334 _____ () [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\libgcc_s_dw2-1.dll
2015-12-29 07:25 - 2015-12-29 00:25 - 001540622 _____ () [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\libstdc++-6.dll
2019-10-24 12:16 - 2019-10-24 05:16 - 007523840 _____ () [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\resource.dll
2015-12-29 07:25 - 2015-12-29 00:25 - 000079360 _____ (MingW-W64 Project. All rights reserved.) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\libwinpthread-1.dll
2016-08-11 19:26 - 2016-08-11 12:26 - 000019456 _____ (Roccat GmbH) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\UDPServer.dll
2015-12-29 07:52 - 2015-12-29 00:52 - 002177536 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\LIBEAY32.dll
2015-12-29 07:52 - 2015-12-29 00:52 - 000462336 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ssleay32.dll
2016-06-11 03:15 - 2016-06-10 20:15 - 000058880 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qdds.dll
2016-06-10 16:32 - 2016-06-10 09:32 - 000033792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qgif.dll
2016-06-11 03:15 - 2016-06-10 20:15 - 000046592 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qicns.dll
2016-06-10 16:33 - 2016-06-10 09:33 - 000036352 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qico.dll
2016-06-10 16:32 - 2016-06-10 09:32 - 000258560 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qjpeg.dll
2016-06-11 02:51 - 2016-06-10 19:51 - 000028672 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qsvg.dll
2016-06-11 03:15 - 2016-06-10 20:15 - 000028672 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qtga.dll
2016-06-11 03:15 - 2016-06-10 20:15 - 000495616 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qtiff.dll
2016-06-11 03:15 - 2016-06-10 20:15 - 000027648 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qwbmp.dll
2016-06-11 03:16 - 2016-06-10 20:16 - 000416768 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\imageformats\qwebp.dll
2016-06-13 04:38 - 2016-06-12 21:38 - 000317440 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\mediaservice\dsengine.dll
2016-06-10 16:34 - 2016-06-10 09:34 - 001489920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\platforms\qwindows.dll
2020-01-13 10:29 - 2020-01-13 03:29 - 005384704 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Core.dll
2016-06-10 16:23 - 2016-06-10 09:23 - 005283840 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Gui.dll
2016-06-13 04:29 - 2016-06-12 21:29 - 000853504 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Multimedia.dll
2016-06-10 16:17 - 2016-06-10 09:17 - 001610240 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Network.dll
2016-06-11 02:51 - 2016-06-10 19:51 - 000348160 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Svg.dll
2016-06-10 16:29 - 2016-06-10 09:29 - 006358528 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Widgets.dll
2016-06-10 16:17 - 2016-06-10 09:17 - 000216064 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\Qt5Xml.dll
2015-08-24 11:10 - 2015-08-24 04:10 - 000110207 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\BASS.dll
2015-08-24 11:10 - 2015-08-24 04:10 - 000012166 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\BASSWASAPI.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Admin\Data aplikací:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\Admin\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2019-03-19 06:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3465363423-735592264-602919839-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Admin\Pictures\best-pubg-wallpapers-hd-download-with-4k-1080p-resolution-for-mobile-and-desktop.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{21EE3FA4-372C-4E4A-A23A-1F36EA99B822}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{4A4447AA-E3E9-4860-813C-CB814CDF830F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{3CBDEF82-9377-4045-9E97-0079C490CCF4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [{5D48189D-05EA-4349-A665-7853F457DEFD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [{CFADA6A4-91E6-44CA-ACF1-6D9BBA62EB97}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F24FA6C2-6B42-49A5-90FF-9A92BFDEA3C3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{AA699F53-CE1B-4EB4-BB9D-F34FD6734BE0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0A9353D4-8F30-402C-A419-A70BA48ED983}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{A410AACA-E98A-4000-B048-4B1BB84E1DC8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{60A5C7C6-A76A-40ED-8F97-70148DE712AD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{011B8CA6-73A4-40BD-AC6F-9E024645E40F}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6A12094A-BE2A-4370-ABF8-40FBD595E398}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{E3F900BD-AB06-4C1E-9FE8-708A8294F72B}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{CBFDBE99-0A7A-4B94-B0A5-2F5EB75F3805}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{FE41CB4E-E935-4F63-9434-76F6C5B1FFA6}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{58D51EEF-1531-4E9B-BBF4-4D55A36A8C1A}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{605C5B0C-6836-460E-AE87-3398C28160BD}] => (Allow) C:\Users\Admin\AppData\Roaming\Streamlabs\Streamlabs Chatbot\Streamlabs Chatbot.exe (General Workings, Inc. -> hxxps://www.Streamlabs.com)
FirewallRules: [{A8D88D3A-CFC0-4097-80C4-F4F03BD89850}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{9F450028-78F5-4B92-8690-87C1CE805564}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{4BB883DD-025C-440E-9262-6CFE8366DAED}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1EE10599-560F-488C-BD74-320CCC6E3BED}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{4E3E726A-7D1D-4F74-970A-D9B2387021CF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{E9CBE1A8-D4B7-4E7B-A3F8-55D2CA7F437B}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{F480C42E-7BB8-4FCA-B5D1-7B1366351813}] => (Allow) LPort=445
FirewallRules: [{931F4056-33A0-4E7A-B647-03368B8965EB}] => (Allow) LPort=19284
FirewallRules: [{32CE7D58-650E-4024-9C67-E713F7FF29F4}] => (Allow) LPort=19285
FirewallRules: [{264BF0DD-B24B-4B87-800D-D251B4E449FF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{E7C31809-4C16-4769-B145-404F21AF0CD7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8F3FEACD-174D-4729-81AF-D1EDCDD54E05}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3019D9DE-8371-44E7-88CF-444C0D8DE355}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CC4B94E4-49B8-4CB6-A2B1-6FFFA57D3046}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{271E78C8-159E-4488-9503-749A87630BA6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{BAEED163-BAC2-4A16-9C00-04575D166102}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3889AEAC-A25A-4C7B-9D5A-7B1077F31BE0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.129.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{48A7CD34-C2C3-47DE-B4CA-408892892B6B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

29-03-2020 16:32:12 Installed DLH Virtual Groups Custom ACARS
31-03-2020 12:51:52 Prepar3D v4 Academic
01-04-2020 19:12:36 Prepar3D v4 Academic

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (04/07/2020 08:34:34 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wmiprvse.exe, verze: 10.0.18362.1, časové razítko: 0x2b37314e
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0x80131623
Posun chyby: 0x00007ffa3419200f
ID chybujícího procesu: 0x3414
Čas spuštění chybující aplikace: 0x01d60ca69a3e9a0b
Cesta k chybující aplikaci: C:\Windows\system32\wbem\wmiprvse.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 4bb6fead-8f78-4a1a-abed-d568f60b99ec
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (04/07/2020 08:34:34 AM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: wmiprvse.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Byla vyvolána neočekávaná výjimka od poskytovatele:
System.IO.FileLoadException:
File name: 'Microsoft.AppV.AppvClientComConsumer, Version=10.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'
at Microsoft.AppV.AppvPublishingServerWMI.AppvPublishingServer.EnumeratePublishingServers()


Stack:
at System.Environment.FailFast(System.String)
at WmiNative.WbemProvider.WmiNative.IWbemServices.CreateInstanceEnumAsync(System.String, Int32, WmiNative.IWbemContext, WmiNative.IWbemObjectSink)

Error: (04/07/2020 08:34:34 AM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002

Error: (04/07/2020 08:34:34 AM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002

Error: (04/07/2020 08:34:34 AM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002

Error: (04/07/2020 08:34:34 AM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002

Error: (04/07/2020 08:34:34 AM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003

Error: (04/07/2020 08:34:34 AM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003


System errors:
=============
Error: (04/06/2020 11:27:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Adaptér výkonu rozhraní WMI byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (04/06/2020 11:27:50 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Steam Client Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (04/06/2020 11:27:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (04/06/2020 11:27:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Realtek Audio Universal Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (04/06/2020 11:27:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Microsoft Office Klikni a spusť byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (04/06/2020 11:27:50 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (04/06/2020 11:27:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (04/06/2020 11:23:09 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-CTPNGS7)
Description: Nelze spustit server DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Došlo k chybě:
2147942767
při provádění příkazu:
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}


CodeIntegrity:
===================================

Date: 2020-04-06 23:54:02.033
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-06 23:54:02.030
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-06 23:54:02.026
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-06 23:43:01.974
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-06 23:43:01.971
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-06 23:43:01.966
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-06 23:30:25.381
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-06 23:30:25.372
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: American Megatrends Inc. 2.A0 08/24/2019
Motherboard: Micro-Star International Co., Ltd. Z370-A PRO (MS-7B48)
Processor: Intel(R) Core(TM) i7-9700F CPU @ 3.00GHz
Percentage of memory in use: 28%
Total physical RAM: 16326.23 MB
Available physical RAM: 11626.15 MB
Total Virtual: 23750.23 MB
Available Virtual: 17529.62 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.13 GB) (Free:238.59 GB) NTFS

\\?\Volume{9841689a-c0e7-4d75-bd78-1744326b21c6}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.09 GB) NTFS
\\?\Volume{eface461-89d4-4dea-878d-548c7daf0605}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Děkuji. Martin.

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil s

#6 Příspěvek od Conder »

:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    File: C:\Program Files (x86)\VATSpy\VATSpy.exe
    File: C:\Windows\System32\drivers\BthA2dp.sys
    File: C:\Windows\SysWOW64\lhacm.acm
    Folder: C:\ProgramData\boost_interprocess
    Folder: C:\Users\Admin\AppData\Local\PilotUI
    Folder: C:\Users\Admin\AppData\Local\cache
    
    HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\MountPoints2: {deb0a980-54b6-11ea-b6f1-309c23aeb77d} - "E:\Installer_Windows.exe" 
    CHR DefaultSearchURL: Default -> hxxps://skysight.io/ozsoar/img/logo-192.png
    S3 cpuz149; \??\C:\Windows\temp\cpuz149\cpuz149_x64.sys [X]
    2020-04-03 15:28 - 2020-04-03 15:28 - 000000000 ____D C:\Users\Admin\AppData\Local\cache
    ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
    ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> No File
    ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
    ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> No File
    ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
    ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
    AlternateDataStreams: C:\Users\Admin\Data aplikací:00e481b5e22dbe1f649fcddd505d3eb7 [394]
    AlternateDataStreams: C:\Users\Admin\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Martin D.
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 29 bře 2009 11:09

Re: Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil s

#7 Příspěvek od Martin D. »

Ahoj,

zde:

Fix result of Farbar Recovery Scan Tool (x64) Version: 05-04-2020
Ran by Admin (07-04-2020 23:15:43) Run:1
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin (Available Profiles: Admin)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
File: C:\Program Files (x86)\VATSpy\VATSpy.exe
File: C:\Windows\System32\drivers\BthA2dp.sys
File: C:\Windows\SysWOW64\lhacm.acm
Folder: C:\ProgramData\boost_interprocess
Folder: C:\Users\Admin\AppData\Local\PilotUI
Folder: C:\Users\Admin\AppData\Local\cache

HKU\S-1-5-21-3465363423-735592264-602919839-1001\...\MountPoints2: {deb0a980-54b6-11ea-b6f1-309c23aeb77d} - "E:\Installer_Windows.exe"
CHR DefaultSearchURL: Default -> hxxps://skysight.io/ozsoar/img/logo-192.png
S3 cpuz149; \??\C:\Windows\temp\cpuz149\cpuz149_x64.sys [X]
2020-04-03 15:28 - 2020-04-03 15:28 - 000000000 ____D C:\Users\Admin\AppData\Local\cache
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
AlternateDataStreams: C:\Users\Admin\Data aplikací:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\Admin\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 713
Average :
Sum : 16478344357
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========


========================= File: C:\Program Files (x86)\VATSpy\VATSpy.exe ========================

C:\Program Files (x86)\VATSpy\VATSpy.exe
File not signed
MD5: D9895C6C73864F29FFC391152DDEC6A8
Creation and modification date: 2010-03-09 05:55 - 2010-03-09 05:55
Size: 000438784
Attributes: ----A
Company Name:
Internal Name: VATSpy.exe
Original Name: VATSpy.exe
Product: VAT-Spy
Description: VATSpy
File Version: 1.0.0.0
Product Version: 1.0.0.0
Copyright: Copyright © 2007
VirusTotal: https://www.virustotal.com/file/c36dab7 ... 545828692/

====== End of File: ======


========================= File: C:\Windows\System32\drivers\BthA2dp.sys ========================

C:\Windows\System32\drivers\BthA2dp.sys
File not signed
MD5: CCA2505C9EB10CDABDC9FEE10D812F02
Creation and modification date: 2019-10-07 04:57 - 2019-10-07 04:57
Size: 000231936
Attributes: ----A
Company Name: Microsoft Corporation
Internal Name: btha2dp.sys
Original Name: btha2dp.sys
Product: Microsoft® Windows® Operating System
Description: Bluetooth A2DP Driver
File Version: 10.0.18362.356 (WinBuild.160101.0800)
Product Version: 10.0.18362.356
Copyright: © Microsoft Corporation. All rights reserved.
VirusTotal: https://www.virustotal.com/file/8b0f65f ... 586284653/

====== End of File: ======


========================= File: C:\Windows\SysWOW64\lhacm.acm ========================

C:\Windows\SysWOW64\lhacm.acm
File not signed
MD5: 4585780A8EB71D86DF64553B34BA8F79
Creation and modification date: 2020-04-03 12:59 - 2020-04-03 12:59
Size: 000034064
Attributes: ----A
Company Name: Microsoft Corporation
Internal Name: lhacm
Original Name: lhacm.acm
Product: Windows® NetMeeting®
Description: Lernout & Hauspie Codecs
File Version: 4.4.3385
Product Version: 3.01
Copyright: Copyright © Lernout & Hauspie and Microsoft Corp. 1996-1999
VirusTotal: https://www.virustotal.com/file/2727ae8 ... 571083069/

====== End of File: ======


========================= Folder: C:\ProgramData\boost_interprocess ========================

2020-04-06 23:33 - 2020-04-07 11:17 - 000000000 ____D [00000000000000000000000000000000] () C:\ProgramData\boost_interprocess\1586208499

====== End of Folder: ======


========================= Folder: C:\Users\Admin\AppData\Local\PilotUI ========================

2020-04-03 15:28 - 2020-04-03 15:28 - 000000000 ____D [00000000000000000000000000000000] () C:\Users\Admin\AppData\Local\PilotUI\cache
2020-04-03 15:28 - 2020-04-03 15:28 - 000000000 ____D [00000000000000000000000000000000] () C:\Users\Admin\AppData\Local\PilotUI\cache\qmlcache
2020-04-03 15:28 - 2020-04-03 15:28 - 000021064 ____A [76B76A822AC2CE219BA8CBA564210BA7] () C:\Users\Admin\AppData\Local\PilotUI\cache\qmlcache\fc42a4b3344b89c44730c30efb38542f4bb614b6.qmlc

====== End of Folder: ======


========================= Folder: C:\Users\Admin\AppData\Local\cache ========================

2020-04-03 15:28 - 2020-04-03 15:28 - 000000000 ____D [00000000000000000000000000000000] () C:\Users\Admin\AppData\Local\cache\qtshadercache
2020-04-03 15:28 - 2020-04-03 15:28 - 000012734 ____A [76E704842B7E87BD16032FF1784AA0E3] () C:\Users\Admin\AppData\Local\cache\qtshadercache\67876e0d57010df0a7823d030e24d3cb31c4b17b
2020-04-03 15:28 - 2020-04-03 15:28 - 000009118 ____A [D7C3C63BAEB3FF36A209169B3AC35C38] () C:\Users\Admin\AppData\Local\cache\qtshadercache\7d5f9fc417d36376dbfbebf864483aca3a25ac1a
2020-04-03 15:28 - 2020-04-03 15:28 - 000009639 ____A [3CC484ED97545F054C0FAA05458B9D3E] () C:\Users\Admin\AppData\Local\cache\qtshadercache\d524b60ebe14b3342c6956c081215082a7ec73c0
2020-04-03 15:28 - 2020-04-03 15:28 - 000013145 ____A [6479EB940814D759F2302EB31E1E20C0] () C:\Users\Admin\AppData\Local\cache\qtshadercache\e24592d8d235339875cae31851ad680a190a7cc6

====== End of Folder: ======

HKU\S-1-5-21-3465363423-735592264-602919839-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{deb0a980-54b6-11ea-b6f1-309c23aeb77d} => removed successfully
"Chrome DefaultSearchURL" => removed successfully
HKLM\System\CurrentControlSet\Services\cpuz149 => removed successfully
cpuz149 => service removed successfully
C:\Users\Admin\AppData\Local\cache => moved successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => removed successfully
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
C:\Users\Admin\Data aplikací => ":00e481b5e22dbe1f649fcddd505d3eb7" ADS removed successfully
"C:\Users\Admin\AppData\Roaming" => ":00e481b5e22dbe1f649fcddd505d3eb7" ADS not found.
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 15998923 B
Java, Flash, Steam htmlcache => 382113573 B
Windows/system/drivers => 2456140 B
Edge => 252768 B
Chrome => 413483915 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 9078 B
NetworkService => 9078 B
Admin => 7811514 B

RecycleBin => 0 B
EmptyTemp: => 794.1 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 23:15:59 ====

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil s

#8 Příspěvek od Conder »

:arrow: Plocha ma cca 15 GB, co je vela. Odporucam presunut vsetky subory a zlozky z plochy do dokumentov a na ploche nechat iba odkazy/zastupcov. Prilis velka velkost plochy moze sposobit spomalenie systemu.

:arrow: Inak logy vyzeraju OK. Su s PC nejake problemy?
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Martin D.
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 29 bře 2009 11:09

Re: Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil s

#9 Příspěvek od Martin D. »

Ahoj,

děkuji. Na ploše jsem udělal pořádek.. Měl jsem tam fotky ze svatby. :-) Ženu uvidím celý život, na co bych ji měl na ploše ještě. :lol:

Děkuji za pomoc. PC funguje skvěle.

Měj se hezky.

Martin.

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil s

#10 Příspěvek od Conder »

:arrow: Tak este upraceme po pouzitych nastrojoch:
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Martin D.
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 29 bře 2009 11:09

Re: Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil s

#11 Příspěvek od Martin D. »

Děkuji za pomoc!

Měj se krásně a pevné zdraví!

Martin. :worship:

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Twitch Nitro- Nedopatřením jsem to odklikl a přihlásil s

#12 Příspěvek od Conder »

Nie je zaco, rad som pomohol :)

Taktiez prajem vela zdravia a pekne sviatky :)
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Zamčeno