Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Preventivní kontrola PC

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
TTommikk
Návštěvník
Návštěvník
Příspěvky: 77
Registrován: 16 črc 2006 19:01

Preventivní kontrola PC

#1 Příspěvek od TTommikk »

Prosím o preventivní kontrolu logu z notebooku. Již dlouho jsem žádnou kontrolu neprováděl. Předem děkuji :)

TTommikk
Návštěvník
Návštěvník
Příspěvky: 77
Registrován: 16 črc 2006 19:01

Re: Preventivní kontrola PC

#2 Příspěvek od TTommikk »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-08-2019
Ran by Tomáš (administrator) on TOMASPC (Hewlett-Packard HP ProBook 450 G0) (02-09-2019 22:02:12)
Running from C:\Users\Tomáš\Desktop
Loaded Profiles: Tomáš (Available Profiles: Tomáš)
Platform: Windows 8.1 Pro (Update) (X64) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-11-07] (IDT, Inc.) [File not signed]
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [260488 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [336672 2014-05-16] (Hewlett-Packard Company -> Hewlett-Packard Company)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-19] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [260488 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [94792424 2019-07-11] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [46993264 2019-06-27] (Google LLC -> )
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Run: [HP DeskJet 5000 (NET)] => C:\Program Files\HP\HP DeskJet 5000 series\Bin\ScanToPCActivationApp.exe [4065416 2018-04-19] (Hewlett Packard -> HP Inc.)
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Run: [GalaxyClient] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [7610952 2019-06-12] (GOG Sp. z o.o. -> GOG.com)
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_153_Plugin.exe [1456128 2018-11-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {694ee494-763c-11e7-8286-a45d36cd7354} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {69af2778-3851-11e9-82c8-a45d36cd7354} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {d3259550-3f7f-11e9-82c8-a45d36cd7354} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-18\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [30796352 2018-10-24] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKLM\...\Drivers32-x32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.132\Installer\chrmstp.exe [2019-09-01] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.82\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
Startup: C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk [2016-09-04]
ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
Startup: C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2018-09-09]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01A2735B-B578-4239-A078-B33AA1CBB8FE} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2343544 2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {188D854F-5582-458F-8382-8745811AA5FB} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2838920 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
Task: {1D1CB19F-B2D3-459E-87C4-48FDC0CCE3D6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6299288 2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {2988BD4E-E4F9-4B77-92C6-6D26AB7FC30F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-02-05] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {4FC29FF9-80B9-459F-BB4D-585BB7AB2158} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\rundll32.exe aepdu.dll,AePduRunUpdate -nolegacy
Task: {582E7CA1-0E1D-406B-BA99-4FAB5EDD578A} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2174608 2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {5D3EEDFA-99BF-41E2-A0DA-54DFAF329B62} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136056 2019-01-02] (HP Inc. -> HP Inc.)
Task: {5F8FEFE3-2910-4E49-A0FB-6221109B4BF8} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39920 2018-10-24] (Garmin International, Inc. -> )
Task: {645AAAE6-3EE1-4574-B1AF-DC29D1267B5C} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_153_Plugin.exe [1456128 2018-11-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {7571E7E1-B377-41B7-A440-FF7B3F36DCD2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [13797712 2018-09-08] (Piriform Ltd -> Piriform Ltd)
Task: {75C75B4A-93C6-4A24-B9DE-6577777190A9} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6299288 2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {7FCA8A2B-869F-4E34-A23E-4A167B1CE8B1} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [156712 2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {816606C3-417F-4B9E-AB32-5A87AF967D3D} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3956824 2017-08-16] (Synaptics Incorporated -> Synaptics Incorporated)
Task: {83CFF232-5DE2-403B-B716-B1C13E11C423} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-07-31] (Google Inc -> Google Inc.)
Task: {9DDC59B4-A055-4698-9753-8609202BD615} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2174608 2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {9F6362ED-6EB6-4D00-BBBA-2FDD4EEDC255} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {A79CC7E9-1ACF-4EF2-8DFE-686A30E0F4C9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [651400 2017-09-20] (Hewlett Packard -> HP Inc.)
Task: {AA07C323-2B2D-4E4E-B6AE-4C84011CCA45} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [743616 2015-12-02] (@ByELDI -> @ByELDI) [File not signed]
Task: {B2928C48-70A7-4EA5-A9E2-2B67EF1EA095} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-07-31] (Google Inc -> Google Inc.)
Task: {B2C805BD-0B9B-49B8-BAC2-E47EEBA1909F} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27367016 2019-08-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {B6C35989-EA31-4FD2-BECE-EFA921908D21} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe [2045832 2019-08-23] (AVAST Software s.r.o. -> AVAST Software)
Task: {C435411F-D1E4-4BA5-9B3F-8920E99E2D88} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [156712 2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {DCCB49FE-FCE0-4CAE-91AD-5B2DA4B7D8BB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27367016 2019-08-24] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{398CC933-2364-4ECF-8C36-E25A03D70F9F}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{6FD0246E-E0CC-493D-A72F-06015BBE4AF9}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
HKU\S-1-5-21-508856505-97066582-1914413276-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2019-07-02] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2019-05-06] (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF DefaultProfile: it11cpe7.default
FF ProfilePath: C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\it11cpe7.default [2019-09-02]
FF Extension: (uBlock Origin) - C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\it11cpe7.default\Extensions\uBlock0@raymondhill.net.xpi [2019-07-05]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_31_0_0_153.dll [2018-11-26] (Adobe Systems Incorporated -> )
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-07-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_31_0_0_153.dll [2018-11-26] (Adobe Systems Incorporated -> )
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-19] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-19] (Google Inc -> Google LLC)

Chrome:
=======
CHR HomePage: Default -> hxxp://seznam.cz/
CHR StartupUrls: Default -> "hxxp://seznam.cz/"
CHR Profile: C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default [2019-09-02]
CHR Extension: (Překladač Google) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2017-10-19]
CHR Extension: (Prezentace) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Super Netflix) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aioencjhbaolepcoappllicjebblphoc [2018-01-07]
CHR Extension: (Dokumenty) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-24]
CHR Extension: (YouTube) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-24]
CHR Extension: (uBlock Origin) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-08-23]
CHR Extension: (Kalendář Google) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2017-01-06]
CHR Extension: (Tabulky) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Word Online) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\fiombgjlkfpdpkbhfioofeeinbehmajg [2016-07-24]
CHR Extension: (Dokumenty Google offline) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-26]
CHR Extension: (Pocket Website) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\jijgclgmgjipgefcnnnibgllfonlfdap [2016-07-24]
CHR Extension: (Google Play) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2016-07-24]
CHR Extension: (Evernote Web) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2016-07-24]
CHR Extension: (Rozšíření Google Keep pro Chrome) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpcaedmchfhocbbapmcbpinfpgnhiddi [2019-09-01]
CHR Extension: (Upravte a pošlete snímek obrazovky) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdddabjhelpilpnpgondfmehhcplpiin [2019-06-18]
CHR Extension: (Save to Pocket) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2019-08-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Evernote Web Clipper) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2019-07-03]
CHR Extension: (Gmail) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-19]
CHR Extension: (Chrome Media Router) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-08-23]
CHR HKU\S-1-5-21-508856505-97066582-1914413276-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - <no Path/update_url>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [255504 2015-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6570352 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [360440 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1547200 2017-10-26] (Epic Games Inc. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11568224 2019-08-24] (Microsoft Corporation -> Microsoft Corporation)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [791112 2019-06-12] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7170632 2019-06-12] (GOG Sp. z o.o. -> GOG.com)
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [683296 2014-05-16] (Hewlett-Packard Company -> Hewlett-Packard Company)
R3 hpqwmiex; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [1006424 2013-01-23] (Hewlett-Packard Company -> Hewlett-Packard Company) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [347512 2018-12-06] (HP Inc. -> HP Inc.)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319096 2016-08-05] (Intel Corporation - pGFX -> Intel Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [130592 2012-10-22] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166432 2012-10-22] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R2 NbfcService; C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe [8704 2017-05-29] (StagWare) [File not signed]
S3 PrintNotify; C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll [2896896 2017-09-29] (Microsoft Corporation) [File not signed]
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2013-11-07] (IDT, Inc.) [File not signed]
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246872 2017-08-16] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [21645320 2015-08-31] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 AMDKMDAP; C:\Windows\system32\DRIVERS\atikmpag.sys [676360 2015-08-31] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [75520 2015-08-31] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37320 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205608 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [254408 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [196304 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblog.sys [320904 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [58168 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42496 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [169104 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112520 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [88152 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1034640 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [476264 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [220632 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [380160 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Broadcom Corporation -> Windows (R) Win 7 DDK provider)
R3 HpqKbFiltr; C:\Windows\System32\drivers\HpqKbFiltr64.sys [28376 2014-05-15] (Hewlett-Packard Company -> Hewlett-Packard Company)
R3 netr28x; C:\Windows\system32\DRIVERS\netr28x.sys [2607792 2013-07-25] (Mediatek Inc. -> Ralink Technology, Corp.)
R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1205872 2014-06-26] (MEDIATEK INC. -> Ralink Technology, Corp.)
R3 RTL8168; C:\Windows\system32\DRIVERS\Rt630x64.sys [591360 2013-06-18] (Microsoft Windows -> Realtek )
R3 STHDA; C:\Windows\system32\DRIVERS\stwrt64.sys [551936 2013-11-07] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
R1 WinRing0_1_2_0; C:\Program Files (x86)\NoteBook FanControl\WinRing0x64.sys [14544 2017-10-08] (Noriyuki MIYAZAKI -> OpenLibSys.org)
S3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [31840 2016-03-23] (Hewlett-Packard Company -> HP)
R3 WirelessButtonDriver64; C:\Windows\system32\DRIVERS\WirelessButtonDriver64.sys [31840 2016-03-23] (Hewlett-Packard Company -> HP)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-09-02 22:02 - 2019-09-02 22:04 - 000027086 _____ C:\Users\Tomáš\Desktop\FRST.txt
2019-09-02 22:01 - 2019-09-02 22:02 - 000000000 ____D C:\FRST
2019-09-02 22:01 - 2019-09-02 22:01 - 001615360 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST64.exe
2019-09-01 18:09 - 2019-09-01 18:09 - 000000000 ____D C:\Program Files (x86)\Teams Installer
2019-08-23 17:27 - 2019-08-23 17:28 - 000212992 _____ C:\Windows\system32\ClickToRun_Pipeline16

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-09-02 21:54 - 2013-08-22 17:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-09-02 21:53 - 2013-08-22 17:36 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-09-02 21:48 - 2016-07-25 20:44 - 000000000 ____D C:\ProgramData\NbfcService
2019-09-01 18:08 - 2016-07-26 10:13 - 000000000 ____D C:\Program Files\Microsoft Office
2019-09-01 17:42 - 2016-07-24 20:30 - 000003592 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-508856505-97066582-1914413276-1001
2019-09-01 17:37 - 2019-01-17 23:20 - 000000000 ____D C:\Users\Tomáš\AppData\Local\CrashDumps
2019-09-01 17:37 - 2016-07-31 00:14 - 000002204 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-01 17:37 - 2016-07-31 00:14 - 000002163 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-09-01 17:36 - 2017-10-08 10:58 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\NoteBookFanControl
2019-09-01 17:24 - 2016-08-18 13:45 - 000000000 ___RD C:\Users\Tomáš\Disk Google
2019-08-30 22:19 - 2013-09-30 06:20 - 001745984 _____ C:\Windows\system32\PerfStringBackup.INI
2019-08-30 22:19 - 2013-09-30 05:57 - 000739924 _____ C:\Windows\system32\perfh005.dat
2019-08-30 22:19 - 2013-09-30 05:57 - 000151610 _____ C:\Windows\system32\perfc005.dat
2019-08-30 22:19 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2019-08-30 22:17 - 2017-03-17 10:08 - 000004168 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-08-28 20:59 - 2018-09-08 23:27 - 000004128 _____ C:\Windows\System32\Tasks\CCleaner Update
2019-08-28 20:59 - 2018-09-01 18:40 - 000004526 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-08-28 20:59 - 2016-07-31 00:13 - 000003386 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-08-28 20:59 - 2016-07-31 00:13 - 000003258 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-08-28 20:59 - 2016-07-29 12:39 - 000003554 _____ C:\Windows\System32\Tasks\GarminUpdaterTask
2019-08-28 20:59 - 2016-07-26 11:36 - 000002788 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2019-08-28 20:59 - 2016-07-26 11:33 - 000003364 _____ C:\Windows\System32\Tasks\AutoPico Daily Restart
2019-08-28 20:59 - 2016-07-25 20:21 - 000002990 _____ C:\Windows\System32\Tasks\Synaptics TouchPad Enhancements
2019-08-28 20:59 - 2016-07-24 20:36 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software

==================== Files in the root of some directories ================

2018-06-03 21:27 - 2018-06-03 21:27 - 000000875 _____ () C:\Users\Tomáš\AppData\Local\recently-used.xbel

==================== FLock ================

2016-07-24 13:40 C:\Windows\CSC

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2019-08-23 17:54
==================== End of FRST.txt ============================

TTommikk
Návštěvník
Návštěvník
Příspěvky: 77
Registrován: 16 črc 2006 19:01

Re: Preventivní kontrola PC

#3 Příspěvek od TTommikk »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-08-2019
Ran by Tomáš (02-09-2019 22:05:13)
Running from C:\Users\Tomáš\Desktop
Windows 8.1 Pro (Update) (X64) (2016-07-24 11:41:28)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-508856505-97066582-1914413276-500 - Administrator - Disabled)
Guest (S-1-5-21-508856505-97066582-1914413276-501 - Limited - Disabled)
Tomáš (S-1-5-21-508856505-97066582-1914413276-1001 - Administrator - Enabled) => C:\Users\Tomáš

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 16.02 (x64) (HKLM\...\7-Zip) (Version: 16.02 - Igor Pavlov)
Adobe Flash Player 31 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 31.0.0.153 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{5094145C-9F17-8099-7F4F-E5AADD5E4065}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
ANT Drivers Installer x64 (HKLM\...\{D559687A-60C5-4786-9429-C21EC195789D}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.3.2369 - AVAST Software)
Backup and Sync from Google (HKLM\...\{768C0072-2FD2-4934-9824-B2A1E81AEA5D}) (Version: 3.45.5545.5747 - Google, Inc.)
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Broadcom Bluetooth Drivers (HKLM\...\{0A1B4690-E176-4533-8058-939480AEE1D0}) (Version: 12.0.1.170 - Broadcom Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.46 - Piriform)
Elevated Installer (HKLM-x32\...\{0BF90608-2F95-4C7C-9A85-E90E0CAF4FE9}) (Version: 6.9.1.0 - Garmin Ltd or its subsidiaries) Hidden
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Evernote v. 6.18.4 (HKLM-x32\...\{3E390FB8-703D-11E9-A27F-005056951CAD}) (Version: 6.18.4.8489 - Evernote Corp.)
FTL: Advanced Edition (HKLM-x32\...\1207659102_is1) (Version: 1.6.9 - GOG.com)
Garmin Express (HKLM-x32\...\{95D0EADA-5123-41C0-931A-F37946BC0E8E}) (Version: 6.9.1.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express (HKLM-x32\...\{eab4691c-4022-41cd-8d39-c3097ba62d4b}) (Version: 6.9.1.0 - Garmin Ltd or its subsidiaries)
GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 76.0.3809.132 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Google2SRT (HKLM-x32\...\{B0A59B6D-5983-46D2-9B34-51B1C15055CD}) (Version: 0.7.5 - Google2SRT)
HP ESU for Microsoft Windows 8.1 (HKLM-x32\...\{A3876D50-4A88-4A34-92E1-5D7BC8F886E1}) (Version: 1.0.1 - Hewlett-Packard Company)
HP Hotkey Support (HKLM-x32\...\{57FA60DA-585F-456A-B80E-17D1CDD22A30}) (Version: 5.0.27.1 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{3D6FF65E-EE93-4D90-B5D7-0DC856E2AFEB}) (Version: 12.10.49.21 - HP)
HP System Default Settings (HKLM-x32\...\{987210BB-D707-48FC-88FA-4374765D108D}) (Version: 2.0.1 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6496.0 - IDT)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.20.1337 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4425 - Intel Corporation)
IrfanView 64 (remove only) (HKLM\...\IrfanView64) (Version: 4.41 - Irfan Skiljan)
Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: - )
KMSpico 10.2.0 10.2.0 (HKLM-x32\...\KMSpico 10.2.0 10.2.0) (Version: 10.2.0 - KMSpico)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Mediatek Bluetooth (HKLM\...\{904C579C-9366-D3B7-7F31-4879401DBD4A}) (Version: 11.0.756.0 - Mediatek)
Microsoft Office 365 ProPlus - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.11929.20254 - Microsoft Corporation)
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mozilla Firefox 67.0.4 (x64 cs) (HKLM\...\Mozilla Firefox 67.0.4 (x64 cs)) (Version: 67.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 67.0.4.7109 - Mozilla)
NoteBook FanControl (HKLM-x32\...\{21685c56-05b5-404c-a9d9-bf568d3749a0}) (Version: 1.5.3.0 - Stefan Hirschmann - StagWare)
NoteBook FanControl (HKLM-x32\...\{CE2D4D25-DF9B-4E9D-A4CB-2E4545271F70}) (Version: 1.5.3.0 - Stefan Hirschmann - StagWare) Hidden
OEM Application Profile (HKLM-x32\...\{29F5A1C9-0BC3-16E6-9384-3BC5D1CB7ACE}) (Version: 1.00.0000 - Název společnosti:)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.11929.20254 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11929.20254 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.11929.20254 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
PX Profile Update (HKLM-x32\...\{C5705DBC-3A55-986A-7114-A5F86AADDD06}) (Version: 1.00.1. - AMD) Hidden
Spotify (HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Spotify) (Version: 1.1.9.383.g9f48828e - Spotify AB)
SumatraPDF (HKLM\...\SumatraPDF) (Version: 3.1.1 - Krzysztof Kowalczyk)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.63 - Synaptics Incorporated)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.2.0.19260 - Microsoft Corporation)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
Validity Fingerprint Sensor Driver (HKLM\...\{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}) (Version: 4.5.133.0 - Validity Sensors, Inc.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.)
Základní software zařízení HP DeskJet 5000 series (HKLM\...\{3AA0D498-49DD-44EC-8AA8-9AFC670DB249}) (Version: 44.3.2218.18109 - HP Inc.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-508856505-97066582-1914413276-1001_Classes\CLSID\{55808EA8-81FE-43c6-AAE8-1D8149F941D3}\InprocServer32 -> C:\Program Files\SumatraPDF\PdfFilter.dll () [File not signed]
CustomCLSID: HKU\S-1-5-21-508856505-97066582-1914413276-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-06-27] (Google LLC -> Google)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-06-27] (Google LLC -> Google)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiacm64.dll [2015-08-19] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2016-08-05] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers5_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2019-07-22 14:17 - 2019-07-22 14:17 - 000113664 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\_ctypes.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000173568 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\_elementtree.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 001800192 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\_hashlib.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000032256 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\_multiprocessing.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000046080 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\_psutil_windows.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000047616 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\_socket.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 002230784 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\_ssl.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000026112 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\_yappi.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000080896 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\bz2.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 006277632 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\cello.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000014848 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\common.time34.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000007680 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\hashobjs_ext.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000301568 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\PIL._imaging.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000169472 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\pyexpat.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 001084416 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\pysqlite2._sqlite.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000548864 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\pythoncom27.dll
2019-07-22 14:17 - 2019-07-22 14:17 - 000137728 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\pywintypes27.dll
2019-07-22 14:17 - 2019-07-22 14:17 - 000010752 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\select.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000020992 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\thumbnails_ext.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000689664 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\unicodedata.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000118784 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\usb_ext.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000128512 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32api.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000438784 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32com.shell.shell.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000011776 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32crypt.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000023040 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32event.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000149504 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32file.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000223232 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32gui.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000048128 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32inet.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000029696 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32pdh.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000027648 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32pipe.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000044032 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32process.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000020480 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32profile.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000136192 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32security.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000026624 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\win32ts.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000034304 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\windows.conditional.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000038400 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\windows.connectivity.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000073216 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\windows.device_monitor.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000110592 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\windows.volumes.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000020480 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\windows.winwrap.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 001325056 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wx._controls_.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 001489408 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wx._core_.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 001007104 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wx._gdi_.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000103424 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wx._html2.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 000916992 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wx._misc_.pyd
2019-07-22 14:17 - 2019-07-22 14:17 - 001039872 ____N () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wx._windows_.pyd
2018-02-08 11:46 - 2018-02-08 11:46 - 000202240 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\01c9edefd921d8cc6ff89e49a08e73a6\CCC.Implementation.ni.dll
2018-02-08 11:45 - 2018-02-08 11:45 - 000301056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\3461c787048a4f135f2b524c132f38b9\CLI.Foundation.ni.dll
2018-02-08 23:38 - 2018-02-08 23:38 - 000293376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\5f4785d76bc5c8466bedf7dd1113f713\LOG.Foundation.Implementation.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000147968 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\5d802549de7a6c91fcb7221aa28b108b\LOG.Foundation.Private.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\11c0fe133a491fb802d1b5e5107c992d\LOG.Foundation.Implementation.Private.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000133120 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\0c0a4358d7b66d3d4839e21cd63d08bf\LOG.Foundation.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\b3228efdb52a6e1b804746ce141d00b3\MOM.Foundation.ni.dll
2018-02-08 23:38 - 2018-02-08 23:38 - 000390656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\084dfefdcc8e672b61fed78e82f883aa\MOM.Implementation.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\2e190f6dfdaa8a482f0d8e519391cbe7\NEWAEM.Foundation.ni.dll
2015-08-19 14:03 - 2015-08-19 14:03 - 000005120 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiamcsy.dll
2017-09-24 17:16 - 2008-04-03 05:00 - 000235520 _____ (CANON INC.) [File not signed] C:\Windows\System32\CNMLM83.DLL
2017-10-08 11:54 - 2017-10-08 11:54 - 000097280 _____ (GalaSoft Laurent Bugnion @ hxxp://www.galasoft.ch) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\GalaSoft.Mv591a4917#\360312f0df26da225f5ec84c809c088e\GalaSoft.MvvmLight.Extras.ni.dll
2017-10-08 11:54 - 2017-10-08 11:54 - 000212992 _____ (GalaSoft Laurent Bugnion @ hxxp://www.galasoft.ch) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\GalaSoft.MvvmLight\7882afaee56269f44a4bd8e3d22029bf\GalaSoft.MvvmLight.ni.dll
2017-10-08 11:54 - 2017-10-08 11:54 - 000154624 _____ (hardcodet.net) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Hardcodet.W6cab32f3#\20b7093a82ad508b69619d30c81a4814\Hardcodet.Wpf.TaskbarNotification.ni.dll
2013-01-23 21:44 - 2013-01-23 21:44 - 000016216 _____ (Hewlett-Packard Company -> ) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\Interop.HPQWMIEXLib.dll
2013-01-23 21:43 - 2013-01-23 21:43 - 002452824 _____ (Hewlett-Packard Company -> Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\hputils.dll
2013-01-23 21:44 - 2013-01-23 21:44 - 000068440 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\CaslSmBios.dll
2013-01-23 21:44 - 2013-01-23 21:44 - 000524632 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\CaslWmi.dll
2016-07-25 18:55 - 2016-07-25 18:55 - 000113496 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Windows\assembly\GAC_MSIL\CaslShared\3.5.1.1__9c6f83d5b7f3d097\CaslShared.dll
2016-07-25 18:55 - 2016-07-25 18:55 - 000092504 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Windows\assembly\GAC_MSIL\hpcasl\3.5.1.1__9c6f83d5b7f3d097\hpcasl.dll
2014-05-16 10:50 - 2014-05-16 10:50 - 000006656 _____ (Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\cs\HandlersStrings.resources.dll
2013-03-26 21:12 - 2013-03-26 21:12 - 000056832 _____ (Hewlett-Packard Development Company, L.P.) [File not signed] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HP.Mobile.Shared.dll
2016-07-26 10:08 - 2016-05-21 10:19 - 000077312 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2013-08-22 14:31 - 2017-09-29 15:40 - 002896896 _____ (Microsoft Corporation) [File not signed] C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
2017-10-08 11:54 - 2017-10-08 11:54 - 000034304 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P4d3ce419#\23e5651623d0525c6461fe2a7222a1dd\Microsoft.Practices.ServiceLocation.ni.dll
2017-10-08 11:53 - 2017-10-08 11:53 - 002775040 _____ (NLog) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\NLog\4ce317f88ec4329c93b303ba50dcab03\NLog.ni.dll
2019-07-22 14:17 - 2019-07-22 14:17 - 003042304 ____N (Python Software Foundation) [File not signed] C:\Users\TOM~1\AppData\Local\Temp\_MEI90162\python27.dll
2017-10-08 11:52 - 2017-10-08 11:52 - 000017408 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.BiosInfo\ddf5111c27f39642b0c056cf87f2192d\StagWare.BiosInfo.ni.dll
2017-10-08 11:54 - 2017-10-08 11:54 - 000036352 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.Fa1fc2d056#\cd39978e79ff598f310bddc2d1dcaf5d\StagWare.FanControl.Service.ni.dll
2017-10-08 11:52 - 2017-10-08 11:52 - 000167936 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.Fafc31ac88#\bafe100a11bb2a4789eca5894750b0fc\StagWare.FanControl.Configurations.ni.dll
2017-10-08 11:53 - 2017-10-08 11:53 - 000144384 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.FanControl\ac3416be90242299ef18e34e6008189f\StagWare.FanControl.ni.dll
2017-10-08 11:54 - 2017-10-08 11:54 - 000039424 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.Settings\2c916f31645736e86d33dfc6a741f3cc\StagWare.Settings.ni.dll
2019-07-22 14:17 - 2019-07-22 14:17 - 000202240 ____N (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wxbase30u_net_vc90_x64.dll
2019-07-22 14:17 - 2019-07-22 14:17 - 002831872 ____N (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wxbase30u_vc90_x64.dll
2019-07-22 14:17 - 2019-07-22 14:17 - 001654784 ____N (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wxmsw30u_adv_vc90_x64.dll
2019-07-22 14:17 - 2019-07-22 14:17 - 006542336 ____N (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wxmsw30u_core_vc90_x64.dll
2019-07-22 14:17 - 2019-07-22 14:17 - 000773632 ____N (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wxmsw30u_html_vc90_x64.dll
2019-07-22 14:17 - 2019-07-22 14:17 - 000137216 ____N (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI90162\wxmsw30u_webview_vc90_x64.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\sharepoint.com -> hxxps://malgym-files.sharepoint.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2019-02-25 18:35 - 000000041 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;c:\Program Files (x86)\Intel\iCLS Client\;c:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\NoteBook FanControl\
HKU\S-1-5-21-508856505-97066582-1914413276-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta programu Windows Prohlížeč fotografií.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\StartupApproved\StartupFolder: => "EvernoteClipper.lnk"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\StartupApproved\Run: => "GarminExpressTrayApp"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\StartupApproved\Run: => "Spotify Web Helper"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{4440500E-2A2E-4CE3-A3FF-66417F819A1F}C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{221C8AF3-76F6-4FBB-9257-75A3317989C6}C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [TCP Query User{159A5873-2048-470A-B6C2-F6AB45B98221}C:\users\tomáš\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tomáš\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{FF2D840F-E30B-4884-BAC4-06A50412A714}C:\users\tomáš\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tomáš\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{241603BC-3EFB-47AE-9148-367EBF2BD7AC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{F62FA635-7262-493E-97FC-7A3F7FC7B909}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{CFF3B325-EDA7-4A51-BB73-E7460E621457}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{558FEC4D-D298-4F3A-B674-DE115D047084}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E59D35AB-8D46-4BCA-9BEA-1F552D78F2F5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{72F9D536-0640-4532-926C-F5B0555B6F94}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{EECB4F31-716E-4D54-9815-D425F3644E4F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{42C88F82-A367-4C7D-BB12-592BE6FB1687}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{089C2A5B-1D73-4565-9EF0-14EE9D940AA7}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{BE5FDE4B-F25F-45BF-BF47-E1EFD82E3AF6}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{B47BC18E-FB95-45E8-ACEB-F10BA7DAD658}] => (Allow) C:\Program Files\HP\HP DeskJet 5000 series\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{096CC848-A6D1-47B2-BF80-2D8C5FCF2515}] => (Allow) LPort=5357
FirewallRules: [{157F4C39-E9AB-4041-8002-412EFC84C986}] => (Allow) C:\Program Files\HP\HP DeskJet 5000 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{60612BCD-0DB6-4C17-A502-CFD48E0494EC}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{80E0A99E-4D91-4CAD-AA12-8A3AE58A4D36}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4FEBFC1C-4B86-4C55-B953-EFBAD6784247}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{DFAA4770-8A29-4D0E-B017-A74B13C24634}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

05-07-2019 12:13:38 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212
24-08-2019 11:26:55 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/02/2019 09:59:12 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkQuarantineRetry

Error: (09/02/2019 09:59:06 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (09/02/2019 09:51:43 PM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Sledování výkonu objektu indexovacího modulu nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.

Kontext: aplikace , katalog SystemIndex

Error: (09/02/2019 09:51:39 PM) (Source: EventSystem) (EventID: 4622) (User: )
Description: Systém událostí modelu COM+ nemohl sdružit odběratele pro odběr {FAA70919-83EA-4F01-A582-B789A929E918}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. Výsledek HRESULT byl 800401fb.

Error: (09/01/2019 05:51:53 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (09/01/2019 05:51:48 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (09/01/2019 05:36:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: NoteBookFanControl.exe, verze: 1.4.3.0, časové razítko: 0x592c3fe6
Název chybujícího modulu: KERNELBASE.dll, verze: 6.3.9600.18895, časové razítko: 0x5a4b1cf7
Kód výjimky: 0xe0434352
Posun chyby: 0x00000000000092fc
ID chybujícího procesu: 0x2a70
Čas spuštění chybující aplikace: 0x01d560db07af270d
Cesta k chybující aplikaci: C:\Program Files (x86)\NoteBook FanControl\NoteBookFanControl.exe
Cesta k chybujícímu modulu: C:\Windows\system32\KERNELBASE.dll
ID zprávy: 552ae312-ccce-11e9-82cc-a45d36cd7354
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (09/01/2019 05:36:58 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: NoteBookFanControl.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.IO.IOException
na System.IO.__Error.WinIOError(Int32, System.String)
na System.IO.FileStream.Init(System.String, System.IO.FileMode, System.IO.FileAccess, Int32, Boolean, System.IO.FileShare, Int32, System.IO.FileOptions, SECURITY_ATTRIBUTES, System.String, Boolean, Boolean, Boolean)
na System.IO.FileStream..ctor(System.String, System.IO.FileMode, System.IO.FileAccess, System.IO.FileShare, Int32, System.IO.FileOptions, System.String, Boolean)
na System.IO.FileStream..ctor(System.String, System.IO.FileMode)
na StagWare.Settings.SettingsService`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].Save()
na System.Windows.Threading.DispatcherTimer.FireTick(System.Object)
na System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
na System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
na System.Windows.Threading.DispatcherOperation.InvokeImpl()
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Windows.Threading.DispatcherOperation.Invoke()
na System.Windows.Threading.Dispatcher.ProcessQueue()
na System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
na System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
na System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
na System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
na MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
na MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
na System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
na System.Windows.Application.RunDispatcher(System.Object)
na System.Windows.Application.RunInternal(System.Windows.Window)
na NbfcClient.App.Main()


System errors:
=============
Error: (09/02/2019 09:59:16 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70

Error: (09/02/2019 09:59:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70

Error: (09/02/2019 09:58:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 40

Error: (09/02/2019 09:58:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 40

Error: (09/02/2019 09:58:00 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 40

Error: (09/01/2019 05:31:04 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70

Error: (09/01/2019 05:31:04 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70

Error: (08/30/2019 10:20:57 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
Description: 4


CodeIntegrity:
===================================

Date: 2018-12-16 15:22:54.482
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:54.291
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:54.100
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:53.907
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:53.679
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:53.492
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:53.304
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:53.117
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

BIOS: Hewlett-Packard 68IRF Ver. F.66 07/14/2017
Motherboard: Hewlett-Packard 1949
Processor: Intel(R) Pentium(R) CPU 2020M @ 2.40GHz
Percentage of memory in use: 41%
Total physical RAM: 8040.56 MB
Available physical RAM: 4717.85 MB
Total Virtual: 16232.56 MB
Available Virtual: 12014.08 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.55 GB) (Free:641.91 GB) NTFS ==>[drive with boot components (obtained from BCD)]

\\?\Volume{d44e5679-baee-11e7-8292-806e6f6e6963}\ () (Fixed) (Total:0.86 GB) (Free:0.84 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: A378BE02)
Partition 1: (Active) - (Size=930.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=883 MB) - (Type=27)

==================== End of Addition.txt ============================

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Preventivní kontrola PC

#4 Příspěvek od Conder »

Ahoj :)

:arrow: Tema nam zapadla, kedze si si tu sam odpovedal.

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

TTommikk
Návštěvník
Návštěvník
Příspěvky: 77
Registrován: 16 črc 2006 19:01

Re: Preventivní kontrola PC

#5 Příspěvek od TTommikk »

# -------------------------------
# Malwarebytes AdwCleaner 7.4.1.0
# -------------------------------
# Build: 09-04-2019
# Database: 2019-09-13.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 09-15-2019
# Duration: 00:00:06
# OS: Windows 8.1 Pro
# Cleaned: 8
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Users\Tomáš\AppData\Roaming\Seznam.cz

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

Deleted Preinstalled.HPSupportAssistant Folder C:\Program Files (x86)\HEWLETT-PACKARD\HP SUPPORT SOLUTIONS
Deleted Preinstalled.HPSupportAssistant Folder C:\ProgramData\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Deleted Preinstalled.HPSupportAssistant Folder C:\Users\Tomáš\AppData\Roaming\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Deleted Preinstalled.HPSupportAssistant Folder C:\Windows\System32\config\systemprofile\AppData\Local\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Deleted Preinstalled.HPSupportAssistant Registry HKLM\Software\Classes\CLSID\{335F9A62-FE4B-40CD-B4ED-BB4DE21DC95D}
Deleted Preinstalled.HPSupportAssistant Registry HKLM\Software\Wow6432Node\\Classes\CLSID\{335F9A62-FE4B-40CD-B4ED-BB4DE21DC95D}
Deleted Preinstalled.HPSupportAssistant Registry HKLM\Software\Wow6432Node\\Classes\CLSID\{C0ABBA07-B636-47B8-B9E1-BB96D7CD4831}


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner_Debug.log - [11183 octets] - [15/09/2019 13:26:46]
AdwCleaner[S00].txt - [2220 octets] - [15/09/2019 13:27:20]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Preventivní kontrola PC

#6 Příspěvek od Conder »

:arrow: Poprosim o obidva nove logy z FRST.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

TTommikk
Návštěvník
Návštěvník
Příspěvky: 77
Registrován: 16 črc 2006 19:01

Re: Preventivní kontrola PC

#7 Příspěvek od TTommikk »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 18-09-2019
Ran by Tomáš (administrator) on TOMASPC (Hewlett-Packard HP ProBook 450 G0) (18-09-2019 19:58:23)
Running from C:\Users\Tomáš\Desktop
Loaded Profiles: Tomáš (Available Profiles: Tomáš)
Platform: Windows 8.1 Pro (Update) (X64) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe
(Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(IDT, Inc.) [File not signed] C:\Program Files\IDT\WDM\stacsv64.exe
(IDT, Inc.) [File not signed] C:\Program Files\IDT\WDM\sttray64.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(Intel® Trusted Connect Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Spotify AB -> Spotify Ltd) C:\Users\Tomáš\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\Tomáš\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\Tomáš\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\Tomáš\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\Tomáš\AppData\Roaming\Spotify\Spotify.exe
(StagWare) [File not signed] C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Validity Sensors, Inc -> Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-11-07] (IDT, Inc.) [File not signed]
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [260488 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [336672 2014-05-16] (Hewlett-Packard Company -> Hewlett-Packard Company)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-19] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [260488 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [TeamsMachineUninstallerLocalAppData] => C:\Users\Tomáš\AppData\Local\Microsoft\Teams\Update.exe [1789552 2019-09-03] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKLM-x32\...\Run: [TeamsMachineUninstallerProgramData] => %ProgramData%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [46993264 2019-06-27] (Google LLC -> )
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Run: [HP DeskJet 5000 (NET)] => "C:\Program Files\HP\HP DeskJet 5000 series\Bin\ScanToPCActivationApp.exe" -deviceID "TH7C84B1VB:NW" -scfn "HP DeskJet 5000 (NET)" -AutoStart 1
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Run: [GalaxyClient] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [7611464 2019-09-15] (GOG Sp. z o.o. -> GOG.com)
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Tomáš\AppData\Local\Microsoft\Teams\Update.exe [1789552 2019-09-03] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {694ee494-763c-11e7-8286-a45d36cd7354} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {69af2778-3851-11e9-82c8-a45d36cd7354} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {d3259550-3f7f-11e9-82c8-a45d36cd7354} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-18\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [30796352 2018-10-24] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKLM\...\Drivers32-x32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.132\Installer\chrmstp.exe [2019-09-01] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.82\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0F607CA7-F9F5-4B7C-AC2D-29DCC84FAEAC} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [157144 2019-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {0FC36F3F-FCE2-41D2-B961-A9A59A5CFB32} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2174624 2019-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {152F7048-69D5-48AA-8819-7E10B82FBCA4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6299288 2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {188D854F-5582-458F-8382-8745811AA5FB} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2838920 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
Task: {1BCD32FD-A1FE-43BF-99C4-C272CEAACBFC} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27367016 2019-08-30] (Microsoft Corporation -> Microsoft Corporation)
Task: {1EE90A21-6FA6-49D3-A408-665482C6AB94} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2174624 2019-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {2988BD4E-E4F9-4B77-92C6-6D26AB7FC30F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-02-05] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {4FC29FF9-80B9-459F-BB4D-585BB7AB2158} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\rundll32.exe aepdu.dll,AePduRunUpdate -nolegacy
Task: {51B5665D-5D81-4C8A-894E-21BA66E467ED} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2345608 2019-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {5D3EEDFA-99BF-41E2-A0DA-54DFAF329B62} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe
Task: {5F8FEFE3-2910-4E49-A0FB-6221109B4BF8} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39920 2018-10-24] (Garmin International, Inc. -> )
Task: {645AAAE6-3EE1-4574-B1AF-DC29D1267B5C} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_153_Plugin.exe [1456128 2018-11-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {7571E7E1-B377-41B7-A440-FF7B3F36DCD2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [13797712 2018-09-08] (Piriform Ltd -> Piriform Ltd)
Task: {816606C3-417F-4B9E-AB32-5A87AF967D3D} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3956824 2017-08-16] (Synaptics Incorporated -> Synaptics Incorporated)
Task: {83CFF232-5DE2-403B-B716-B1C13E11C423} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-07-31] (Google Inc -> Google Inc.)
Task: {9F6362ED-6EB6-4D00-BBBA-2FDD4EEDC255} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {A79CC7E9-1ACF-4EF2-8DFE-686A30E0F4C9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe
Task: {AA07C323-2B2D-4E4E-B6AE-4C84011CCA45} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [743616 2015-12-02] (@ByELDI -> @ByELDI) [File not signed]
Task: {B2928C48-70A7-4EA5-A9E2-2B67EF1EA095} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-07-31] (Google Inc -> Google Inc.)
Task: {B6C35989-EA31-4FD2-BECE-EFA921908D21} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe [1873288 2019-09-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {D2C8AD13-7FB1-4A5B-AA83-DEE45D3994A4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6299288 2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {E48B2D77-3426-408C-9594-9CF65B98E30D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27367016 2019-08-30] (Microsoft Corporation -> Microsoft Corporation)
Task: {FAEB4502-61A3-41E1-BFE5-BAE32B263B3D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [157144 2019-09-16] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{398CC933-2364-4ECF-8C36-E25A03D70F9F}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{6FD0246E-E0CC-493D-A72F-06015BBE4AF9}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
HKU\S-1-5-21-508856505-97066582-1914413276-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2019-07-02] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2019-05-06] (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF DefaultProfile: it11cpe7.default
FF ProfilePath: C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\it11cpe7.default [2019-09-06]
FF Extension: (uBlock Origin) - C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\it11cpe7.default\Extensions\uBlock0@raymondhill.net.xpi [2019-07-05]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_31_0_0_153.dll [2018-11-26] (Adobe Systems Incorporated -> )
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-07-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_31_0_0_153.dll [2018-11-26] (Adobe Systems Incorporated -> )
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-19] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-19] (Google Inc -> Google LLC)

Chrome:
=======
CHR HomePage: Default -> hxxp://seznam.cz/
CHR StartupUrls: Default -> "hxxp://seznam.cz/"
CHR Profile: C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default [2019-09-18]
CHR Extension: (Překladač Google) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2017-10-19]
CHR Extension: (Prezentace) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Super Netflix) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aioencjhbaolepcoappllicjebblphoc [2018-01-07]
CHR Extension: (Dokumenty) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-24]
CHR Extension: (YouTube) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-24]
CHR Extension: (uBlock Origin) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-09-08]
CHR Extension: (Kalendář Google) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2017-01-06]
CHR Extension: (Tabulky) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Word Online) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\fiombgjlkfpdpkbhfioofeeinbehmajg [2016-07-24]
CHR Extension: (Dokumenty Google offline) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-26]
CHR Extension: (Pocket Website) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\jijgclgmgjipgefcnnnibgllfonlfdap [2016-07-24]
CHR Extension: (Google Play) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2016-07-24]
CHR Extension: (Evernote Web) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2016-07-24]
CHR Extension: (Rozšíření Google Keep pro Chrome) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpcaedmchfhocbbapmcbpinfpgnhiddi [2019-09-12]
CHR Extension: (Upravte a pošlete snímek obrazovky) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdddabjhelpilpnpgondfmehhcplpiin [2019-09-03]
CHR Extension: (Save to Pocket) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2019-08-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Evernote Web Clipper) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2019-09-18]
CHR Extension: (Gmail) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-19]
CHR Extension: (Chrome Media Router) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-08-23]
CHR HKU\S-1-5-21-508856505-97066582-1914413276-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - <no Path/update_url>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [255504 2015-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6570352 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [360440 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1547200 2017-10-26] (Epic Games Inc. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11568144 2019-08-30] (Microsoft Corporation -> Microsoft Corporation)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [791624 2019-09-15] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7170632 2019-06-12] (GOG Sp. z o.o. -> GOG.com)
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [683296 2014-05-16] (Hewlett-Packard Company -> Hewlett-Packard Company)
R3 hpqwmiex; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [1006424 2013-01-23] (Hewlett-Packard Company -> Hewlett-Packard Company) [File not signed]
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319096 2016-08-05] (Intel Corporation - pGFX -> Intel Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [130592 2012-10-22] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166432 2012-10-22] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R2 NbfcService; C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe [8704 2017-05-29] (StagWare) [File not signed]
S3 PrintNotify; C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll [2896896 2017-09-29] (Microsoft Corporation) [File not signed]
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2013-11-07] (IDT, Inc.) [File not signed]
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246872 2017-08-16] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S2 HPSupportSolutionsFrameworkService; "C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe" [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [21645320 2015-08-31] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 AMDKMDAP; C:\Windows\system32\DRIVERS\atikmpag.sys [676360 2015-08-31] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [75520 2015-08-31] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37320 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205608 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [254408 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [196304 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblog.sys [320904 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [58168 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42496 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [168896 2019-09-18] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112520 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [88152 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1034640 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [476264 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [220632 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [380160 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Broadcom Corporation -> Windows (R) Win 7 DDK provider)
R3 HpqKbFiltr; C:\Windows\System32\drivers\HpqKbFiltr64.sys [28376 2014-05-15] (Hewlett-Packard Company -> Hewlett-Packard Company)
R3 netr28x; C:\Windows\system32\DRIVERS\netr28x.sys [2607792 2013-07-25] (Mediatek Inc. -> Ralink Technology, Corp.)
R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1205872 2014-06-26] (MEDIATEK INC. -> Ralink Technology, Corp.)
R3 RTL8168; C:\Windows\system32\DRIVERS\Rt630x64.sys [591360 2013-06-18] (Microsoft Windows -> Realtek )
R3 STHDA; C:\Windows\system32\DRIVERS\stwrt64.sys [551936 2013-11-07] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
R1 WinRing0_1_2_0; C:\Program Files (x86)\NoteBook FanControl\WinRing0x64.sys [14544 2017-10-08] (Noriyuki MIYAZAKI -> OpenLibSys.org)
S3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [31840 2016-03-23] (Hewlett-Packard Company -> HP)
R3 WirelessButtonDriver64; C:\Windows\system32\DRIVERS\WirelessButtonDriver64.sys [31840 2016-03-23] (Hewlett-Packard Company -> HP)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-09-18 19:58 - 2019-09-18 19:59 - 000032623 _____ C:\Users\Tomáš\Desktop\FRST.txt
2019-09-18 19:58 - 2019-09-18 19:58 - 000000000 ____D C:\Users\Tomáš\Desktop\FRST-OlderVersion
2019-09-15 22:13 - 2019-09-15 22:14 - 033493784 _____ C:\Users\Tomáš\Downloads\Brukner, Filip - Vetší poetický slovník.pdf
2019-09-15 20:44 - 2019-09-15 20:45 - 042601683 _____ C:\Users\Tomáš\Downloads\Rut - Menší poetický slovník v příkladech.PDF
2019-09-15 20:21 - 2019-09-15 20:21 - 000350441 _____ C:\Users\Tomáš\Downloads\VY_32_INOVACE_6_CJ_16_Test__basnicke_prostredky.pdf
2019-09-15 13:26 - 2019-09-15 13:30 - 000000000 ____D C:\AdwCleaner
2019-09-15 11:47 - 2019-09-15 11:48 - 007622344 _____ (Malwarebytes) C:\Users\Tomáš\Desktop\adwcleaner_7.4.1.exe
2019-09-12 22:50 - 2019-09-12 22:52 - 070082072 _____ C:\Users\Tomáš\Downloads\DJ5000_Basicx64_44.4.2678.exe
2019-09-12 22:34 - 2019-09-12 22:34 - 006757456 _____ C:\Users\Tomáš\Downloads\HPEasyStart_10_0_4029_14.exe
2019-09-11 21:42 - 2019-09-11 21:42 - 000065512 _____ C:\Users\Tomáš\Downloads\SOUHRNNÉ POUČENÍ O SLOHU.pptx
2019-09-03 17:27 - 2019-09-15 12:01 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Corporation
2019-09-03 17:27 - 2019-09-03 17:27 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\Microsoft Teams
2019-09-03 17:25 - 2019-09-03 17:27 - 000000000 ____D C:\Users\Tomáš\AppData\Local\SquirrelTemp
2019-09-02 22:01 - 2019-09-18 19:58 - 001615360 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST64.exe
2019-09-02 22:01 - 2019-09-18 19:58 - 000000000 ____D C:\FRST
2019-08-23 17:27 - 2019-08-23 17:28 - 000212992 _____ C:\Windows\system32\ClickToRun_Pipeline16

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-09-18 19:42 - 2019-06-18 22:22 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\Spotify
2019-09-18 19:42 - 2019-06-18 22:22 - 000000000 ____D C:\Users\Tomáš\AppData\Local\Spotify
2019-09-18 19:42 - 2018-09-08 23:27 - 000004128 _____ C:\Windows\System32\Tasks\CCleaner Update
2019-09-18 19:42 - 2018-09-01 18:40 - 000004526 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-09-18 19:42 - 2016-07-31 00:13 - 000003386 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-09-18 19:42 - 2016-07-31 00:13 - 000003258 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-09-18 19:42 - 2016-07-29 12:39 - 000003554 _____ C:\Windows\System32\Tasks\GarminUpdaterTask
2019-09-18 19:42 - 2016-07-26 11:36 - 000002788 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2019-09-18 19:42 - 2016-07-26 11:33 - 000003364 _____ C:\Windows\System32\Tasks\AutoPico Daily Restart
2019-09-18 19:42 - 2016-07-25 20:21 - 000002990 _____ C:\Windows\System32\Tasks\Synaptics TouchPad Enhancements
2019-09-18 19:42 - 2016-07-24 20:36 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software
2019-09-18 18:58 - 2017-10-27 00:09 - 000168896 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-09-16 19:42 - 2013-08-22 17:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-09-16 19:40 - 2016-07-26 10:13 - 000000000 ____D C:\Program Files\Microsoft Office
2019-09-16 00:04 - 2016-07-25 20:44 - 000000000 ____D C:\ProgramData\NbfcService
2019-09-15 17:57 - 2016-07-24 20:30 - 000003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-508856505-97066582-1914413276-1001
2019-09-15 15:15 - 2016-07-24 13:43 - 000000000 ___DO C:\Users\Tomáš\SkyDrive
2019-09-15 13:46 - 2016-08-18 13:45 - 000000000 ___RD C:\Users\Tomáš\Disk Google
2019-09-15 13:44 - 2016-07-25 18:09 - 000000000 __SHD C:\Users\Tomáš\IntelGraphicsProfiles
2019-09-15 13:36 - 2013-09-30 06:20 - 001745984 _____ C:\Windows\system32\PerfStringBackup.INI
2019-09-15 13:36 - 2013-09-30 05:57 - 000739924 _____ C:\Windows\system32\perfh005.dat
2019-09-15 13:36 - 2013-09-30 05:57 - 000151610 _____ C:\Windows\system32\perfc005.dat
2019-09-15 13:36 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2019-09-15 13:31 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-09-15 13:30 - 2016-07-25 00:22 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\Hewlett-Packard
2019-09-15 13:30 - 2016-07-24 21:24 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2019-09-15 13:20 - 2018-07-10 16:52 - 000000000 ____D C:\Program Files (x86)\GOG Galaxy
2019-09-15 13:13 - 2019-01-17 23:20 - 000000000 ____D C:\Users\Tomáš\AppData\Local\CrashDumps
2019-09-15 13:13 - 2018-09-10 22:45 - 000000000 ____D C:\ProgramData\HP
2019-09-15 13:13 - 2017-04-02 11:38 - 000000000 ____D C:\Program Files (x86)\HP
2019-09-12 23:04 - 2016-07-24 13:41 - 000000000 ____D C:\Users\Tomáš\AppData\Local\Packages
2019-09-12 22:52 - 2018-09-10 22:45 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\HP_Easy_Start
2019-09-12 22:21 - 2013-08-22 15:25 - 000262144 _____ C:\Windows\system32\config\BBI
2019-09-10 19:41 - 2017-10-08 10:58 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\NoteBookFanControl
2019-09-06 18:23 - 2017-06-29 00:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2019-09-06 18:23 - 2016-08-01 11:06 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-09-06 18:22 - 2017-07-10 11:15 - 000000000 ____D C:\Users\Tomáš\AppData\LocalLow\Mozilla
2019-09-02 21:53 - 2013-08-22 17:36 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-09-01 17:37 - 2016-07-31 00:14 - 000002204 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-01 17:37 - 2016-07-31 00:14 - 000002163 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-08-30 22:17 - 2017-03-17 10:08 - 000004168 _____ C:\Windows\System32\Tasks\Avast Emergency Update

==================== Files in the root of some directories ================

2018-06-03 21:27 - 2018-06-03 21:27 - 000000875 _____ () C:\Users\Tomáš\AppData\Local\recently-used.xbel

==================== FLock ================

2016-07-24 13:40 C:\Windows\CSC

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2019-09-16 19:34
==================== End of FRST.txt ============================




Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-09-2019
Ran by Tomáš (18-09-2019 20:00:02)
Running from C:\Users\Tomáš\Desktop
Windows 8.1 Pro (Update) (X64) (2016-07-24 11:41:28)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-508856505-97066582-1914413276-500 - Administrator - Disabled)
Guest (S-1-5-21-508856505-97066582-1914413276-501 - Limited - Disabled)
Tomáš (S-1-5-21-508856505-97066582-1914413276-1001 - Administrator - Enabled) => C:\Users\Tomáš

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 16.02 (x64) (HKLM\...\7-Zip) (Version: 16.02 - Igor Pavlov)
Adobe Flash Player 31 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 31.0.0.153 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{5094145C-9F17-8099-7F4F-E5AADD5E4065}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
ANT Drivers Installer x64 (HKLM\...\{D559687A-60C5-4786-9429-C21EC195789D}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.3.2369 - AVAST Software)
Backup and Sync from Google (HKLM\...\{768C0072-2FD2-4934-9824-B2A1E81AEA5D}) (Version: 3.45.5545.5747 - Google, Inc.)
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Broadcom Bluetooth Drivers (HKLM\...\{0A1B4690-E176-4533-8058-939480AEE1D0}) (Version: 12.0.1.170 - Broadcom Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.46 - Piriform)
Elevated Installer (HKLM-x32\...\{0BF90608-2F95-4C7C-9A85-E90E0CAF4FE9}) (Version: 6.9.1.0 - Garmin Ltd or its subsidiaries) Hidden
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Evernote v. 6.18.4 (HKLM-x32\...\{3E390FB8-703D-11E9-A27F-005056951CAD}) (Version: 6.18.4.8489 - Evernote Corp.)
FTL: Advanced Edition (HKLM-x32\...\1207659102_is1) (Version: 1.6.9 - GOG.com)
Garmin Express (HKLM-x32\...\{95D0EADA-5123-41C0-931A-F37946BC0E8E}) (Version: 6.9.1.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express (HKLM-x32\...\{eab4691c-4022-41cd-8d39-c3097ba62d4b}) (Version: 6.9.1.0 - Garmin Ltd or its subsidiaries)
GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 76.0.3809.132 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Google2SRT (HKLM-x32\...\{B0A59B6D-5983-46D2-9B34-51B1C15055CD}) (Version: 0.7.5 - Google2SRT)
HP ESU for Microsoft Windows 8.1 (HKLM-x32\...\{A3876D50-4A88-4A34-92E1-5D7BC8F886E1}) (Version: 1.0.1 - Hewlett-Packard Company)
HP Hotkey Support (HKLM-x32\...\{57FA60DA-585F-456A-B80E-17D1CDD22A30}) (Version: 5.0.27.1 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{3D6FF65E-EE93-4D90-B5D7-0DC856E2AFEB}) (Version: 12.10.49.21 - HP)
HP System Default Settings (HKLM-x32\...\{987210BB-D707-48FC-88FA-4374765D108D}) (Version: 2.0.1 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6496.0 - IDT)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.20.1337 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4425 - Intel Corporation)
IrfanView 64 (remove only) (HKLM\...\IrfanView64) (Version: 4.41 - Irfan Skiljan)
Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: - )
KMSpico 10.2.0 10.2.0 (HKLM-x32\...\KMSpico 10.2.0 10.2.0) (Version: 10.2.0 - KMSpico)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Mediatek Bluetooth (HKLM\...\{904C579C-9366-D3B7-7F31-4879401DBD4A}) (Version: 11.0.756.0 - Mediatek)
Microsoft Office 365 ProPlus - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.11929.20300 - Microsoft Corporation)
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mozilla Firefox 67.0.4 (x64 cs) (HKLM\...\Mozilla Firefox 67.0.4 (x64 cs)) (Version: 67.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 67.0.4.7109 - Mozilla)
NoteBook FanControl (HKLM-x32\...\{21685c56-05b5-404c-a9d9-bf568d3749a0}) (Version: 1.5.3.0 - Stefan Hirschmann - StagWare)
NoteBook FanControl (HKLM-x32\...\{CE2D4D25-DF9B-4E9D-A4CB-2E4545271F70}) (Version: 1.5.3.0 - Stefan Hirschmann - StagWare) Hidden
OEM Application Profile (HKLM-x32\...\{29F5A1C9-0BC3-16E6-9384-3BC5D1CB7ACE}) (Version: 1.00.0000 - Název společnosti:)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.11929.20300 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11929.20300 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.11929.20300 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
PX Profile Update (HKLM-x32\...\{C5705DBC-3A55-986A-7114-A5F86AADDD06}) (Version: 1.00.1. - AMD) Hidden
Spotify (HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Spotify) (Version: 1.1.15.448.g00fba0e3 - Spotify AB)
SumatraPDF (HKLM\...\SumatraPDF) (Version: 3.1.1 - Krzysztof Kowalczyk)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.63 - Synaptics Incorporated)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
Validity Fingerprint Sensor Driver (HKLM\...\{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}) (Version: 4.5.133.0 - Validity Sensors, Inc.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-508856505-97066582-1914413276-1001_Classes\CLSID\{55808EA8-81FE-43c6-AAE8-1D8149F941D3}\InprocServer32 -> C:\Program Files\SumatraPDF\PdfFilter.dll () [File not signed]
CustomCLSID: HKU\S-1-5-21-508856505-97066582-1914413276-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-06-27] (Google LLC -> Google)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-06-27] (Google LLC -> Google)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiacm64.dll [2015-08-19] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2016-08-05] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers5_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2019-09-15 13:45 - 2019-09-15 13:45 - 000113664 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_ctypes.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000173568 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_elementtree.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001800192 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_hashlib.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000032256 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_multiprocessing.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000046080 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_psutil_windows.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000047616 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_socket.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 002230784 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_ssl.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000026112 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_yappi.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000080896 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\bz2.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 006277632 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\cello.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000014848 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\common.time34.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000007680 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\hashobjs_ext.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000301568 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\PIL._imaging.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000169472 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\pyexpat.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001084416 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\pysqlite2._sqlite.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000548864 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\pythoncom27.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 000137728 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\pywintypes27.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 000010752 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\select.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000020992 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\thumbnails_ext.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000689664 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\unicodedata.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000118784 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\usb_ext.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000128512 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32api.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000438784 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32com.shell.shell.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000011776 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32crypt.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000023040 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32event.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000149504 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32file.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000223232 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32gui.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000048128 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32inet.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000029696 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32pdh.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000027648 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32pipe.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000044032 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32process.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000020480 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32profile.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000136192 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32security.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000026624 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32ts.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000034304 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\windows.conditional.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000038400 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\windows.connectivity.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000073216 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\windows.device_monitor.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000110592 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\windows.volumes.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000020480 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\windows.winwrap.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001325056 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._controls_.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001489408 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._core_.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001007104 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._gdi_.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000103424 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._html2.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000916992 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._misc_.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001039872 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._windows_.pyd
2018-02-08 11:43 - 2018-02-08 11:43 - 000032256 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\A4.Foundation\4ca053ea6ad12f7a3acf8574dd262804\A4.Foundation.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\842f19506907b19f7d1123ddde8da6f0\AEM.Actions.CCAA.Shared.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\131b5e91804254d94ea50aca6879be94\AEM.Plugin.EEU.Shared.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\2885c77d2b3572c1117ffac283d89303\AEM.Plugin.Hotkeys.Shared.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\ce35c0ffba1f547eaea3a9a882ae5503\AEM.Plugin.DPPE.Shared.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000280064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\09974c993bd4a1f3123677444104dcc5\AEM.Plugin.Source.Kit.Server.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\5ce4c8b0b9bba47bc5e6aaefde0f8018\AEM.Plugin.WinMessages.Shared.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\dc8059ba2ccd7543213c662a5b224db4\AEM.Plugin.REG.Shared.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\5a03f54b177ede24a7210099b470f075\AEM.Plugin.GD.Shared.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000013824 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\77c17079d910ef6e9b34a8db8f3a47dd\AEM.Server.Shared.ni.dll
2018-02-08 11:45 - 2018-02-08 11:45 - 000271360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server\ef8ed4353f7b36c97e32243b59f62081\AEM.Server.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Foundation\6330fd9ba4e1c15cbe02dea07dc41102\APM.Foundation.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000123392 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ATICCCom\ae772963a408c50c4cec849ccd5fb9b6\ATICCCom.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000202240 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\01c9edefd921d8cc6ff89e49a08e73a6\CCC.Implementation.ni.dll
2018-02-08 23:35 - 2018-02-08 23:35 - 000153600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\46dd21a40ae5c76cedd2981bc672b5cd\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2018-02-08 23:28 - 2018-02-08 23:28 - 000126976 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\b1c82cc1d57fc0e8b1b3a90bf2cbf527\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000026624 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\9bf789d866ddc8d2bc665e6434b3dbfa\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\c13cb3f749eb8cea399387110b4939c3\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000105984 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\b96afaf76c5d9eca8338b37f9dc3d0f0\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2018-02-08 23:35 - 2018-02-08 23:35 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\c3b04660c3002c501d3f3aa6c2093689\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\afd4f9cbca3895f4ced96db7bfcbe073\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2018-02-08 23:31 - 2018-02-08 23:31 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\c0152281e1bac5adef1fa90feb79d424\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2018-02-08 23:35 - 2018-02-08 23:35 - 000074240 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\00f276899072fc1872e11d6810f3d230\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000265216 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\3fd28541dcd6775242a7de31545ed697\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2018-02-08 23:28 - 2018-02-08 23:28 - 000361984 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\488e6a99e4f0c2c334332bd7278c8da8\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\c2f2dd2538955110d90a907ff7dff46a\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000743424 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\bf131e97419a2b4ae065c953bf94b4af\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000447488 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\2c74c3e701dcc877dac829a797cf96a4\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2018-02-08 23:31 - 2018-02-08 23:31 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\172a58f758df8b06ca80af4fe2ef8831\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2018-02-08 23:32 - 2018-02-08 23:32 - 000057344 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\40563c9e40816eb05834886a4ef868b9\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\794d767865b981d684e8447739df751e\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2018-02-08 23:33 - 2018-02-08 23:33 - 000148480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.abe74207#\bd08ee60d8b7ce9f32edbb0b5dcdf4b7\CLI.Aspect.MultiVPU2.Graphics.Shared.ni.dll
2018-02-08 23:28 - 2018-02-08 23:28 - 000464896 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\9c57de6b0fa63108a2a8973b0089a436\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000067584 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\bf04a8c2f74344622936f7d0cf6ead55\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2018-02-08 23:34 - 2018-02-08 23:34 - 000342528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\841c6263ff56a405a27d862a794cea60\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\ac5f0712e800319751056b7d697a27c9\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000095232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4f2f79c#\6c00b088bab0c2b5adcb165424b33878\CLI.Aspect.CrossFireX.Graphics.Dashboard.ni.dll
2018-02-08 23:33 - 2018-02-08 23:33 - 000274944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\beda23d2cb66298ec586665912e5a6d3\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 003320320 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\921bdb4ab83c7858f7f655836292e54c\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000047104 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\b20cc8cf8ce9d8ac0b7a31e66eef5a68\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\56d9fdb52a1b5fba0d1249492d74f072\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000053248 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\14841ca810a85f3d8f1e5eb2b37e76ad\CLI.Caste.A4.Runtime.ni.dll
2018-02-08 11:47 - 2018-02-08 11:47 - 000046080 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\774502fbd0a096c2507de2d00b33d5e7\CLI.Caste.A4.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000027648 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\6ec6395371b7238f0cf9a25dcbe9da3d\CLI.Caste.A4.Dashboard.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000046080 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\781b24158624f3b253235bdcd04b1623\CLI.Caste.Fuel.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000311808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\8e04122e785d7eafb29c808cb9ef96c4\CLI.Caste.Fuel.Runtime.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000027648 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\fea5335b9be35c6e43020382235f9c42\CLI.Caste.Fuel.Dashboard.ni.dll
2018-02-08 23:31 - 2018-02-08 23:31 - 000038400 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\83a7836e9e492ce792f2e99a9a31caec\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2018-02-08 23:27 - 2018-02-08 23:27 - 001547776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\4098e16256de4f567f0767a5f6571365\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000579584 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\e0ed9e26b1152ffda28dd235af704265\CLI.Caste.Graphics.Dashboard.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000046080 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\c0477c3ef465796010d740bb7d999a5b\CLI.Caste.HydraVision.Runtime.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\bbfec79b5a9c52e9308accd0b03eb295\CLI.Caste.HydraVision.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\716a0feba1e467ae4d63f0a2ef4c4e29\CLI.Caste.HydraVision.Dashboard.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\e6d304b03856ff4e9c3f8aa688080ced\CLI.Caste.Platform.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\5364318939cded57ab3246999ccf15d7\CLI.Caste.Platform.Runtime.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000024576 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\d0b8abb839fdfd634ab2e49451437661\CLI.Caste.Platform.Dashboard.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\9df173665ef8e68a23a08aa0d9e5f63a\CLI.Component.Runtime.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000902144 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\85de606a8ae1190056b08b782c70c5b1\CLI.Component.Systemtray.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000170496 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\1044b7ff65783861851aee579b5d5379\CLI.Component.Dashboard.ProfileManager2.ni.dll
2018-02-08 23:26 - 2018-02-08 23:26 - 000152576 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\4aa462ccf917792c45af3a98ea688559\CLI.Component.Runtime.Shared.Private.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\856933c0fa751efd6ae764a08d9c3b8b\CLI.Component.Runtime.Extension.EEU.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 001606656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\12ab26dbacc2fa779f1d0b78b045dcf4\CLI.Component.Dashboard.Shared.Private.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000019968 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\7ac5152fbffcc0e44c2d2441c3442888\CLI.Component.Client.Shared.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\2b9bd6412799bfae911966372a4df5be\CLI.Component.Dashboard.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000490496 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Component.Eeu\e36185c6bf989ccb1eb2cf1ff0714508\CLI.Component.Eeu.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000090112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\2af47fe817f2ab488a0374026d5dbff0\CLI.Foundation.Private.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000061952 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\ab26c36bbf527050abddbe43c1578e17\CLI.Foundation.XManifest.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000091648 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\bb7720029eb055da0f92f3756d319236\CLI.Foundation.CoreAudioAPI.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 001065472 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\cb589323508dc55a5ede6942167bfc18\CLI.Foundation.Client.ni.dll
2018-02-08 11:45 - 2018-02-08 11:45 - 000301056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\3461c787048a4f135f2b524c132f38b9\CLI.Foundation.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\e6c4a590e4bdafd75ad099fdc1aecc01\DEM.Foundation.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000117248 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\1e03423a2b25b5e462e175ae8063433c\DEM.Graphics.I0601.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000015872 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\64e648748b4227db490adae2b627a285\DEM.Graphics.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\9aa99a450d60fb0fbffdc51c6ee9a1e6\Fuel.Foundation.ni.dll
2018-02-08 23:38 - 2018-02-08 23:38 - 000293376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\5f4785d76bc5c8466bedf7dd1113f713\LOG.Foundation.Implementation.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000147968 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\5d802549de7a6c91fcb7221aa28b108b\LOG.Foundation.Private.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\11c0fe133a491fb802d1b5e5107c992d\LOG.Foundation.Implementation.Private.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000133120 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\0c0a4358d7b66d3d4839e21cd63d08bf\LOG.Foundation.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\b3228efdb52a6e1b804746ce141d00b3\MOM.Foundation.ni.dll
2018-02-08 23:38 - 2018-02-08 23:38 - 000390656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\084dfefdcc8e672b61fed78e82f883aa\MOM.Implementation.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\2e190f6dfdaa8a482f0d8e519391cbe7\NEWAEM.Foundation.ni.dll
2015-08-19 14:03 - 2015-08-19 14:03 - 000005120 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiamcsy.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000898560 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\990cdde735751cd767b437ba030e5b34\ADL.Foundation.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000258560 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Server\4e94916e1c9cb2ef1ab11f6aaed24a0e\APM.Server.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000780800 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.79734f7a#\3d579dfbf4fc9bdbf4e0f232da2c83b5\CLI.Aspect.PowerXpress.Graphics.Runtime.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000357888 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b3da5a8f#\6acd19d3895ee6d20113780aec4b3a92\CLI.Aspect.PowerXpress.Graphics.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000592896 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4846ba2#\ca545cc56c30104d942c38e9c03879f1\CLI.Aspect.PowerXpress.Graphics.Dashboard.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 007967744 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\bc5b110f553e48fc3bc0a88dbe4bcf10\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000135680 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\d5dff1059f05862c5a0a4112d338e4cd\CLI.Component.Client.Shared.Private.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000231936 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\760a25b320a0f333cfd1f2ef5602df40\CLI.Component.Runtime.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000920576 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\13333e56b1049591486c31adae136a9b\CLI.Component.Dashboard.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000011776 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0702\da330e2619cdd3395ea358a0fa648024\DEM.Graphics.I0702.ni.dll
2018-02-08 23:31 - 2018-02-08 23:31 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\47465b7c5c60546b41b33aff29e44069\DEM.Graphics.I0709.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0710\4d9d2c23e3489313db06a9e1cfc7159d\DEM.Graphics.I0710.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\307449e2f2288d7a4978cfb67b576c9e\DEM.Graphics.I0712.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000018944 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\d6f2507fda7cbdc5b4bb156814b88ac7\DEM.Graphics.I0804.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0901\33a81ba300f51f71e1460197b75e5be4\DEM.Graphics.I0901.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000036352 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\8c92743e9b554a6955b04b22abaef351\DEM.Graphics.I1010.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 001136640 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\0557a9c72866d1af3050cb4e14b41a4f\Localization.Foundation.Private.ni.dll
2018-02-08 23:38 - 2018-02-08 23:38 - 000244736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\f7ebb70a144d9d3f2fe92a8edac3f4da\ResourceManagement.Foundation.Implementation.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\b36bf7adb625562f8922a8a7b832b6fb\ResourceManagement.Foundation.Private.ni.dll
2018-02-08 23:27 - 2018-02-08 23:27 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\036ac620a278fa7284e13dcd5bda82bd\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 002862080 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\dc123e14c9674546a8ab5560b835102e\CLI.Caste.Graphics.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 003277824 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\db227dd554fad35712e064d7d5c2cd8c\CLI.Caste.Graphics.Runtime.ni.dll
2017-09-24 17:16 - 2008-04-03 05:00 - 000235520 _____ (CANON INC.) [File not signed] C:\Windows\System32\CNMLM83.DLL
2013-01-23 21:44 - 2013-01-23 21:44 - 000016216 _____ (Hewlett-Packard Company -> ) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\Interop.HPQWMIEXLib.dll
2013-01-23 21:43 - 2013-01-23 21:43 - 002452824 _____ (Hewlett-Packard Company -> Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\hputils.dll
2013-01-23 21:44 - 2013-01-23 21:44 - 000068440 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\CaslSmBios.dll
2013-01-23 21:44 - 2013-01-23 21:44 - 000524632 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\CaslWmi.dll
2016-07-25 18:55 - 2016-07-25 18:55 - 000113496 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Windows\assembly\GAC_MSIL\CaslShared\3.5.1.1__9c6f83d5b7f3d097\CaslShared.dll
2016-07-25 18:55 - 2016-07-25 18:55 - 000092504 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Windows\assembly\GAC_MSIL\hpcasl\3.5.1.1__9c6f83d5b7f3d097\hpcasl.dll
2013-03-26 21:12 - 2013-03-26 21:12 - 000056832 _____ (Hewlett-Packard Development Company, L.P.) [File not signed] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HP.Mobile.Shared.dll
2016-07-26 10:08 - 2016-05-21 10:19 - 000077312 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2013-08-22 14:31 - 2017-09-29 15:40 - 002896896 _____ (Microsoft Corporation) [File not signed] C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
2018-02-08 11:47 - 2018-02-08 11:47 - 000336384 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\3cea719585c15871e82ac1992d53c457\Microsoft.WindowsAPICodePack.ni.dll
2018-02-08 11:47 - 2018-02-08 11:47 - 002525696 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\a6882fa8a172b8639bb8b2335f6af6b9\Microsoft.WindowsAPICodePack.Shell.ni.dll
2017-10-08 11:53 - 2017-10-08 11:53 - 002775040 _____ (NLog) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\NLog\4ce317f88ec4329c93b303ba50dcab03\NLog.ni.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 003042304 _____ (Python Software Foundation) [File not signed] C:\Users\TOM~1\AppData\Local\Temp\_MEI44922\python27.dll
2017-10-08 11:52 - 2017-10-08 11:52 - 000017408 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.BiosInfo\ddf5111c27f39642b0c056cf87f2192d\StagWare.BiosInfo.ni.dll
2017-10-08 11:54 - 2017-10-08 11:54 - 000036352 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.Fa1fc2d056#\cd39978e79ff598f310bddc2d1dcaf5d\StagWare.FanControl.Service.ni.dll
2017-10-08 11:52 - 2017-10-08 11:52 - 000167936 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.Fafc31ac88#\bafe100a11bb2a4789eca5894750b0fc\StagWare.FanControl.Configurations.ni.dll
2017-10-08 11:53 - 2017-10-08 11:53 - 000144384 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.FanControl\ac3416be90242299ef18e34e6008189f\StagWare.FanControl.ni.dll
2017-10-08 11:54 - 2017-10-08 11:54 - 000039424 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.Settings\2c916f31645736e86d33dfc6a741f3cc\StagWare.Settings.ni.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 000202240 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxbase30u_net_vc90_x64.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 002831872 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxbase30u_vc90_x64.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 001654784 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxmsw30u_adv_vc90_x64.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 006542336 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxmsw30u_core_vc90_x64.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 000773632 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxmsw30u_html_vc90_x64.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 000137216 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxmsw30u_webview_vc90_x64.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\sharepoint.com -> hxxps://malgym-files.sharepoint.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2019-02-25 18:35 - 000000041 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;c:\Program Files (x86)\Intel\iCLS Client\;c:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\NoteBook FanControl\
HKU\S-1-5-21-508856505-97066582-1914413276-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta programu Windows Prohlížeč fotografií.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\StartupApproved\StartupFolder: => "EvernoteClipper.lnk"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\StartupApproved\Run: => "GarminExpressTrayApp"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\StartupApproved\Run: => "Spotify Web Helper"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{4440500E-2A2E-4CE3-A3FF-66417F819A1F}C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{221C8AF3-76F6-4FBB-9257-75A3317989C6}C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [TCP Query User{159A5873-2048-470A-B6C2-F6AB45B98221}C:\users\tomáš\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tomáš\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{FF2D840F-E30B-4884-BAC4-06A50412A714}C:\users\tomáš\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tomáš\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{241603BC-3EFB-47AE-9148-367EBF2BD7AC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{F62FA635-7262-493E-97FC-7A3F7FC7B909}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{CFF3B325-EDA7-4A51-BB73-E7460E621457}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{558FEC4D-D298-4F3A-B674-DE115D047084}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E59D35AB-8D46-4BCA-9BEA-1F552D78F2F5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{72F9D536-0640-4532-926C-F5B0555B6F94}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{EECB4F31-716E-4D54-9815-D425F3644E4F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{42C88F82-A367-4C7D-BB12-592BE6FB1687}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{089C2A5B-1D73-4565-9EF0-14EE9D940AA7}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{BE5FDE4B-F25F-45BF-BF47-E1EFD82E3AF6}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{60612BCD-0DB6-4C17-A502-CFD48E0494EC}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{80E0A99E-4D91-4CAD-AA12-8A3AE58A4D36}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4FEBFC1C-4B86-4C55-B953-EFBAD6784247}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{DFAA4770-8A29-4D0E-B017-A74B13C24634}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F62F57B5-1BA5-447A-9EA3-A187B5BA1F6E}] => (Allow) C:\Users\Tomáš\AppData\Local\Temp\7zS013C\HP.EasyStart.exe (HP Inc. -> HP)

==================== Restore Points =========================

15-09-2019 12:08:22 Removed Základní software zařízení HP DeskJet 5000 series
15-09-2019 13:12:29 Removed Základní software zařízení HP DeskJet 5000 series
15-09-2019 13:14:00 Removed Teams Machine-Wide Installer

==================== Faulty Device Manager Devices =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/15/2019 11:59:00 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0xC004F069
Částečný klíč Pkey=F3G7T
ACID=?
Podrobná chyba[?]

Error: (09/15/2019 03:14:13 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (09/15/2019 01:45:10 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error: (09/15/2019 01:32:52 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0xC004F074
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (09/15/2019 01:13:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ScanToPCActivationApp.exe, verze: 44.4.2678.1977, časové razítko: 0x5c9088ce
Název chybujícího modulu: combase.dll, verze: 6.3.9600.18895, časové razítko: 0x5a4b0eb6
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000003b3d2
ID chybujícího procesu: 0x1494
Čas spuštění chybující aplikace: 0x01d569ac4683364f
Cesta k chybující aplikaci: C:\Program Files\HP\HP DeskJet 5000 series\Bin\ScanToPCActivationApp.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\combase.dll
ID zprávy: c721ae29-d7a9-11e9-82ce-a45d36cd7354
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (09/15/2019 11:36:39 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (09/14/2019 07:13:01 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (09/14/2019 12:15:02 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable


System errors:
=============
Error: (09/18/2019 07:57:31 AM) (Source: bowser) (EventID: 8003) (User: )
Description: Hlavní prohledávač přijal oznámení serveru od počítače HPF90D31,
který se považuje za hlavní prohledávač domény pro přenos NetBT_Tcpip_{6FD0246E-E0CC-493D-A72F-06015BBE4AF9}.
Hlavní prohledávač bude ukončen nebo bude vyvolána volba.

Error: (09/18/2019 07:37:40 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70

Error: (09/18/2019 07:37:39 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70

Error: (09/17/2019 08:35:58 PM) (Source: ACPI) (EventID: 13) (User: )
Description: : Integrovaný řadič neodpověděl během zadaného časového limitu. Může to znamenat chybu hardwaru nebo firmwaru integrovaného řadiče nebo že systém BIOS přistupuje k integrovanému řadiči nesprávně. Měli byste zjistit, zda výrobce počítače nemá k dispozici upgrade systému BIOS. V některých situacích může tato chyba způsobit, že počítač nebude pracovat správně.

Error: (09/17/2019 06:44:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70

Error: (09/17/2019 06:44:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70

Error: (09/16/2019 07:34:39 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: NT AUTHORITY)
Description: 0x8000002a42\SystemRoot\System32\Config\RegBack\SYSTEM

Error: (09/16/2019 06:38:57 PM) (Source: bowser) (EventID: 8003) (User: )
Description: Hlavní prohledávač přijal oznámení serveru od počítače HPF90D31,
který se považuje za hlavní prohledávač domény pro přenos NetBT_Tcpip_{6FD0246E-E0CC-493D-A72F-06015BBE4AF9}.
Hlavní prohledávač bude ukončen nebo bude vyvolána volba.


CodeIntegrity:
===================================

Date: 2018-12-16 15:22:54.482
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:54.291
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:54.100
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:53.907
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:53.679
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:53.492
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:53.304
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-12-16 15:22:53.117
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

BIOS: Hewlett-Packard 68IRF Ver. F.66 07/14/2017
Motherboard: Hewlett-Packard 1949
Processor: Intel(R) Pentium(R) CPU 2020M @ 2.40GHz
Percentage of memory in use: 51%
Total physical RAM: 8040.56 MB
Available physical RAM: 3869.63 MB
Total Virtual: 16232.56 MB
Available Virtual: 10783.93 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.55 GB) (Free:642.74 GB) NTFS ==>[drive with boot components (obtained from BCD)]

\\?\Volume{d44e5679-baee-11e7-8292-806e6f6e6963}\ () (Fixed) (Total:0.86 GB) (Free:0.84 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: A378BE02)
Partition 1: (Active) - (Size=930.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=883 MB) - (Type=27)

==================== End of Addition.txt ============================

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Preventivní kontrola PC

#8 Příspěvek od Conder »

:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    File: C:\Program Files\IDT\WDM\STacSV64.exe
    ExportKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1
    ExportKey: HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\KMSpico 10.2.0 10.2.0
    
    HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {694ee494-763c-11e7-8286-a45d36cd7354} - "D:\HiSuiteDownLoader.exe" 
    HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {69af2778-3851-11e9-82c8-a45d36cd7354} - "D:\HiSuiteDownLoader.exe" 
    HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {d3259550-3f7f-11e9-82c8-a45d36cd7354} - "F:\HiSuiteDownLoader.exe" 
    Task: {AA07C323-2B2D-4E4E-B6AE-4C84011CCA45} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [743616 2015-12-02] (@ByELDI -> @ByELDI) [File not signed]
    C:\Program Files\KMSpico
    DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1
    DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\KMSpico 10.2.0 10.2.0
    HKU\S-1-5-21-508856505-97066582-1914413276-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/
    BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
    CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - <no Path/update_url>
    S2 HPSupportSolutionsFrameworkService; "C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe" [X]
    2019-09-18 19:58 - 2019-09-18 19:58 - 000000000 ____D C:\Users\Tomáš\Desktop\FRST-OlderVersion
    ShellIconOverlayIdentifiers: [   OneDrive1] -> {7AFDFDDB-F914-11E4-8377-6C3BE50D980C} =>  -> No File
    ShellIconOverlayIdentifiers: [   OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers: [   OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers: [   OneDrive4] -> {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} =>  -> No File
    ShellIconOverlayIdentifiers: [   OneDrive5] -> {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} =>  -> No File
    ShellIconOverlayIdentifiers: [   OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {7AFDFDDB-F914-11E4-8377-6C3BE50D980C} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
    ContextMenuHandlers1_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
    ContextMenuHandlers4_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
    ContextMenuHandlers5_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

TTommikk
Návštěvník
Návštěvník
Příspěvky: 77
Registrován: 16 črc 2006 19:01

Re: Preventivní kontrola PC

#9 Příspěvek od TTommikk »

Fix result of Farbar Recovery Scan Tool (x64) Version: 18-09-2019 01
Ran by Tomáš (18-09-2019 23:17:56) Run:1
Running from C:\Users\Tomáš\Desktop
Loaded Profiles: Tomáš (Available Profiles: Tomáš)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
File: C:\Program Files\IDT\WDM\STacSV64.exe
ExportKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1

HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {694ee494-763c-11e7-8286-a45d36cd7354} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {69af2778-3851-11e9-82c8-a45d36cd7354} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {d3259550-3f7f-11e9-82c8-a45d36cd7354} - "F:\HiSuiteDownLoader.exe"
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1
HKU\S-1-5-21-508856505-97066582-1914413276-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - <no Path/update_url>
S2 HPSupportSolutionsFrameworkService; "C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe" [X]
2019-09-18 19:58 - 2019-09-18 19:58 - 000000000 ____D C:\Users\Tom�\Desktop\FRST-OlderVersion
ShellIconOverlayIdentifiers: [ OneDrive1] -> {7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers1_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers5_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 37
Average :
Sum : 16847636722
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========


========================= File: C:\Program Files\IDT\WDM\STacSV64.exe ========================

C:\Program Files\IDT\WDM\STacSV64.exe
File not signed
MD5: 857693A4DA826BCD422C48114AA72B10
Creation and modification date: 2017-02-10 18:43 - 2013-11-07 01:07
Size: 000340480
Attributes: ----N
Company Name: IDT, Inc.
Internal Name: IDT PCA
Original Name: stacsv64.exe
Product: IDT PC Audio
Description: IDT PC Audio
File Version: 1.0.6496.0
Product Version: 1.0.6496.0
Copyright: Copyright © 2004 - 2009 IDT, Inc.
VirusTotal: https://www.virustotal.com/file/e6614b1 ... 563289378/

====== End of File: ======

================== ExportKey: ===================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1]
"Inno Setup: Setup Version"="5.5.5 (a)"
"Inno Setup: User"="Tomáš"
"Inno Setup: Language"="default"
"NoRepair"="1"
"InstallDate"="20160726"
"EstimatedSize"="16067"

=== End of ExportKey ===
================== ExportKey: ===================

"DisplayVersion"="10.2.0"
"VersionMajor"="10"
"VersionMinor"="2"
"HelpLink"="mailto:support@company.com"
"InstallDate"="20160726"
"Language"="1029"
"EstimatedSize"="3955"
"NoModify"="1"
"NoRepair"="1"

=== End of ExportKey ===
HKU\S-1-5-21-508856505-97066582-1914413276-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{694ee494-763c-11e7-8286-a45d36cd7354} => removed successfully
HKLM\Software\Classes\CLSID\{694ee494-763c-11e7-8286-a45d36cd7354} => not found
HKU\S-1-5-21-508856505-97066582-1914413276-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{69af2778-3851-11e9-82c8-a45d36cd7354} => removed successfully
HKLM\Software\Classes\CLSID\{69af2778-3851-11e9-82c8-a45d36cd7354} => not found
HKU\S-1-5-21-508856505-97066582-1914413276-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d3259550-3f7f-11e9-82c8-a45d36cd7354} => removed successfully
HKLM\Software\Classes\CLSID\{d3259550-3f7f-11e9-82c8-a45d36cd7354} => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AA07C323-2B2D-4E4E-B6AE-4C84011CCA45}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AA07C323-2B2D-4E4E-B6AE-4C84011CCA45}" => removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1 => removed successfully
HKU\S-1-5-21-508856505-97066582-1914413276-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} => not found
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\daanglpcpkjjlkhcbladppjphglbigam => removed successfully
HKLM\System\CurrentControlSet\Services\HPSupportSolutionsFrameworkService => removed successfully
HPSupportSolutionsFrameworkService => service removed successfully
"C:\Users\Tom�\Desktop\FRST-OlderVersion" => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Classes\CLSID\{9AA2F32D-362A-42D9-9328-24A483E2CCC3} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{9AA2F32D-362A-42D9-9328-24A483E2CCC3} => not found
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => not found
"HKU\\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx" => not found
HKLM\Software\Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => not found
"HKU\\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx" => not found
HKLM\Software\Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => not found
"HKU\\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ FileSyncEx" => not found
HKLM\Software\Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 18132200 B
Java, Flash, Steam htmlcache => 394224149 B
Windows/system/drivers => 12801650 B
Edge => 0 B
Chrome => 450755738 B
Firefox => 150190168 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 128 B
LocalService => 751972 B
NetworkService => 0 B
Tomáš => 582594295 B

RecycleBin => 79463 B
EmptyTemp: => 1.5 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 23:20:53 ====

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Preventivní kontrola PC

#10 Příspěvek od Conder »

:arrow: Plocha ma cca 15 GB, co je prilis vela. Presun vsetky subory a zlozky z plochy do dokumentov a na ploche nechaj iba odkazy/zastupcov. Prilis velka velkost plochy moze sposobit spomalenie systemu.

:arrow: Ako to vyzera s PC? Su nejake problemy? Inak logy vyzeraju OK.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

TTommikk
Návštěvník
Návštěvník
Příspěvky: 77
Registrován: 16 črc 2006 19:01

Re: Preventivní kontrola PC

#11 Příspěvek od TTommikk »

Vypadá to, že vše v pohodě :wink:

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Preventivní kontrola PC

#12 Příspěvek od Conder »

:arrow: Tak este upraceme po pouzitych nastrojoch:
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Odpovědět