Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o preventivku

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Y0G1
Návštěvník
Návštěvník
Příspěvky: 462
Registrován: 30 říj 2010 15:00

Prosim o preventivku

#1 Příspěvek od Y0G1 »

Dobry den vam prajem poprosil by som o preventivku zhruba pred mesiacom som musel dat w10 do tovarenskych nastaveni .

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-05.2019
Ran by Martin (administrator) on DESKTOP-TETKG5G (Micro-Star International Co., Ltd. MS-7A34) (03-05-2019 13:58:08)
Running from C:\Users\Martin\AppData\Local\Temp\scoped_dir11800_30494
Loaded Profiles: Martin (Available Profiles: Martin & 8IKEHd8Tqd)
Platform: Windows 10 Pro Version 1803 17134.706 (X64) Language: Slovenčina (Slovensko)
Default browser: Opera
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\Program Files (x86)\Battle.net\Battle.net.exe
(Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\Program Files (x86)\Battle.net\Battle.net.exe
(Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.6685\Agent.exe
(Discord Inc. -> Discord Inc.) C:\Users\Martin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Martin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Martin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Martin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Martin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Martin\AppData\Local\Discord\app-0.0.305\Discord.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1904.1-0\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1904.1-0\NisSrv.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.WindowsStore_11811.1001.27.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Martin\AppData\Local\Programs\Opera\60.0.3255.27\opera_crashreporter.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3299137129-3959029366-2649080390-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3299137129-3959029366-2649080390-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1098728 2019-04-30] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-3299137129-3959029366-2649080390-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3152160 2019-04-30] (Valve -> Valve Corporation)
HKU\S-1-5-21-3299137129-3959029366-2649080390-1001\...\Run: [Discord] => C:\Users\Martin\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0123DACD-ADF9-4492-8EFC-2E017FE963DD} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {01D0AA8E-62DB-4658-B25F-4C2814AB2440} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0EBE1620-407F-4489-9617-1D426650C759} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {2F329264-3ABB-4494-93A6-44026558BAE9} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {4BE100CD-7222-482B-892A-31C6E1BB2847} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {53981B73-0602-43E4-8258-F2C905A15D8B} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {53F9202A-9163-4641-9BE2-9E2708C7444E} - System32\Tasks\Opera scheduled Autoupdate 1553093722 => C:\Users\Martin\AppData\Local\Programs\Opera\launcher.exe [1492568 2019-04-08] (Opera Software AS -> Opera Software)
Task: {54EC900F-2DCB-4805-BE95-5B472722F400} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {56D252A7-CCF0-49C7-8BBD-DD53E84CCC26} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {81B619E3-9AB5-4C27-9A08-15AD657BD820} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {89F0CBB6-AC67-40AA-9297-4CE82FF08C48} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [590704 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8E9D9326-EA10-4EE5-AFDE-2CCB0091C562} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {9CD13848-3AAC-478F-A222-052E76C35422} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {A2C8425A-C8A1-429F-9739-43FFAA0C0B50} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648048 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DAE60C71-CA4D-4839-87C4-1EC365F81748} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3728752 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DBDD9FB4-149A-430A-9C8F-E2F42C2F2F46} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F9933945-CB4B-49BD-BFE6-7807CE84FF16} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FBD31355-9C68-4E8D-8F63-4C698E652A80} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{18aa560b-1213-4751-9c12-ab32b0f04761}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2019-03-13] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5074120 2019-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\NisSrv.exe [3851264 2019-04-24] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MsMpEng.exe [118144 2019-04-24] (Microsoft Corporation -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [43400 2017-03-01] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [24424 2016-08-12] (AMD PMP-PE CB Code Signer v20160415 -> Advanced Micro Devices, Inc)
S3 amdkmcsp; C:\WINDOWS\System32\drivers\amdkmcsp.sys [95080 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 AMDPCIDev; C:\WINDOWS\System32\drivers\AMDPCIDev.sys [31592 2018-04-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R0 amdpsp; C:\WINDOWS\System32\drivers\amdpsp.sys [137496 2018-09-12] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ed316ebc2bdc1c66\nvlddmkm.sys [21657024 2019-04-18] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-03-28] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NVSWCFilter; C:\WINDOWS\System32\drivers\nvswcfilter.sys [45152 2018-11-01] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [66792 2018-10-03] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [604160 2018-04-12] (Microsoft Windows -> Realtek )
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-04-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [344544 2019-04-24] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60896 2019-04-24] (Microsoft Windows -> Microsoft Corporation)
R3 _hid_0738_1731; C:\WINDOWS\System32\drivers\_hid_0738_1731.sys [210384 2016-10-12] (Mad Catz Inc -> Saitek)
R3 _usb_0738_1731; C:\WINDOWS\System32\drivers\_usb_0738_1731.sys [46800 2016-10-12] (Mad Catz Inc -> Saitek)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-03 13:57 - 2019-05-03 13:58 - 000000000 ____D C:\FRST
2019-05-03 13:57 - 2019-05-03 13:57 - 002430464 _____ (Farbar) C:\Users\Martin\Desktop\FRST64.exe
2019-04-27 12:08 - 2019-04-27 12:08 - 000000000 ____D C:\Users\Martin\AppData\Roaming\Bungie
2019-04-26 18:27 - 2019-04-02 14:19 - 012730880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-04-26 18:27 - 2019-04-02 11:11 - 011919360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-04-26 18:27 - 2019-04-02 10:21 - 007520136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-04-26 18:27 - 2019-04-02 10:19 - 009083704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-04-26 18:27 - 2019-04-02 10:01 - 025857536 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-04-26 18:27 - 2019-04-02 09:53 - 022717440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-04-26 18:27 - 2019-04-02 09:53 - 004384256 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-04-26 18:27 - 2019-04-02 09:50 - 007591936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-04-26 18:27 - 2019-04-02 07:04 - 006572120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-04-26 18:27 - 2019-04-02 06:56 - 022018048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-04-26 18:27 - 2019-04-02 06:50 - 019404800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-04-26 18:27 - 2019-04-02 06:43 - 005788160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-04-26 18:27 - 2019-03-14 10:37 - 006043496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-04-26 18:27 - 2019-03-14 10:26 - 007436016 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-04-26 18:27 - 2019-03-14 10:01 - 008188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-04-26 18:27 - 2019-03-14 09:58 - 004708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-04-26 18:27 - 2019-03-14 09:57 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-04-26 18:26 - 2019-04-02 14:38 - 000094008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2019-04-26 18:26 - 2019-04-02 14:33 - 001634912 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-04-26 18:26 - 2019-04-02 14:33 - 000719984 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-04-26 18:26 - 2019-04-02 14:19 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-04-26 18:26 - 2019-04-02 14:18 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-04-26 18:26 - 2019-04-02 14:16 - 001030144 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-04-26 18:26 - 2019-04-02 14:15 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2019-04-26 18:26 - 2019-04-02 14:13 - 001605632 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-04-26 18:26 - 2019-04-02 14:12 - 003643904 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-04-26 18:26 - 2019-04-02 14:12 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-04-26 18:26 - 2019-04-02 14:11 - 004053504 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-04-26 18:26 - 2019-04-02 14:11 - 001857536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-04-26 18:26 - 2019-04-02 14:11 - 001662976 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-04-26 18:26 - 2019-04-02 14:10 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2019-04-26 18:26 - 2019-04-02 14:10 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2019-04-26 18:26 - 2019-04-02 11:25 - 001454648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-04-26 18:26 - 2019-04-02 11:25 - 000607960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-04-26 18:26 - 2019-04-02 11:11 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-04-26 18:26 - 2019-04-02 11:10 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll
2019-04-26 18:26 - 2019-04-02 11:08 - 002889216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-04-26 18:26 - 2019-04-02 11:07 - 004054528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-04-26 18:26 - 2019-04-02 11:07 - 001586688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2019-04-26 18:26 - 2019-04-02 11:06 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-04-26 18:26 - 2019-04-02 10:36 - 001035256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-04-26 18:26 - 2019-04-02 10:24 - 000135184 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-04-26 18:26 - 2019-04-02 10:23 - 001023800 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-04-26 18:26 - 2019-04-02 10:22 - 001219896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-04-26 18:26 - 2019-04-02 10:22 - 000567592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-04-26 18:26 - 2019-04-02 10:22 - 000076088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-04-26 18:26 - 2019-04-02 10:21 - 002822160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-04-26 18:26 - 2019-04-02 10:21 - 002467536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-04-26 18:26 - 2019-04-02 10:21 - 000735680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-04-26 18:26 - 2019-04-02 10:20 - 002719032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-04-26 18:26 - 2019-04-02 10:20 - 000412984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-04-26 18:26 - 2019-04-02 10:19 - 000793400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-04-26 18:26 - 2019-04-02 10:19 - 000786080 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-04-26 18:26 - 2019-04-02 10:19 - 000713272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2019-04-26 18:26 - 2019-04-02 09:51 - 003399680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-04-26 18:26 - 2019-04-02 09:50 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-04-26 18:26 - 2019-04-02 09:49 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2019-04-26 18:26 - 2019-04-02 09:49 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-04-26 18:26 - 2019-04-02 09:48 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-04-26 18:26 - 2019-04-02 09:48 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2019-04-26 18:26 - 2019-04-02 09:48 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-04-26 18:26 - 2019-04-02 09:47 - 001214464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-04-26 18:26 - 2019-04-02 09:47 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-04-26 18:26 - 2019-04-02 09:46 - 002174976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-04-26 18:26 - 2019-04-02 09:45 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-04-26 18:26 - 2019-04-02 09:44 - 002208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-04-26 18:26 - 2019-04-02 09:44 - 001724416 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-04-26 18:26 - 2019-04-02 09:44 - 001421312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-04-26 18:26 - 2019-04-02 09:43 - 000542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-04-26 18:26 - 2019-04-02 08:22 - 000001312 _____ C:\WINDOWS\system32\tcbres.wim
2019-04-26 18:26 - 2019-04-02 07:05 - 001989544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-04-26 18:26 - 2019-04-02 07:04 - 000604008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-04-26 18:26 - 2019-04-02 07:04 - 000581832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2019-04-26 18:26 - 2019-04-02 07:04 - 000560600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-04-26 18:26 - 2019-04-02 06:43 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-04-26 18:26 - 2019-04-02 06:43 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-04-26 18:26 - 2019-04-02 06:42 - 001295360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2019-04-26 18:26 - 2019-04-02 06:41 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-04-26 18:26 - 2019-04-02 06:41 - 001235968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2019-04-26 18:26 - 2019-04-02 06:41 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-04-26 18:26 - 2019-04-02 06:40 - 001073664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-04-26 18:26 - 2019-04-02 06:40 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-04-26 18:26 - 2019-03-16 14:54 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2019-04-26 18:26 - 2019-03-16 11:03 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2019-04-26 18:26 - 2019-03-14 16:55 - 001786680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-04-26 18:26 - 2019-03-14 16:53 - 001626928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2019-04-26 18:26 - 2019-03-14 16:53 - 001038136 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
2019-04-26 18:26 - 2019-03-14 16:53 - 000652088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2019-04-26 18:26 - 2019-03-14 16:53 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2019-04-26 18:26 - 2019-03-14 16:52 - 003933296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-04-26 18:26 - 2019-03-14 16:52 - 001424696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-04-26 18:26 - 2019-03-14 16:52 - 000954160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
2019-04-26 18:26 - 2019-03-14 16:52 - 000830264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2019-04-26 18:26 - 2019-03-14 16:52 - 000827704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2019-04-26 18:26 - 2019-03-14 16:52 - 000825144 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-04-26 18:26 - 2019-03-14 16:52 - 000749880 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2019-04-26 18:26 - 2019-03-14 16:52 - 000670008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2019-04-26 18:26 - 2019-03-14 16:52 - 000495416 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
2019-04-26 18:26 - 2019-03-14 16:52 - 000164664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\AppvVemgr.sys
2019-04-26 18:26 - 2019-03-14 16:51 - 000157192 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2019-04-26 18:26 - 2019-03-14 16:35 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfoext.dll
2019-04-26 18:26 - 2019-03-14 16:34 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-04-26 18:26 - 2019-03-14 16:33 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpdr.sys
2019-04-26 18:26 - 2019-03-14 16:33 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storqosflt.sys
2019-04-26 18:26 - 2019-03-14 16:33 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcPing.exe
2019-04-26 18:26 - 2019-03-14 16:31 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2019-04-26 18:26 - 2019-03-14 16:30 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2019-04-26 18:26 - 2019-03-14 16:30 - 000440832 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2019-04-26 18:26 - 2019-03-14 16:29 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2019-04-26 18:26 - 2019-03-14 16:29 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscsvc.dll
2019-04-26 18:26 - 2019-03-14 16:28 - 000560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsound.dll
2019-04-26 18:26 - 2019-03-14 16:08 - 003611264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-04-26 18:26 - 2019-03-14 15:56 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2019-04-26 18:26 - 2019-03-14 15:55 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RpcPing.exe
2019-04-26 18:26 - 2019-03-14 15:53 - 000625664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2019-04-26 18:26 - 2019-03-14 15:53 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\objsel.dll
2019-04-26 18:26 - 2019-03-14 15:53 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2019-04-26 18:26 - 2019-03-14 15:52 - 000502784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsound.dll
2019-04-26 18:26 - 2019-03-14 10:57 - 000611640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-04-26 18:26 - 2019-03-14 10:56 - 000375096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-04-26 18:26 - 2019-03-14 10:38 - 000380728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-04-26 18:26 - 2019-03-14 10:38 - 000090360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpr.dll
2019-04-26 18:26 - 2019-03-14 10:37 - 002256248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-04-26 18:26 - 2019-03-14 10:37 - 001171568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-04-26 18:26 - 2019-03-14 10:28 - 000152072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-04-26 18:26 - 2019-03-14 10:27 - 000436024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-04-26 18:26 - 2019-03-14 10:27 - 000097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2019-04-26 18:26 - 2019-03-14 10:26 - 002768448 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-04-26 18:26 - 2019-03-14 10:26 - 002421048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-04-26 18:26 - 2019-03-14 10:26 - 001457576 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-04-26 18:26 - 2019-03-14 10:26 - 001258688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-04-26 18:26 - 2019-03-14 10:26 - 001140984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-04-26 18:26 - 2019-03-14 10:26 - 001014344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-04-26 18:26 - 2019-03-14 10:26 - 000983424 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-04-26 18:26 - 2019-03-14 10:26 - 000481048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2019-04-26 18:26 - 2019-03-14 10:26 - 000175416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-04-26 18:26 - 2019-03-14 10:22 - 002700288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-04-26 18:26 - 2019-03-14 10:20 - 006661632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-04-26 18:26 - 2019-03-14 10:19 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-04-26 18:26 - 2019-03-14 10:19 - 002969600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-04-26 18:26 - 2019-03-14 10:18 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2019-04-26 18:26 - 2019-03-14 10:18 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2019-04-26 18:26 - 2019-03-14 10:18 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credui.dll
2019-04-26 18:26 - 2019-03-14 10:18 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-04-26 18:26 - 2019-03-14 10:17 - 002258944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-04-26 18:26 - 2019-03-14 10:17 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2019-04-26 18:26 - 2019-03-14 10:17 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-04-26 18:26 - 2019-03-14 10:17 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2019-04-26 18:26 - 2019-03-14 10:17 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcmapi.dll
2019-04-26 18:26 - 2019-03-14 10:17 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntlanman.dll
2019-04-26 18:26 - 2019-03-14 10:16 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-04-26 18:26 - 2019-03-14 10:16 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-04-26 18:26 - 2019-03-14 10:15 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-04-26 18:26 - 2019-03-14 10:15 - 000318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2019-04-26 18:26 - 2019-03-14 10:15 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShellCommonCommonProxyStub.dll
2019-04-26 18:26 - 2019-03-14 10:15 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\negoexts.dll
2019-04-26 18:26 - 2019-03-14 10:14 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2019-04-26 18:26 - 2019-03-14 10:14 - 000856576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-04-26 18:26 - 2019-03-14 10:14 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-04-26 18:26 - 2019-03-14 10:14 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-04-26 18:26 - 2019-03-14 10:14 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2019-04-26 18:26 - 2019-03-14 10:14 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-04-26 18:26 - 2019-03-14 10:14 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2019-04-26 18:26 - 2019-03-14 10:13 - 001468416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2019-04-26 18:26 - 2019-03-14 10:13 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-04-26 18:26 - 2019-03-14 10:13 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-04-26 18:26 - 2019-03-14 09:58 - 002509824 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2019-04-26 18:26 - 2019-03-14 09:58 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2019-04-26 18:26 - 2019-03-14 09:57 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-04-26 18:26 - 2019-03-14 09:56 - 003392000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-04-26 18:26 - 2019-03-14 09:56 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-04-26 18:26 - 2019-03-14 09:56 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2019-04-26 18:26 - 2019-03-14 09:56 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-04-26 18:26 - 2019-03-14 09:56 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-04-26 18:26 - 2019-03-14 09:55 - 003601920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2019-04-26 18:26 - 2019-03-14 09:55 - 002739200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-04-26 18:26 - 2019-03-14 09:55 - 000528896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-04-26 18:26 - 2019-03-14 09:55 - 000458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2019-04-26 18:26 - 2019-03-14 09:55 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-04-26 18:26 - 2019-03-14 09:55 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2019-04-26 18:26 - 2019-03-14 09:55 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmapi.dll
2019-04-26 18:26 - 2019-03-14 09:55 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll
2019-04-26 18:26 - 2019-03-14 09:55 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2019-04-26 18:26 - 2019-03-14 09:55 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe
2019-04-26 18:26 - 2019-03-14 09:55 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\credui.dll
2019-04-26 18:26 - 2019-03-14 09:54 - 002368000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-04-26 18:26 - 2019-03-14 09:54 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-04-26 18:26 - 2019-03-14 09:54 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-04-26 18:26 - 2019-03-14 09:54 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2019-04-26 18:26 - 2019-03-14 09:54 - 000279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2019-04-26 18:26 - 2019-03-14 09:54 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-04-26 18:26 - 2019-03-14 09:54 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2019-04-26 18:26 - 2019-03-14 09:54 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-04-26 18:26 - 2019-03-14 09:54 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\negoexts.dll
2019-04-26 18:26 - 2019-03-14 09:54 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2019-04-26 18:26 - 2019-03-14 09:53 - 000787968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-04-26 18:26 - 2019-03-14 09:53 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-04-26 18:26 - 2019-03-14 09:53 - 000473600 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-04-26 18:26 - 2019-03-14 09:53 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2019-04-26 18:26 - 2019-03-14 09:52 - 002909696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-04-26 18:26 - 2019-03-14 09:52 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll
2019-04-26 18:26 - 2019-03-14 09:52 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2019-04-26 18:26 - 2019-03-14 09:52 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2019-04-26 18:26 - 2019-03-14 09:51 - 001216000 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-04-26 18:26 - 2019-03-14 09:51 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-04-26 18:26 - 2019-03-14 09:51 - 000226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2019-04-26 18:26 - 2019-03-14 09:50 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2019-04-26 18:26 - 2019-03-14 09:50 - 001410560 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2019-04-26 18:26 - 2019-03-14 09:50 - 000947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-04-26 18:26 - 2019-03-14 09:50 - 000847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2019-04-26 18:26 - 2019-03-14 09:50 - 000796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-04-26 18:26 - 2019-03-14 09:50 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-04-26 18:26 - 2019-03-14 09:50 - 000507392 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-04-26 18:26 - 2019-03-14 09:50 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-04-26 18:26 - 2019-03-14 09:50 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-04-26 18:26 - 2019-03-14 03:57 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-04-26 18:26 - 2019-03-14 03:57 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-04-26 18:26 - 2019-03-14 03:57 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll
2019-04-26 18:26 - 2019-03-14 03:57 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-04-26 18:26 - 2019-03-14 03:57 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-04-26 16:47 - 2019-04-18 19:04 - 001006800 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-04-26 16:47 - 2019-04-18 19:04 - 001006800 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-04-26 16:47 - 2019-04-18 19:04 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-04-26 16:47 - 2019-04-18 19:04 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-04-26 16:47 - 2019-04-18 19:04 - 000552328 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-04-26 16:47 - 2019-04-18 19:04 - 000456904 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-04-26 16:47 - 2019-04-18 19:04 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-04-26 16:47 - 2019-04-18 19:04 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-04-26 16:47 - 2019-04-18 19:04 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-04-26 16:47 - 2019-04-18 19:04 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-04-26 16:47 - 2019-04-18 19:03 - 011048896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-04-26 16:47 - 2019-04-18 19:03 - 009485192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 002039176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 001722064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6443039.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 001540032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 001470208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 001467648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6443039.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 001162176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 001134288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 000911808 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 000821128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 000808656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 000675024 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 000654272 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 000631040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 000541904 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-04-26 16:47 - 2019-04-18 19:02 - 000522120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-04-26 16:47 - 2019-04-18 19:01 - 040412368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-04-26 16:47 - 2019-04-18 19:01 - 035269568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-04-26 16:47 - 2019-04-18 19:01 - 020187584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-04-26 16:47 - 2019-04-18 19:01 - 017464712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-04-26 16:47 - 2019-04-18 19:01 - 005421768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-04-26 16:47 - 2019-04-18 19:01 - 004758736 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-04-26 16:47 - 2019-04-18 15:57 - 004340480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-04-26 16:47 - 2019-04-18 01:25 - 000046848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2019-04-20 17:19 - 2019-04-20 17:19 - 000000000 ____D C:\Users\Martin\Documents\Elder Scrolls Online
2019-04-13 21:08 - 2019-04-10 16:52 - 001734288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6442531.dll
2019-04-13 21:08 - 2019-04-10 16:52 - 001467864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6442531.dll
2019-04-13 19:17 - 2019-04-13 19:18 - 006745684 _____ C:\Users\Martin\Downloads\ape.zip
2019-04-13 15:26 - 2019-04-13 15:26 - 012494806 _____ C:\Users\Martin\Downloads\Green-Stone-WDflat.zip
2019-04-13 15:26 - 2019-04-13 15:26 - 000000000 ____D C:\Users\Martin\Desktop\Nový priečinok
2019-04-13 15:25 - 2019-04-13 15:25 - 003707908 _____ C:\Users\Martin\Downloads\Skull-Fire-WDflat.zip
2019-04-13 08:28 - 2019-04-13 08:28 - 000000000 ____D C:\Users\Martin\AppData\Roaming\NVIDIA
2019-04-13 08:26 - 2019-05-02 16:11 - 000000000 ____D C:\Users\Martin\AppData\Roaming\slobs-client
2019-04-13 08:26 - 2019-04-25 15:21 - 000000000 ____D C:\Program Files\Streamlabs OBS
2019-04-13 08:26 - 2019-04-13 08:26 - 000001964 _____ C:\Users\Public\Desktop\Streamlabs OBS.lnk
2019-04-13 08:26 - 2019-04-13 08:26 - 000000000 ____D C:\Users\Martin\AppData\Roaming\Streamlabs OBS
2019-04-13 08:26 - 2019-04-13 08:26 - 000000000 ____D C:\Users\Martin\AppData\Roaming\slobs-plugins
2019-04-13 08:26 - 2019-04-13 08:26 - 000000000 ____D C:\Users\Martin\AppData\Roaming\obs-studio-node-server
2019-04-13 08:26 - 2019-04-13 08:26 - 000000000 ____D C:\Users\Martin\AppData\Local\slobs-client-updater
2019-04-13 07:25 - 2019-04-13 07:25 - 000006144 ____H C:\WINDOWS\232555c81
2019-04-06 21:22 - 2019-04-06 21:22 - 000000000 ____D C:\Users\Martin\AppData\Local\ElevatedDiagnostics

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-03 13:52 - 2019-03-20 17:08 - 000000000 ____D C:\Users\Martin\AppData\Local\Battle.net
2019-05-03 13:43 - 2019-03-20 17:20 - 000000000 ____D C:\Users\Martin\AppData\Local\CrashDumps
2019-05-03 13:43 - 2019-03-20 17:08 - 000000000 ____D C:\Program Files (x86)\Steam
2019-05-03 13:43 - 2019-03-20 16:16 - 000000000 ____D C:\WINDOWS\INF
2019-05-03 12:59 - 2019-03-20 16:29 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-05-03 11:34 - 2019-03-20 16:17 - 000000000 ___HD C:\Program Files\WindowsApps
2019-05-03 11:34 - 2019-03-20 16:17 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-05-02 19:19 - 2019-03-20 18:31 - 000000000 ____D C:\Users\Martin\AppData\Roaming\Discord
2019-05-02 15:02 - 2019-03-20 17:18 - 000000000 ____D C:\Users\Martin\AppData\Local\Ubisoft Game Launcher
2019-05-01 12:20 - 2019-03-20 16:38 - 000000000 ____D C:\Users\Martin\AppData\Local\Packages
2019-04-30 12:42 - 2019-03-20 17:07 - 000000000 ____D C:\Program Files (x86)\Battle.net
2019-04-30 12:24 - 2019-03-28 12:21 - 000000000 ____D C:\Program Files (x86)\Overwatch
2019-04-27 07:05 - 2019-03-20 16:43 - 000838560 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-04-27 07:00 - 2019-03-20 16:34 - 000000000 ____D C:\Users\8IKEHd8Tqd
2019-04-27 06:59 - 2019-03-20 16:37 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-04-27 06:59 - 2019-03-20 16:30 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-04-27 06:59 - 2019-03-20 16:29 - 000234976 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-04-26 23:48 - 2019-03-20 16:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-04-26 23:46 - 2019-03-20 16:17 - 000000000 ___SD C:\WINDOWS\system32\UNP
2019-04-26 23:46 - 2019-03-20 16:17 - 000000000 ____D C:\WINDOWS\TextInput
2019-04-26 23:46 - 2019-03-20 16:17 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-04-26 23:46 - 2019-03-20 16:17 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-04-26 23:46 - 2019-03-20 16:17 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-04-26 23:46 - 2019-03-20 16:17 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-04-26 23:46 - 2019-03-20 16:17 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-04-26 23:46 - 2019-03-20 16:17 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-04-26 23:46 - 2019-03-20 16:17 - 000000000 ____D C:\Program Files\Windows Defender
2019-04-26 23:46 - 2019-03-20 16:17 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2019-04-26 18:33 - 2019-03-20 16:12 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-04-26 18:26 - 2019-03-21 14:00 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-04-26 18:24 - 2019-03-21 13:59 - 131129288 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-04-26 18:19 - 2019-03-21 13:53 - 000000000 ____D C:\Program Files\rempl
2019-04-24 18:24 - 2019-03-20 17:08 - 000000000 ____D C:\Users\Martin\AppData\Local\Blizzard Entertainment
2019-04-24 18:24 - 2019-03-20 17:06 - 000000000 ____D C:\Users\Martin\AppData\Local\Blizzard
2019-04-24 17:46 - 2019-03-20 16:37 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-04-22 15:28 - 2019-04-02 15:15 - 000000131 _____ C:\Users\Martin\Desktop\Nový textový dokument.txt
2019-04-21 18:58 - 2019-03-20 16:34 - 000000000 ____D C:\Users\Martin
2019-04-19 12:14 - 2019-03-20 16:43 - 000003382 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3299137129-3959029366-2649080390-1001
2019-04-19 12:14 - 2019-03-20 16:34 - 000002358 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-04-19 12:14 - 2018-08-10 13:23 - 000000000 ___RD C:\Users\Martin\OneDrive
2019-04-18 15:57 - 2019-03-18 12:47 - 005083376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-04-18 01:25 - 2019-03-18 12:47 - 001682368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2019-04-18 01:25 - 2019-03-18 12:47 - 000228608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2019-04-18 01:25 - 2019-03-18 12:47 - 000052255 _____ C:\WINDOWS\system32\nvinfo.pb
2019-04-17 23:08 - 2019-03-20 16:31 - 005432360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-04-17 23:08 - 2019-03-20 16:31 - 002637808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2019-04-17 23:08 - 2019-03-20 16:31 - 001767280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2019-04-17 23:08 - 2019-03-20 16:31 - 000651248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2019-04-17 23:08 - 2019-03-20 16:31 - 000450872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2019-04-17 23:08 - 2019-03-20 16:31 - 000125424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2019-04-17 23:08 - 2019-03-20 16:31 - 000082800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2019-04-14 07:20 - 2019-03-20 16:31 - 008557932 _____ C:\WINDOWS\system32\nvcoproc.bin
2019-04-13 21:17 - 2019-03-20 16:54 - 000000000 ____D C:\Users\Martin\AppData\Local\D3DSCache
2019-04-13 15:15 - 2019-03-20 16:55 - 000004226 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1553093722
2019-04-13 15:15 - 2019-03-20 16:55 - 000001406 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prehliadač Opera.lnk
2019-04-13 08:16 - 2019-03-20 17:06 - 000000000 ____D C:\Program Files\CCleaner
2019-04-12 19:29 - 2019-03-20 17:47 - 000000000 ____D C:\Users\Martin\AppData\Roaming\EasyAntiCheat
2019-04-12 16:23 - 2019-03-20 17:16 - 000003976 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-04-12 16:23 - 2019-03-20 17:16 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-04-12 16:23 - 2019-03-20 17:16 - 000001447 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2019-04-12 16:22 - 2019-03-20 17:15 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-04-12 16:22 - 2019-03-20 17:15 - 000004106 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-04-12 16:22 - 2019-03-20 16:30 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-04-12 16:21 - 2019-03-20 17:15 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-04-12 16:21 - 2019-03-20 17:15 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-04-12 16:21 - 2019-03-20 17:15 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-04-12 16:21 - 2019-03-20 17:15 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-04-12 16:21 - 2019-03-20 17:15 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-04-12 16:21 - 2019-03-20 17:15 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-04-12 16:21 - 2019-03-20 17:15 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-05.2019
Ran by Martin (03-05-2019 13:59:25)
Running from C:\Users\Martin\AppData\Local\Temp\scoped_dir11800_30494
Windows 10 Pro Version 1803 17134.706 (X64) (2019-03-20 14:38:28)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

8IKEHd8Tqd (S-1-5-21-3299137129-3959029366-2649080390-1002 - Limited - Enabled) => C:\Users\8IKEHd8Tqd
Administrator (S-1-5-21-3299137129-3959029366-2649080390-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3299137129-3959029366-2649080390-503 - Limited - Disabled)
Guest (S-1-5-21-3299137129-3959029366-2649080390-501 - Limited - Disabled)
jUpy26V5TxgBjSlKMd (S-1-5-21-3299137129-3959029366-2649080390-1003 - Limited - Enabled)
Martin (S-1-5-21-3299137129-3959029366-2649080390-1001 - Administrator - Enabled) => C:\Users\Martin
WDAGUtilityAccount (S-1-5-21-3299137129-3959029366-2649080390-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Aktualizácie NVIDIA 36.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 36.0.0.0 - NVIDIA Corporation) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
CCleaner (HKLM\...\CCleaner) (Version: 5.55 - Piriform)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
Discord (HKU\S-1-5-21-3299137129-3959029366-2649080390-1001\...\Discord) (Version: 0.0.305 - Discord Inc.)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 425.31 - NVIDIA Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-3299137129-3959029366-2649080390-1001\...\OneDriveSetup.exe) (Version: 19.043.0304.0007 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.15 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.18.0.102 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.18.0.102 - NVIDIA Corporation)
NVIDIA Grafický ovládač 430.39 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 430.39 - NVIDIA Corporation)
NVIDIA Ovládač zvuku HD 1.3.38.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.16 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Opera Stable 60.0.3255.27 (HKU\S-1-5-21-3299137129-3959029366-2649080390-1001\...\Opera 60.0.3255.27) (Version: 60.0.3255.27 - Opera Software)
Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
Ovládací panel NVIDIA 430.39 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 430.39 - NVIDIA Corporation) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Streamlabs OBS 0.12.3 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.12.3 - General Workings, Inc.)
Tom Clancy's The Division 2 (HKLM-x32\...\Uplay Install 4932) (Version: - Ubisoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{B2E25355-C24E-4E7D-8AD3-455D59810838}) (Version: 2.57.0.0 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 85.0 - Ubisoft)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2019-04-30 12:24 - 2019-04-30 12:24 - 005022208 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5Gui.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000626176 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5Multimedia.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 004943360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5Core.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000439296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5WinExtras.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 002908672 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5Qml.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 004718080 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5Widgets.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 003078656 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5Quick.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000159232 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5Xml.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000877056 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5Network.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 085602816 _____ () [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\libcef.dll
2019-04-30 12:23 - 2019-04-30 12:24 - 000596992 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\chrome_elf.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 001140224 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\platforms\qwindows.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000026112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\imageformats\qgif.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000027136 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\imageformats\qico.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000243712 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\imageformats\qjpeg.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000223744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\imageformats\qmng.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000020992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\imageformats\qsvg.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000259072 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5Svg.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000332288 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\imageformats\qtiff.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 001463808 _____ (Firelight Technologies) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\fmod.dll
2019-04-30 12:23 - 2019-04-30 12:23 - 000047104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\audio\qtaudio_windows.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000089600 _____ () [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\libEGL.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 003841536 _____ () [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\libGLESv2.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\qml\QtQuick.2\qtquick2plugin.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\qml\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000041984 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\qml\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000071680 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\qml\QtQuick\Layouts\qquicklayoutsplugin.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\qml\QtQuick\Window.2\windowplugin.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000084480 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\qml\QtQuick\Controls.2\qtquickcontrols2plugin.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000096256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5QuickControls2.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000681472 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\Qt5QuickTemplates2.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000267776 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\qml\QtQuick\Controls\qtquickcontrolsplugin.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000211456 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\qml\QtQuick\Templates.2\qtquicktemplates2plugin.dll
2019-04-30 12:24 - 2019-04-30 12:24 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.11123\qml\QtQml\Models.2\modelsplugin.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Martin\AppData\Local\Temp:$DATA​ [16]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-20 16:17 - 2019-03-20 16:15 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3299137129-3959029366-2649080390-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

HKU\S-1-5-21-3299137129-3959029366-2649080390-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3299137129-3959029366-2649080390-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{D555C577-67AD-4579-A64B-DECDB1914244}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{15722E97-0821-4C66-B989-74EA8D084965}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{0173298C-F506-45E6-A911-3D58BD90FA95}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{BF2478A5-9CF9-496C-B37C-4F35711B9636}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{BD11F92B-4C08-4C02-811D-2F1D6A85C63B}C:\diablo iii\x64\diablo iii64.exe] => (Allow) C:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{A310A9A9-FBA8-41E6-ADE3-0BFC06056E40}C:\diablo iii\x64\diablo iii64.exe] => (Allow) C:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{EE976642-DB9B-4371-A73B-52BBFDD1A11A}] => (Block) C:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{7048DD63-D8E2-4CF0-9A95-585DAB20A1AD}] => (Block) C:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{291DC660-4E7B-41C0-80FF-6F3369D7BB1D}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's The Division 2\TheDivision2.exe (Ubisoft Entertainment Sweden AB -> Ubisoft)
FirewallRules: [{4EC5311E-2751-4854-A281-3DBB4A9B5A70}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )
FirewallRules: [{82F698DE-0FCA-43D9-BCE7-920A3931EC02}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )
FirewallRules: [TCP Query User{4124738A-C837-42B2-B0C5-2D3CD4F47DE3}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{9D0754D0-720C-468F-97FC-C6CA7688A54E}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{FC1876D2-BD4C-44C6-8CDD-AF3AAC55C2D4}] => (Block) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{F4242F94-31FC-4387-A065-275E00A893D4}] => (Block) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{72E85CF6-F18B-46BC-B384-9E893459363B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{A40D3ADD-E67D-45FC-B523-7BE6120B5D02}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{FD89BA9E-BED2-48F8-A7F1-C30AEF13E231}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{290DD2EE-D392-403F-A19C-B45DA6C1D263}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{4FBAD801-63B4-4BE0-BDD5-5C718C2ED211}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{7584F9BA-AC7C-45C7-BFBA-6F3E3F59E143}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)

==================== Restore Points =========================

25-04-2019 19:01:52 Scheduled Checkpoint
02-05-2019 19:39:41 Scheduled Checkpoint

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (05/03/2019 11:30:58 AM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: DESKTOP-TETKG5G)
Description: httphttp-2147467263

Error: (05/02/2019 08:02:06 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: DESKTOP-TETKG5G)
Description: httphttp-2147467263

Error: (05/02/2019 07:19:45 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: DESKTOP-TETKG5G)
Description: httphttp-2147467263

Error: (05/02/2019 03:52:37 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: DESKTOP-TETKG5G)
Description: httphttp-2147467263

Error: (05/02/2019 01:21:48 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: DESKTOP-TETKG5G)
Description: httphttp-2147467263

Error: (05/02/2019 01:07:07 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: DESKTOP-TETKG5G)
Description: httphttp-2147467263

Error: (05/02/2019 12:56:51 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: DESKTOP-TETKG5G)
Description: httphttp-2147467263

Error: (05/02/2019 12:35:22 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: DESKTOP-TETKG5G)
Description: httphttp-2147467263


System errors:
=============
Error: (05/03/2019 12:24:57 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-TETKG5G)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user DESKTOP-TETKG5G\Martin SID (S-1-5-21-3299137129-3959029366-2649080390-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (05/03/2019 11:33:42 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba 0x80073d02: 9WZDNCRFJ364-MICROSOFT.SKYPEAPP.

Error: (05/03/2019 11:31:08 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-TETKG5G)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user DESKTOP-TETKG5G\Martin SID (S-1-5-21-3299137129-3959029366-2649080390-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (05/02/2019 07:35:37 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-TETKG5G)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user DESKTOP-TETKG5G\Martin SID (S-1-5-21-3299137129-3959029366-2649080390-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (05/02/2019 07:33:36 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-TETKG5G)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user DESKTOP-TETKG5G\Martin SID (S-1-5-21-3299137129-3959029366-2649080390-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (05/02/2019 07:19:46 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-TETKG5G)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user DESKTOP-TETKG5G\Martin SID (S-1-5-21-3299137129-3959029366-2649080390-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (05/02/2019 04:18:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TETKG5G)
Description: The server Microsoft.Windows.ContentDeliveryManager_10.0.17134.1_neutral_neutral_cw5n1h2txyewy!App.AppX9s1cz53zc86xn39kwrb02jyft9ecn62r.mca did not register with DCOM within the required timeout.

Error: (05/02/2019 12:43:37 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-TETKG5G)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user DESKTOP-TETKG5G\Martin SID (S-1-5-21-3299137129-3959029366-2649080390-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.


Windows Defender:
===================================
Date: 2019-04-20 15:49:04.511
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {188D04C4-D0A2-4302-9856-6B19BBDEB768}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2019-04-19 13:23:45.942
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {67267840-85ED-40BD-B7D9-05087EDDF259}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2019-04-13 19:30:11.484
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Trojan:Win64/Detrahere.S
ID: 2147726076
Severity: Závažná
Category: Trójsky kôň
Path: file:_C:\Windows\System32\drivers\mukartda.sys
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Users\Martin\AppData\Local\Temp\Temp2_ape.zip\ape.exe
Signature Version: AV: 1.291.1757.0, AS: 1.291.1757.0, NIS: 1.291.1757.0
Engine Version: AM: 1.1.15800.1, NIS: 1.1.15800.1

Date: 2019-04-13 07:25:21.098
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Trojan:Win64/Detrahere.S
ID: 2147726076
Severity: Závažná
Category: Trójsky kôň
Path: file:_C:\Windows\System32\drivers\mukartda.sys
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Windows\System32\svchost.exe
Signature Version: AV: 1.291.1757.0, AS: 1.291.1757.0, NIS: 1.291.1757.0
Engine Version: AM: 1.1.15800.1, NIS: 1.1.15800.1

Date: 2019-04-13 07:25:20.007
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Trojan:Win64/Detrahere.S
ID: 2147726076
Severity: Závažná
Category: Trójsky kôň
Path: file:_C:\Windows\System32\drivers\mukartda.sys
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Users\Martin\Desktop\ape.exe
Signature Version: AV: 1.291.1757.0, AS: 1.291.1757.0, NIS: 1.291.1757.0
Engine Version: AM: 1.1.15800.1, NIS: 1.1.15800.1

==================== Memory info ===========================

BIOS: American Megatrends Inc. A.E0 05/02/2018
Motherboard: Micro-Star International Co., Ltd. B350 PC MATE (MS-7A34)
Processor: AMD Ryzen 5 2600 Six-Core Processor
Percentage of memory in use: 34%
Total physical RAM: 16335.12 MB
Available physical RAM: 10750.16 MB
Total Virtual: 21921.6 MB
Available Virtual: 14024.76 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.91 GB) (Free:774.51 GB) NTFS

\\?\Volume{a941d7dc-fd95-48f2-9ac3-113f200cbd9c}\ (Obnovenie) (Fixed) (Total:0.49 GB) (Free:0.47 GB) NTFS
\\?\Volume{da93c9ba-3a2d-4984-9caf-7ca6eb2af10d}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118272
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o preventivku

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Y0G1
Návštěvník
Návštěvník
Příspěvky: 462
Registrován: 30 říj 2010 15:00

Re: Prosim o preventivku

#3 Příspěvek od Y0G1 »

Dobry den ti je log.

# -------------------------------
# Malwarebytes AdwCleaner 7.3.0.0
# -------------------------------
# Build: 04-04-2019
# Database: 2019-04-29.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 05-05-2019
# Duration: 00:00:01
# OS: Windows 10 Pro
# Cleaned: 0
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1249 octets] - [05/05/2019 17:53:37]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118272
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o preventivku

#4 Příspěvek od Rudy »

Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
C:\WINDOWS\232555c81
C:\Users\8IKEHd8Tqd
AlternateDataStreams: C:\Users\Martin\AppData\Local\Temp:$DATA​ [16]

EmptyTemp:
End
Uložte do C:\Users\Martin\AppData\Local\Temp\scoped_dir11800_30494 jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Y0G1
Návštěvník
Návštěvník
Příspěvky: 462
Registrován: 30 říj 2010 15:00

Re: Prosim o preventivku

#5 Příspěvek od Y0G1 »

Dobry den

C:\Users\Martin\AppData\Local\Temp\scoped_dir11800_30494

tuto cestu mi win 10 nenajde nikde to tam nevidim

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118272
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o preventivku

#6 Příspěvek od Rudy »

Fixlist musí být uložen ve stejném adresáři, jako FRST. Proto pro jednoduchost doporučujeme v odkazu ukládat FRST na plochu. V nastavení systému si zapněte zobrazení skrytých a systémových souborů a adresářů a měl byste ho vidět. Podle hlavičky jste ho uložil právě tam:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-05.2019
Ran by Martin (administrator) on DESKTOP-TETKG5G (Micro-Star International Co., Ltd. MS-7A34) (03-05-2019 13:58:08)
Running from C:\Users\Martin\AppData\Local\Temp\scoped_dir11800_30494
Loaded Profiles: Martin (Available Profiles: Martin & 8IKEHd8Tqd)
Platform: Windows 10 Pro Version 1803 17134.706 (X64) Language: Slovenčina (Slovensko)
Default browser: Opera
Boot Mode: Normal
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Y0G1
Návštěvník
Návštěvník
Příspěvky: 462
Registrován: 30 říj 2010 15:00

Re: Prosim o preventivku

#7 Příspěvek od Y0G1 »

ano frst mam na ploche

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118272
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o preventivku

#8 Příspěvek od Rudy »

V tom případě uložte fixlist na plochu a v okně FRST klikněte na "Fix".
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Y0G1
Návštěvník
Návštěvník
Příspěvky: 462
Registrován: 30 říj 2010 15:00

Re: Prosim o preventivku

#9 Příspěvek od Y0G1 »

Spravil som ale log mi nevybehol. Nemam ho ani v zlozke :(

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118272
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o preventivku

#10 Příspěvek od Rudy »

FRST je ten původní, k němuž jste se nemohl dostat? Pokud jste stáhl nový, zkuste zopakovat sken a pak použijte mnou napsaný původní fixlist.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Y0G1
Návštěvník
Návštěvník
Příspěvky: 462
Registrován: 30 říj 2010 15:00

Re: Prosim o preventivku

#11 Příspěvek od Y0G1 »

Takze zlozky co som mal skryte sa mi objavili ale vami pozadovana cesta nieje v mojom PC . Spravil som ten fixlist a bohuzial pise ze nemam fixlist v rovnakej zlozke ako frst ale mam ich vedla seba na ploche ( ano stiahol som aj novy frst) Asi robim nieco zle :(

Edit bohuzial nejde mi to stale mi pise ze fixlist nemoze najst ospravedlnujem sa :(

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118272
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o preventivku

#12 Příspěvek od Rudy »

Ta složka je neviditelná a měla by se zviditelnit po zapnutí zobrazení. Chybou bylo už to spuštění z té složky. Nyní musíte provést celé znovu.

1. Staáhnout FRST do viditelné složky, např. Plocha
2. Spustit sken FRST
3. Opět vytvořit fixlist podle toho, co jsem vám předepsal
4. Uložit fixlist do stejné slžky jako FRST
5. V utilitě FRST kliknout na "Fix".
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Y0G1
Návštěvník
Návštěvník
Příspěvky: 462
Registrován: 30 říj 2010 15:00

Re: Prosim o preventivku

#13 Příspěvek od Y0G1 »

Dobre idem vyskusat :)

Edit: Ked chcem ten fixlist ulozit ako txt dokument tak mi pise ze sa mi to neulozi lebo to nieje v unicode alebo nieco take tak neviem ci nerobim tam chybu

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118272
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o preventivku

#14 Příspěvek od Rudy »

Obsah souboru fixlog.txt jednduše zkopírujte sem (copy/paste).
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Y0G1
Návštěvník
Návštěvník
Příspěvky: 462
Registrován: 30 říj 2010 15:00

Re: Prosim o preventivku

#15 Příspěvek od Y0G1 »

Fix result of Farbar Recovery Scan Tool (x64) Version: 04-05.2019 01
Ran by Martin (06-05-2019 18:16:43) Run:1
Running from C:\Users\Martin\Desktop
Loaded Profiles: Martin (Available Profiles: Martin & 8IKEHd8Tqd)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
C:\WINDOWS\232555c81
C:\Users\8IKEHd8Tqd
AlternateDataStreams: C:\Users\Martin\AppData\Local\Temp:$DATA​ [16]

EmptyTemp:
End
*****************

Processes closed successfully.
C:\WINDOWS\232555c81 => moved successfully
C:\Users\8IKEHd8Tqd => moved successfully
C:\Users\Martin\AppData\Local\Temp => ":$DATA​" ADS removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 7364608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 53401465 B
Java, Flash, Steam htmlcache => 69785758 B
Windows/system/drivers => 128609 B
Edge => 3584 B
Chrome => 0 B
Firefox => 0 B
Opera => 476540621 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
LocalService => 0 B
NetworkService => 8894 B
NetworkService => 0 B
Martin => 8116636 B
8IKEHd8Tqd => 0 B

RecycleBin => 0 B
EmptyTemp: => 586.8 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 18:17:54 ====

Zamčeno